المسمى الوظيفي: مهندس شبكات وجدران حماية أول (مستوى ثالث L3) الموقع: دبي
الخبرة
أكثر من 10 سنوات من الخبرة العملية في شبكات المؤسسات، والأمن، والنشر، والترحيل، واستكشاف الأخطاء وإصلاحها.
ملخص الوظيفة
نبحث عن مهندس شبكات وجدران حماية خبير (مستوى ثالث) مسؤول عن تصميم ونشر وترحيل وتحسين ودعم البنية التحتية للشبكات والأمن في المؤسسات. يجب أن يتمتع المرشح المثالي بخبرة عميقة في بيئات عمل Cisco وFortinet وPalo Alto وHuawei وبيئات الشبكات متعددة الموردين. يتطلب هذا الدور قيادة مشاريع التنفيذ والترحيل المعقدة مع تقديم دعم فني من المستوى الثالث للبيئات ذات الأهمية الحرجة.
المسؤوليات الرئيسية
• تصميم وتنفيذ وصيانة البنية التحتية لشبكات LAN وWAN ومراكز البيانات وشبكات الحرم الجامعي للمؤسسات.
• نشر وتكوين واستكشاف أخطاء حلول الشبكات والأمن من Cisco وHuawei وFortinet وPalo Alto وإصلاحها.
• قيادة مشاريع تحويل الشبكات، والتحديث، والترحيل، والنشر من الصفر.
• تنفيذ عمليات إنشاء سياسات جدار الحماية، وتكوين NAT، وتنفيذ VPN، والتوجيه، وتعزيز الأمن.
• تخطيط وتنفيذ أنشطة ترحيل الشبكة بأقل وقت تعطل ممكن.
• تكوين واستكشاف أخطاء بروتوكولات التوجيه الديناميكية بما في ذلك OSPF وBGP وEIGRP والتوجيه الثابت.
• تنفيذ حلول التوافر العالي لجدران الحماية والبنية التحتية للشبكة الأساسية.
• إدارة تقنيات التبديل من الطبقة الثانية والثالثة بما في ذلك VLANs وSTP وEther Channel/LACP وVRRP/HSRP وMLAG عند الاقتضاء.
• دعم SD-WAN وIPSec VPN وSSL VPN وVPN للوصول عن بعد واتصال الموقع بالموقع (site-to-site).
• إجراء تحليل أداء الشبكة، وتخطيط السعة، وتحليل السبب الجذري للحوادث المعقدة.
• قيادة المناقشات الفنية مع العملاء والموردين وفرق المشروع الداخلية.
• إنشاء التصميم عالي المستوى (HLD)، والتصميم منخفض المستوى (LLD)، وإجراءات العمل (MOP)، وخطط التراجع، وتوثيق النظام كما هو منفذ (as-built).
• تقديم دعم تشغيلي من المستوى الثالث وتوجيه مهندسي الشبكات المبتدئين.
• ضمان امتثال أمن الشبكة والالتزام بمعايير المؤسسة وأفضل الممارسات.
المهارات التقنية المطلوبة
الشبكات
• التوجيه والتبديل من Cisco
• تبديل المؤسسات من Huawei
• منصات Cisco Catalyst وNexus
• VLANs وSTP وRSTP وMSTP
• OSPF وBGP وEIGRP
• VRRP وHSRP
• MPLS
• QoS
• Multicast
• DHCP وDNS
• IPv4 وIPv6
• مراقبة الشبكة واستكشاف الأخطاء وإصلاحها
جدران الحماية والأمن
• Cisco Firepower
• Fortinet Forti Gate
• جدران حماية Palo Alto Networks
• سياسات الأمن
• NAT
• IPS/IDS
• التحكم في التطبيقات
• تصفية عناوين URL
• فحص SSL
• IPSec VPN
• SSL VPN
• التوافر العالي (HA)
• تعزيز الأمن وأفضل الممارسات
النشر والترحيل
• ترحيل شبكات المؤسسات
• ترحيل جدران الحماية (Cisco, Fortinet, Palo Alto)
• ترحيل مراكز البيانات
• طرح فروع جديدة
• مشاريع تحديث الشبكة
• إدارة التغيير
• تخطيط الانتقال
• تخطيط التراجع
• عمليات الترحيل بدون توقف أو بأدنى حد من التوقف
الشهادات المفضلة
• شهادة Cisco CCIE Enterprise (إلزامي)
• شهادة Fortinet NSE 4/5/7 أو خبير/محترف معتمد من Fortinet
• شهادة Palo Alto PCNSE
• شهادة Huawei HCIP/HCIE
• شهادة ITIL Foundation (يفضل)
المهارات الشخصية
• مهارات ممتازة في استكشاف الأخطاء وإصلاحها والمهارات التحليلية
• تواصل قوي مع العملاء
• القدرة على العمل تحت الضغط أثناء عمليات الترحيل الحرجة
• القيادة الفنية ومهارات التوجيه
• مهارات قوية في التوثيق والعرض
• القدرة على إدارة مشاريع متعددة في وقت واحد
الخبرة المفضلة
• مراكز بيانات المؤسسات
• الخدمات المصرفية
• القطاع الحكومي
• الرعاية الصحية
• الاتصالات
• شبكات الحرم الجامعي الكبيرة
• الخدمات المُدارة
• اتصال السحابة (AWS, Azure, OCI)
• بيئات الشبكات الهجينة
المستوى الوظيفي
مهندس أول (مستوى ثالث L3)
يتبع لـ: مدير ممارسات الشبكات والأمن / مدير البنية التحتية
Job Title: Senior Network & Firewall Engineer (L3) Location: Dubai
Experience
10+ years of hands-on experience in enterprise networking, security, deployment, migration, and troubleshooting.
