JobHabor

Firewall Management - Consultant

KPMG Global Services
Location
Noida, Uttar Pradesh, India · Gurgaon, Haryana, India
Workplace
Employment
Full Time
Salary
Apply on the employer’s site

Posted 25d ago

This role is for you if you have the below

Educational qualifications

  • Bachelor’s degree in Computer Science, Information Security, Information Technology, or a related field.
  • Master’s degree in Cybersecurity, Cloud Computing, or Information Systems is preferred.
  • Equivalent practical experience may be considered for exceptional candidates.

Work experience

  • 4–6 years of hands-on experience in network security, firewall operations, or cloud security roles.
  • Independently design, implement, and optimize firewall policies and rulesets for enterprise environments (Palo Alto, Checkpoint, Fortinet, Cisco ASA).

Conduct comprehensive firewall assurance reviews

rule optimization, policy compliance, change management audits, and decommissioning of obsolete rules.

  • Perform threat log analysis, IPS tuning, and malware detection using firewall and SIEM integrations.

Lead cloud network security implementations

design and configure AWS security groups, NACLs, VPC peering, transit gateways, and Azure NSGs, VNets, Azure Firewall, and route tables.

  • Integrate firewall logs into SIEM platforms (Microsoft Sentinel, Splunk) and develop custom alerts and dashboards.
  • Drive cloud security incident investigations; identify attack vectors, contain threats, and draft response playbooks.
  • Collaborate with DevOps and architecture teams to embed security controls in cloud infrastructure (infrastructure-as-code, Terraform, ARM templates).
  • Assess cloud security posture using CSPM tools and remediate misconfigurations.

The ideal candidate will

  • Demonstrate solid understanding of firewall architectures, network segmentation, and Zero Trust principles.
  • Design secure network topologies, define governance workflows, and guide risk-based access enforcement.
  • Produce clear SOPs, runbooks, firewall audit reports, and technical design documents.
  • Collaborate with compliance, architecture, and operations teams to ensure security by design.
  • Drive continuous improvements via automation and actionable security metrics.

Mandatory Certification Required

(At least one required; multiple strongly preferred)

Core Certifications

Cisco Certified Network Associate (CCNA)

Palo Alto Networks Certified Network Security Administrator (PCNSA)

Check Point Certified Security Administrator (CCSA)

AWS Certified Solutions Architect – Associate

Microsoft AZ-500 – Microsoft Azure Security Technologies

Preferred Advanced Certifications

Palo Alto Networks Certified Network Security Engineer (PCNSE)

Check Point Certified Security Expert (CCSE)

AWS Certified Security – Specialty

Certified Cloud Security Professional (CCSP)

Certified Information Systems Security Professional (CISSP)

Technical Skills Required

Firewall Technologies

  • Expert-level configuration and management of enterprise firewalls (Palo Alto, Checkpoint, Fortinet, Cisco ASA).
  • Deep experience with firewall policy design, NAT, VPN, IPS tuning, and threat prevention.
  • Proficiency in firewall rule optimization, decommissioning, and compliance auditing.

This role is for you if you have the below

Educational qualifications

  • Bachelor’s degree in Computer Science, Information Security, Information Technology, or a related field.
  • Master’s degree in Cybersecurity, Cloud Computing, or Information Systems is preferred.
  • Equivalent practical experience may be considered for exceptional candidates.

Work experience

  • 4–6 years of hands-on experience in network security, firewall operations, or cloud security roles.
  • Independently design, implement, and optimize firewall policies and rulesets for enterprise environments (Palo Alto, Checkpoint, Fortinet, Cisco ASA).

Conduct comprehensive firewall assurance reviews

rule optimization, policy compliance, change management audits, and decommissioning of obsolete rules.

  • Perform threat log analysis, IPS tuning, and malware detection using firewall and SIEM integrations.

Lead cloud network security implementations

design and configure AWS security groups, NACLs, VPC peering, transit gateways, and Azure NSGs, VNets, Azure Firewall, and route tables.

  • Integrate firewall logs into SIEM platforms (Microsoft Sentinel, Splunk) and develop custom alerts and dashboards.
  • Drive cloud security incident investigations; identify attack vectors, contain threats, and draft response playbooks.
  • Collaborate with DevOps and architecture teams to embed security controls in cloud infrastructure (infrastructure-as-code, Terraform, ARM templates).
  • Assess cloud security posture using CSPM tools and remediate misconfigurations.

