Overview
M42 delivers comprehensive healthcare services across the full continuum of care; from primary care to advanced specialty treatments. Leveraging cutting‑edge health technologies and precision medicine, we ensure the highest standards of effectiveness, efficiency, and patient‑centered outcomes. With a global presence spanning more than 480 facilities in 27 countries and a dedicated workforce of over 20,000 professionals, M42 is uniquely positioned to redefine the future of healthcare on a global scale.
We are looking for a highly experienced Network & Security Engineer with deep expertise in enterprise wireless, next‑generation security platforms, and cloud networking. This role requires strong architectural capabilities, hands‑on troubleshooting skills, and the ability to lead complex deployments across on‑prem and cloud environments. The ideal candidate will be part of M42 network Security team driving design standards, ensuring security best practices, and supporting large‑scale enterprise infrastructure with a focus on multi‑vendor networking, and cloud‑integrated security solutions.
Responsibilities- This role requires engineer with strong implementation and operational experience with ability to handle high priority incidents, complex architecture and network deployments.
- Periodic Standby Support (post office hours and during weekends – likely once in a month) will be in scope.
- Design and architect scalable, secure, and high‑performance network solutions across campus, branch, and cloud environments.
- Lead wireless architecture using Aruba and Cisco platforms, ensuring optimal RF design, coverage, and performance.
- Design, implement and support security architecture next‑generation firewalls, Zero Trust, and secure access solutions, DNS, web application firewalls, load balancers.
- Design hybrid connectivity models integrating on‑prem networks with Microsoft Azure.
- Act as Level 3 escalation point for complex network and security incidents.
- Lead root cause analysis (RCA) and implement preventive measures.
- Define network standards, documentation, and governance models.
- Collaborate with security, cloud, and application teams for end‑to‑end solution delivery.
- Mentor junior engineers and conduct knowledge transfer sessions.
- Participate in change management, design reviews, and capacity planning.
- Participate in security audits and remediate any risks; support software upgrades and hardware refresh for EoL devices.
- In‑scope technologies for implementation and operational support include:
- Next‑generation firewalls – preferably Palo Alto, Forti Gate.
- Load balancers, web application firewalls.
- Web Proxy, Private Access & Zero Trust solutions – preferably Zscaler, Fortigate.
- Routing & switching, enterprise wireless deployments.
- Remote Access VPNs, IPSec VPN.
- Cloud Networking (Microsoft Azure).
- Architect Azure network solutions: VNet design, subnetting, peering, and segmentation, NSG, UDR, Azure Firewall, Application Gateway, VPN Gateway and Express Route connectivity.
- Hands‑on experience with Aruba ecosystem:
Central, CPPM, Air Wave, Controllers, IAP. - Strong knowledge of RF fundamentals and troubleshooting tools.
- Experience in large‑scale enterprise wireless deployments.
- Advanced level operational skills on next‑generation firewalls.
- Forti Gate (advanced features, SD‑WAN, security profiles, Forti‑manager, Forti‑analyzer).
- Palo Alto (App‑, Threat Prevention, Wild Fire, Panorama, Global Protect, IPSec).
- Strong understanding and hands‑on experience of F5 architecture (Load balancers, HTTP profiles, LTM policies, SSL, Web application Firewall, DDOS, Brute Force, OWASP top 10).
- Zero trust architecture.
- Network segmentation and micro‑segmentation.
- Threat detection and mitigation.
- End‑to‑end deployment experience with ZIA & ZPA.
- Strong understanding of traffic forwarding, authentication, and policy control.
- Expert in L2/L3 protocols and enterprise network design.
- Strong expertise in Azure networking and hybrid architecture.
- Experience with cloud security and connectivity models.
- Experience including software upgrades, hardware refresh for EoL devices.
- Good to have knowledge of DNS, SSO, Identity.
- Necessary certifications:
Aruba: ACMP, ACCP, ACDX (preferred for architect level), Fortinet: NSE 4/7, Palo Alto: PCNSE.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).