This post is from acc.ltd, which may or may not be affiliated with appliedcloudcomputing.com
Network Security Compliance Check & Remediation Engineer
Posted by Dnyanesh Panchal (@dnyaneshpanchal)
Applied Cloud Computing
https://hasjob.co/acc.ltd/d3fyj
,
Pune
· appliedcloudcomputing.com
· Full-time employmentFull-time employment
· Information SecurityInformation Security
Job Description – Network Security Compliance Check & Remediation Engineer Position Title Network Security Compliance Check & Remediation Engineer Experience 3–8 Years (L2/L3 depending on experience) Location India (Hybrid/Onsite) Department Network Security & Compliance Job Summary We are seeking a highly skilled Network Security Compliance Check & Remediation Engineer responsible for ensuring that network and security infrastructure complies with internal security standards, regulatory requirements, and industry best practices. The candidate will perform security compliance assessments, identify gaps, drive remediation activities, and work closely with network, cloud, security, and operations teams to maintain a secure and compliant environment. The role requires strong expertise in network security technologies, firewall management, security hardening, vulnerability management, access governance, change management, and compliance auditing. Key Responsibilities Firewall & Security Policy Compliance • Conduct periodic firewall rule reviews and security policy audits. • Identify and remediate: o Zero-hit firewall rules o Redundant or duplicate rules o Expired temporary access rules o Overly permissive access policies • Review and optimize Disaster Recovery (DR) firewall configurations. • Ensure firewall policies align with security and regulatory standards. Network Security Compliance Reviews • Perform compliance assessments against security baselines and organizational standards. • Validate network segmentation and access controls. • Review and maintain network security architecture documentation. Network Documentation & Inventory Management • Create and maintain network diagrams and security architecture documentation. • Maintain accurate inventory of: o Firewalls o Routers o Switches o Load Balancers o Security Appliances o Cloud Network Components Access Management & Governance • Perform periodic user access reviews. • Validate privileged account access. • Ensure least-privilege access principles are followed. • Coordinate access certification and recertification activities. Security Hardening • Review and implement network device hardening standards. • Conduct periodic hardening audits for: o Firewalls o Routers o Switches o VPN Devices o Cloud Network Security Components • Track and manage recurring hardening activities. Change & Incident Management • Review and implement network security change requests. • Participate in CAB (Change Advisory Board) activities. • Handle emergency changes and ensure proper documentation. • Perform post-change validation and risk assessment. Risk Assessment & Remediation • Conduct risk assessments for insecure services and ports. • Identify security gaps and recommend remediation measures. • Track remediation activities until closure. • Prepare risk treatment plans and compliance reports. Patch & Vulnerability Management • Ensure network and security devices are maintained at N-1 software versions. • Coordinate firmware and software upgrades. • Track and remediate vulnerabilities identified through: o Vulnerability Assessments o Security Scans o Penetration Testing VAPT Management • Coordinate Vulnerability Assessment and Penetration Testing (VAPT). • Analyze findings and prioritize remediation. • Validate closure of vulnerabilities. • Prepare management reports and compliance evidence. DNS Security Review • Review DNS architecture and configurations. • Validate DNS security controls. • Identify unauthorized or risky DNS configurations. • Ensure DNS compliance with security standards. Asset Lifecycle Management • Track AMC contracts and warranty status. • Monitor: o Hardware End of Life (EOL) o Software End of Life (EOL) o End of Support (EOS) • Drive technology refresh and remediation planning. Audit & Compliance Support • Support internal and external audits. • Provide compliance evidence and documentation. • Assist with remediation of audit observations. • Ensure adherence to standards such as: o RBI Guidelines o ISO 27001 o PCI-DSS o NIST o CIS Benchmarks o SOC 2 Required Technical Skills Networking • TCP/IP • Routing & Switching • BGP • OSPF • VLANs • NAT • DNS • DHCP • VPN Technologies Security Technologies • Next-Generation Firewalls • IDS/IPS • WAF • DDoS Protection • Proxy Security • Network Segmentation Firewall Platforms Experience with one or more: • Palo Alto Networks Firewalls • Fortinet FortiGate • Cisco Firepower/ASA • Check Point Firewalls Cloud Security (Preferred) • Amazon Web Services Networking • Microsoft Azure Networking • Oracle OCI Networking • Security Groups • NSGs • Route Tables • Cloud Firewalls Compliance & Governance • Risk Assessment • Security Audits • Compliance Reviews • Vulnerability Management • Change Management • Access Governance Automation (Preferred) • Python • PowerShell • REST APIs • Ansible • Terraform Preferred Certifications • CCNA / CCNP Security • PCNSA / PCNSE • NSE 4 / NSE 5 • CISSP • CISM • CEH • ISO 27001 Lead Implementer/Auditor • OCI/AWS/Azure Networking Certifications Key Performance Indicators (KPIs) • Zero-hit rule reduction percentage • Firewall compliance score • Vulnerability remediation SLA compliance • Patch compliance percentage • Access review completion rate • Audit observations closure rate • EOL/EOS remediation compliance • Security hardening compliance score • Change success rate • Risk remediation closure percentage Ideal Candidate Profile • Strong understanding of network security architecture and compliance requirements. • Experience managing enterprise firewalls and cloud network security controls. • Ability to perform security assessments and drive remediation activities independently. • Excellent troubleshooting, documentation, and stakeholder management skills. • Experience supporting regulatory audits and security governance programs. • Strong analytical mindset with a focus on risk reduction and continuous improvement.
Apply for this position
Login with Google or GitHub to see instructions on how to apply. Your identity will not be revealed to the employer.
It is NOT OK for recruiters, HR consultants, and other intermediaries to contact this employer