Principal Security Engineer (Palo Ato Strata Cloud)
Role details
Job location
Tech stack
Job description
Navy Federal Credit Union is seeking a Principal Security Engineer to maintain and support the Palo Alto Prisma Access environment using Strata Cloud Manager and strategies to ensure the cybersecurity posture of the systems is scalable and effective across the organization. Additionally, this position will provide cybersecurity engineering support to research, evaluate, design, implement, and maintain system and product solutions, applying knowledge of engineering principles. To provide technical direction and engineering support for projects and infrastructure. Develop and maintain expert functional knowledge of evolving IT engineering industry technologies/competition, concepts, and trends., * Remain available for on-call support for major outage issue related to the Palo Alto Strata Cloud Manager.
- Highly proficient on the architecture, design, and deployment of Palo Alto Strata Cloud Manager product.
- Maintain Palo Alto Prisma Access environment using Strata Cloud Manager.
- Integration development of the Prisma Access with other cyber security solutions.
- Functions as a liaison between Navy Federal Credit Union and Palo Alto Support.
- Engage in technical design of solutions based on use cases and business requirements.
- Participate in proof of concepts and other technical evaluations of technologies, designs and solutions and provide recommendations.
- Stay abreast of emerging technologies and threats proactively assess and evaluate the adoption thereof into the organization.
- Supporting the development of cybersecurity requirements, design & architecture artifacts, plans and policies.
- Supporting defining security development and test efforts implementation of security controls of networking devices, databases, operating systems and hardware and software components.
- Understanding and integrating cybersecurity development activities.
- Performing analysis on cybersecurity data and test results.
- Be part of team that design, protects and manages, security services for companies' global security infrastructure.
- Able to demonstrate strong written, oral and presentation skills with the ability to discuss highly technical concepts to all audiences, ranging from non-technical people to executive level technical decision-makers.
- Able to listen and collaborate with audiences ranging from IT administrators to executive level stakeholders to understand their requirements and position our tools to fulfill those requirements.
- Demonstrates the ability to confidently lead discussions on engineering solutions and provide clear, strategic recommendations on solutions and direction.
- Must be self-motivated and self-educating, yet willing and able to work collaboratively.
Requirements
- Bachelor's Degree in Computer Science, Information Technology or the equivalent combination of training, education, and experience.
- At least 10+ years of total experience in cybersecurity engineering, on premise and cloud architectures, proxy management, cloud governance and security controls.
- At least 5+ years of direct hands-on experience in Palo Alto Strata Cloud Manager/Panorama and similar leading technology.
- At least 3+ years of direct hands-on experience in tuning network sensors like IDS/IPS, DDOS, Cloud Security services.
- Domain expertise of network security sensors such as IDS, cloud access security broker (CASB), Virtual Network security, DDOS protections, DNS, etc.
- Detail understanding of Virtual Network Technologies Routers, switches, Load Balancers, firewalls, proxy, etc.
Desired Qualifications
- Good understanding and exposure to Cloud standards, architecture and models.
- Detail proficiency with Linux (or similar) operating systems.
- In depth understanding of TCP/UDP/ICMP/IP protocols.
- PowerShell and Python experience.
- Experience with Splunk.
- Experience with PKI, SSL, SSH, HTTPS, etc.
- Experience with industry leading firewalls, proxy and load balancing solutions.
- Experience with network security concepts and principles.
- Experience with Server and endpoint operating system security.
- Experience with Azure cloud, Cloud Proxy, SASE, SD-WAN, Web Isolation, Zero Trust Network Access
- CISSP, CCNP Security Certification, or other relevant Palo Alto Certifications.