Rakuten Rewards
Website:
rakuten.com
Job details:
Job Title: Senior Network Security Operations Engineer
Department: Security Engineering
Reports To: Manager, Security Infrastructure Operations
Location: Bangalore, India
About the Team/Department:
The Security Infrastructure Operations team is responsible for maintaining, monitoring, and improving enterprise network security infrastructure across data center, cloud-connected, and corporate network environments. The team manages critical security platforms including firewalls, intrusion prevention systems, web application firewalls, access control solutions, VPN services, and related monitoring tools to ensure secure, stable, and compliant network operations.
Position Summary
The Senior Network Security Operations Engineer is responsible for the secure, reliable, and efficient operation of enterprise network security infrastructure. This role requires advanced hands-on expertise in Cisco ASA, Cisco FTD, Cisco FMC, Cisco ISE, IPS technologies, F5 Web Application Firewall, and F5 Firewall platforms. The position serves as a senior technical escalation point for complex operational issues, incident response, change implementation, platform lifecycle activities, policy governance, and continuous improvement initiatives. The successful candidate will demonstrate strong technical judgment, ownership, documentation discipline, stakeholder communication, and the ability to support business-critical security operations in a high-availability environment.
Key Responsibilities
- Own the day-to-day administration, monitoring, maintenance, and operational support of Cisco ASA, Cisco FTD, Cisco FMC, Cisco ISE, IPS, F5 WAF, and F5 Firewall platforms.
- Implement and review firewall policies, access control rules, NAT, VPN configurations, security objects, routing-related changes, and periodic rule optimization activities in accordance with approved change management processes.
- Monitor platform health, availability, logs, alerts, utilization, capacity, and performance to ensure proactive identification, escalation, and resolution of operational risks.
- Analyze and resolve complex network security incidents involving firewall drops, IPS events, authentication failures, application access issues, routing dependencies, and connectivity disruptions.
- Administer Cisco FMC-managed FTD environments, including access control policy deployment, intrusion policy tuning, device health validation, configuration review, and operational troubleshooting.
- Administer Cisco ISE services supporting network access control, including 802.1X, MAB, RADIUS, TACACS+, profiling, posture, policy sets, endpoint visibility, and authentication troubleshooting.
- Support F5 WAF and F5 Firewall operations, including application protection policy review, traffic analysis, virtual server troubleshooting, security policy tuning, and coordination with application owners.
- Lead technical investigation, root cause analysis, post-incident reviews, corrective actions, and preventive measures for priority incidents and recurring operational issues.
- Plan, validate, and execute platform upgrades, patching, configuration backups, certificate renewals, device migrations, health checks, and preventive maintenance activities.
- Maintain accurate operational documentation, including SOPs, runbooks, network diagrams, change plans, rollback procedures, configuration records, and knowledge base articles.
- Collaborate with SOC, NOC, application, server, cloud, identity, compliance, audit, and vendor teams to support incidents, changes, projects, risk reviews, and service improvement activities.
- Provide technical guidance to L1/L2 engineers, review escalations, share knowledge, and contribute to operational maturity, standardization, and process improvement.
Required Qualifications
- Bachelor’s degree in Computer Science, Information Technology, Electronics, Telecommunications, Cybersecurity, or a related technical discipline.
- Minimum 6–9 years of relevant experience in network security operations, firewall administration, infrastructure security support, or enterprise security operations.
- Proven hands-on experience with Cisco ASA, Cisco FTD, Cisco FMC, Cisco ISE, IPS, F5 Web Application Firewall, and F5 Firewall technologies.
- Strong understanding of firewall rules, ACLs, NAT, VPN, routing, switching, VLANs, TCP/IP, DNS, packet capture analysis, certificates, and end-to-end network troubleshooting.
- Sound knowledge of network security principles, including segmentation, access control, intrusion prevention, secure remote access, vulnerability remediation, and defense-in-depth architecture.
- Experience working with enterprise monitoring, logging, SIEM, ITSM, ticketing, and change management tools in a production operations environment.
- Demonstrated ability to perform incident analysis, root cause analysis, risk assessment, impact evaluation, and technical communication with stakeholders.
- Strong documentation skills with experience creating SOPs, runbooks, knowledge base articles, operational reports, and change implementation plans.
- Ability to support planned maintenance windows, rotational shifts, on-call support, and priority incident response based on business requirements.
Preferred Qualifications
- Relevant professional certifications such as CCNP Security, Cisco Certified Specialist, Cisco ISE certification, F5 Certified Administrator, F5 Certified Technology Specialist, or equivalent network/security certifications.
- Experience supporting large-scale enterprise, telecom, data center, service provider, or high-availability network security environments.
- Working knowledge of security compliance requirements, audit support, vulnerability management, configuration governance, and policy review processes.
- Exposure to automation, scripting, or reporting methods for configuration validation, log analysis, compliance checks, or repetitive operational task reduction.
- Experience with hybrid network environments, cloud connectivity, proxy platforms, load balancing, application delivery controls, and cross-functional infrastructure operations.
Core Competencies
- Technical Expertise: Demonstrates strong hands-on capability in enterprise firewall, IPS, network access control, WAF, VPN, routing, and network security troubleshooting.
- Operational Ownership: Takes accountability for service stability, availability, compliance, incident resolution, change quality, and continuous operational improvement.
- Analytical Problem Solving: Applies structured analysis to diagnose complex technical issues, identify root causes, evaluate impact, and implement sustainable corrective actions.
- Risk and Compliance Awareness: Understands the importance of secure configuration, policy governance, audit readiness, vulnerability remediation, and risk-based decision-making.
- Change Management Discipline: Follows approved processes for planning, validation, implementation, rollback, documentation, and stakeholder communication during changes.
- Communication and Stakeholder Management: Communicates clearly with technical and non-technical stakeholders during incidents, changes, escalations, reporting, and cross-functional coordination.
- Leadership and Mentoring: Provides guidance to junior engineers, reviews escalations, shares knowledge, and promotes operational best practices across the team.
- Documentation Excellence: Maintains accurate, current, and audit-ready documentation, including SOPs, runbooks, diagrams, reports, and knowledge base materials.
- Customer and Service Focus: Prioritizes service continuity, timely communication, business impact awareness, and effective support for internal and external stakeholders.
- Continuous Improvement Mindset: Identifies opportunities to improve processes, reduce recurring incidents, automate repetitive tasks, and enhance operational efficiency.
RAKUTEN SHUGI PRINCIPLES:
Our worldwide practices describe specific behaviours that make Rakuten unique and united across the world. We expect Rakuten employees to model these 5 Shugi Principles of Success.
- Always improve, always advance. Only be satisfied with complete success - Kaizen.
- Be passionately professional. Take an uncompromising approach to your work and be determined to be the best.
- Hypothesize - Practice - Validate - Shikumika. Use the Rakuten Cycle to success in unknown territory.
- Maximize Customer Satisfaction. The greatest satisfaction for workers in a service industry is to see their customers smile.
- Speed!! Speed!! Speed!! Always be conscious of time. Take charge, set clear goals, and engage your team.
Click on Apply to know more.