Job Summary
We are seeking an experienced L3 Network & Firewall Engineer responsible for designing, deploying, migrating, optimizing, and supporting enterprise network and security infrastructures. The ideal candidate should possess deep expertise in Cisco, Fortinet, Palo Alto, Huawei, and multi-vendor networking environments. The role requires leading complex implementation and migration projects while providing Level-3 technical support for mission-critical environments.
Key Responsibilities
• Design, implement, and maintain enterprise LAN, WAN, Data Center, and Campus network infrastructures.• Deploy, configure, and troubleshoot Cisco, Huawei, Fortinet, and Palo Alto network and security solutions.• Lead network transformation, refresh, migration, and greenfield deployment projects.• Perform firewall policy creation, NAT configuration, VPN implementation, routing, and security hardening.• Plan and execute network migration activities with minimal downtime.• Configure and troubleshoot dynamic routing protocols including OSPF, BGP, EIGRP, and static routing.• Implement high-availability solutions for firewalls and core network infrastructure.• Manage Layer 2 and Layer 3 switching technologies including VLANs, STP, Ether Channel/LACP, VRRP/HSRP, and MLAG where applicable.• Support SD-WAN, IPSec VPN, SSL VPN, Remote Access VPN, and site-to-site connectivity.• Perform network performance analysis, capacity planning, and root cause analysis for complex incidents.• Lead technical discussions with customers, vendors, and internal project teams.• Create High-Level Design (HLD), Low-Level Design (LLD), Method of Procedure (MOP), rollback plans, and as-built documentation.• Provide L3 operational support and mentor junior network engineers.• Ensure network security compliance and adherence to organizational standards and best practices.
Required Technical Skills
Networking
• Cisco Routing & Switching• Huawei Enterprise Switching• Cisco Catalyst & Nexus platforms• VLANs, STP, RSTP, MSTP• OSPF, BGP, EIGRP• VRRP, HSRP• MPLS• QoS• Multicast• DHCP, DNS• IPv4 & IPv6• Network monitoring and troubleshooting
Firewalls & Security
• Cisco Firepower• Fortinet Forti Gate• Palo Alto Networks Firewalls• Security Policies• NAT• IPS/IDS• Application Control• URL Filtering• SSL Inspection• IPSec VPN• SSL VPN• High Availability (HA)• Security hardening and best practices
Deployment & Migration
• Enterprise network migration• Firewall migration (Cisco, Fortinet, Palo Alto)• Data Center migration• Branch rollout• Network refresh projects• Change management• Cutover planning• Rollback planning• Zero/Minimal downtime migrations
Preferred Certifications
• Cisco CCIE Enterprise must• Fortinet NSE 4/5/7 or Fortinet Certified Professional/Expert• Palo Alto PCNSE• Huawei HCIP/HCIE• ITIL Foundation (preferred)
Soft Skills
• Excellent troubleshooting and analytical skills• Strong customer-facing communication• Ability to work under pressure during critical migrations• Technical leadership and mentoring capabilities• Strong documentation and presentation skills• Ability to manage multiple projects simultaneously
Preferred Experience
• Enterprise Data Centers• Banking• Government• Healthcare• Telecom• Large Campus Networks• Managed Services• Cloud connectivity (AWS, Azure, OCI)• Hybrid network environments
Employment Level
Senior Engineer (L3)
Reporting To: Network & Security Practice Manager / Infrastructure Manager