JobExpired · Jul 19, 2026Kabul
Network Security Contractual employee
افغان تیلی کام
- Publisher source
- Jobs.af
- Published
- Jul 12, 2026, 07:40 AM
- Last seen
- Jul 13, 2026, 06:14 PM
- Category
- Not specified
- Location
- Kabul
Description
Role summary
The Network Security Engineer is responsible for protecting and strengthening the organization’s ISP and enterprise network infrastructure with a primary focus on network-level security architecture, routing, and switching environments. This role ensures the secure design, deployment, and operation of core and edge network systems, including firewalls, VPN gateways, routing platforms, and switching infrastructure. The engineer will work with multi-vendor network security technologies such as Juniper SRX, Huawei, Sophos, and other enterprise security platforms, ensuring secure connectivity, traffic control, and threat prevention across backbone, access, and corporate networks. The role requires strong expertise in network protocols, traffic analysis, and secure network design to support highly available and resilient telecom environments.
Duties and responsibilities
Design, implement, and maintain network-level security controls across core, distribution, and access layers. Secure routing and switching infrastructure including BGP, OSPF, MPLS, and VLAN environments. Configure and manage firewalls, IPS/IDS, and VPN gateways across multi-vendor platforms. Implement and maintain network segmentation, VRF, VLAN architecture, and secure traffic isolation. Apply and manage NAT, ACLs, port security, control-plane protection, and secure device management (SSH, AAA, TACACS+/RADIUS). Support secure integration between ISP backbone, data centers, and enterprise networks. Network Monitoring & Threat Detection Monitor network traffic, flows, and logs to detect anomalies, attacks, and performance issues. Analyze traffic patterns using network monitoring and security tools. Identify and mitigate DDoS attacks, routing anomalies, and network-based threats. Collaborate with NOC and security teams to maintain network availability and security posture. Incident Response & Vulnerability Management Investigate network security incidents and perform root cause analysis. Respond to security events affecting routing, switching, and firewall infrastructure. Conduct network vulnerability assessments and implement remediation measures. Ensure secure configuration baselines across all network devices. Policy Enforcement & Compliance Enforce network security policies, standards, and hardening guidelines. Ensure compliance with organizational and regulatory security requirements. Implement secure access control for internal, external, and partner connectivity. Documentation & Continuous Improvement Maintain up-to-date network topology diagrams, security architecture documentation, and configuration standards. Document incidents, mitigation strategies, and lessons learned. Stay updated on emerging network threats, vulnerabilities, and telecom security practices.
Job requirements
· Bachelor’s degree in Computer Science, Network Engineering, Cybersecurity, or a related field. Certification: Required: CCNA, CompTIA Security+ (or equivalent) Preferred: CEH, CCNP Security, JNCIS-SEC, or vendor-specific firewall certifications Experience: Minimum of three (3) years of hands-on experience in Network Security Engineering or Network Engineering, preferably within telecommunications or ISP environments. Technical Skills Strong knowledge of routing and switching technologies (BGP, OSPF, MPLS, VLANs, STP). Hands-on experience with Juniper SRX, Huawei, Sophos, or similar enterprise firewalls. Experience implementing VPN technologies (IPsec, SSL VPN, site-to-site). Deep understanding of network protocols, traffic flow analysis, and network security controls. Experience with network monitoring, log analysis, and threat detection tools
Additional details
- Procurement method
- Not specified
- Contract type
- Contractor
- Job type
- Full time
- Salary or budget
- As per company scale
- Experience level
- 2-3 years
- Language
- en