Job Description: Network Firewall Migration Engineer
Role Overview:
We are seeking a Network Firewall Migration Engineer to lead and execute migration projects involving firewalls from vendors such as Checkpoint, Juniper, Cisco, and Fortinet . The ideal candidate will have hands-on experience in planning, designing, and implementing firewall migrations while ensuring minimal downtime and security compliance. - Firewall Migration & Implementation:
Migrate firewall rules, NAT policies, VPN configurations, and security settings.
Perform in-place upgrades, hardware replacements, or vendor-to-vendor migrations.
Ensure seamless cutover with minimal impact on business operations.
Implement high availability (HA) and clustering configurations if required.
- Testing & Validation:
Conduct pre-migration and post-migration testing to validate firewall rules and connectivity.
Perform security assessments to ensure compliance with organizational policies.
Troubleshoot and resolve migration-related issues.
- Documentation & Handover:
Create detailed migration runbooks, rollback plans, and network diagrams.
Document firewall configurations, rule optimization, and best practices.
Provide knowledge transfer and training to operations teams.
- Collaboration & Communication:
Work closely with network architects, security teams, and stakeholders.
Provide status updates and incident reports as needed.
Coordinate with vendors and third-party service providers if required.
Required Skills & Qualifications:
Experience Level:
- 8+ years of experience in firewall migrations and network security.
- Technical Expertise:
Hands-on experience with Checkpoint, Juniper SRX, Cisco ASA/FTD, Palo Alto and Fortinet FortiGate firewalls.
Strong understanding of firewall policies, NAT, VPN (IPsec, SSL), and IDS/IPS.
Experience in migrating firewalls across different vendors or upgrading firewall hardware/software.
Proficiency in CLI and GUI-based firewall management tools (e.g., Smart Console, J-Web, ASDM, Forti Manager).
Knowledge of routing protocols (BGP, OSPF), VLANs, and network security best practices.
- Migration & Troubleshooting Skills:
Experience in rule base optimization, log analysis, and troubleshooting connectivity issues .
Ability to analyze logs, packet captures, and perform debugging during migrations.
Familiarity with automation tools and scripting (Python, Ansible) for policy migration is a plus.
- Certifications
Checkpoint CCSA/CCSE
Juniper JNCIS-SEC/JNCIP-SEC
Cisco CCNP Security or CCIE Security
Fortinet NSE 4/NSE 5/NSE 7
Key Skills: