Senior Firewall Engineer (Palo Alto)
Washington, District of Columbia, United States
American Operations Corporation
American Operations Corporation (AOC) is a Service-Disabled Veteran-Owned Small Business (SDVOSB) headquartered in Reston, Virginia. Our business model provides for an enterprise platform that leads all capture and proposal effortsWe are seeking an experienced Senior Firewall Engineer with deep expertise in Palo Alto Networks firewalls to design, implement, and manage advanced network security solutions. The ideal candidate will be responsible for ensuring the security, performance, and reliability of our network infrastructure by leveraging Palo Alto firewall technologies and best practices. This role requires strong technical expertise, problem-solving skills, and the ability to collaborate with cross-functional teams to safeguard the organization’s network environment.
Key Responsibilities:
- Firewall Design & Implementation: Architect, configure, and deploy Palo Alto Networks firewalls (physical and virtual, including PA-Series, VM-Series, and Panorama) to meet organizational security and performance requirements.
- Policy Management: Develop, implement, and maintain firewall policies, rules, and security profiles to enforce access controls, threat prevention, and compliance with industry standards (e.g., PCI-DSS, HIPAA, NIST).
- Network Security Operations: Monitor, troubleshoot, and optimize firewall performance, ensuring high availability, low latency, and robust security across the network.
- Threat Prevention: Configure and manage advanced Palo Alto features such as URL filtering, WildFire, GlobalProtect VPN, IPS/IDS, and application-based policies to mitigate cyber threats.
- Incident Response: Investigate and respond to security incidents, perform root cause analysis, and implement corrective actions to prevent recurrence.
- Automation & Scripting: Utilize scripting (e.g., Python, PowerShell) and automation tools to streamline firewall management, policy updates, and reporting processes.
- Collaboration: Work closely with network engineers, security analysts, and IT teams to integrate Palo Alto firewalls with other systems, such as SD-WAN, cloud platforms (AWS, Azure, GCP), and SIEM solutions.
- Documentation & Training: Maintain detailed documentation of firewall configurations, policies, and procedures. Provide training and mentorship to junior team members.
- Compliance & Auditing: Ensure firewall configurations align with regulatory requirements and participate in security audits and assessments.
- Upgrades & Maintenance: Plan and execute firmware upgrades, patch management, and system migrations for Palo Alto firewalls and Panorama.
- Vendor Interaction: Collaborate with Palo Alto Networks support and account teams to resolve complex issues and stay updated on product enhancements.
Requirements
- Minimum of 5-7 years of experience in network security, with at least 3 years focused on Palo Alto Networks firewalls.
- Certifications: Palo Alto Networks Certified Network Security Engineer (PCNSE) required. Additional certifications such as CCNP Security, CISSP, or equivalent are a plus.
- Technical Skills:
- In-depth knowledge of Palo Alto Networks firewall platforms (PA-Series, VM-Series, Panorama).
- Expertise in firewall policy management, NAT, VPN (IPsec/SSL), App-ID, User-ID, and threat prevention.
- Strong understanding of networking protocols (TCP/IP, BGP, OSPF, VLANs, etc.) and network architecture.
- Proficiency in scripting (Python, PowerShell, or similar) for automation.
- Familiarity with cloud security (AWS, Azure, GCP) and SD-WAN integration.
- Soft Skills: Excellent problem-solving, communication, and teamwork skills. Ability to work under pressure and manage multiple priorities.
- Education: Bachelor’s degree in Computer Science, Information Technology, or a related field (or equivalent experience).
Preferred Qualifications:
- Experience with Palo Alto Networks Prisma Access or Prisma Cloud.
- Knowledge of other firewall platforms (e.g., Cisco ASA, Fortinet, Check Point).
- Familiarity with SIEM tools (e.g., Splunk, QRadar) and network monitoring solutions.
- Experience in a highly regulated industry (e.g., finance, healthcare, government).
Working Conditions:
- May require occasional on-call support for critical incidents.
- Ability to work in a fast-paced, dynamic environment.
Benefits
- Competitive salary commensurate with experience.
- Comprehensive health benefits package
- 401(k) with company match.
- Paid time off and holidays.
American Operations Corporation is an EEO employer and does not discriminate on the basis of race, religion, disability, veteran status, gender or sexual orientation.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Audits Automation AWS Azure CCNP CISSP Cloud Compliance Computer Science Finance Firewalls GCP HIPAA IDS Incident response IPS Monitoring Network security NIST PowerShell Python QRadar Scripting SIEM Splunk TCP/IP VPN
Perks/benefits: 401(k) matching Competitive pay Health care
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.