Network Engineer
About Capgemini
Capgemini is a global business and technology transformation partner, helping organizations to accelerate their dual transition to a digital and sustainable world, while creating tangible impact for enterprises and society. It is a responsible and diverse group of 340,000 team members in more than 50 countries. With its strong over 55-year heritage, Capgemini is trusted by its clients to unlock the value of technology to address the entire breadth of their business needs. It delivers end-to-end services and solutions leveraging strengths from strategy and design to engineering, all fueled by its market leading capabilities in AI, generative AI, cloud and data, combined with its deep industry expertise and partner ecosystem. The Group reported 2024 global revenues of €22.1 billion.
This will be a 1 year contract role.
Responsibilities
Preventive Maintenance for Network & Security Equipment
- Perform quarterly preventive maintenance (PM) for Network & Security Equipment
- Update and submit checklist after PM
- Conduct Vulnerability assessment using Nessus
- Validate scan completion and analyse findings
- Perform remediation planning and coordination
- Security Hardening and Configuration Review
- Remediation validation
- Reporting & Documentation for VAPT
Quarterly Compliance Check
- Conduct vulnerability assessment on the systems across all sites using Nessus
- Perform remediation planning and coordination with Level 2 engineers
IM8 Governance Compliance
- Ensure day-to-day operations comply with IM8 ICT Security Standards
- Support security assessments with Authority
- Maintain audit-ready documentation
- Support IM8 policy enforcement example patching SLAs
Firewall Operations
- Manage policies, and troubleshoot traffic issues
- Support IPS/Threats modules
- Support logs extraction
- Perform firmware updates, patches, security fixes and vulnerability remediation
- Maintain up-to-date configurations
Hardware Security Module
- Monitor HSM health and readiness
- Understand and able HSM to support cryptographic operations under strict governance and dual control
- Review and maintain HSM logs
- Manage HSM key management operation
- Perform firmware updates, patches, security fixes and vulnerability remediation
SIEM Monitoring
- Configure SIEM to show high severity events as alerts on the dashboard
- Identify unusual patterns, anomalies, and suspicious events in the logs
- Ensure all critical systems send security logs to the SIEM
- Tuning and optimization of SIEM rules
- Develop and maintain / optimize dashboard for real-time display of alerts
- Perform firmware updates, patches, security fixes and vulnerability remediation
Aruba Clearpass Monitoring
- Manage and maintain ClearPass Access Control policies
- Integrate Aruba Clearpass with Network infrastructure
- Maintain up-to-date configurations
- Perform firmware updates, patches, security fixes and vulnerability remediation
Samsung Knox MDM
- Onboard new devices into Samsung Knox
- Configure and maintain MDM policies
- Manage approved application via Knox
- Monitor device compliance dashboard
- Manage deployment of certificates and rotation of certificates on the mobile devices
- Maintain accurate record of mobile device lifecycle management
- Perform application patches, security fixes and vulnerability remediation
- Maintain up-to-date configurations
Incident & Problem Management
- Resolve P1/P2 issues within SLA
- Perform resolution and communications
- Perform root cause analysis and recommend permanent fixes
- Escalate unresolved issues that required software coding to Level 3 or engineering teams
- Ensure proper closure of incident and problem
Change Management
- Perform operational impact assessment
- Present change in Change Advisory Board
- Pre-Change Preparation such as review Change Request and Release Plan
- Documentation update in the knowledge base
- Post change review and feedback
Patch Management
- Perform patch management readiness
- Stakeholder coordination and team coordination
- System Readiness and Post-Patch Validation
- Documentation update and knowledge transfer
- Compliance and audit readiness
Documentation and Compliance
- Operational documentation. SOPs, Incident response checklist, RCA, PIR, monitoring and alert guidebook
- Configuration & Infrastructure Documentation. System configuration baseline, application dependency maps, environment inventories such as hosts, services, accounts
- Knowledge Base Articles for level 2 enablement and faster resolution e.g. Known Errors and Fixes, Frequent How-To Guides, Script Repositories, Lessons Learned
- Maintain application documentation
- Knowledge Management
Configuration Management
- Perform validation and accuracy of configurations
- Maintain readiness of operational documentation
