Network Security Expert Consultant (NSOC) N3

DevoteamTunisJob.bopublished 06/24/2025
Must-have:CloudSecuritySenior
Machine translation — original language: French.Show original

At Devoteam, we are "Digital Transformakers". Respect, frankness, and passion drive our tribe every day. Together, we help our clients win the Digital battle: from consulting to the implementation of innovative technologies, through to the adoption of usages. A leader in Cloud, Cybersecurity, and Data in EMEA, the Devoteam Group achieved a turnover of 1.3 billion euros in 2023 and aims to double it in the next 5 years. Devoteam Tunisie, a subsidiary of Devoteam Group, has been generating value for over 15 years. Working at both African and international scales, our team includes more than 120 multidisciplinary consultants with varied skills (digital transformation consultants, developers, project managers, data and cybersecurity experts) working on enriching and innovative projects.

As a Senior Network Security Engineer (N3), you will be the pillar of stability, performance, and security for our network infrastructures and those of our clients. You will intervene as a technical expert on a rich and complex technological perimeter, while ensuring a leadership role with the support teams. Your key responsibilities will include: Operations and Incident Management (ITIL): Drive the management of incidents (N3), problems, changes, and configuration of security equipment. Analyze and resolve complex production incidents, lead crisis conferences during degraded or interrupted flows. Manage the level 3 backlog and guarantee compliance with service levels (SLA).

Security Infrastructure Expertise and Evolution: Manage and supervise the network security infrastructures of Data Centers (DC). Implement, administer, and troubleshoot firewalls (Palo Alto, Check Point, FortiGate) and SD-WAN solutions (Fortinet, Cato Networks). Manage load balancer (F5 BIG-IP), specifically the creation and management of VIPs. Administer proxy solutions (BlueCoat) and DNS servers (creation, whitelist, troubleshooting). Drive the connection of new partner sites via L2L VPNs (site-to-site), IPSEC, GRE, and crossco. Guarantee the updating of systems and equipment (patching). Monitoring and management of certificates.

Flow and Access Management: Analyze, validate (technically and functionally), and implement flow opening requests (DOF/ACL) in collaboration with the NSOC teams (N2). Manage rights and access to equipment and tools via solutions such as Cisco ISE.

Continuous Improvement and Leadership: Provide technical supervision to the level 2 team (NSOC), ensure their skill development, and transfer knowledge to them. Propose and implement optimizations to improve service quality, productivity, and security. Write and maintain up-to-date operating procedures, processes, and technical documentation. Actively participate in technological monitoring and the management of relationships with vendors and publishers. Produce activity reports, monitor performance indicators (KPIs), and write clear and concise reports.

Education: Engineering Degree or Master's (Bac+5) in Computer Science, specialized in networks or security. Experience: You have at least 10 years of experience in IP network management and security, acquired within a telecom operator or a large company (CAC 40), with proven expertise in Data Center infrastructures. Leadership: You have a demonstrated ability to technically supervise teams (N2), transmit your knowledge, and manage complex subjects. Soft Skills: Excellent analysis and problem-solving skills. Customer service orientation and very good interpersonal skills. Collaborative spirit and ability to work in a team. Autonomy, rigor, and proactivity.

Languages: An advanced level of English (oral and written) is indispensable for communicating with clients, international partners, and publishers. Indispensable technical skills Firewalls: Expertise in Palo Alto, Check Point, FortiGate. Load Balancing: Significant experience with F5 BIG-IP. Proxy & Web Security: Knowledge of BlueCoat solutions and Cloud NETSKOPE proxy. Network & SD-WAN: Solid skills in routing, switching, BGP, and experience with SD-WAN solutions (Fortinet, Cato Networks). VPN/DNS/SNAT: In-depth mastery. Remote Access: Knowledge of solutions such as Pulse Secure - IVANTI. Analysis & Troubleshooting: Ability to analyze network packet captures (Wireshark). Knowledge of VMware NSX-T and Cisco ISE would be a major asset. Metrology and log management: Grafana, logM, Splunk.

👉🏻 Benefits 🎓 Free and unlimited access to E-learning platforms to develop skills in the technologies you deem promising (Udemy). 📈 A tailor-made trajectory that we develop together. 🏡 A hybrid work policy.