Security Platform Design & Architecture Specialist
Roles & Responsibilities
Job Opening Alert
Position – Security Platform Design & Architecture Specialist
Experience - 5+ years
Notice period – Immediate to 30 days
Job Descriptions:
· Engages with product teams, translating business requirements into technical requirements to inform strategic product decisions and architectures.
· Has a broad knowledge of the technologies and services within the BT Security portfolio.
· Creates and maintains design artefacts for consumption by internal and external stakeholders.
· Advises Operations teams on solution design outcomes.
· Is a Technical Design Authority for the platform that globally manages all customer security devices.
· Works with BT architects across the business to deliver appropriate integrations between the Platform and externally owned systems and services.
· Works with external vendors to identify the capabilities of new technologies and services that can be consumed by BT Security to augment the portfolio and/or existing services.
· Engages with senior stakeholders within the Security Portfolio organization to provide recommendations on newly identified technologies.
· Building and running Proof of Concepts (POC) to verify functionality and suitability of products.
· Designer for FW Infrastructure within the Platform
· Designs for element managers (Forti Managers/Panoramas)/connectivity in/out of the platform.
· Designs for new VM infrastructure within the platform.
· Build/migration work
· Approver for Security Platform changes on the CAB
· Front Door Triage
· 4th line support to Ops Inlife Support
Must have:
• Design experience
• Fortinet Firewall Configuration.
• Fortinet Forti-Analyzer configuration and management.
• Forti-Manager configuration and management.
• Cisco ASA (FW, VPN, CSM) Administrator
• Checkpoint (PV-1, CMA/MDS, Cluster XL, VRRP, VSX)
• Forward/Reverse Proxy (Ex: F5, NGINX, Bluecoat etc.) work experience or technical understanding.
• VMware virtualization technologies i.e. vSphere, ESXi.
• Strong understanding of Network security Fundamentals & troubleshooting.
• Strong understanding of Routing & Switching.
• Hands on experience and knowledge on Device health monitoring tools e.g: Opsview, CA spectrum, Nagios etc.
• Administrate and configure security application systems, resolve technical issues on production environments in conjunction with providing postmortem updates as well as root-cause analysis.
• Excellent written and verbal communications.
• Expert in managing and delivery of customer solutions.
Good to have:
• Cisco ISE (Identity Services Engine) Administrator
• Linux Systems Administration, Unix/Linux shell scripting.
• Windows Systems Administration.
• MS windows Active Directory and Domain Controller management
• Cisco Firepower Management Center (FMC)
• Palo Alto Networks Panorama configuration and management and Prisma Access.
• CyberArk PAM solution administration
• Awareness of ISO27001 & PCI-DSS compliance controls.
• Security device Backup solution and troubleshooting skills.
• Ability to learn new technologies without supervision. Self-driven learning
• High level skills to deliver quality service in individual role to deliver service as per agreed SLAs.

Success