- Perform audit to confirm compliance of configurations
- CMDB asset verification
- Change-linked configuration tracking
- Ensure environment consistency between DEV – IVVQ – ISO-PROD – UAT and PROD
Testing and Verification
- Ensure operational readiness testing before production deployment rollout
- Ensure post-change verification coordination
- Perform regression and sanity test following patching or upgrades, in UAT and PROD
- Participation in user acceptance testing
Knowledge Management
- Documentation of resolution
- Knowledge Base Contribution
- Validation of knowledge
- Subject Matter Expertise Sharing
Root Cause Analysis
- Gather logs, system metrics at the time of failure
- Reproduction of issues in a controlled environment to understand the conditions under which it occurs
- Determine the scope and severity in terms of the systems affected, downtime duration and business impact
- Narrow down the possible sources of causing the failure
- Use of diagnostic tools such to analyse the application behaviour
- Correlation of events to sequence the chain of events leading up to the failure and identify the dependencies
- Require rotational on-call duty support
- Available for graveyard hours change request deployment as scheduled
Education and Experience
- Diploma / Bachelor Degree in Cybersecurity, Information Technology, Computer Science, Engineering, or a closely related discipline
- At least 2-5 years in Level 2 support for mission critical 24x7 production support, preferably in public sector
- Proven experience in handling P1/P2 incidents, managing post-incident reviews (PIRs) and root cause analysis
- Preferably certification in Check Point / Palo Alto firewall, Cisco CCNA, Aruba, LogRhythm Analyst
- Strong understanding of IM8 compliance reporting, audit evidence and configuration traceability
Knowledge/ Skills
- Networking Fundamentals
- Firewall / Aruba Fundamentals
- Nessus for vulnerability scanning
- CIS-CAT Pro for security configuration compliance
- Symantec Endpoint Protection Manager
- Hardware Security Module (the client / Safenet)
- LogRhythm SIEM
- Samsung Knox MDM
- Aruba ClearPass Network Access Control
- Cisco Switches, Wireless LAN Controller, Prime/DNA Center, IPS
- Cisco CMX / DNA Spaces
- IM8 Security Standards
Let's talk about what's in it for you!
Passionate people are Capgemini's Ace of Spades - join us to discover a career that will challenge, support and inspire you. Working at Capgemini you'll find the rewards are more than just financial. You will work alongside some very smart and inspiring people on exciting projects and you will also enjoy incredible benefits. We offer flexible work practices and 40 hours of self-development every year with a huge selection of learning opportunities to choose from.
As "Architects of Positive Futures", Capgemini actively supports the community in 3 ways:
Diversity and Inclusion - we believe diversity of thought fuels excellence and innovation, which is why we positively encourage applications from suitably qualified candidates regardless of their gender identity, ethnicity, sexual orientation, religion, ability, intersex status or age. To support our commitment to diversity and inclusion, we celebrate special events and days of significance that are important to our employees such as Diwali, Bastille Day, Pride, IDAHOBIT, IWD and International day of people with Disabilities. Our Employee Resource Groups Women@Capgemini and OutFront support the grassroots passion of employees to drive our diversity agenda and effect change.
Digital inclusion - at Capgemini we are using our skills to drive social impact initiatives focusing on helping society address the impact of the digital and automation revolution. We also provide employees with opportunities to give back to the community through charity projects and volunteer days.
Environmental Sustainability - Capgemini joined the CDP's (Carbon Disclosure Project) prestigious "A list" for its commitment to the Net-Zero economy. We are focusing on helping our clients transform towards more sustainable business models and committing to reduce our own carbon emissions (GHG) by 20% per employee by 2020.
Recognized by Ethisphere as one of the World's Most Ethical Companies for the last 8 years in a row, ethics and values are at the heart of Capgemini's corporate culture and business. Embedded in our DNA, our seven values - Honesty, Boldness, Trust, Team Spirit, Freedom, Fun and Modesty - have remained the same since company inception in 1967. To see how we bring these values to life, click here to listen to some of our employee’s stories.
Come join us, bring your whole self to work, create new possibilities for you, your customers and your community and help us to be Architects of Positive Futures.
Singapore, SG