Palo Alto Firewalls Specialist
Job Summary
Role Purpose
The purpose of this role is to design the organisationÃÂÃÂÃÂs computer and network security infrastructure and protect its systems and sensitive information from cyber threats
Do
1. Design and develop enterprise cyber security strategy and architecture
a. Understand security requirements by evaluating business strategies and conducting system security vulnerability and risk analyses
b. Identify risks associated with business processes operations
information security programs and technology projects
c. Identify and communicate current and emerging security threats and design security architecture elements to mitigate threats as they emerge
d. Identify security design gaps in existing and proposed architectures and recommend changes or enhancements
e. Provide product best fit analysis to ensure end to end security covering different faucets of architecture e.g. Layered security Zoning Integration aspects API Endpoint security Data security Compliance and regulations
f. Demonstrate experience in doing security assessment against NIST Frameworks SANS CIS etc.
g. Provide support during technical deployment configuration integration and administration of security technologies
h. Demonstrate experience around ITIL or Key process-oriented domains like incident management configuration management change management problem management etc.
i. Provide assistance for disaster recovery in the event of any security breaches attacks intrusions and unusual unauthorized or illegal activity
j. Provide solution of RFPÃÂÃÂÃÂs received from clients and ensure overall design assurance
i. Develop a direction to manage the portfolio of to-be-solutions including systems shared infrastructure services applications hardware related to cyber risk security in order to better match business outcome objectives
ii. Analyse technology environment enterprise specifics client requirements to set a collaboration design framework/ architecture
iii. Depending on the clientÃÂÃÂÃÂs need with particular standards and technology stacks create complete RFPs
iv. Provide technical leadership to the design development and implementation of custom solutions through thoughtful use of modern technology
v. Define and understand current state solutions and identify improvements options & tradeoffs to define target state solutions
vi. Clearly articulate and sell architectural targets recommendations and reusable patterns and accordingly propose investment roadmaps
vii. Evaluate and recommend solutions to integrate with overall technology ecosystem
viii. Tracks industry and application trends and relates these to planning current and future IT needs
2. Stakeholder coordination & audit assistance
a. Liaise with stakeholders in relation to cyber security issues and provide timely support and future recommendations
b. Provide assistance in maintaining an information security risk register and help with internal and external audits relating to information security
c. Support audit of security best practices and implementation of security principles across the organization to meet business goals along with customer and regulatory requirements
d. Assist with the creation maintenance and delivery of cyber security awareness training to team members and customers
e. Provide training to employees on issues such as spam and unwanted or malicious emails
Deliver
| No | PerformanceParameter | Measure |
| 1 | Customer centricity | Timely security breach solutioning to end users Internal stakeholders & external customers experience CSAT educating and suggesting right control to the customers. |
| 2 | Support sales team to create wins | % of proposals with Quality Index >7 timely support of the proposals identifying opportunities/ leads to sell services within/ outside account (lead generation) no. of proposals led |
Objective: The purpose of this engagement is to analyze firewall usage logs from our Japan MPLS firewall focusing on internal traffic originating and traveling to China assess traffic patterns and conduct interviews with application owners and users to produce documented application flows and recommendations for optimizing firewall rules to block unwanted or insecure traffic to/from China.
Scope of Work: The Security Analyst will perform the following tasks:
- Firewall Log Analysis:
- Review and analyze firewall usage logs to identify traffic patterns applications and anomalies/unexpected traffic.
- Assess potential security risks based on log data.
- Investigate network traffic flow and categorize legitimate vs. unwanted/insecure traffic.
- Conduct interviews with application owners and users to understand traffic needs and dependencies.
- Gather input on business-critical applications and legitimate network connections.
- Develop a comprehensive report detailing application flows and firewall rule recommendations.
- Provide actionable guidance for improving security posture including a block/allow recommendation for all inventoried application flows.
Deliverables:
- Weekly status updates summarizing findings and progress.
- Final documented application flows.
- A set of recommended firewall rules to enhance security.
Timeline:
- Week 1: Initial discovery data gathering and stakeholder identification.
- Weeks 2-4: Log analysis interviews and traffic pattern assessment.
- Weeks 5-6: Documentation recommendations and final report delivery.
Requirements:
- The analyst must have expertise in firewall log analysis; Palo Alto logging is a plus and general network security fundamentals.
- Off-hours will be required to meet with application owners in China usually in the mid to late evening hours US.
Required Experience:
IC
About Company
As a global leader, Wipro blends consulting and AI expertise across design, engineering and operations to accelerate business transformation and deliver future-ready technology.