Firewall Engineer (New South Wales)

Firewall Engineer (New South Wales)

22 Sep
|
CircuIT Recruitment Group
|
New South Wales

22 Sep

CircuIT Recruitment Group

New South Wales

CircuIT Recruitment Group – Sydney CBD NSW
Firewall Engineer
6 Months (High chance of extensions)
Sydney OR Melbourne
$1,000 p/d
About the opportunity
Our client is undertaking a major overhaul of their network security estate, moving off Juniper SRX and onto Fortinet FortiGate across a large and complex environment. This is a hands on, delivery focused engagement for someone who's done this exact kind of migration before and can own it end to end, from design through cutover to hypercare, while working inside a tightly controlled, high availability production environment.
What you'll be doing
Leading the technical design and delivery of the SRX to FortiGate migration across core, edge and branch sites, including HA pairs and segmented zones
Converting and improving existing Juniper policies, NAT rules, VPNs and routing configs into clean, optimised FortiGate equivalents
Cleaning up the rule base as you go, removing shadowed, unused or overly permissive rules
Redesigning and testing site to site and remote access VPNs (IPsec and SSL) with minimal disruption to users
Writing detailed cutover runbooks, rollback plans and validation test cases for every migration window
Coordinating cutovers with network, application and business teams in a formal change managed setting
Standing up FortiManager and FortiAnalyzer for centralised policy control, logging and reporting
Working with SOC, SIEM and vulnerability management teams to keep detection and alerting coverage intact through the transition
Integrating with existing routing, SD WAN, load balancing and identity systems (RADIUS, LDAP, SAML)




Keeping HLDs, LLDs and as built documentation accurate and current
Presenting risk and impact assessments through formal change approval processes
Providing hypercare and knowledge transfer to the BAU network security team post go live
What we need to see
5+ years in network security engineering, with genuine hands on depth in both Juniper SRX and Fortinet FortiGate
A completed large scale firewall vendor migration under your belt, ideally in a highly regulated or compliance heavy setting
Strong grounding in firewall policy design, NAT, routing (BGP/OSPF), VPN technologies and network segmentation
FortiManager and FortiAnalyzer experience for centralised management and logging
Comfortable across both Junos and FortiOS, CLI and GUI
Solid understanding of operating within strict regulatory and compliance frameworks
Experience working inside formal ITIL aligned change and CAB processes
Strong L2 to L7 troubleshooting ability
Clear written and verbal communication, including explaining technical risk to non technical stakeholders
Bonus points
Fortinet NSE 4 to 7 (NSE 7 highly regarded)
Juniper JNCIA or JNCIS SEC
CCNP Security, CISSP or similar
ITIL Foundation
Prior migration work inside a bank, insurer or other tightly regulated organisation
Experience delivering zero downtime or low impact migrations across active/active HA environments
Exposure to cloud adjacent firewalling (Azure/AWS) in hybrid setups
A genuinely rigorous approach to testing, given how much is riding on getting every rule right
#J-*****-Ljbffr

📌 Firewall Engineer (New South Wales)
🏢 CircuIT Recruitment Group
📍 New South Wales

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: firewall engineer (new south wales) / new south wales

Subscribe to this job alert:

Get the latest job offers by email for: firewall engineer (new south wales) / new south wales