Palo Alto Security Engineer (TS/SCI)
Reston, VA
Applications have closed
- Remote-first
- Website
- @GuidePointSec 𝕏
- GitHub
- Search
GuidePoint Security LLC
GuidePoint Security provides trusted cybersecurity consulting expertise, solutions, and services that help organizations make better decisions and minimize risk.GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation’s top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk.
Candidates MUST have an active Top Secret/SCI clearance for consideration. A CI Polygraph is preferred.
This position is 100% onsite at one of the following locations: Joint Base Anacostia Bolling (Washington DC); Reston, VA; Maryland Square, MD; Quantico, VA; Colorado Springs, CO; Waikiki, HI
Work individually or in a small integrated team, and potentially lead a task, project, or team to analyze root causes and resolve issues. Assist more senior level technicians, specialists, and managers in their activities. Provide expertise in the engineering design, development, direction, and implementation of enterprise network cyber defense capabilities. Apply familiarity with the utilization, configuration, and implementation of cyber defense capabilities, including firewalls, Host Based Security Systems, web content filters, email security capabilities, Intrusion Detection System, Intrusion Prevention System, Security Incident and Event Management tools, Domain Name System security practices, advanced log analysis, network monitoring, network flow analysis,
packet capture analysis, network proxies, anti-virus capabilities, Linux/UNIX command line, and access control lists.
What You'll Get To Do:
-
Participate on a team of skilled network security engineers responsible for the ingratiation, operations, and sustainment of a suite of enterprise class Cybersecurity technologies
-
Perform the planning and implementing policy changes on Palo Alto next generation firewalls
-
Assists in the analyses and design of a world wide network security architecture
-
Administer configuration changes on enterprise load balancers that include enterprise TLS break/inspect
-
Work focused special projects both independently and within a group
-
Participate in the investigation and documentation of security related incidents
-
Implement corrective measures in response to emerging network security threats
-
Brief senior contract leadership and government stakeholders on the current status of the enterprise network security posture
You'll Bring These Qualifications:
• 4+ years of experience with privileged and elevated access using cybersecurity tools, especially Palo Alto Firewalls
• Experience with Windows and Linux, including installing, configuring, or maintaining servers operating systems and applications
• Experience working with STIGs, SCAP, and cybersecurity best practices
• Knowledge of DoD Risk Management Framework
• Active TS/SCI clearance; willingness to take a polygraph exam
• HS diploma or GED and 7+ years of experience conducting or supporting cyber engineering projects and activities, Associate’s degree and 5+ years of experience conducting or supporting cyber engineering projects and activities,
Bachelor’s degree and 3+ years of experience conducting or supporting cyber engineering projects and activities, or Master’s degree and 1+ years of experience conducting or supporting cyber engineering projects and activities
• DoD 8570.01-M Information Assurance Technician (IAT) Level II Certification, including Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification
• Ability to obtain a DoD 8570.01-M Cyber Security Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification, within 30 days of hire
Nice to Haves:
• Trellix Endpoint Security Suite (ESS) (or former McAfee HBSS, ePO, FireEye MVX, NX, HX, PX, IA, AX, IAS PCAP), Splunk/Cribl, or ForeScout experience
• Experience with Gigamon, Ansible, Encase, Fidelis, Suricata, Varonis, or VMWare tools
• Experience with Cloud Enterprise, authorizing cloud systems, and Cloud services, including AWS, Azure, or GCP
• Experience with big data analytics, machine learning, artificial intelligence, or anomaly detection
• Experience with Zero-Trust Architecture
• Experience with DevSecOps, CI/CD, IaC and CaC, IT Infrastructure Library, and IT Service Management
• Experience scripting in PowerShell and BASH command line interfaces or in Python or Perl scripting languages
• Experience in a consulting or client-facing environment
• Ability to automate security configurations of Linux and Windows systems, and recommend and implement remediations for non-compliant security controls
We use Greenhouse Software as our applicant tracking system and Free Busy for HR screen request scheduling. At times, your email may block our communication with you. Please be sure to check your SPAM folder so that you don't miss updates on your application.
Why GuidePoint?
GuidePoint Security is a rapidly growing, profitable, privately-held value added reseller that focuses exclusively on Information Security. Since its inception in 2011, GuidePoint has grown to over 1000 employees, established strategic partnerships with leading security vendors, and serves as a trusted advisor to more than 4,200 customers.
Firmly-defined core values drive all aspects of the business, which have been paramount to the company’s success and establishment of an enjoyable workplace atmosphere. At GuidePoint, your colleagues are knowledgeable, skilled, and experienced and will seek to collaborate and provide mentorship and guidance at every opportunity.
This is a unique and rare opportunity to grow your career along with one of the fastest growing companies in the nation.
Some added perks….
- Remote workforce primarily (U.S. based only, some travel may be required for certain positions, working on-site may be required for Federal positions)
- 100% employer-paid medical premiums (employee only $0 deductible and HSA plans) along with 75% employer-paid family contributions
- 100% employer-paid dental premiums (employee only) along with 75% employer-paid family contributions
- 12 corporate holidays and a Flexible Time Off (FTO) program
- Healthy mobile phone and home internet allowance
- Eligibility for retirement plan after 2 months at open enrollment
- Pet Benefit Option
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Analytics Ansible Artificial Intelligence AWS Azure Bash Big Data CEH CHFI CI/CD Clearance Cloud CND Cyber defense Data Analytics DevSecOps DoD DoDD 8570 EnCase Endpoint security Firewalls GCP GICSP GSEC Intrusion detection Intrusion prevention IT infrastructure Linux Log analysis Machine Learning Monitoring Network security PCAP Perl Polygraph PowerShell Python Risk management RMF SCAP Scripting Splunk SSCP STIGs TLS Top Secret TS/SCI UNIX VMware Windows
Perks/benefits: Career development Flex hours Flex vacation
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.