Role Summary
We are seeking a skilled Firewall L2 Engineer with
strong hands-on experience in implementation, configuration, and operations
of Fortinet firewalls , specifically FortiGate 60F, 100G, and 120G models. The candidate should have solid operational exposure to FortiManager and be capable of handling day-to-day firewall operations, change implementation, troubleshooting, and incident management in an enterprise environment.
Key Responsibilities
Firewall Operations Support
- Provide L2 operational support for Fortinet firewalls across enterprise
infrastructure - Perform configuration, deployment, and management of FortiGate firewalls
(60F, 100G, 120G) - Handle policy creation/modification , NAT rules, VIPs, and routing
configurations - Monitor firewall performance, logs, and alerts; proactively identify and resolve
issues
Implementation Change Management
- Execute firewall implementations , upgrades, and migrations
- Support change requests (CRs) including impact analysis, implementation,
validation, and rollback planning - Perform firmware upgrades , patching, and compliance-related changes
Security Troubleshooting
- Troubleshoot connectivity issues , VPNs (Site-to-Site Remote Access), and application access problems
- Analyze traffic using FortiAnalyzer / logs / packet captures
- Support security features such as IPS, Antivirus, Web Filtering, Application Control , and SSL inspection
Centralized Management
- Manage firewall policies and configurations using FortiManager
- Perform configuration backups, policy packages, and device synchronization
- Ensure standardization and adherence to security baselines
Documentation Compliance
- Maintain network and firewall documentation , SOPs, and runbooks
- Support audit, compliance, and security assessments
- Coordinate with L3 teams, SOC, and vendors for complex issues
Technical Skills (Mandatory)
- Strong hands-on experience with Fortinet FortiGate firewalls
- Expertise in FortiManager for centralized policy and device management
- Good knowledge of:
- Firewall
policies, NAT, routing (static dynamic) - VPNs
(IPSec, SSL VPN) - Security
profiles (IPS, AV, Web Filter, App Control)
- Experience with firewall logs, packet capture, and traffic analysis
- Understanding of TCP/IP, OSI model, VLANs, DNS, DHCP
Desired Skills / Certifications
- Fortinet certifications such as NSE 4 / NSE 5 (preferred)
- Exposure to FortiAnalyzer
- Experience in enterprise or BFSI environments
- Knowledge of ITIL processes (Incident, Problem, Change Management)