Tier 3 Firewall Network Engineer
Remote
US Citizens Only
- Firewall Management:
- Develop and maintain comprehensive firewall rule sets.
- Identify and implement tactics, techniques, and procedures (TTPs) for firewall security.
- Conduct vulnerability assessments and recommend security enhancements.
- Perform patch management for security tools and customer systems.
- Provide expert cybersecurity recommendations to leadership.
- Design and implement network and security configurations across various platforms.
- Execute firewall changes as per customer requirements.
- Analyze network traffic to detect anomalies and potential threats.
- Network Engineering:
- Assist with the configuration and deployment of routers and switches.
- Document and escalate security incidents, providing detailed impact assessments.
- Develop and maintain comprehensive procedural documentation.
- Train and mentor junior engineers.
- Security Architecture:
- Configure, deploy, and troubleshoot Palo Alto and Fortigate Firewall platforms.
- Configure, deploy, and troubleshoot Imperva and Fortigate Web Application Firewall (WAF) platforms.
- Collaborate effectively with technical and non-technical teams.
- Engineer and architect WAF and firewall solutions.
- Develop and maintain security design documentation.
- Integrate applications with WAF policies.
- Provide accurate and timely project reports.
- Recommend secure solutions aligned with information security standards.
- Analyze firewall configurations and rule sets.
Required Skills and Experience:
- Technical Skills:
- Firewall Expertise: In-depth knowledge of Palo Alto and Fortinet firewalls.
- Network Protocols: Strong understanding of TCP/IP, OSI model, and network security protocols.
- Security Tools: Proficiency in security tools like SIEM, IDS/IPS, and vulnerability scanners.
- Scripting: Experience with scripting languages (e.g., Python, PowerShell) for automation.
- Cloud Technologies: Familiarity with cloud platforms (e.g., AWS, Azure) and cloud security.
- Certifications:
- Mandatory: One or more technical security certifications (e.g., CCNP Security, Fortinet NSE).
- Preferred: Vendor-neutral certifications (e.g., Security+, CISM, CISSP).