Firewall Management - Consultant
KPMG Global Services- Location
- Noida, Uttar Pradesh, India · Gurgaon, Haryana, India
- Workplace
- —
- Employment
- Full Time
- Salary
- —
Posted 26d ago
This role is for you if you have the below
Educational qualifications
- Bachelor’s degree in Computer Science, Information Security, Information Technology, or a related field.
- Master’s degree in Cybersecurity, Cloud Computing, or Information Systems is preferred.
- Equivalent practical experience may be considered for exceptional candidates.
Work experience
- 4–6 years of hands-on experience in network security, firewall operations, or cloud security roles.
- Independently design, implement, and optimize firewall policies and rulesets for enterprise environments (Palo Alto, Checkpoint, Fortinet, Cisco ASA).
Conduct comprehensive firewall assurance reviews
rule optimization, policy compliance, change management audits, and decommissioning of obsolete rules.
- Perform threat log analysis, IPS tuning, and malware detection using firewall and SIEM integrations.
Lead cloud network security implementations
design and configure AWS security groups, NACLs, VPC peering, transit gateways, and Azure NSGs, VNets, Azure Firewall, and route tables.
- Integrate firewall logs into SIEM platforms (Microsoft Sentinel, Splunk) and develop custom alerts and dashboards.
- Drive cloud security incident investigations; identify attack vectors, contain threats, and draft response playbooks.
- Collaborate with DevOps and architecture teams to embed security controls in cloud infrastructure (infrastructure-as-code, Terraform, ARM templates).
- Assess cloud security posture using CSPM tools and remediate misconfigurations.
The ideal candidate will
- Demonstrate solid understanding of firewall architectures, network segmentation, and Zero Trust principles.
- Design secure network topologies, define governance workflows, and guide risk-based access enforcement.
- Produce clear SOPs, runbooks, firewall audit reports, and technical design documents.
- Collaborate with compliance, architecture, and operations teams to ensure security by design.
- Drive continuous improvements via automation and actionable security metrics.
Mandatory Certification Required
(At least one required; multiple strongly preferred)
Core Certifications
Cisco Certified Network Associate (CCNA)
Palo Alto Networks Certified Network Security Administrator (PCNSA)
Check Point Certified Security Administrator (CCSA)
AWS Certified Solutions Architect – Associate
Microsoft AZ-500 – Microsoft Azure Security Technologies
Preferred Advanced Certifications
Palo Alto Networks Certified Network Security Engineer (PCNSE)
Check Point Certified Security Expert (CCSE)
AWS Certified Security – Specialty
Certified Cloud Security Professional (CCSP)
Certified Information Systems Security Professional (CISSP)
Technical Skills Required
Firewall Technologies
- Expert-level configuration and management of enterprise firewalls (Palo Alto, Checkpoint, Fortinet, Cisco ASA).
- Deep experience with firewall policy design, NAT, VPN, IPS tuning, and threat prevention.
- Proficiency in firewall rule optimization, decommissioning, and compliance auditing.
This role is for you if you have the below
Educational qualifications
- Bachelor’s degree in Computer Science, Information Security, Information Technology, or a related field.
- Master’s degree in Cybersecurity, Cloud Computing, or Information Systems is preferred.
- Equivalent practical experience may be considered for exceptional candidates.
Work experience
- 4–6 years of hands-on experience in network security, firewall operations, or cloud security roles.
- Independently design, implement, and optimize firewall policies and rulesets for enterprise environments (Palo Alto, Checkpoint, Fortinet, Cisco ASA).
Conduct comprehensive firewall assurance reviews
rule optimization, policy compliance, change management audits, and decommissioning of obsolete rules.
- Perform threat log analysis, IPS tuning, and malware detection using firewall and SIEM integrations.
Lead cloud network security implementations
design and configure AWS security groups, NACLs, VPC peering, transit gateways, and Azure NSGs, VNets, Azure Firewall, and route tables.
- Integrate firewall logs into SIEM platforms (Microsoft Sentinel, Splunk) and develop custom alerts and dashboards.
- Drive cloud security incident investigations; identify attack vectors, contain threats, and draft response playbooks.
- Collaborate with DevOps and architecture teams to embed security controls in cloud infrastructure (infrastructure-as-code, Terraform, ARM templates).
- Assess cloud security posture using CSPM tools and remediate misconfigurations.
The ideal candidate will
- Demonstrate solid understanding of firewall architectures, network segmentation, and Zero Trust principles.
- Design secure network topologies, define governance workflows, and guide risk-based access enforcement.
- Produce clear SOPs, runbooks, firewall audit reports, and technical design documents.
- Collaborate with compliance, architecture, and operations teams to ensure security by design.
- Drive continuous improvements via automation and actionable security metrics.
