Post Job Free
Sign in

Senior Network Security Engineer

Location:
Gurugram, Haryana, India
Salary:
120000
Posted:
October 05, 2026

Contact this candidate

Resume:

Rehaan Surti

Senior Network Security Engineer ***********@*****.*** (929) 614–1136 Visa: GC New York City, NY

Summary:

Network Engineer with 8+ years of experience designing, implementing, troubleshooting, and supporting large-scale enterprise LAN/WAN, datacenter, cloud, and network security infrastructure. Strong networking background across Cisco, Juniper, Arista, and Meraki platforms with hands-on experience in routing and switching, BGP, OSPF, EIGRP, VLANs, VXLAN, WAN connectivity, network segmentation, and enterprise network operations. Experienced in network automation and infrastructure engineering using Python, Terraform, and Ansible to automate provisioning, configuration validation, deployment, and operational workflows. Hands-on experience supporting AWS, Microsoft Azure, and Google Cloud networking, wireless infrastructure, network monitoring, and complex production troubleshooting. Proven ability to collaborate with infrastructure, cloud, security, application, and operations teams to deliver scalable, reliable, and secure network solutions.

Technical Skills:

•Network Engineering: Enterprise LAN/WAN, Routing & Switching, Network Architecture, Network Segmentation, WAN Connectivity, Datacenter Networking, Network Troubleshooting, Network Operations

•Routing Protocols: BGP, OSPF, EIGRP, VLANs, VXLAN, Layer 2/Layer 3 Networking, VPN

•Cisco Networking: Cisco ASR 1000/8000/9000, Cisco Nexus 5000/7000, Cisco Catalyst 9200/1200/1300, Cisco Meraki Switching, Cisco Meraki Wireless

•Network Automation & Programming: Python, Ansible, Terraform, Infrastructure as Code, Network Automation, Configuration Management, Automated Validation, Network Provisioning

•Cloud Networking: AWS, Microsoft Azure, Google Cloud Platform (GCP), Route 53, Hybrid Cloud Connectivity

•Wireless Networking: Cisco Meraki MR36/MR36H, Aruba 500/600 Series, Enterprise Wi-Fi, WLAN

•Datacenter Networking: Cisco Nexus, Arista Switching, Leaf-Spine Architecture, VXLAN, Network Segmentation, Datacenter Migration & Modernization

•Network Security: Palo Alto, Fortinet, Check Point, Cisco ASA/Firepower, Juniper SRX, Zscaler, Zero Trust, NGFW, WAF

•Application Delivery: F5 BIG-IP LTM/GTM, Citrix ADC, Cloudflare WAF, Akamai WAF

•Monitoring & Operations: Wireshark, Syslog, ServiceNow, Jira, Network Monitoring, Incident Management, Root Cause Analysis, Change Management, Technical Documentation

Certifications:

CCNA – Cisco Certified Network Associate

CCNP- Cisco Certified Network Professional

PCNSE – Palo Alto Certified Network Security Engineer

Professional Experience:

1-800 Flowers, Jericho, NY – Mar 2024 to Present

Senior Network Security Engineer

Administered Palo Alto PA-5000 and PA-7000 Series firewalls through Panorama, performing security policy management, NAT configurations, software upgrades, and threat prevention tuning to support secure connectivity across enterprise and retail environments.

Managed FortiGate firewalls through FortiManager and FortiAnalyzer, supporting centralized policy administration, log analysis, security monitoring, and operational troubleshooting activities across distributed network locations.

Configured and maintained Juniper SRX Series firewalls utilizing JunOS, supporting access control implementations, VPN connectivity, security policy updates, and traffic flow optimization requirements.

Implemented Cloudflare Web Application Firewall (WAF) and Palo Alto NGFW security controls to protect customer-facing applications, e-commerce services, and critical business platforms from web-based threats and unauthorized access attempts.

Supported Zero Trust security initiatives by enforcing secure access policies, validating user and device connectivity requirements, and strengthening network segmentation across enterprise resources.

