Senior Fortinet Network Security Architect

amtex systems inc • United State
Remote
Apply
AI Summary

Design and implement secure network architecture using Fortinet stack. Collaborate with internal engineers to configure and troubleshoot network devices. Develop reusable templates and standardize FortiGates.

Key Highlights
Global infrastructure modernization on the Fortinet stack
Brake Supply integration into the HEPI network architecture
New Canada site stand-up
Key Responsibilities
Architecture review and standardization of FortiGates with reusable templates
Resolve global BGP routing gaps blocking branch-to-branch and Azure connectivity
Properly deploy FortiSASE / SWG with regional POP architecture
Technical Skills Required
FortiGate FortiSwitch FortiManager FortiSASE FortiNAC FortiAuthenticator FortiAnalyzer FortiCASB FortiDLP FortiExtender FortiAIOps ZTNA BGP routing IPSec ADVPN 802.1x RADIUS
Benefits & Perks
Long term Contract
Remote work

Job Description


Role:-Senior Fortinet Network Security Architect

Location:-Remote

Duration:-Long term Contract


Years of experience:

10+ years of senior network security architecture experience, with deep specialization across the full Fortinet stack. Al is explicit: "I don't need somebody that has dibbled, dabbled. I need somebody that is an expert."

Company initiatives

• Global infrastructure modernization on the Fortinet stack

• Brake Supply integration into the HEPI network architecture

• New Canada site stand-up (no template currently exists)

• Australia / LATAM regional integration into the centralized FortiManager management model

Key project details

• Architecture review and standardization of FortiGates with reusable templates

• Resolve global BGP routing gaps blocking branch-to-branch and Azure connectivity

• Properly deploy FortiSASE / SWG with regional POP architecture (today everything routes through a single POP)

• Stand up FortiNAC isolation, FortiAuthenticator with 802.1x (wired/wireless), and operationalize FortiCASB and FortiDLP

• Enable ZTNA with on-network bypass / off-network enforcement

• Bring FortiManager back into sync and create policy / SD-WAN / AP / extender templates with naming standards and Zero Touch Provisioning

• Enable FortiAIOps and ensure FortiAnalyzer is receiving logs from all devices

• Configure FortiExtenders centrally, FortiSwitch QoS for softphones, and 2FA on FortiGate management access

Daily activities

• Initial phase: multi-day on-site whiteboarding sessions with Al and the engineering team to lock in architecture

• Working shoulder-to-shoulder with the four internal engineers (primary, secondary, and backup ownership is assigned per Fortinet product)

• Hands-on configuration alongside the engineers — training-by-doing, not delegating to back-end work the team can't see

• Live troubleshooting on the active environment as issues come up

Remote/Hybrid

• Primarily remote with on-site requirements bookended around the architecture work. If remote, this will be done virtually.

• Initial 2–3 days on-site in Atlanta for whiteboarding the architecture with Al and the team. If remote, this will be done virtually.


Required skills

• 10+ years senior network architecture and security with deep, hands-on Fortinet expertise

• FortiGate, FortiSwitch, FortiManager, FortiSASE, FortiNAC, FortiAuthenticator, FortiAnalyzer, FortiCASB, FortiDLP, FortiExtender, FortiAIOps

• ZTNA design and rollout with on-net bypass / off-net enforcement

• Multi-site BGP routing in Fortinet environments

• IPSec / ADVPN tunnel design across globally distributed sites

• FortiSASE POP architecture, including regional POP design and on/off-network detection

• FortiManager template design (firewall policy, SD-WAN, AP/wireless, extender), Zero Touch Provisioning, and naming standards

• 802.1x / RADIUS deployment for wired and wireless, including device-port behavior (printers/video) handling


Similar Jobs

Explore other opportunities that match your interests

Senior Staff Engineer - AI Security

Cyber Security
•
2h ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

GEICO

United State
Visa Sponsorship Relocation Remote
Job Type Contract
Experience Level Mid-Senior level

talentdrift

United State

Data Security & DLP Analyst (AI Training)

Cyber Security
•
2h ago
Visa Sponsorship Relocation Remote
Job Type Contract
Experience Level Entry level

Alignerr

United State

Subscribe our newsletter

New Things Will Always Update Regularly