Senior Firewall Engineer with Security Clearance
Role details
Job location
Tech stack
Job description
RESPONSIBILITIES: Security Architecture: Design and deploy comprehensive network security solutions, including firewalls, VPNs, and advanced threat protection across physical and cloud-based infrastructures. Firewall Administration: Develop and enforce firewall rules and policies. Manage the full hardware/software lifecycle, including upgrades, patches, and configuration backups. Enterprise Modernization: Provide expert engineering to secure virtual and non-virtual systems within secure enclaves and AWS GovCloud environments. Incident Response: Monitor network traffic for vulnerabilities, respond to security alerts, and collaborate with security operations teams to improve the overall defensive posture. Capacity Planning: Conduct load balancing assessments and capacity planning to ensure efficient data flow and interoperability across the enterprise. Technical Integration: Direct the testing and integration of routers, switches, and gateway servers to ensure operability and security, RESPONSIBILITIES: Security Architecture: Design and deploy comprehensive network security solutions, including firewalls, VPNs, and advanced threat protection across physical and cloud-based infrastructures. Firewall Administration: Develop and enforce firewall rules and policies. Manage the full hardware/software lifecycle, including upgrades, patches, and configuration backups. Enterprise Modernization: Provide expert engineering to secure virtual and non-virtual systems within secure enclaves and AWS GovCloud environments. Incident Response: Monitor network traffic for vulnerabilities, respond to security alerts, and collaborate with security operations teams to improve the overall defensive posture. Capacity Planning: Conduct load balancing assessments and capacity planning to ensure efficient data flow and interoperability across the enterprise. Technical Integration: Direct the testing and integration of routers, switches, and gateway servers to ensure operability and
Requirements
before deployment. Mentorship & Documentation: Maintain meticulous network records (topologies, ACLs, blueprints) and provide technical guidance and mentoring to junior engineering staff. REQUIRED QUALIFICATIONS: (SKILLS/EDUCATION): BA/BS in IT, Cybersecurity, Computer Science, or a related field: additional 4 years of relevant experience may be considered in lieu of a degree. 14+ years of relevant network security and engineering experience. Proficient in Cisco and Palo Alto firewall platforms. Proven experience with Cloud Security (specifically AWS GovCloud). Advanced knowledge of routing/switching, IP addressing, and Virtual Private Networks. Deep understanding of government security standards and industry best practices. Must hold at least one valid IAT Level II certification (e.g., Security+ CE, CCNA-Security, CySA+, GSEC, or SSCP). Must hold a professional-level certification, such as: CCNP (CCIE strongly preferred) OR Palo Alto Next-Generation Firewall Engineer (PCNSE) REQUIRED SECURITY CLEARANCE: Active DoD Top Secret clearance with SCI elgibility PRISM is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status, or any other protected class. *, security before deployment. Mentorship & Documentation: Maintain meticulous network records (topologies, ACLs, blueprints) and provide technical guidance and mentoring to junior engineering staff. REQUIRED QUALIFICATIONS: (SKILLS/EDUCATION): BA/BS in IT, Cybersecurity, Computer Science, or a related field: additional 4 years of relevant experience may be considered in lieu of a degree. 14+ years of relevant network security and engineering experience. Proficient in Cisco and Palo Alto firewall platforms. Proven experience with Cloud Security (specifically AWS GovCloud). Advanced knowledge of routing/switching, IP addressing, and Virtual Private Networks. Deep understanding of government security standards and industry best practices. Must hold at least one valid IAT Level II certification (e.g., Security+ CE, CCNA-Security, CySA+, GSEC, or SSCP). Must hold a professional-level certification, such as: CCNP (CCIE strongly preferred) OR Palo Alto Next-Generation Firewall Engineer (PCNSE) REQUIRED SECURITY CLEARANCE: Active DoD Top Secret clearance with SCI elgibility PRISM is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status, or any other protected class. *