Key Responsibilities
- Perform advanced troubleshooting Layer 7 protocols (HTTP / S, DNS, SMTP, SSL / TLS) to resolve application-level issues.
Manage and optimize security tools including :
CrowdStrike Falcon (EDR, threat hunting)
Cloudflare (DNS, SSL, WAF)Cisco Umbrella (SWG, DNS-layer security)Proofpoint & Exchange Relay (email security, header analysis)FortiGate & FortiADC (firewall policies, SSL inspection, load balancing)Aruba Central, WAPs, SD-WAN (wireless optimization, routing)Conduct root cause analysis (RCA) and document post-incident reportsCorrelate logs across platforms (endpoint, firewall, email, DNS) to identify and remediate threatsExecute OS-level diagnostics and remediation using :
PowerShell (Windows)
Bash / CLI tools (Linux / macOS)
Develop and maintain SOPs, troubleshooting guides, and operational documentation
Collaborate with internal teams and vendors to resolve escalated issues and optimize configurationsSupport automation and scripting efforts for log parsing, diagnostics, and remediationRequired Skills & Experience
5+ years in IT security operations, infrastructure troubleshooting, or network engineeringStrong understanding of Layer 7 protocols and application-layer diagnosticsHands-on experience with the listed security tools and platformsProficiency in command-line troubleshooting across Windows and non-Windows systemsExperience with packet analysis tools (Wireshark, tcpdump) and log correlationExcellent documentation and communication skillsAbility to work independently and manage multiple priorities in a fast-paced environmentRelated Certifications (If any)
CrowdStrike Certified Falcon AdministratorFortinet NSE 4–7Cisco CCNP SecurityAruba Certified Network Professional (ACNP)Microsoft Certified : Security Operations AnalystCompTIA Security+ or CySA+Salary
Range of Salary depend past years experience and technical certification.