nexuscorp

Network Security Engineer

nexuscorp

Tokyo, TokyoPermanentPosted Apr 22, 2026

Job description

Key Responsibilities

  1. Prisma Access Operations Monitor and maintain a single-tenant Prisma Access deployment using Panorama and Prisma Access portals Manage Global. Protect configurations, user onboarding, authentication issues, and agent connectivity Implement standard security policy changes, URL filtering updates, App-ID tuning, and rule management Perform basic troubleshooting of tunnels, portals, gateways, configuration sync, and service health
  2. Incident Management(L1 / L2) Triage and resolve incidents through Service. Now, aligned with defined SLAs and ITIL processes Analyze security, traffic, and tunnel logs via Cortex Data Lake and Panorama Logging Service Independently handle P3 / P4 incidents and support senior engineers on P1 / P2 issues Clearly communicate incident status, impact, and resolution to stakeholders
  3. Change & Maintenance Activities Execute security policy changes, address objects, and rule updates under strict MOP / Change Management controls Support planned maintenance windows, content/antivirus updates, and minor platform upgrades Ensure proper documentation, rollback planning, validation steps, and post-change reporting
  4. Platform Monitoring & Reporting Monitor Prisma Access gateway and portal health, license consumption, bandwidth usage, and capacity metrics Generate operational and security reports using Cortex Data Lake and Splunk Conduct daily health checks and provide clear shift handover documentation
  5. Documentation & Compliance Maintain and update SOPs, runbooks, knowledge articles, and incident records Keep accurate configuration records and audit artifacts for compliance and customer reviews Adhere strictly to internal security governance and ITIL-aligned operational processes Required Skills & Experience: Professional Experience 2–4 years of experience in network, security, or infrastructure operations (NOC / SOC / Infra Ops) Core Technical Knowledge TCP/IP, subnetting, routing fundamentals, DNS, DHCP NAT, VPN fundamentals, SSL/TLS concepts Firewall policy logic and rule evaluation order Palo Alto / Security Platform Exposure Palo Alto Panorama basics(device groups, templates) Global. Protect user connectivity and troubleshooting workflows Prisma Access architecture(tenant, portal, gateway concepts) Experience using Service. Now for incident and change management Basic experience with Cortex Data Lake queries and Splunk searches Operational & Troubleshooting Skills Ability to logically isolate issues across network, authentication, policy, and client layers Fact-based log analysis rather than assumption-driven troubleshooting Ability to escalate with clear reproduction conditions and findings OS / Platform Fundamentals Basic Linux knowledge (log concepts, basic command familiarity) Basic Windows knowledge related to certificates, proxies, and endpoint connectivity Customer-Facing & Professional Skills: Clear and polite Japanese business communication (email, chat, meetings) Ability to explain incidents, changes, and limitations in a structured manner (Conclusion → Impact → Action → Next Steps) Strong sense of operational responsibility and risk awareness Calm, professional behavior during incidents and service disruptions Ability to maintain accurate records and explain past actions when required Education:
  • Bachelor’s degree required. Language Requirements: Japanese: Native-level proficiency (Customer communication, documentation, meetings) English: Business-level proficiency (Global team collaboration, vendor communication, documentation) Certifications & Nice-to-Have Skills: Certifications(Preferred) Palo Alto Networks: PCCSA, PCNSA Security / Governance: CISSP, CISM, CISA ITIL Foundation Certifications are not mandatory; equivalent hands-on experience and security mindset are acceptable. Additional Skills(Nice to Have: Knowledge of authentication protocols (SAML, LDAP, RADIUS) Cloud fundamentals (Azure / AWS basics) Basic scripting (Python / Power. Shell) for operational efficiency Exposure to traffic analysis tools, packet captures, or firewall audit