The ideal candidate will

  • Demonstrate solid understanding of firewall architectures, network segmentation, and Zero Trust principles.
  • Design secure network topologies, define governance workflows, and guide risk-based access enforcement.
  • Produce clear SOPs, runbooks, firewall audit reports, and technical design documents.
  • Collaborate with compliance, architecture, and operations teams to ensure security by design.
  • Drive continuous improvements via automation and actionable security metrics.

Mandatory Certification Required

(At least one required; multiple strongly preferred)

Core Certifications

Cisco Certified Network Associate (CCNA)

Palo Alto Networks Certified Network Security Administrator (PCNSA)

Check Point Certified Security Administrator (CCSA)

AWS Certified Solutions Architect – Associate

Microsoft AZ-500 – Microsoft Azure Security Technologies

Preferred Advanced Certifications

Palo Alto Networks Certified Network Security Engineer (PCNSE)

Check Point Certified Security Expert (CCSE)

AWS Certified Security – Specialty

Certified Cloud Security Professional (CCSP)

Certified Information Systems Security Professional (CISSP)

Technical Skills Required

Firewall Technologies

  • Expert-level configuration and management of enterprise firewalls (Palo Alto, Checkpoint, Fortinet, Cisco ASA).
  • Deep experience with firewall policy design, NAT, VPN, IPS tuning, and threat prevention.
  • Proficiency in firewall rule optimization, decommissioning, and compliance auditing.

This role is for you if you have the below

Educational qualifications

  • Bachelor’s degree in Computer Science, Information Security, Information Technology, or a related field.
  • Master’s degree in Cybersecurity, Cloud Computing, or Information Systems is preferred.
  • Equivalent practical experience may be considered for exceptional candidates.

Work experience

  • 4–6 years of hands-on experience in network security, firewall operations, or cloud security roles.
  • Independently design, implement, and optimize firewall policies and rulesets for enterprise environments (Palo Alto, Checkpoint, Fortinet, Cisco ASA).

Conduct comprehensive firewall assurance reviews

rule optimization, policy compliance, change management audits, and decommissioning of obsolete rules.

  • Perform threat log analysis, IPS tuning, and malware detection using firewall and SIEM integrations.

Lead cloud network security implementations

design and configure AWS security groups, NACLs, VPC peering, transit gateways, and Azure NSGs, VNets, Azure Firewall, and route tables.

  • Integrate firewall logs into SIEM platforms (Microsoft Sentinel, Splunk) and develop custom alerts and dashboards.
  • Drive cloud security incident investigations; identify attack vectors, contain threats, and draft response playbooks.
  • Collaborate with DevOps and architecture teams to embed security controls in cloud infrastructure (infrastructure-as-code, Terraform, ARM templates).
  • Assess cloud security posture using CSPM tools and remediate misconfigurations.

The ideal candidate will

  • Demonstrate solid understanding of firewall architectures, network segmentation, and Zero Trust principles.
  • Design secure network topologies, define governance workflows, and guide risk-based access enforcement.
  • Produce clear SOPs, runbooks, firewall audit reports, and technical design documents.
  • Collaborate with compliance, architecture, and operations teams to ensure security by design.
  • Drive continuous improvements via automation and actionable security metrics.

Mandatory Certification Required

(At least one required; multiple strongly preferred)

Core Certifications

Cisco Certified Network Associate (CCNA)

Palo Alto Networks Certified Network Security Administrator (PCNSA)

Check Point Certified Security Administrator (CCSA)

AWS Certified Solutions Architect – Associate

Microsoft AZ-500 – Microsoft Azure Security Technologies

Preferred Advanced Certifications

Palo Alto Networks Certified Network Security Engineer (PCNSE)

Check Point Certified Security Expert (CCSE)

AWS Certified Security – Specialty

Certified Cloud Security Professional (CCSP)

Certified Information Systems Security Professional (CISSP)

Technical Skills Required

Firewall Technologies

  • Expert-level configuration and management of enterprise firewalls (Palo Alto, Checkpoint, Fortinet, Cisco ASA).
  • Deep experience with firewall policy design, NAT, VPN, IPS tuning, and threat prevention.
  • Proficiency in firewall rule optimization, decommissioning, and compliance auditing.

Skills

  • Cisco
  • SIEM
  • AWS
  • VPC
  • Azure
  • Azure Firewall
  • Splunk
  • Terraform
  • ARM Templates
  • Zero Trust
  • SOPS
  • CISSP
  • VPN

More jobs at KPMG Global Services

All 141

Similar roles