Managed Cisco ASR 1000, ASR 9000, and ASR 8000 Series routing platforms, supporting route optimization, WAN connectivity, traffic engineering, and troubleshooting activities across geographically distributed environments.

Administered Cisco Meraki MS210, MS225, MS350, and MS390 switching infrastructure, performing VLAN provisioning, Layer 2 and Layer 3 configurations, port management, and network segmentation activities.

Troubleshot routing protocols including BGP, OSPF, and EIGRP while supporting stable communication between corporate locations, cloud environments, fulfillment facilities, and business-critical applications.

Participated in LAN and WAN infrastructure enhancement activities, helping improve network reliability, scalability, and secure connectivity across enterprise operations.

Configured and maintained F5 BIG-IP LTM and GTM solutions, supporting application availability, traffic distribution, health monitoring, and load balancing requirements for internal and customer-facing services.

Developed Python scripts and Ansible playbooks to automate routine network administration tasks, configuration validation processes, and operational activities, helping improve deployment consistency and reduce manual effort.

Supported hybrid cloud networking initiatives across Microsoft Azure and Google Cloud Platform (GCP) environments by assisting with connectivity, routing integrations, and network security implementations.

Managed Cisco Meraki MR36 and MR36H wireless infrastructure, supporting secure wireless access, access point administration, connectivity troubleshooting, and user experience improvements.

Utilized Wireshark, Blue Coat Proxy, Syslog platforms, and network monitoring tools to analyze traffic patterns, investigate security events, and support proactive issue resolution efforts.

Supported network infrastructure servicing retail and e-commerce operations by maintaining secure connectivity for online ordering platforms, fulfillment systems, and customer-facing applications during seasonal business demand fluctuations.

Collaborated with network engineers, cloud teams, security analysts, application owners, and infrastructure teams to coordinate maintenance activities, security changes, and network improvement initiatives.

Maintained detailed network diagrams, firewall documentation, operational procedures, and implementation records to support troubleshooting activities, audit requirements, and knowledge-sharing efforts.

Participated in change management activities, incident response efforts, root cause investigations, and production support operations while ensuring adherence to organizational security standards and operational best practices.

Fidelity Investments, Dallas, TX – Mar 2021 to Mar 2024

Senior Network Security Engineer

Administered Palo Alto PA-3000, PA-5000, and PA-7000 Series firewalls through Panorama, performing policy reviews, NAT rule optimization, threat prevention tuning, and security enhancements to maintain secure communication across financial services environments.

Managed FortiGate security platforms and FortiAnalyzer solutions, supporting centralized policy administration, security event analysis, firewall monitoring, and operational troubleshooting activities across enterprise infrastructure.

Led firewall migration initiatives involving the transition of Cisco ASA 5500-X platforms to Fortinet security solutions, coordinating policy validation, migration planning, implementation activities, and post-migration connectivity testing efforts.

Configured and maintained Cloudflare and Akamai Web Application Firewall (WAF) solutions to secure online financial services, customer-facing applications, and transaction-processing platforms against web-based threats and unauthorized access attempts.

Administered Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA) services, managing secure internet connectivity, traffic inspection policies, access controls, and remote user security requirements.

Supported enterprise WAN environments utilizing Juniper MX204, MX240, MX480, and MX960 routing platforms, performing route-path analysis, connectivity troubleshooting, traffic optimization, and routing policy modifications across geographically distributed locations.

Managed Cisco Nexus 7000 and 5000 Series infrastructure along with Arista 7300R3 and 7500R3 switches, supporting datacenter connectivity, network segmentation, and resilient network services within leaf-spine architectures.

Troubleshot and optimized BGP and OSPF routing environments while supporting VLAN, VPN, VXLAN, and WLAN technologies to maintain reliable communication between datacenters, branch locations, and cloud-hosted services.

Led infrastructure implementation and validation activities supporting datacenter expansion projects, network upgrades, connectivity testing, and operational readiness initiatives within critical business environments.

Configured and maintained F5 BIG-IP LTM and GTM solutions, supporting application delivery, traffic distribution, health monitoring, and service continuity requirements for enterprise and financial applications.

