As part of⠀Injazat⠀Cloud⠀Delivery⠀practice,⠀the⠀Architect⠀is⠀responsible⠀for⠀implementation,⠀configuration⠀and design⠀of Network⠀and⠀Security⠀Infrastructure⠀including⠀Cloud and⠀On-prem⠀environments.⠀The⠀successful⠀candidate⠀will be⠀responsible⠀for⠀designing,⠀implementing,⠀and⠀maintaining⠀our⠀network⠀infrastructure⠀to ensure⠀high-performance,⠀availability,⠀and⠀security.⠀This role⠀requires a⠀strong⠀technical⠀background⠀in⠀networking⠀and⠀security,⠀as well as⠀excellent⠀problem-solving⠀and⠀communication⠀skills.
Responsibilities:
- Design,⠀implement,⠀and⠀maintain⠀enterprise⠀Net-Sec⠀infrastructure⠀and⠀multi-cloud⠀platforms,⠀including⠀routers,⠀switches,⠀firewalls,⠀Wireless⠀and VPN⠀solutions.
- Supports⠀the⠀definition⠀of project⠀scope,⠀plans, and⠀deliverables⠀including⠀costings⠀and⠀implementation⠀dates
- Plan⠀and⠀execute⠀network⠀and⠀security⠀projects,⠀ensuring⠀they are⠀completed⠀within the⠀defined⠀scope,⠀budget,⠀and⠀timeline.
- Provides⠀strategy⠀and⠀architecture⠀support⠀and⠀perform⠀product/service⠀evaluations
- Collaborate⠀with⠀cross-functional⠀teams to⠀assess⠀network⠀and⠀security⠀requirements⠀and⠀develop⠀solutions⠀that meet⠀business⠀needs.
- Conduct⠀regular⠀network⠀and⠀security⠀audits to⠀identify⠀vulnerabilities⠀and⠀recommend⠀appropriate⠀remediation⠀measures.
- Perform⠀assessments⠀of⠀existing⠀client⠀Net-Sec⠀Infrastructure⠀and⠀deliver⠀due⠀diligence/As-is⠀reports/documentations.
- Monitor⠀network⠀performance⠀and⠀security⠀incidents,⠀proactively⠀identifying⠀and⠀resolving⠀issues to⠀ensure⠀uninterrupted⠀operations.
- Develop⠀and⠀maintain⠀low level⠀designs,⠀diagrams,⠀installation⠀configuration⠀& guides,⠀support⠀procedures,⠀test plans⠀and⠀runbook
- Develop,⠀document,⠀and⠀implement⠀Disaster⠀Recovery⠀Plan and⠀execute DR⠀drills
- Perform⠀advanced⠀problem⠀determination⠀and⠀root-cause-analysis
- Plan⠀and⠀execute⠀the⠀Injazat⠀Operation⠀Readiness⠀process⠀for⠀Infrastructure⠀projects⠀for⠀transition⠀into⠀production⠀support
- Act⠀as⠀Technical⠀leads to⠀3rd party⠀vendors to⠀ensure⠀technical⠀assurance⠀and⠀adherence⠀to Injazat⠀quality⠀standards
- Stay⠀up-to-date⠀with⠀industry⠀best⠀practices,⠀emerging⠀technologies,⠀and⠀security⠀threats,⠀and make⠀recommendations⠀for⠀continuous⠀improvement.
- Research,⠀analyses,⠀recommends,⠀and⠀implements⠀new⠀technologies,⠀standards,⠀processes,⠀tools and⠀techniques.
- Provide⠀guidance⠀and⠀mentorship⠀to junior⠀team⠀members,⠀fostering⠀a culture⠀of⠀knowledge⠀sharing⠀and⠀professional⠀growth.
Qualifications:
- Bachelor's⠀degree in⠀Computer⠀Science,⠀Information⠀Technology,⠀or a⠀related⠀field.⠀Master's⠀degree⠀preferred.
- Proven⠀experience⠀as a⠀Net-Sec⠀Architect/Implementation⠀Engineer⠀or in a⠀similar⠀role, with⠀a track⠀record of⠀successfully⠀designing⠀and⠀implementing⠀Net-Sec⠀solutions.
- Understanding⠀of⠀monitoring⠀and⠀alerting⠀within⠀multi-cloud⠀environments
- Must⠀be aware⠀of Project⠀Management⠀and ITIL⠀frameworks
- Solve⠀problems⠀quickly,⠀effectively⠀communicate⠀solutions⠀and⠀associated⠀risks
- Ability⠀to clearly⠀articulate⠀concepts⠀to people⠀with⠀varying⠀technical⠀background
- Excellent⠀problem-solving⠀skills and⠀the⠀ability to⠀analyze⠀complex⠀technical⠀requirements.
- Strong⠀communication⠀and⠀interpersonal⠀skills,⠀with the⠀ability to⠀collaborate⠀effectively⠀with⠀cross-functional⠀teams.
- Relevant⠀certifications,⠀such as⠀Cisco⠀CCIE,⠀Fortinet⠀NSE, Palo⠀Alto⠀PCNSE,⠀Juniper⠀etc.
- At⠀least 6 to⠀9 years'⠀experience⠀as a⠀Net-Sec⠀Technical⠀Architecture⠀and⠀Implementation⠀Engineer⠀role
- Understanding⠀of cloud⠀computing⠀architecture,⠀technical⠀design,⠀and⠀implementations
- Install,⠀configure⠀and manage⠀the⠀following⠀technologies
- Cisco⠀Switching⠀and⠀Routing
- Email⠀Security⠀(Cisco⠀ESA/FortiMail)
- Firewalls⠀(Cisco⠀ASA/FTD/Fortinet/PaloAlto)
- Web⠀Proxy⠀(Cisco⠀WSA)
- Web⠀Application⠀Security⠀(F5 ASM/⠀Forti-Web)
- ATP⠀Solution (⠀Cisco TG,⠀AMP/⠀FortiSandbox)
- Wireless⠀Network (⠀Cisco WLC⠀& APs ),⠀Cisco ISE⠀& Guest⠀Portal
- Citrix⠀and F5⠀Load⠀Balancers⠀and GTM⠀Solutions
- Advanced⠀level⠀understanding⠀of Cisco⠀ACI/⠀VMware⠀NSX-T, DNS⠀(Infoblox/⠀F5⠀DNS).
- Installation⠀and⠀configuration⠀of Cisco,⠀Fortigate⠀, Palo⠀Alto⠀firewalls⠀and other⠀security⠀solutions⠀on Public⠀Clouds
- Installation⠀and⠀configuration⠀of virtual⠀FortiMail⠀on Public⠀Clouds
- Configuration⠀of NSX-T,⠀ALB/AVI ,⠀IPS , URL⠀Filtering
- Configuration⠀of Network⠀security⠀services⠀in the⠀cloud⠀including⠀VPN,⠀express⠀route,⠀landing⠀zone, WAF,⠀LB,⠀security⠀groups and⠀NACL⠀(preferably⠀Azure)
- Experience⠀with⠀Infrastructure⠀as Code⠀(Terraform⠀preferred)
- Knowledge⠀of⠀security⠀hardening⠀and system⠀performance⠀tuning