RecruitGo logo

Senior FortiGate SD-WAN and Network Security Engineer Platform Lead

RecruitGo

Quezon City, Metro Manila, PhilippinesHybridJobNo compensation foundPosted 1w agoVerified open 1w ago

Most applications go out cold — see where you stand first. No sign-up to start.

At a glance

Compensation
No compensation found
Location
Quezon City, Metro Manila, PhilippinesHybrid
Work Authorization
Not specified

Job overview

RecruitGo is hiring a Senior FortiGate SD-WAN and Network Security Engineer Platform Lead. RecruitGo seeks a senior, hands‑on FortiGate SD‑WAN and Network Security Engineer to lead architecture, deployment, optimisation and operational support of complex Fortinet environments for enterprise and service‑provider networks.

Key focus areas include Design, implement, optimise, and support enterprise‑grade Fortinet security and SD‑WAN solutions, Act as technical authority and escalation point for the Fortinet platform, and Manage large‑scale FortiGate deployments across multiple VDOMs and FortiManager ADOMs.

Successful candidates bring 7+ Years Network Engineering Experience, Cisco CCNP Certification, and Must Be Comfortable US Central Time Schedule. Important skills include Fortinet SD-WAN, FortiGate, BGP, OSPF, EIGRP, and VLANs. Preferred (not required): FortiManager, FortiAnalyzer, FortiSASE, and FortiAuthenticator.

Skills & qualifications

RequiredNice to have

Skills

Fortinet SD-WANFortiGateFortiManagerFortiAnalyzerBGPOSPFEIGRPVLANsVPNsRouting and SwitchingSD-WAN TechnologiesNetwork SecurityFirewallsHigh AvailabilityNetwork RedundancyData Center NetworkingMSP ExperienceNetwork Architecture DesignTechnical DocumentationTroubleshootingAnalytical SkillsProblem SolvingCommunication SkillsFortiSASEFortiAuthenticatorMulti-Site Enterprise NetworksHybrid InfrastructureFortiGate FirewallsFortiOSFortinet Secure SD-WANMulti-VDOM EnvironmentsMulti-ADOM ArchitecturesMulti-Tenant Network Security PlatformsECMPStatic RoutingIPsec VPNsADVPNSSL InspectionAdvanced Security ProfilesApplication ControlIntrusion PreventionAntivirusWeb FilteringSecure SegmentationZero Trust AccessTCP/IPLayer 2 NetworkingLayer 3 NetworkingVPN TechnologiesNetwork Security PrinciplesDIA ConnectivityBroadband ConnectivityLTE ConnectivityCloud ConnectivityHybrid ConnectivityAzureAWSFortiGate CLI TroubleshootingCommunicationFortiNACFortiSIEMCisco Data-Centre Networking TechnologiesREST APIsPythonAnsibleTerraformInfrastructure as Code

Qualifications

10+ Years Network Engineering Experience10+ Years Network Security Engineering ExperienceFortinet NSE 7 Secure Networking or SASE CertificationFortinet NSE 8 CertificationLegacy FCSS or FCX CertificationCCNP Security CertificationCCIE Security Certification

Full job description

About Us:

RecruitGo is a leading Employer of Record (EOR) company specializing in bridging top talent in emerging markets with global clients. Our services enable businesses to hire, manage, and pay employees internationally with ease. We are committed to providing seamless and efficient solutions to our clients and fostering a dynamic and inclusive work environment for our team.

Position Overview

We are seeking an accomplished Senior FortiGate SD-WAN and Network Security Engineer to act as the technical lead for our network security platform.

This is a senior, hands-on engineering role responsible for the architecture, deployment, optimisation, and operational support of complex Fortinet environments across enterprise and service-provider networks.

The successful candidate will bring deep expertise in FortiGate SD-WAN, advanced security services, routing, and large-scale multi-VDOM and multi-ADOM environments. You will provide technical leadership, establish engineering standards, mentor other team members, and take ownership of complex problems through to resolution.

Responsibilities

  • Design, implement, optimise, and support enterprise-grade Fortinet security and SD-WAN solutions.

  • Act as the technical authority and escalation point for the Fortinet platform.

  • Manage large-scale FortiGate deployments across multiple VDOMs and FortiManager ADOMs.

  • Architect secure, resilient, and scalable multi-tenant network environments.

  • Lead FortiManager and FortiAnalyzer administration, policy management, reporting, and automation.

  • Deploy and optimise FortiGate SD-WAN across DIA, broadband, LTE, cloud, and hybrid connectivity.

