- (hub-and-spoke, spoke-to-internet, or spoke-to-on-prem models).Azure Landing Zone architecture within an Fortinet FortiGate firewallDesign and implement
- including VM sizing, NIC configuration, and custom routing.Azure MarketplaceDeploy FortiGate firewalls from the
- tailored to cloud security needs.intrusion prevention, and SSL/IPSec VPNs, NAT rules, firewall policiesConfigure
- , such as: Azure componentsIntegrate FortiGate with
- Azure VNet peering
- User Defined Routes (UDRs)
- Azure Load Balancers (for HA/Active-Passive FortiGate setups)
- NSGs and Azure Firewall (if coexisting)
- Develop and enforce zero-trust network segmentation within Azure using Fortinet NGFW.
- Monitor and manage the firewall using FortiManager, FortiAnalyzer, or native FortiOS logging.
- Ensure compliance with security standards (e.g., ISO 27001, SOC 2, NIST)
Qualifications:
Required Skills
- 4+ years of experience with Fortinet FortiGate firewall administration
- Strong hands-on experience with:
- FortiOS (firewall, VPN, IPS, UTM)
- FortiManager and FortiAnalyzer
- SSL and IPSec VPN configuration
- Proficient with Azure networking components: VNets, UDRs, NSGs, VNet peering, and Azure Load Balancers
- Fortinet NSE4 certification or higher (preferred)
Preferred Experience:
- Integration with on-prem FortiGate firewalls in hybrid cloud architecture