Track Lead - Web App firewall, Cloud Security, Palo Alto Firewalls

HCLTech

Nagar, INunknownPosted Jul 24, 2026
Posting intelligenceActively listed

Skills

terraformansiblepythonazureaws

About the role

Gautam Buddha Nagar, Uttar Pradesh

Job Summary

We are seeking a highly skilled L3 Network Security Consultant to own the architecture, engineering, and automation of enterprise firewall policy management using the AlgoSec Security Management Suite (ASMS). The role serves as the final technical escalation point for the firewall assurance and change-automation platform, and is responsible for driving zero-touch policy provisioning, ServiceNow-integrated change workflows, and emerging Agentic AI–based auto-remediation capabilities across a hybrid, multi-vendor firewall estate (Palo Alto, Check Point, Fortinet, Cisco).

Key Responsibilities

AlgoSec Platform Engineering • Design and deploy the AlgoSec central management platform, load units, and regional collectors across cloud (AWS/Azure) and on-premises, following approved HLD/LLD architecture. • Configure and operate ASMS modules – Firewall Analyzer (AFA) for rule usage analysis (shadowed, redundant, unused rules), risk analysis and compliance reporting; FireFlow for change automation; AppViz for application-flow visibility; ObjectFlow for multi-vendor object management; and ACE for cloud policy management. • Integrate AlgoSec with firewall management platforms (Palo Alto Panorama), ITSM (ServiceNow), and directory/authentication services (AD/LDAP, RADIUS, SAML/SSO). Firewall Automation • Architect zero-touch firewall change and provisioning frameworks; define integration patterns, API contracts, and repeatable deployments across Cisco, Palo Alto, Check Point and FortiGate. • Automate the firewall rule-creation workflow and present standard changes as catalog requests via the ServiceNow–AlgoSec integration, reducing lead time and manual effort. • Develop automation for rule cleanup, recertification, risk validation and configuration backups using the AlgoSec REST API and IaC/scripting (Python, Ansible). Agentic AI & Intelligent Operations • Design and deliver Agentic AI solutions that combine AlgoSec with AI agents to automate network-security remediation and emergency-response workflows for enterprise clients. • Leverage AI-powered assistants (e.g., AlgoSec Algo / AlgoBot in Microsoft Teams) for natural-language traffic simulation, change-request creation, and policy queries. • Build AI-driven auto-resolution and runbook automation aligned to Cyber Incident Response processes and Emergency Response Automation Plans. Escalation, Governance & Compliance • Act as the L3 escalation point for complex firewall policy, risk and compliance issues; lead root-cause analysis and preventive engineering. • Establish continuous compliance (baseline configuration, regulatory reporting), firewall governance, and least-privilege rule standards. • Prepare runbooks, SOPs, rule templates and operational documentation; drive knowledge transfer to steady-state teams.

Skill Requirements

1. 10+ years in network / cybersecurity; strong hands-on with AlgoSec ASMS (AFA, FireFlow, AppViz, ObjectFlow, ACE) including API-based automation. 2. Advanced expertise in Palo Alto (incl. Panorama), Check Point, Fortinet and Cisco firewalls, plus routing/switching (BGP, OSPF, IPSEC VPN) and TCP/IP. 3. Proven experience in firewall change automation, zero-touch policy provisioning, and ServiceNow workflow integration. 4. Practical experience with Agentic AI / GenAI for security operations, AI agent development, and automation of remediation workflows. 5. Scripting/automation with Python and Ansible/Terraform; cloud security exposure (AWS / Azure).

Other Requirements

Network and working knowledge on Algosec integration

#body.unify div.unify-button-container .unify-apply-now: focus, #body.unify div.unify-button-container .unify-apply-#body.unify div.unify-button-container .unify-apply-now: focus, #body.unify div.unify-button-container .unify-apply-

Questions about this role

Click "Apply with AI Applyd" above. We auto-fill the application from your resume and answer screening questions in seconds. No copy and paste, no juggling tabs.

Compensation for Security Engineer roles in India varies widely by seniority, employer size, and remote vs onsite arrangement. Check the salary range on this listing when published, or browse our Security Engineer hub for India medians across recent openings.

Most applications complete in under 90 seconds. You can track the status in your dashboard and watch the screenshot proof land the moment the application submits.

AI Applyd supports Greenhouse, Lever, Ashby, Workday, iCIMS, SmartRecruiters, Personio, Teamtailor and other major ATS platforms. If we can submit through the platform, we do.

Want AI Applyd to auto-apply to roles like this?

We tailor your resume per posting, fill the forms, and track replies for you.