Mandatory Certification Required
(At least one required; multiple strongly preferred)
Core Certifications
Cisco Certified Network Associate (CCNA)
Palo Alto Networks Certified Network Security Administrator (PCNSA)
Check Point Certified Security Administrator (CCSA)
AWS Certified Solutions Architect – Associate
Microsoft AZ-500 – Microsoft Azure Security Technologies
Preferred Advanced Certifications
Palo Alto Networks Certified Network Security Engineer (PCNSE)
Check Point Certified Security Expert (CCSE)
AWS Certified Security – Specialty
Certified Cloud Security Professional (CCSP)
Certified Information Systems Security Professional (CISSP)
Technical Skills Required
Firewall Technologies
- Expert-level configuration and management of enterprise firewalls (Palo Alto, Checkpoint, Fortinet, Cisco ASA).
- Deep experience with firewall policy design, NAT, VPN, IPS tuning, and threat prevention.
- Proficiency in firewall rule optimization, decommissioning, and compliance auditing.
This role is for you if you have the below
Educational qualifications
- Bachelor’s degree in Computer Science, Information Security, Information Technology, or a related field.
- Master’s degree in Cybersecurity, Cloud Computing, or Information Systems is preferred.
- Equivalent practical experience may be considered for exceptional candidates.
Work experience
- 4–6 years of hands-on experience in network security, firewall operations, or cloud security roles.
- Independently design, implement, and optimize firewall policies and rulesets for enterprise environments (Palo Alto, Checkpoint, Fortinet, Cisco ASA).
Conduct comprehensive firewall assurance reviews
rule optimization, policy compliance, change management audits, and decommissioning of obsolete rules.
- Perform threat log analysis, IPS tuning, and malware detection using firewall and SIEM integrations.
Lead cloud network security implementations
design and configure AWS security groups, NACLs, VPC peering, transit gateways, and Azure NSGs, VNets, Azure Firewall, and route tables.
- Integrate firewall logs into SIEM platforms (Microsoft Sentinel, Splunk) and develop custom alerts and dashboards.
- Drive cloud security incident investigations; identify attack vectors, contain threats, and draft response playbooks.
- Collaborate with DevOps and architecture teams to embed security controls in cloud infrastructure (infrastructure-as-code, Terraform, ARM templates).
- Assess cloud security posture using CSPM tools and remediate misconfigurations.
The ideal candidate will
- Demonstrate solid understanding of firewall architectures, network segmentation, and Zero Trust principles.
- Design secure network topologies, define governance workflows, and guide risk-based access enforcement.
- Produce clear SOPs, runbooks, firewall audit reports, and technical design documents.
- Collaborate with compliance, architecture, and operations teams to ensure security by design.
- Drive continuous improvements via automation and actionable security metrics.
Mandatory Certification Required
(At least one required; multiple strongly preferred)
Core Certifications
Cisco Certified Network Associate (CCNA)
Palo Alto Networks Certified Network Security Administrator (PCNSA)
Check Point Certified Security Administrator (CCSA)
AWS Certified Solutions Architect – Associate
Microsoft AZ-500 – Microsoft Azure Security Technologies
Preferred Advanced Certifications
Palo Alto Networks Certified Network Security Engineer (PCNSE)
Check Point Certified Security Expert (CCSE)
AWS Certified Security – Specialty
Certified Cloud Security Professional (CCSP)
Certified Information Systems Security Professional (CISSP)
Technical Skills Required
Firewall Technologies
- Expert-level configuration and management of enterprise firewalls (Palo Alto, Checkpoint, Fortinet, Cisco ASA).
- Deep experience with firewall policy design, NAT, VPN, IPS tuning, and threat prevention.
- Proficiency in firewall rule optimization, decommissioning, and compliance auditing.
Skills
- Cisco
- SIEM
- AWS
- VPC
- Azure
- Azure Firewall
- Splunk
- Terraform
- ARM Templates
- Zero Trust
- SOPS
- CISSP
- VPN
More jobs at KPMG Global Services
All 146AWS Cloud Engineer Consultant
KPMG Global Services · Pune, Maharashtra, India · India · Hyderabad, Telangana, India +1 · yesterday
Assistant Manager - IT Controls
KPMG Global Services · Bangalore, Karnataka, India · yesterday
KGS - Cyber Cloud- AWS/Azure/GCP Cloud Security - Associate Consultant - Hyderabad
KPMG Global Services · Hyderabad, Telangana, India · yesterday
Digital Finance - PowerBI Developer - Senior
KPMG Global Services · Bangalore, Karnataka, India · yesterday
DEX-SIAM Manager
KPMG Global Services · Bangalore, Karnataka, India · yesterday
Similar roles
Senior Software Security Architect
Commvault · Bangalore, India · today
Principal Security Engineer
Ethos Life · Bangalore, India · today
Senior Security Engineer,GIOC
Vultr · Chennai · today
Security Engineer 3 - Vulnerability Management
Careers at Tide · India, Delhi NCR · today
Security Engineer 3 - Vulnerability Management
Careers at Tide · India, Hyderabad · today
Security Engineer 3 - Vulnerability Management
Careers at Tide · India, Bengaluru · today