- Company Name
- Affinity
- Job Title
- Firewall Administrator
- Job Description
-
**Job Title**
Firewall Administrator
**Role Summary**
Responsible for designing, configuring, and troubleshooting firewall, VPN, proxy, Web Application Firewall (WAF), and IDS/IPS solutions across on‑premises and cloud environments (Azure, AWS). Ensures secure connectivity, maintains documentation for compliance, and collaborates with security and operations teams for smooth support and knowledge transfer.
**Expectations**
- Deep understanding of networking and firewall principles, including segmentation, rule design, and security zoning.
- Hands‑on experience with Fortinet, Palo Alto, and Cisco firewalls; knowledge of F5 LTM or similar load balancers is a plus.
- Proficiency with VPN (site‑to‑site, remote access, cloud‑integrated) and WAF configuration both on‑prem and in the cloud.
- Familiarity with Azure Network Security Groups (NSGs), Azure Application Security Groups (ASGs), AWS security groups, and VMware NSX Distributed Firewall (DFW).
- Experience in certificate management (PKI) for VPN authentication and SSL inspection.
- Ability to translate on‑prem firewall/VPN/WAF rules to cloud equivalents during migration projects.
- Strong analytical, problem‑solving, and attention‑to‑detail skills.
- Excellent verbal and written communication, customer‑focused, self‑directed, and capable of handling multiple concurrent projects.
**Key Responsibilities**
- Implement, modify, and maintain firewall, proxy, VPN, WAF, and IDS/IPS rules per project requirements and security policies.
- Troubleshoot issues across on‑premises and cloud environments in collaboration with internal teams, customers, and vendors.
- Configure and support cloud‑native security controls: Azure NSGs/ASGs, AWS security groups, and VMware NSX‑DFW.
- Assist with secure connectivity between on‑prem data centres and cloud platforms (Azure, AWS).
- Update and maintain operational and project documentation, ensuring compliance with governance standards.
- Process production change requests for firewall, zoning, VPN, and security group activities.
- Provide knowledge transfer and collaborate with security and network operations teams to ensure continuity of support.
**Required Skills**
- Networking fundamentals (OSI model, routing, switching).
- Firewall rule design, segmentation, and security zoning.
- VPN configuration and troubleshooting (site‑to‑site, remote access, cloud).
- WAF configuration and management.
- Azure NSG/ASG, AWS security group administration.
- VMware NSX Distributed Firewall – micro‑segmentation, east‑west traffic control, policy design.
- PKI and certificate management for VPN/VPN SSL inspection.
- Migration support: translating security rules from on‑prem to cloud.
- Analytical problem‑solving, detail orientation.
- Strong communication (verbal, written), customer interaction, and collaboration.
- Self‑motivation, results‑orientation, multi‑tasking, teamwork.
- Proficiency with Microsoft Office and common productivity tools.
**Required Education & Certifications**
- Bachelor’s degree in Computer Science, Information Technology, or related field (preferred).
- Industry certifications preferred: CCNA, NSE (Fortinet), PCNSE (Palo Alto), or equivalent.