Network Security Engineer
Chennai, Tamil Nadu, IN
Job title: Network Security Engineer
Location: Chennai
Reports to: Mgr, IT Systems Administration
Contract: Permanent, Full-time
Purpose of the Role
The Network Security Engineer is responsible for securing the enterprise network infrastructure through vulnerability management, security automation, and network segmentation initiatives. This role partners closely with Infrastructure, Information Security, OT Engineering, Cloud, and Operations teams to identify and remediate security risks, automate security controls, and design network architectures that reduce attack surfaces while supporting business operations.
The ideal candidate combines strong networking expertise with cybersecurity knowledge and automation skills. Success in this role requires the ability to manage vulnerability remediation programs, implement network segmentation strategies across IT and OT environments, and develop automation solutions that improve security posture and operational efficiency.
Your Key Responsibilities:
Vulnerability Management
• Lead network vulnerability management activities across routers, switches, firewalls, SD-WAN, wireless, and cloud networking platforms.
• Analyze vulnerability scan results of network assets from platforms such as Qualys and other assessment tools.
• Prioritize and develop remediation efforts based on risk, exploitability, business impact, and asset criticality.
• Track SLA compliance, exception management, and risk acceptance for network devices and establish related vulnerability reporting and KPI metrics.
• Identify recurring vulnerability trends and implement long-term corrective actions.
Security Automation
• Design and develop automation solutions for network monitoring, configuration validation, vulnerability remediation.
• Build and maintain automation frameworks utilizing Ansible, Python, PowerShell, APIs, and orchestration platforms.
• Automate firewall policy reviews, rule lifecycle management, and security configuration validation.
• Implement automated compliance checks aligned with network security standards and hardening baselines.
• Develop integrations between vulnerability management tools, CMDB platforms, ticketing systems, and monitoring solutions.
• Reduce manual operational effort through repeatable, scalable automation workflows.
Network Segmentation & Security Engineering
• Implement and maintain secure network segmentation architectures and standards for enterprise, cloud, datacenter, edge sites, and operational technology (OT) environments.
• Define firewall zoning strategies, security policies, and access control standards.
• Participate in IT/OT convergence and zero-trust network architecture initiatives.
• Develop and maintain network security standards, hardening baselines, and operational procedures.
• Support firewall management, intrusion detection, secure remote access, and network access control technologies.
• Partner with IT Security teams during incident investigations and threat response activities and support audits, compliance assessments, and security reviews
What You’ll Need:
Minimum:
Education
• Bachelor's degree in Information Technology, Computer Science, Cybersecurity, Engineering, or equivalent experience.
Experience
• 5+ years of enterprise network engineering experience.
• 3+ years of cybersecurity or network security experience.
• Experience with network segmentation and firewall policy design.
• Experience managing vulnerability remediation programs.
Technical Skills
Networking
• Routing and switching (Cisco, Aruba, Juniper or equivalent)
• SD-WAN technologies
• DNS, DHCP, TCP/IP
• Wireless networking
Security
• Palo Alto, Cisco, Fortinet, or equivalent firewalls
• Network Access Control (NAC)
• IDS/IPS technologies
• Zero Trust principles
• Security architecture and risk management
Vulnerability Management
• Qualys, Tenable, Rapid7, or similar platforms
• Vulnerability prioritization and remediation workflows
• Security metrics and compliance reporting
Automation
• Ansible
• Python
• PowerShell
• REST APIs
• Git version control
• Infrastructure-as-Code concepts
Your Advantage:
• Experience automating network and security operations.
• Experience with Industrial/OT networking environments.
• Experience with microsegmentation concepts and technologies.
• Experience with cloud networking security (Azure, AWS, GCP).
• Experience integrating security tools through APIs and automation workflows.