Network Security & Firewall Engineer, Network Access Control, Network Design IT, ELV, CCTV

High-calibre, CCNP-certified Network Security Specialist with over five years of enterprise and ISP-grade infrastructure experience. Expert in shielding corporate environments from digital threats, eliminating network bottlenecks, and designing airtight multi-vendor perimeters. Offering elite technical consultancy across Saudi Arabia for businesses requiring absolute uptime, robust compliance, and secure data migration.

🎯 Key Responsibilities & Capabilities
Infrastructure Surveillance & Defence: Proactively detect, isolate, and remediate multi-layered network vulnerabilities before they impact business continuity.

Change Management & Optimisation: Execute safe, zero-downtime firmware updates, configuration overhauls, and complex security policy rulesets.

Incident Response: Perform deep-packet forensic analysis to isolate root-cause issues and eradicate malicious internal or external traffic anomalies.

SLA Compliance: Operate diligently under strict operational Service Level Agreements (SLAs) to guarantee 99.9% network availability.

🛠️ Technical Core Skills
Routing & Switching: Advanced configuration of Cisco IOS/XE architectures, TCP/IP, VLANs, EtherChannel, Trunking, and Spanning Tree Protocol (STP).

Core Routing Protocols: High-level mastery of enterprise-scale BGP, OSPF, and EIGRP path configurations.

High Availability & Redundancy: Flawless deployment of gateway redundancy protocols, including HSRP and VRRP, to eliminate single points of failure.

Secure Remote Access: Implementation of enterprise-wide IPsec and SSL VPN tunnels for bulletproof branch-to-branch and remote workforce connectivity.

🚀 Advanced Technical Specialisations
Next-Generation Firewalls (NGFW): Elite administrative hands-on hardening, security profiling, and security-rule auditing on Palo Alto (Panorama) and Fortinet (FortiGate) platforms.

Network Access Control (NAC): Implementing secure identity management, device profiling, and posture enforcement utilising Cisco ISE.

Zero-Trust Network Segmentation: Dividing critical corporate data zones from public-facing zones to tightly isolate sensitive lateral threat movements.

📁 Network Design & Architecture
Architecting scalable, resilient, and future-proof physical and logical network topographies tailored to modern corporate offices and multi-site complexes.

Integrating edge-security zones, demilitarised zones (DMZs), and secure cloud-on-ramp access networks.

Designing redundant dual-homed ISP link paths utilising dynamic fallback load balancing to shield businesses from unexpected provider outages.

📝 Documentation & Technical Proposals
Authoring standard-compliant engineering deliverables, including comprehensive High-Level Designs (HLD) and granular Low-Level Designs (LLD).

Drafting clear, cost-effective Bills of Quantities (BOQs) and tailored technical proposals mapped directly to corporate budgetary and performance requirements.

Compiling actionable Standard Operating Procedures (SOPs), physical network layouts, and comprehensive audit logs for corporate IT compliance reviews.

🔌 Infrastructure & Vendor Ecosystems
Deep configuration and systems experience across major enterprise hardware platforms, focusing on Cisco Catalyst 9300 series switches and Cisco ASR 1000 series edge routers.

Managing seamless multi-vendor interoperability layers (Cisco routing core paired with Fortinet/Palo Alto security perimeters) to prevent technical vendor-lock or operational friction.

📊 Technical Advisory & Performance Metrics
Data-Driven MTTR Reduction: Utilising advanced network monitoring engines like SolarWinds to achieve a 40% reduction in Mean Time to Repair/Resolution (MTTR).

IP Space Optimisation: Deploying Infoblox (DDI) network services to completely eradicate local IP address allocation conflicts by 25%.

Strategic Capacity Management: Running data traffic baseline assessments via tools like Wireshark to optimise system performance and maximise ROI on existing corporate hardware.

🌐 Availability & Location
📍 Location Base: Riyadh, Saudi Arabia
📞+966 539403086, 532852484, 592667286
📩[email protected]

💼 Status: Premium Freelance Consulting / Contract Deployment

📑 Legal Status: Transferable Iqama — Available for immediate mobilisation

Makkah, Job Seekers, Network Security & Firewall Engineer, Network Access Control, Network Design IT, ELV, CCTV
Back Next