At Rubikal, we design, build, and operate human-centric digital services that help organizations navigate and succeed in their digital transformation journeys. We partner with clients ranging from governments and large enterprises to innovative startups, managing the full lifecycle of digital services—from initial concept and design to development, operations, and continuous improvement.
Our culture is built on collaboration, trust, and curiosity, with diverse teams working across multiple countries and time zones.
We need an Intermediate to Senior Network Security Engineer, preferred with experience in F5, PaloAlto, and Fortinet security products, such as WAF and NGFW.
The candidate will implement and maintain the network and security on IaaS cloud, mainly OpenStack. He should oversee network configuration, FW rules, IPSec, and various VPN technologies.
Requirements
- Experience in designing, planning, and implementing various secure network topologies using multivendor technologies (Cisco, PaloAlto ...)
- Experience in implementing and managing perimeter security controls and solutions based on recommendations from Cybersecurity department:
- WAN and LAN security
- Site-to-site VPN and remote VPN access
- Implementing FW policies and threat protection
- Security upgrades, patching, and configuration backup
- Experience in implementation and manage of network technologies and services:
- DNS, DHCP, SYSLOG and IP address management and route optimization
- SNMP and xFlow, AAA, RADIUS and authentication platforms
- IGP (RIP, OSPF...) , BGP , gateway redundant protocol such as VRRP
- L2 ethernet switching network based on Cisco technology: Access and core, port-channel and trunk ports, uplink and access, VLANs, STP flavors and other loop-prevention technologies
- Wireless access point design, configuration and troubleshooting
- Providing level 2 support for access, core and perimeter infrastructure:
- Monitoring the KPI’s for network and security physical and virtual appliances such as CPU, memory, link utilization, response time and throughput, and maintain the agreed level of operational health
- Security controls implementation, auditing and monitoring
- Incident handling, problem troubleshooting and reporting
- Experience in providing Level2 support, incident handling and root cause analysis reporting
- Continuously monitor web traffic and application behavior to detect, analyze, and respond to threats— leveraging both traditional network tools and application-layer firewalls.
- Managing the relationship with vendors and service providers, support contract discussion and renewal, SLA tracking, and issues escalation
- Evaluate and remediate vulnerabilities related to web application threats (e.g., OWASP Top Ten), leveraging virtual patching and rapid policy adjustments when needed.
- Deploy network segmentation and policy enforcement strategies, ensuring defense-in-depth across layers through segmentation, VPNs, and secure remote access architectures.
- Leverage automation and scripting (e.g., Python, RegEx) for deployment, monitoring, and rule management of WAF and network security infrastructure.
Qualifications & Skills
- Minimum 5 years of hands-on experience in managing, operating, and troubleshooting network and security infrastructures.
- Bachelor’s degree in Computer Science, Information Technology, or a related field (or equivalent practical experience).
- Strong experience providing Level 2 (L2) operational support for network and security environments.
- Solid understanding of network protocols and technologies (e.g., TCP/IP, VLANs, VPNs, routing, switching).
- Experience with security technologies such as firewalls, IDS/IPS, web proxies, and endpoint security solutions.
- Proven ability to coordinate with vendors and service providers for Level 3 (L3) support and incident resolution.
- Strong analytical and problem-solving skills, with the ability to handle and prioritize multiple incidents and requests.
- Good communication skills, with the ability to work closely with different internal departments.
- Ability and willingness to work on-site at the customer’s premises in Riyadh, KSA.
Preferred (Nice-to-Haves)
- Relevant industry certifications (e.g., CCNP, CCSP, Fortinet NSE, Palo Alto PCNSE, CISSP, CISM, CompTIA Security+).
- Experience with next-generation firewalls, web application firewalls (WAF), and advanced threat protection solutions.
- Hands-on experience with SIEM, SOC tools, and security monitoring platforms.
- Familiarity with cloud networking and security (AWS, Azure, or GCP).
- Experience with automation/scripting for network/security operations (e.g., Python, Bash, Ansible).
- Knowledge of ITIL processes and experience working in ITSM-based environments (e.g., ServiceNow, Jira Service Management).
- Experience in large enterprise or service provider environments.
- Exposure to compliance and security standards (e.g., ISO 27001, NCA/NIST, PCI-DSS).
Benefits
- Competitive salary
- Great work environment
- Flexible working schedule
- Medical Insurance
- Brand new MacBook
