Live opening · Posted 2 days ago
At a glance
The key details from the original listing.
Your early-applicant advantage
Live timing from JobBeeper.
About the role
Description supplied by the original job listing.
We are seeking a highly skilled Network Security Compliance Check and Remediation Engineer responsible for ensuring that network and security infrastructure complies with internal security standards, regulatory requirements, and industry best practices. The candidate will perform security compliance assessments, identify gaps, drive remediation activities, and work closely with network, cloud, security, and operations teams to maintain a secure and compliant environment. The role requires strong expertise in network security technologies, firewall management, security hardening, vulnerability management, access governance, change management, and compliance auditing.
The candidate will have responsibilities across the following functions:
Firewall and Security Policy Compliance:
Conduct periodic firewall rule reviews and security policy audits.
Identify and remediate: Zero-hit firewall rules, Redundant or duplicate rules, expired temporary access rules, and overly permissive access policies.
Review and optimise Disaster Recovery (DR) firewall configurations.
Ensure firewall policies align with security and regulatory standards.
Network Security Compliance Reviews:
Perform compliance assessments against security baselines and organisational standards.
Validate network segmentation and access controls.
Review and maintain network security architecture documentation.
Network Documentation and Inventory Management:
Create and maintain network diagrams and security architecture documentation.
Maintain accurate inventory of: Firewalls, Routers, Switches, Load Balancers, Security Appliances, Cloud Network Components.
Access Management and Governance:
Perform periodic user access reviews.
Validate privileged account access.
Ensure least-privilege access principles are followed.
Coordinate access certification and recertification activities.
Security Hardening: Review and implement network device hardening standards.
Conduct periodic hardening audits for: Firewalls, Routers o Switches, VPN Devices, Cloud Network Security Components.
Track and manage recurring hardening activities.
Change and Incident Management:
Review and implement network security change requests.
Participate in CAB (Change Advisory Board) activities.
Handle emergency changes and ensure proper documentation.
Perform post-change validation and risk assessment.
Risk Assessment and Remediation:
Conduct risk assessments for insecure services and ports.
Identify security gaps and recommend remediation measures.
Track remediation activities until closure.
Prepare risk treatment plans and compliance reports.
Patch and Vulnerability Management:
Ensure network and security devices are maintained at N-1 software versions. Coordinate firmware and software upgrades.
Track and remediate vulnerabilities identified through: Vulnerability Assessments, Security Scans, Penetration Testing VAPT Management Coordinate Vulnerability Assessment and Penetration Testing (VAPT).
Analyse findings and prioritise remediation. Validate closure of vulnerabilities.
Prepare management reports and compliance evidence.
DNS Security Review:
Review DNS architecture and configurations.
Validate DNS security controls.
Identify unauthorised or risky DNS configurations.
Ensure DNS compliance with security standards.
Asset Lifecycle Management:
Track AMC contracts and warranty status.
Monitor: o Hardware End of Life (EOL), Software End of Life (EOL), End of Support (EOS).
Drive technology refresh and remediation planning.
Audit and Compliance Support:
Support internal and external audits.
Provide compliance evidence and documentation.
Assist with remediation of audit observations.
Ensure adherence to standards such as: RBI Guidelines, ISO 27001 PCI-DSS, NIST, CIS Benchmarks, SOC 2
Requirements:
Strong understanding of network security architecture and compliance requirements.
Experience managing enterprise firewalls and cloud network security controls.
Ability to perform security assessments and drive remediation activities independently.
Excellent troubleshooting, documentation, and stakeholder management skills.
Experience supporting regulatory audits and security governance programs.
Strong analytical mindset with a focus on risk reduction and continuous improvement.
Required Technical Skills:
Networking TCP/IP Routing & Switching BGP OSPF VLANs NAT DNS DHCP VPN Technologies Security Technologies Next-Generation Firewalls IDS/IPS WAF DDoS Protection Proxy Security Network Segmentation Firewall Platforms.
Experience with one or more: Palo Alto Networks Firewalls Fortinet FortiGate Cisco Firepower/ASA Check Point Firewalls Cloud Security (Preferred) Amazon Web Services Networking Microsoft Azure Networking Oracle OCI Networking Security Groups NSGs Route Tables Cloud Firewalls Compliance & Governance Risk Assessment Security Audits Compliance Reviews Vulnerability Management Change Management Access Governance Automation (Preferred) Python PowerShell REST APIs Ansible Terraform.
Preferred Certifications CCNA / CCNP Security PCNSA / PCNSE NSE 4 / NSE 5 CISSP CISM CEH ISO 27001 Lead Implementer/Auditor OCI/AWS/Azure Networking Certifications Key Performance Indicators (KPIs) Zero-hit rule reduction percentage Firewall compliance score Vulnerability remediation SLA compliance Patch compliance percentage Access review completion rate Audit observations closure rate EOL/EOS remediation compliance Security hardening compliance score Change success rate Risk remediation closure percentage.
Experience
3-7 yrs
More openings worth a look
Recently tracked roles with full details and direct application links.