ICT Security Engineer
Why choose Logicalis? As Architects of Change, Logicalis' focus is to design, support and execute clients' digital transformation by uniting their vision with their technology expertise and industry insights. The company, through its deep understanding of key IT industry drivers such as security, cloud, data management and IoT, can address customer priorities such as revenue growth and business, operational efficiency, innovation, risk and compliance, data governance and sustainability. We strengthen our purpose: to design, support, and execute our customers' digital transformation by converging their vision with our technological expertise and knowledge of the industry. The brand refresh underpins both the evolution of Logicalis’ positioning as well as our strategic vision for growth. Job summary: The Senior ICT Security Engineer provides Level 2/3 support for enterprise network and security environments across multiple customers, ensuring incidents and service requests are resolved within agreed SLAs. This role takes the lead on critical incidents, working with vendors, partners and customers to isolate faults, deliver workarounds and drive permanent resolutions. The Engineer performs software upgrades, patching and vulnerability remediation across Cisco and multi-vendor platforms, maintains technical documentation, SOPs and network diagrams, and participates in a 24/7 operations and standby rotation. The role also handles escalations from L1/L2 helpdesk engineers and mentors them on technical issues. Job Responsibilities: · Understand the processes and practices related to Support Templates and Standard Operating Procedures(SOPs). · Take the lead in driving critical incidents with the team and vendors to reduce resolution time or provide workarounds. · Extensive professional experience focused on Cisco products; strong proficiency in at least two additional products such as Aruba, Fortinet or Palo Alto will be an added advantage. · Perform IOS upgrades and patches to fix software issues and keep the environment free of bugs and vulnerabilities by maintaining up-to-date software. · Effectively handle complex network and security production issues, offering swift workarounds or resolutions by identifying and isolating faulty paths to minimise customer impact. Collaborate with principal vendors, partners and customers to deliver permanent resolutions within the specified timelines. · Conduct vulnerability assessments, identify affected products according to principal advisories, and implement prompt solutions or workarounds to address the vulnerabilities. · Work in a 24/7 operations centre and take on a standby role for after-office-hours support on a monthly rotational basis, including assisting primary standby engineers. · Follow and meet customer SLAs for all incidents and requests, and take responsibility for service delivery. · Handle escalations for Enterprise Networking matters from Level 1/2 helpdesk engineers, perform Level2/3 troubleshooting, and carry out hardware field replacement works for customers. · Maintain and update technical documentation for configuration changes made via the helpdesk and/or for managed services customers. · Work on and close support tickets where applicable, providing timely updates to helpdesk personnel and customers on allocated support cases. · Demonstrate a good understanding of ServiceNow ticketing and reporting, and create knowledge base articles for complex network-related issues. · Create SOP documents for network patching and troubleshooting activities. · Possess good written, documentation and verbal communication skills, with the ability to modify and update customer network diagrams and documents as needed. · Apply comprehensive knowledge of ITIL processes within the support centre and create detailed change plans for network activities. · Work effectively as part of a team within a complex and fast-paced environment. · Apply excellent problem-solving skills, focusing on the salient facts to resolve issues. · Mentor L1/L2 team members on technical issues. · Maintain, develop and implement secure system architectures. · Embed security principles into the maintenance of system architectures to mitigate the risks posed by new technologies and business practices. · Maintain artefacts spanning design, development and implementation of enterprise systems that describe security principles and how they relate to the overall enterprise system architecture. · Perform routine activities related to the periodic review and audit of infrastructure security systems, and maintain documentation of security standards and procedures. Requirements: · Professional certification such as CCNP or ACCP, or equivalent, is preferred, with a minimum of 7 years of work experience in network, wireless and security technologies. · Possession of at least one additional professional certification such as Check Point, Fortinet, Palo Alto or F5 will be an added advantage. · Familiarity with ITIL principles, specifically Incident, Change, Problem and Service Management. · Proficient in drafting incident reports and root cause analysis (RCA) reports for network outages. · Experience collaborating with vendors and customers during outages, and guiding junior team members and customers on the effective recovery of services. · Hands-on experience in Operations/BAU fixing user and infrastructure issues in a production environment is essential; sharp L2 and L3 troubleshooting skills are desirable. · Network Operations experience supporting diverse sectors, including mid-range to large company network designs, with a minimum of 5 years of experience in large-scale network support. · Essential multi-product and multi-technology knowledge, including Cisco, Fortinet, HPE, Palo Alto, F5 and Check Point. · Comprehensive understanding of network operating systems, including but not limited to Cisco IOS, AireOS and NX-OS, Aruba ClearPass and FortiOS. · Proficiency in analysing network packet data to identify the underlying cause of network-related issues, using tools such as Wireshark. · Capable of executing softwarepatching for Cisco routers, switches, NX-OS, wireless and ISE, FortinetFirewall, FortiManager and FortiAnalyzer, and Aruba ClearPass in a production environment, with minimal or no downtime wherever feasible. · Hands-on experience in Enterprise Networking operations, including VSS, vPC, Cisco ACI, Stacking, Multicast, MPLS, SD-WAN, DNAC, DMVPN, IOS-XE WLC and AireOS WLC, OFDMA, Wi-Fi6E and Meraki. · In-depth understanding of communication protocols (mainly TCP/IP), routing protocols (e.g. BGP, OSPF),VPN tunnels (GRE and IPsec), HSRP/VRRP, QoS, IP Flow Top Talkers, NAT, PAT, Port Channel, VXLAN and Policy-Based Routing. · Ability to perform RMAs for faulty devices in production. · Working experience across multiple customer environments with multi-vendor products. · Highly skilled in packet analysis, network analysis tools, troubleshooting and analytical fault diagnosis. · Basic knowledge of scripting/programming with Python, Perl or similar. Interested applicants please submit your application with your expected salary and notice period to be considered for the role. We regret that only shortlisted candidates will be notified. As part of any recruitment process, we collect and processes personal data relating to job applicants. We are committed to being transparent about how we collect and use that data and to meeting our data protection obligations. By applying to this post and sending us your resume, you agree to the collection, use and/or disclosure of your personal data in the manner as set out in our Data Protection Notice for Job Applicants which can be found Logicalis is committed to protecting your privacy. Click below to view the data protection notice. https://ap.logicalis.com/sites/default/files/2022-10/PIMS-A7.3-01%20Attachment%20I%20DP%20Notice%20for%20Job%20Applicants_updated9sept22.pdf.