01 Oct
|
Recruit CRM
|
Melbourne
01 Oct
Recruit CRM
Melbourne
Job Description
IPSec VPN L3 SME – Palo Alto & Cisco (Security Technical SME – L3) n
Job Title: IPSec VPN L3 SME – Palo Alto & Cisco (Security Technical SME – L3)
Location: Melbourne, Australia
Experience Level: Senior (L3 Support / SME)
Role Overview As a
Palo Alto & Cisco IPSec VPN L3 SME
, you will lead the design, deployment, and optimization of secure VPN architectures for enterprise and customer environments. You'll ensure high availability, scalability, and security across diverse deployment models using
Palo Alto Networks
and
Cisco ASA/Firepower
platforms. Key Responsibilities n
n
IPSec VPN Design & Deployment
n Architect and implement
IPSec VPN solutions
for new and existing customers, ensuring secure and reliable connectivity across hybrid infrastructures.
n
Multi-Model Support
n Configure and support various VPN deployment models including: n
n
Site-to-Site (S2S)
n
Tunnel Interfaces (SVTI/VTI)
n
Multi-site topologies
n
Cross-connection architectures
for complex enterprise environments
n
n
Best Practice Implementation
n Apply industry-standard design principles for: n
n
Resiliency
(failover, HA configurations)
n
Scalability
(agile routing, policy-based VPNs)
n
Security
(strong encryption, authentication, and access control)
n
n
Platform Expertise
n
n
Configure and troubleshoot
Palo Alto VPNs
using IKEv2/IPSec, tunnel monitoring, and App-ID policies
n
Administer
Cisco ASA/Firepower VPNs
, including crypto maps, tunnel groups, and NAT traversal
n
Integrate VPNs with
routing protocols
(OSPF, BGP) and
identity platforms
(RADIUS, LDAP, SAML)
n
n
Advanced Troubleshooting & Escalation
n Serve as the
L3 escalation point
for VPN-related incidents, performing packet-level diagnostics and root cause analysis.
n
Documentation & Compliance
n Maintain detailed design documents, runbooks, and change records to support audits and compliance frameworks (ISO *****, NIST, PCI-DSS).
n
Required Skills & Qualifications n
n
5+ years in
network security engineering
, with deep expertise in IPSec VPNs
n
Hands-on experience with: n
n
Palo Alto Networks firewalls
(PAN-OS, GlobalProtect, tunnel monitoring)
n
Cisco ASA/Firepower
(CLI and ASDM)
n
IPSec/IKEv2 protocols
,
crypto profiles
, and
routing integration
n
n
Strong understanding of: n
n
High availability
,
failover mechanisms
, and
redundant VPN design
n
Firewall rule tuning
,
NAT policies
, and
QoS for VPN traffic
n
Monitoring tools
(Panorama, Cisco FMC, SNMP, syslog)
n
n
Preferred Certifications n
n
PCNSE
(Palo Alto Networks Certified Network Security Engineer)
n
CCNP Security / CCIE Security
(Cisco)
n
CISSP
,
CCSP
, or
CEH
n
n
#J-*****-Ljbffr
📌 Ipsec VpnSme - Palo Alto & Cisco [Security Technical Sme (Melbourne)
🏢 Recruit CRM
📍 Melbourne