TymblHub

Β© 2026 TymblHub

Sr Principal Network & Security

Northern Trust Operating Services
Posted on
Northern Trust Operating Services logo

Experience
13 - 18 yrs
Job Location
Pune, India
Vacancy
1
Designation
Senior Network Security Engineer
Job Type
ONSITE

Job Description

Role Summary
The Senior Principal Network Security Engineer is the highest-level individual contributor responsible for leading the design, engineering, and delivery of complex, multi-team network security initiatives. This role owns end-to-end technical execution for enterprise perimeter, internal segmentation, and application delivery controls, with deep hands-on expertise in Check Point firewalls and F5 load balancers. The engineer serves as a technical authority, driving architecture decisions, mentoring engineers, and ensuring operational resiliency through automation, rigorous troubleshooting, and incident mitigation.
Primary Technology Focus
  • Designing, Securing and building scalable, resilient enterprise-wide network
  • Define and monitor network security standards / controls across on-prem, hybrid and private cloud networks through new generation firewalls / IDS/IPS, micro-segmentation and VPNs
  • Monitor and mitigate the network and security incidents across global events on prem, hybrid and private networks
  • Ensure audit and regulatory compliance requirements are implemented across network segmentations, firewalls, VPNs and at perimeter security devices
  • Check Point Firewalls (policy design, NAT, VPN, threat prevention, logging/telemetry, upgrades and migrations)
  • F5 Load Balancers (LTM/ASM/APM as applicable; iRules; TLS profiles; health monitoring; high availability)
  • Network routing and switching (BGP/OSPF, VLANs, VRFs, QoS, high-availability designs)
  • Wireless networking (enterprise Wi-Fi architectures, security controls, segmentation, troubleshooting)
  • Secure web proxy platforms (forward proxy, TLS inspection, policy enforcement, troubleshooting)
  • Enterprise network security initiatives (segmentation, zero trust patterns, control hardening, resiliency improvements)
Key Responsibilities
  • Lead the engineering delivery of complex network security and application delivery projects involving multiple teams, vendors, and stakeholders.
  • Architect, implement, and operate Check Point firewall solutions including policy lifecycle management, NAT strategy, VPN solutions, and threat prevention capabilities.
  • Design and engineer F5 load balancing solutions with strong understanding of traffic management, TLS, application health, and high availability.
  • Develop and maintain automation for network security operations (e.g., configuration management, policy deployment, compliance validation, telemetry and reporting).
  • Act as the senior escalation point for critical incidents debug, mitigate, and resolve high-severity outages and security events across network/security domains.
  • Establish engineering standards and reference architectures for firewalling, load balancing, routing/switching, wireless, and proxy capabilities.
  • Drive continuous improvement: reduce toil, improve MTTR, implement reliability patterns, and proactively address technical debt.
  • Partner with security engineering, infrastructure, application, and cloud teams to deliver secure-by-design solutions and ensure change safety.
  • Conduct deep root-cause analysis (RCA) and produce actionable post-incident improvements, runbooks, and automation enhancements.
  • Mentor senior engineers and provide technical leadership through design reviews, architecture boards, and operational readiness assessments.
  • Monitor and manage information system security incidents, troubleshoot, investigate and implement countermeasures and mitigate the risk.
  • Plan the Network recovery / DR / resilience from malware / attacks, unauthorized access, and policy breaches;
  • Engage, interact and coordinate with third-party Network / Telecom / service providers during security incidents.
  • Analyze Network security trends and changes in threat and compliance environment and develop and executes plans for compliance and mitigation of risk
Required Qualifications
  • Extensive, hands-on engineering experience with enterprise network security, including deep expertise in Check Point firewalls and F5 load balancers.
  • Demonstrated success leading complex, cross-functional technical initiatives from design through implementation and operational handoff.
  • Advanced knowledge of routing and switching, including dynamic routing (BGP/OSPF), redundancy, and troubleshooting at scale.
  • Strong understanding of wireless networking and secure web proxy concepts, including policy enforcement and traffic inspection.
  • Proven automation skills (required): scripting and/or infrastructure-as-code to integrate with CI/CD pipelines and ITSM workflows.
  • Significant experience troubleshooting and resolving critical incidents, including packet-level analysis and performance triage.
  • Ability to produce clear technical documentation: design artifacts, standards, runbooks, and post-incident reports.
  • Excellent communication and stakeholder management skills; able to influence architecture decisions and drive alignment.
Preferred Qualifications
  • Relevant industry certifications with major network/security vendors (e.g., Check Point CCSA/CCSE/CCSM, F5-CA/F5-CSE, Cisco CCNP, Palo Alto PCNSE, Fortinet NSE, etc.).
  • Advanced certifications such as CCIE Security, CCDE, CISSP, or equivalent is highly desired.
  • Experience with modern security patterns (e.g., zero trust segmentation, SASE concepts, secure access) and enterprise logging/telemetry platforms.
  • Experience integrating network/security automation with ServiceNow and/or other ITSM systems.
  • Experience with cloud networking and security controls (e.g., Azure/AWS/GCP) and hybrid connectivity patterns.
  • Hands-on experience with tooling such as Ansible, Terraform, Python, Git, CI/CD, API-driven device management, and configuration compliance frameworks.
Core Competencies
  • Technical authority and systems thinking across security, network, and application delivery layers
  • Incident leadership: calm execution under pressure, strong diagnostics, and mitigation mindset
  • Automation-first approach: reduce manual effort, standardize delivery, and improve reliability
  • Strong collaboration: leads through influence across engineering, operations, and security partners
  • Ownership and accountability: drives outcomes end-to-end and follows through on improvements
Examples of Work
  • Lead a multi-phase Check Point firewall upgrade/migration program with minimal downtime and improved security posture.
  • Engineer F5 traffic management enhancements for critical applications, including TLS modernization and health monitoring redesign.
  • Build automation to validate firewall policy changes, generate compliance evidence, and roll back safely when required.
  • Resolve a high-impact outage through packet capture, routing convergence analysis, and coordinated changes across multiple teams.
Disclaimer: This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.