Infrastructure Security Engineer - WAF,F5 & Palo Alto Firewall
Job Fit Check
Base Career helps you apply smarter for this job.
Key skills for this role
Role Overview
We are looking for a motivated and talented individual interested in working on F5 technologies (Load Balancer, WAF, DDoS) , Palo Alto Firewalls , FortiGate Firewalls , and Infoblox DNS . The role involves hands-on security and network operations, monitoring, troubleshooting, incident response, and continuous optimization of enterprise security infrastructure.
Key Skills for This Role
Full Job Posting
About Gruve
Gruve is an innovative software services startup dedicated to transforming enterprises to AI powerhouses. We specialize in cybersecurity, customer experience, cloud infrastructure, and advanced technologies such as Large Language Models (LLMs). Our mission is to assist our customers in their business strategies utilizing their data to make more intelligent decisions. As a well-funded early-stage startup, Gruve offers a dynamic environment with strong customer and partner networks.
Position Summary
We are looking for a motivated and talented individual interested in working on F5 technologies (Load Balancer, WAF, DDoS) , Palo Alto Firewalls , FortiGate Firewalls , and Infoblox DNS . The role involves hands-on security and network operations, monitoring, troubleshooting, incident response, and continuous optimization of enterprise security infrastructure.
Key Responsibilities
- Work in security and network operations environments. Hands-on experience with F5 WAF, Load Balancer, and DDoS , including policies, maintenance, upgrades, certificate renewal, virtual server creation on F5 LTM, F5 LTM/ASM troubleshooting, WAF security policy management, DDoS mitigation, VIP configuration, backend and frontend IP mapping, session distribution logic, and session persistency logic. Monitor web traffic, analyze security logs, investigate alerts, and take action against unusual activities. Respond quickly to security breaches by collaborating with incident response teams. Integrate threat intelligence feeds to enhance protection against emerging risks. Continuously optimize WAF performance to minimize latency and ensure seamless user experience. Conduct regular security assessments and audits to identify vulnerabilities. Manage ServiceNow workflows to update and patch security services. Maintain organized documentation of WAF configurations, rules, and procedures . Diagnose and resolve complex network and security issues . Hands-on experience with FortiGate Firewall and FortiManager , including firewall configuration, management, monitoring, and troubleshooting. Strong understanding of FortiGate firewall features such as firewall policies, IPSec VPNs, IDS/IPS, web filtering, and other security capabilities. Troubleshoot IPSec VPNs , GlobalProtect VPN , high CPU utilization issues, application issues at Layer 4 and Layer 7 , and NAT issues (source, destination, static, translation, hit-related). Create and manage security rules , NAT rules , security profiles , log forwarding profiles , zone security profiles , and application overrides on Palo Alto and FortiGate firewalls. Perform firewall backups , firmware upgrades , device monitoring, health monitoring, and alert investigations. Follow ITIL-based change management and incident management procedures . Manage inventory of all in-scope devices. Raise, track, and close TAC cases end-to-end . Provide monthly security augmentation recommendations . Create, maintain, and follow SOPs for configuration and process changes.
- Work in security and network operations environments.
- Hands-on experience with F5 WAF, Load Balancer, and DDoS , including policies, maintenance, upgrades, certificate renewal, virtual server creation on F5 LTM, F5 LTM/ASM troubleshooting, WAF security policy management, DDoS mitigation, VIP configuration, backend and frontend IP mapping, session distribution logic, and session persistency logic.
- Monitor web traffic, analyze security logs, investigate alerts, and take action against unusual activities.
- Respond quickly to security breaches by collaborating with incident response teams.
- Integrate threat intelligence feeds to enhance protection against emerging risks.
- Continuously optimize WAF performance to minimize latency and ensure seamless user experience.
- Conduct regular security assessments and audits to identify vulnerabilities.
- Manage ServiceNow workflows to update and patch security services.
- Maintain organized documentation of WAF configurations, rules, and procedures .
- Diagnose and resolve complex network and security issues .
