Senior Network Security Engineer

2 days ago


Singapore Unison Consulting Pte Ltd Full time

**Roles & Responsibilities**

Part of a team that is responsible for the Network Security Engineering & Deployment function and will play a key role in Datacenter Migration projects.

**Network Transformation Architecture**:

- Lead the design, engineering, and execution of next-generation network transformation solutions.
- Provide technical leadership in building resilient, scalable, and secure hybrid and multicloud network environments.

**Design, Deployment, and Operations**:

- Architect and deploy advanced Network Security across datacenters (DC1 & DC2).
- Integrate network security products with Cisco ACI environments to deliver seamless and secure connectivity with optimal performance.
- Act as an escalation point for the Operations team on network security issues, providing Level 3 troubleshooting and SME-level support.
- Collaborate with vendors, TAC, and internal teams to resolve complex network & Security incidents and escalations.

**Policy Management and Automation**:

- Develop and enforce policy-driven network security architectures.
- Leverage automation tools (e.g., Ansible, Python, XSOR) to enhance operational efficiency and minimize manual interventions.
- Ensure compliance with industry standards and internal governance policies while aligning network security configurations with best practices.

**Documentation and Governance**:

- Maintain accurate network security diagrams, operational runbooks, and technical documentation.
- Ensure all security implementations adhere to governance frameworks and meet regulatory compliance requirements.

**Mentorship and Knowledge Sharing**:

- Provide Level3/SME-level support and guidance to peers and stakeholders within the organization.
- Lead knowledge transfer sessions on network security technologies and best practices.

**Requirements**:
**Technical Expertise**: 10 to 15 years of experience in Network Security technologies like Firewalls, Intrusion Detection & Prevention Systems (IDPS), Web Application Firewalls (WAF), Micro-segmentation, Web Proxies, and DNS

**Firewall Technologies**:

- Next-Generation Firewalls (NGFWs): Understanding of advanced features like Application Awareness, Intrusion Prevention, and Deep Packet Inspection.
- Checkpoint Firewall Architecture: Expertise in Threat Prevention, VPNs, and High Availability (HA) configuration.
- Palo Alto Networks NGFWs: Knowledge of App-ID, WildFire, and User-ID for enhanced security.
- Firewall Rule Optimization: Experience in defining and fine-tuning access control policies and inspecting network traffic for threats.
- Expertise in implementing DNS Security solutions to prevent attacks such as DNS Spoofing, Cache Poisoning, and DDoS attacks targeting DNS infrastructure.

**Intrusion Detection and Prevention Systems (IDPS)**:

- Signature-Based IDS/IPS: Expertise in configuring and managing signature-based detection.
- Anomaly-Based IDS/IPS: Deep knowledge of Behavioral Analysis for detecting suspicious patterns and zero-day attacks.
- Integrated Security Operations: Integration of IDPS with SIEM systems for centralized log management and threat detection.

**Web Application Security**:
**Microsegmentation and Zero Trust Security**:

- Microsegmentation: Proficiency in tools like Illumio or Guardicore for isolating and securing workloads within the data center and cloud environments.
- Zero Trust Architecture (ZTA): Expertise in defining and enforcing access policies based on identity and device posture, and validating every user and device before granting access.

**Network Access Control (NAC): Aruba ClearPass**:
Expertise in configuring role-based access control and integrating ClearPass with other network security solutions. Cisco Identity Services Engine (ISE): Knowledge of 802.1X, MAB (MAC Authentication Bypass), and Guest Access in NAC environments.

**DNS & IP Address Management (IPAM)**:
Infoblox DDI (DNS, DHCP, IPAM): Experience in configuring and managing Infoblox for network address allocation, DNS resolution, and advanced DNS security. DNS Security: Expertise in securing DNS infrastructure through DNSSEC, DNS filtering, and DNS over HTTPS (DoH). Traffic Visibility & Monitoring:
**Network Traffic Analysis**:
Proficiency in using tools like Wireshark, Riverbed App Response, Cisco Thousand Eyes ,NetFlow, and sFlow for traffic analysis and anomaly detection.

