Python & Network (Porto, +9 anos)
Indexed description
🚀 About the Role
We are looking for a Senior Python Developer with strong Network Security expertise to join our Network Security Development team.
You will help accelerate the development of a self-service platform for firewall flow management, automating the complete lifecycle of firewall requests, from validation and approval to provisioning and rollback.
This role is ideal for a senior professional who combines advanced Python and Django development skills with hands-on knowledge of Fortinet FortiGate, FortiManager, and VMware NSX-T. You will build secure and scalable automation workflows that allow teams to manage network access efficiently while maintaining strict security, compliance, and operational resilience standards.
🎯 Your Mission
As a Senior Network Security Automation Engineer, you will:
- Develop a secure self-service platform for managing firewall flow openings.
- Automate the request, validation, approval, provisioning, and rollback of firewall rules.
- Integrate the platform with Fortinet and VMware network security environments.
- Reduce manual intervention while improving delivery speed, traceability, and consistency.
- Ensure that every change is validated against internal security and compliance policies.
- Build resilient automation capable of handling failures without disrupting production traffic.
- Transfer the solution effectively to internal Network Security Operations teams.
💼 Key Responsibilities
Automation Workflow Development
- Design, build, and optimize end-to-end automation workflows using Python and Django.
- Automate the complete lifecycle of firewall flow requests, including:Request submission
- Technical and policy validation
- Approval workflows
- Firewall rule provisioning
- Execution tracking
- Failure handling and rollback
- Build reusable and maintainable backend services that support scalable network operations.
- Automate repetitive security and infrastructure tasks while maintaining appropriate controls and auditability.
API Development & Integration
- Develop scalable and secure APIs using Django REST Framework or equivalent technologies.
- Build and maintain API connectors for:FortiManager
- FortiOS
- VMware NSX-T Manager
- Automate firewall policies, address objects, network services, and security groups.
- Work with FortiManager JSON-RPC and REST APIs.
- Integrate with the NSX-T Policy API.
- Ensure API integrations are reliable, observable, secure, and resilient to partial failures.
Validation, Recovery & Operational Safety
- Implement dry-run capabilities to validate changes before production deployment.
- Develop pre-change controls covering:Syntax validation
- Policy validation
- Conflict detection
- Duplicate rule detection
- Dependency verification
- Design safe rollback and recovery mechanisms.
- Apply idempotency principles to prevent duplicated or inconsistent configurations.
- Ensure failed operations do not cause disruption to production traffic.
- Provide clear execution status, error handling, logging, and audit trails.
Security, Quality & Compliance
- Ensure all generated firewall rules comply with internal security policies and applicable control standards.
- Develop comprehensive unit and integration tests for automation workflows and API connectors.
- Validate security rules before provisioning them in production environments.
- Participate in code reviews and promote secure software development practices.
- Contribute to the identification and remediation of technical and security risks.
- Ensure that automation improves delivery speed without weakening governance or security controls.
CI/CD & Engineering Practices
- Contribute to the design and improvement of CI/CD pipelines.
- Automate testing, validation, packaging, and deployment processes.
- Apply Infrastructure as Code principles where appropriate.
- Use version control and collaborative development workflows to maintain code quality and traceability.
- Promote coding standards, reusable components, peer reviews, and continuous improvement.
Documentation & Knowledge Transfer
- Produce and maintain clear technical documentation covering:Application architecture
- Automation workflows
- API contracts
- Security controls
- Deployment procedures
- Operational support processes
- Failure recovery mechanisms
- Support knowledge transfer to internal Network Security Operations teams.
- Provide the guidance required for internal teams to operate, maintain, and evolve the platform autonomously.
✅ What We’re Looking For
Mandatory Requirements
- Senior-level experience in Software Engineering, Backend Development, or Automation Engineering.
- Advanced proficiency in Python 3.
- Strong hands-on experience with Django and preferably Django REST Framework.
- Proven experience developing REST APIs and backend automation services.
- Strong understanding of enterprise Network Security concepts.
- Hands-on experience with Fortinet FortiGate and FortiManager.
- Strong knowledge of VMware NSX-T architecture and security capabilities.
- Experience automating firewall rules and network security configurations through APIs.
- Solid understanding of routing, switching, network zoning, and micro-segmentation.
- Experience developing automated tests and integrating them into software delivery pipelines.
- Strong analytical, troubleshooting, and problem-solving capabilities.
- Ability to work effectively with Software Engineering, Network Security, Infrastructure, and Operations teams.
🛠 Technical Stack
Backend Development
- Python 3
- Django
- Django REST Framework
- REST APIs
- JSON-RPC
- Scalable Backend Architecture
- Asynchronous Processing
Asynchronous Operations
- Celery
- Redis
- Background Task Processing
- Long-Running Network Operations
- Retry and Failure Management
Network Security
- Fortinet FortiGate
- FortiOS
- FortiManager
- VMware NSX-T
- NSX-T Policy API
- Firewall Policy Automation
- Address Objects
- Security Groups
- Network Zoning
- Micro-Segmentation
Networking
- Enterprise Routing
- Switching
- Firewall Flows
- Network Segmentation
- Network Services
- Security Policy Management
CI/CD & Automation
- Git
- GitLab CI
- GitHub Actions
- CI/CD Pipelines
- Infrastructure as Code
- Deployment Automation
Quality & Resilience
- Unit Testing
- Integration Testing
- API Testing
- Dry-Run Validation
- Idempotency
- Conflict Detection
- Rollback Mechanisms
- Logging and Auditability
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search