- Hands-on experience with FortiGate Firewall and FortiManager , including firewall configuration, management, monitoring, and troubleshooting.
- Strong understanding of FortiGate firewall features such as firewall policies, IPSec VPNs, IDS/IPS, web filtering, and other security capabilities.
- Troubleshoot IPSec VPNs , GlobalProtect VPN , high CPU utilization issues, application issues at Layer 4 and Layer 7 , and NAT issues (source, destination, static, translation, hit-related).
- Create and manage security rules , NAT rules , security profiles , log forwarding profiles , zone security profiles , and application overrides on Palo Alto and FortiGate firewalls.
- Perform firewall backups , firmware upgrades , device monitoring, health monitoring, and alert investigations.
- Follow ITIL-based change management and incident management procedures .
- Manage inventory of all in-scope devices.
- Raise, track, and close TAC cases end-to-end .
- Provide monthly security augmentation recommendations .
- Create, maintain, and follow SOPs for configuration and process changes.
Basic Qualifications -
- Education: BE (Computer Science / IT) or MCA or equivalent university degree. Experience: 5 to 7 years of experience in the security domain . Minimum 5+ years of experience working as an L1/L2 Engineer in operations. Hands-on experience with (Palo Alto or FortiGate Firewall) and F5 Load Balancer (LB, WAF, DDoS) . Solid understanding of networking concepts and protocols including TCP/IP, routing, and switching.
- Education: BE (Computer Science / IT) or MCA or equivalent university degree.
- Experience: 5 to 7 years of experience in the security domain .
- Minimum 5+ years of experience working as an L1/L2 Engineer in operations.
- Hands-on experience with (Palo Alto or FortiGate Firewall) and F5 Load Balancer (LB, WAF, DDoS) .
- Solid understanding of networking concepts and protocols including TCP/IP, routing, and switching.
Preferred Qualifications
- Experience with Infoblox DNS . Certifications such as PCNSA, PCNSE, NSE4, or F5 Load Balancer certifications.
- Experience with Infoblox DNS .
- Certifications such as PCNSA, PCNSE, NSE4, or F5 Load Balancer certifications.
Why Gruve
At Gruve, we foster a culture of innovation, collaboration, and continuous learning. We are committed to building a diverse and inclusive workplace where everyone can thrive and contribute their best work. If you’re passionate about technology and eager to make an impact, we’d love to hear from you.
Gruve is an equal opportunity employer. We welcome applicants from all backgrounds and thank all who apply; however, only those selected for an interview will be contacted.
About Gruve
Provides enterprise AI infrastructure and autonomous software agents.
Visit company websiteJobs and hiring trendsApply for this job in 1 click
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career
More from this employer
More jobs at Gruve
Network & Security Engineer
Dubai, UAE
The employer is seeking a Senior Network and Security Engineer to lead service governance while performing hands-on remediation across network, security, server, virtualization, and cloud infrastructure. The role require
Network & Systems Engineer (Vulnerability Management)
Dubai, UAE
Gruve is seeking a Network and Systems Engineer to manage vulnerability remediation at a client site. The role runs Qualys VMDR scans, prioritizes findings, patches servers and infrastructure, executes governed change re
Network & Systems Engineer (Vulnerability Management)
Dubai, UAE
Gruve is seeking a Network & Systems Engineer to manage vulnerability scanning, remediation, patching, automation, and reporting across enterprise infrastructure. The role requires 3–6 years of systems or network enginee
Product Owner
, IND
Gruve is seeking a Product Owner to drive delivery of an AI infrastructure platform across GPU infrastructure, observability, governance, multi-tenancy, and cloud-native services. The role requires strong Agile product o
Network & Security Engineer
Dubai, UAE
Network & Systems Engineer (Vulnerability Management)
Dubai, UAE
Network & Systems Engineer (Vulnerability Management)
Dubai, UAE
Product Owner
, IND
Head of Strategic Finance & GTM
Redwood City, USA
Full Stack Developer
, USA
Senior Software Engineer
, USA
Senior Business Analyst
, USA