We are seeking a skilled Network Security Engineer to join our team and support the, management, and troubleshooting of
Cisco Identity Services Engine (ISE) solutions. The ideal candidate will have hands-on experience with Cisco Identity Services
Engine (ISE) and demonstrate expertise in managing network access, security policies, and authentication protocols. The
candidate to have a good understanding of network security, Cisco ISE configurations, and troubleshooting techniques to
ensure optimal security.
Cisco ISE Administration
Job Description - ROLES AND RESPONSIBILITIES
- configure Cisco Identity Services Engine (ISE) for secure network access control, authentication, and policy
enforcement.
- Collaborate with the network and security teams to integrate ISE with other security solutions, such as VPN,
firewalls, and wireless access points.
- Troubleshooting and Support:
- Perform advanced troubleshooting and root cause analysis of network access and authentication
issuesDiagnose and resolve issues related to network access, authentication, authorization, and accounting
(AAA), 802.1X, and RADIUS, TACACS+.
Policy Management
- configuring access control policies based on security requirements and user roles.
- Maintain and update user authentication policies, device profiling, and posture policies.
- Monitoring and Maintenance:
- Monitor Cisco ISE performance, availability, and logs to ensure smooth operations and promptly address
potential security risks.
- Generate reports on network access, security compliance, and policy enforcement.
Documentation
- Maintain accurate and up-to-date documentation of ISE configurations, troubleshooting steps, and best
Practices For Cisco ISE Collaboration
- Work closely with other network engineers, security teams, and support staff to ensure seamless
integration of Cisco ISE with other network security tools and technologies.
User & Device Support
- Provide tier-2 support for troubleshooting ISE-related incidents raised by end-users, help desk, or other
teams.
- Assist in the onboarding of new users and devices into the network access control system.
- Knowledge, Skills, and Experience Requirements
Experience
- Minimum of 2-3 years of experience working with Cisco Identity Services Engine (ISE) and related network
security technologies.
- Experience with network access control (NAC), RADIUS, TACACS+, and 802.1X protocols.
Technical Skills
- In-depth knowledge of Cisco ISE architecture, installation, configuration, and management.
- Familiarity with integration of ISE with Cisco switches, routers, wireless LAN controllers, and other network
devices.
- Experience in configuring AAA services and creating network security policies within Cisco ISE.
- Experience with Cisco ASA, Firepower, and other security technologies is a plus.
- Certifications:
- Cisco certifications such as CCNP Security, CCNA Security, or . Soft Skills:
- Good communication skills to collaborate with different teams and explain technical concepts to non-technical stakeholders.
- Excellent problem-solving and analytical skills.
- Strong communication and teamwork abilities.
- Strong verbal and written English communication skills. Preferred Qualifications:
- Experience with or other network management platforms.
- Familiarity with advanced network security protocols and methodologies.
Qualifications, Certifications, And Education Requirements
- Bachelor's degree in Engineering / Computer Science, Information Security, or a related field (or equivalent
experience).
- Relevant certifications such as CCNP Security or certifications specific to ISE
Preferred Skills
- Strong understanding of network security, firewalls, and security policy management.
- Proficiency in configuring and maintaining
- Strong verbal and written English communication skills.
Skills: management,authentication,cisco,cisco switches,radius,cisco certifications (ccnp security, ccna security),802.1x,firewall,tacacs+,network security,security policies,firepower,aaa services,cisco identity services engine (ise),routers,ise,wireless lan controllers,cisco asa,network access control (nac)