  • Configure, support, and troubleshoot:

  • BGP, OSPF, static routing, and ECMP

  • IPsec VPNs and ADVPN

  • High Availability

  • SSL inspection and advanced security profiles

  • Application control, intrusion prevention, antivirus, and web filtering

  • Secure segmentation, multi-tenancy, and Zero Trust access

  • Lead advanced troubleshooting of complex routing, security, availability, and performance issues.

  • Perform root-cause analysis and implement permanent corrective actions.

  • Establish platform standards, engineering procedures, operational runbooks, and support documentation.

  • Provide technical mentorship and escalation support to junior engineers and operational teams.

  • Lead or contribute to architecture reviews, technical projects, change management, and incident response.

  • Collaborate with clients, vendors, technical teams, and internal stakeholder on solution delivery.

  • Plan platform upgrades, capacity requirements, lifecycle activities, and security-hardening initiatives.

  • Identify opportunities to automate configuration, deployment, validation, and reporting processes.

Essential Skills and Experience

  • At least 10 years of network or network-security engineering experience.

  • Extensive hands-on expertise with:

  • FortiGate firewalls

  • FortiManager

  • FortiAnalyzer

  • FortiOS

  • Fortinet Secure SD-WAN

  • Proven experience managing large-scale:

  • Multi-VDOM environments

  • Multi-ADOM architectures

  • Multi-tenant network-security platforms

  • Advanced knowledge of routing and switching, including BGP, OSPF, ECMP, and route control.

  • Strong experience with enterprise firewall architecture and policy design.

  • Deep understanding of TCP/IP, Layer 2 and Layer 3 networking, VPN technologies, segmentation, and network-security principles.

  • Experience designing resilient connectivity across DIA, broadband, LTE, cloud, and hybrid environments.

  • Hands-on experience integrating network-security services with Microsoft Azure and AWS.

  • Strong FortiManager, FortiAnalyzer, and FortiGate CLI troubleshooting capabilities.

  • Proven ability to diagnose complex technical issues and take ownership through to resolution.

  • Experience creating technical standards, diagrams, procedures, and operational documentation.

  • Strong written and verbal communication skills.

  • Ability to explain complex technical matters clearly to clients, stakeholders and support teams.

Desirable Experience

  • Experience with the following would be highly regarded:

  • FortiSASE

  • FortiAuthenticator

  • FortiNAC

  • FortiSIEM

  • Cisco data-centre networking technologies

  • Large enterprise, service-provider, or managed-service-provider environments

  • Automation using REST APIs, Python, Ansible, or Terraform

  • Infrastructure as Code and configuration-management practices

  • ITIL-aligned incident, problem, change, and service-management processes

  • Network monitoring, capacity management, and performance analytics

  • Zero Trust and Secure Access Service Edge architectures

Preferred Certifications

  • Current recently active certifications in the following areas will be highly regarded:

  • Fortinet NSE 7 in Secure Networking or SASE

  • Fortinet

  • NSE 8Relevant Fortinet SD-WAN, enterprise firewall, or secure-networking certifications

  • Legacy FCSS or FCX certifications

  • CCNP Security

  • CCIE Security

  • Equivalent experience and demonstrable expertise will also be considered.

Ideal Candidate

You are a senior engineer who thrives in complex enterprise and service-provider environments. You combine deep Fortinet expertise with strong routing, security, and architectural knowledge.

You are comfortable leading operational and project-based initiatives, establishing technical standards, mentoring other engineers, and acting as the final escalation point for difficult problems. You take ownership, communicate clearly, and remain methodical during high-impact incidents.

You will also be able to demonstrate:

  • Strong technical leadership without losing your hands-on engineering focus.

  • A methodical and evidence-based approach to troubleshooting.

  • Confidence working directly with clients, vendors, and senior stakeholders.

  • Pride in producing secure, supportable, and thoroughly documented solutions.

  • The ability to balance immediate operational demands with long-term platform improvements.

Why RecruitGo?

RecruitGo seamlessly links world-class business partners with top-tier global talent in emerging markets. Secure legal employment through our Employer of Record services and embark on a journey to unparalleled professional opportunities.

  • Working Arrangement: 100% office-based in BGC, Taguig — this is not a hybrid role.

  • Shift: Two shifts will be provided for full US Central Time coverage: 6:00 AM – 3:00 PM and 11:00 AM – 8:00 PM ( Both shifts include a 1-hour unpaid lunch break).

  • Employees must be comfortable working US-based schedules and following the assigned shift.

  • Diverse Challenges: Each day offers fresh opportunities and unique challenges that keep your work engaging and rewarding. 

  • Team Collaboration: Join forces with a supportive team, where your insights and contributions are valued.

  • Inclusivity: Be part of an inclusive and diverse workplace that values your contributions. Work with the internal team to ensure timely delivery of services to clients and ensure that client expectations are met.

You've read the whole posting — now see how you match it.