AVP - Network Security Engineer.
Do you want your voice heard and your actions to count?
Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world’s leading financial groups. Across the globe, we’re 150,000 colleagues, striving to make a difference for every client, organization, and community we serve. We stand for our values, building long-term relationships, serving society, and fostering shared and sustainable growth for a better world.
With a vision to be the world’s most trusted financial group, it’s part of our culture to put people first, listen to new and diverse ideas and collaborate toward greater innovation, speed and agility. This means investing in talent, technologies, and tools that empower you to own your career.
Join MUFG, where being inspired is expected and making a meaningful impact is rewarded.
About the Role
Position Title: Senior Network Security Engineer
Corporate Title: Assistant Vice President
Location: Bengaluru
Job Profile – Senior Network Security Engineer
Position Details
The role is for the position of Senior Network Security Engineer within ASO TIS based out of Bangalore. The successful candidate will be part of a growing and dynamic regional team responsible for design, engineering, and operational security of enterprise network infrastructure across APAC.
This role spans end-to-end network security lifecycle, including architecture, implementation, operations (BAU), and strategic transformation initiatives, ensuring confidentiality, integrity, and availability of the organization's systems and data.
The position requires strong expertise in enterprise network security, regulatory compliance (banking environment), hybrid cloud architecture, and large-scale infrastructure security transformations.
Roles and Responsibilities
This role requires strong real-world experience in Network Security Products, implementation, and troubleshooting.
- Network Security Operations (BAU + L3 Escalation)
- Provide L3/L4 support for critical network security infrastructure:
- Firewalls (FortiGate, Check Point, Juniper SRX)
- Load Balancers / WAF (F5 LTM/GTM/ASM/WAAP)
- VPNs, Proxy, DNS security
- Secure remote access (VPN, Zero Trust / ZTNA concepts)
- DDoS mitigation and WAAP platforms
- Next-Gen Firewalls & Segmentation policies
- Troubleshoot complex issues including performance, MTU/MSS mismatch, asymmetric routing, and application connectivity.
- Ensure high availability and resilience of security infrastructure across primary and DR sites.
- Demonstrate flexibility to support weekend operations and participate in on-call rotations to ensure high availability and stability of critical network services.
Technical Capabilities
- Strong expertise in enterprise networking protocols: Good to have skills sets - BGP, OSPF, MPLS, VLANs, TCP/IP.
- Hands-on experience in securing Data Center, Internet, and Cloud network environments
- Expertise with Firewalls: FortiGate, Check Point, Juniper SRX
- Experience with DDoS protection, WAF/WAAP platforms (Akamai, Cloudflare, F5 ASM/WAAP)
- Strong knowledge of VPN technologies (IPsec, SSL VPN) and secure remote access
- Experience with F5 Load Balancers (LTM/GTM), traffic management, and GSLB
- Strong understanding of DNS, DHCP, IPAM (Infoblox / BlueCat preferred)
- Experience in cloud networking (AWS, Azure, GCP) including hybrid connectivity and security controls
- Familiarity with micro-segmentation and Zero Trust concepts
- Strong troubleshooting capability across Layer 3–7 network and security domains
- Experience with network monitoring and observability tools (SolarWinds, Netscout, Wireshark, Dynatrace)
- Knowledge of network automation tools (Python, Ansible, Terraform)
- Understanding and good to have knowledge on data center architectures (Spine-Leaf, ACI)
- Exposure to regulatory and security frameworks within enterprise/banking environments
Job Requirements
- 10+ years of experience in networking/security
- Strong experience in enterprise or banking environments
- Hands-on delivery of network security transformation initiatives
- Certifications:
- CCIE / CCNP (preferred)
- Fortinet / Check Point certifications
- AWS Networking/Security certifications (preferred)
Educational Requirements
- Bachelor’s degree in Computer Science / IT / Network Engineering (mandatory)
Equal Opportunity Employer
The MUFG Group is committed to providing equal employment opportunities to all applicants and employees and does not discriminate on the basis of race, colour, national origin, physical appearance, religion, gender expression, gender identity, sex, age, ancestry, marital status, disability, medical condition, sexual orientation, genetic information, or any other protected status of an individual or that individual's associates or relatives, or any other classification protected by the applicable laws.
Mitsubishi UFJ Financial Group (MUFG) is an equal opportunity employer. We view our employees as our key assets as they are fundamental to our long-term growth and success. MUFG is committed to hiring based on merit and organsational fit, regardless of race, religion or gender.