To implement, establish, maintain and continually improve IP and edge Network security solutions including but not limited to following:
Edge and Internal Firewalls,
SSLVPN,
Admin Auditing,
PAM.
To design, implement and administrate any required DMZ (Demilitarized Zone) to protect MTNIrancell internal LAN from untrusted traffic such as the internet.
To coordinate the day to day security operational function relating to IP Core equipment/radio and network.
To cooperate with IP planning and ITS infrastructure teams as per Business development plan to provide recommendation to infrastructure, operations, data and application development groups throughout the transitioning phase, implementation in production,and beyond.
To provide technical security support by develop and implement O&M tools i.e. (CW2K, ACS).
To provide secure gateway and consider security risks for external customers which are connected to our network.
To provide maintenance and support physical port security (dot1x) in the network to ensure user’s identity and authorization to access the organization network.
To ensure all logs are being forwarded to SIEM to support real-time security monitoring operations.
To make close collaboration with incident response team in analysis, containment, eradication and recover phases
To liaise with SOC team to block identified attack sources.
To monitor statistics repository and aggregation of IDS (Intrusion Detecting System)/ IPS (Intrusion Preventing System)/ Syslog statistics.
To track and review provided accesses regularly and remove unneeded accesses and ensure all defined ACL[1]s are documented
To liaise with Security Architecture and Planning department to Configure devices based on provided guidance and best practices
To perform daily health check on security solutions to provide incisive and detailed report of current cyber risk status and critical exposures.
To monitor security solution status and plan for expansion as required
To run DR drill tests regularly to identify and address any security and backup issues.
To fulfill authorized requests and fix any event or incident based on defined SLA and OLA
To configure all Edge security solutions in an integrated and harmonized manner with each other and there are no conflicting rules in place
To provide support regarding IP requirements across various Business Units