**Security Information and Event Management (SIEM)**:Expertise in integrating network devices with Splunk, Elastic or Equivalent for threat visibility and incident response.

**Routing Protocols & VPNs: BGP (Border Gateway Protocol)**:
In-depth understanding of BGP routing policies, route filtering, and peering in large-scale network environments. OSPF (Open Shortest Path First): Expertise in dynamic routing configuration, including OSPF multi-area and OSPFv3 for IPv6 support. Site-to-Site and Remote Access VPNs: Knowledge of configuring IPSec VPNs and SSL VPNs for secure communications across branches and remote users.


  • Senior Network

    1 week ago


    Singapore GOLDTECH RESOURCES PTE LTD Full time

    We are seeking an experienced Senior Network & Security Engineer to join our team. You will play a key role in designing and delivering complex network and security solutions for enterprise clients, leading troubleshooting efforts and ensuring successful project deployments. In this role, you'll also act as a trusted advisor to clients while collaborating...

  • Senior Network

    1 week ago


    Singapore SAGL CONSULTING PTE. LTD. Full time

    About the Role You will provide senior-level (L3/4) Network & Security support across enterprise environments, handling complex incidents, firewalls, network access controls, and security platforms. The role requires strong troubleshooting capability, cross-domain knowledge, and hands-on experience with enterprise security technologies. Key Responsibilities...


  • Singapore WESTRAMA MANAGEMENT (S) PTE. LTD. Full time

    **Senior Network Engineer Job Responsibilities - Meet with the Chief Technology Officer and company management to discuss internal and external data communication networks whenever there is a need for new systems or additional technological support - Research hardware and software solutions and create plans, including layouts and product specifications, for...

  • Network Engineer

    4 days ago


    Singapore INSYGHTS SECURITY PTE. LTD. Full time

    **About the Role**: We are looking for a reliable and hands-on Network Engineer to support our growing SME operations. In this role, you will manage our network infrastructure, support IT systems, and be given the opportunity to grow into cybersecurity functions, including the deployment of security products and assisting with security monitoring and...


  • Singapore StarHub Full time

    Senior Engineer, Network Security (Palo Alto)Join to apply for the Senior Engineer, Network Security (Palo Alto) role at StarHub. Responsibilities Develop and implement robust cybersecurity architectures using Palo Alto Networks technologies Ensure secure integration across cloud, on-premises, and hybrid infrastructures Solution Deployment & Optimization...


  • Ang Mo Kio Street , Singapore, Singapore NCS Full time

    Company Description NCS is a leading technology services firm that operates across the Asia Pacific region in over 20 cities, providing consulting, digital services, technology solutions, and more. We believe in harnessing the power of technology to achieve extraordinary things, creating lasting value and impact for our communities, partners, and people. Our...


  • Singapore Stanford Black Limited Full time

    Network Security Engineer - Systematic Trading Firm | Up to S$400,000 Total Comp A high-growth systematic trading firm is looking for a skilled Network Security Engineer to safeguard their network perimeter. You will work to maximise security across their data centres, colos, public cloud, firewall DMZ, and intra/extranet. Play a critical role in driving...

  • Senior IT Engineer

    2 weeks ago


    Singapore Crypto Pro Network Full time

    BitMEX stands as a globally leading exchange for crypto derivatives, offering traders a professional-grade trading platform. Since its inception in 2014, BitMEX has maintained an impeccable security record with "no coin lost, ever!". Our platform caters to cryptocurrency derivatives traders by providing low latency, deep liquidity, and maximum availability....

  • Network Engineers

    2 days ago


    Singapore Network Guard Full time

    **About this role**: We're a rapidly-expanding engineering organization actively designing and building a modernized approach to handling and optimizing our global network traffic and infrastructure. Our work will directly impact and influence the wider organization's ability to deliver key features and provide industry-leading VPN performance, while also...


  • Singapore XCELLINK PTE. LTD. Full time

    We are looking for seasoned Network & Security Engineers (L3/4) to deliver advanced managed services across our clients' IT environments. This role ensures the stability, performance, and security of critical infrastructure by proactively managing incidents, resolving complex technical issues, and driving continuous service improvement. You will serve as a...