Administered Citrix ADC environments by supporting virtual server configurations, SSL certificate management, traffic optimization, and application availability requirements across business-critical platforms.

Developed Python automation scripts and Terraform templates while leading standardization efforts for repeatable network provisioning, infrastructure validation, and configuration deployment activities.

Supported Microsoft Azure and Amazon Web Services (AWS) networking environments by implementing hybrid-cloud connectivity, Route 53 integrations, routing configurations, and network security controls aligned with organizational standards.

Managed Aruba 500 and 600 Series wireless infrastructure, supporting wireless policy administration, access point lifecycle management, connectivity troubleshooting, and secure user access requirements.

Utilized ServiceNow, Jira, Wireshark, and enterprise monitoring solutions to investigate network incidents, analyze traffic behavior, document operational activities, and support timely issue resolution efforts.

Supported secure and highly available network connectivity for investment platforms, portfolio management applications, and transaction-processing systems where service reliability and operational stability were critical to business operations.

Led cross-functional coordination efforts with network engineering, cybersecurity, cloud, infrastructure, and application support teams during maintenance windows, infrastructure upgrades, security implementations, and production support activities.

Maintained detailed network documentation, implementation procedures, topology diagrams, operational runbooks, and change records to support audit readiness, regulatory compliance requirements, and ongoing infrastructure management initiatives.

GAP, San Francisco, CA – Oct 2018 to Feb 2021

Network Engineer

Administered Check Point 1500, 1900, and 2000 Series firewalls, managing security policies, access control requirements, VPN connectivity, and traffic inspection activities supporting retail and corporate network environments.

Supported migration initiatives from Cisco Firepower environments to Palo Alto PA-3000 and PA-5000 Series firewalls, validating security policies, testing application connectivity, and assisting with phased deployment activities across distributed business locations.

Managed Zscaler security services by supporting secure internet access policies, web traffic inspection requirements, and remote user connectivity across retail stores, warehouses, and corporate offices.

Supported WAN infrastructure connecting retail stores, distribution centers, and corporate locations, troubleshooting VPN interruptions, intermittent traffic issues, and connectivity challenges affecting inventory management and point-of-sale operations.

Administered Juniper MX and SRX Series platforms along with Cisco routing infrastructure, performing route analysis, WAN optimization, hardware upgrades, and network troubleshooting activities across enterprise environments.

Managed Cisco Catalyst 9200, 1200, and 1300 Series switching environments, supporting VLAN administration, network segmentation, switch provisioning, and Layer 2 and Layer 3 connectivity requirements.

Led validation and cutover support activities during datacenter modernization projects involving Cisco Catalyst infrastructure refresh initiatives, helping ensure successful migration from legacy networking environments.

Troubleshot BGP, OSPF, and EIGRP routing environments while supporting reliable communication between retail locations, corporate offices, cloud resources, and business-critical applications.

Configured and maintained F5 BIG-IP load balancing solutions to support application availability, traffic distribution, and service continuity requirements for internal business platforms.

Developed Python scripts to automate configuration validation tasks, operational reporting activities, and routine network administration processes, helping improve consistency across infrastructure operations.

Supported AWS and Microsoft Azure networking environments by assisting with connectivity integrations, routing requirements, cloud access controls, and hybrid infrastructure communication.

Utilized Wireshark, ServiceNow, Syslog solutions, and network monitoring tools to investigate performance issues, analyze traffic behavior, document findings, and support timely incident resolution activities.

Supported network services utilized by retail stores, inventory management platforms, warehouse operations, and customer-facing systems, helping maintain operational continuity during seasonal business peaks and infrastructure maintenance activities.

Coordinated with offshore support teams, network engineers, and infrastructure teams during incident response efforts, migration projects, and maintenance activities to ensure timely resolution of operational issues.

Maintained detailed network documentation, implementation procedures, topology diagrams, migration records, and operational runbooks to support troubleshooting activities, knowledge transfer, and audit requirements.

Participated in infrastructure upgrade projects, change management activities, and root cause investigations while supporting stable network operations across retail and enterprise environments.



Contact this candidate