Information Security Engineer

Randstad
Irving, TX, United States
3 months ago
Apply on randstadusa.com
Prepare application

Role details

Contract type
Contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Compensation
$134,222.0 - $144,622.0
Working hours
Regular working hours

Tech stack

Application Programming Interfaces (APIs) Artificial Intelligence Bioinformatics Cloud Computing Cyber Security Continuous Integration Fault Tolerance Github Python (Programming Language) Network Security Software Architecture Broadcom
+9 more
Ansible Prometheus Software Engineering Network Access Control Grafana Apigee Firewalls (Computer Science) Fortinet Software Version Control

Job description

job summary: Randstad Digital is hiring and we’re looking for someone like YOU to join our team! If you are seeking a new opportunity, looking to grow in your career, or you know someone who is - we want to hear from you! Take a look at the below opportunity, or feel free to visit RandstadUSA.com to view and apply.

location: Irving, Texas job type: Contract salary: $64.53 - 69.53 per hour work hours: 8am to 5pm education: Bachelors

responsibilities: Unified Network Security Automation Architecture

  • Design a unified Network Security automation architecture that standardizes networking, security services, and automation behaviors across Palo Alto Firewall, Fortinet Firewall, and Broadcom Cloud proxy services
  • Implement fully automated, Sepio, SAT and Proxy software lifecycle workflows
  • Implement fully automated, standard changes workflows
  • Automate software lifecycle events including day 0, day 1, and day 2 operations

Automation & Orchestration Execution

  • Design and implement stateful, fault tolerant workflows using Temporal / ORCA
  • Embed retry, timeout, validation, and compensation logic into SAT, Proxy and Sepio workflows
  • Build reusable orchestration patterns for SAT, Proxy and Sepio deployment and operations

Source of Truth Integration

  • Extend and integrate Nautobot as the authoritative source of intent and state
  • Model into SAT, Proxy and Sepio, topology, IPAM, and configuration data
  • Ensure SAT, Proxy and Sepio automation executes strictly from source of truth data

CI/CD & Infrastructure as Code

  • Implement CI pipelines using GitHub Actions
  • Use Temporal to provision and manage automation and Branch related infrastructure
  • Follow version control, testing, and promotion standards

Operational Automation

  • Design and execute Ansible based operational automation for Branch environments
  • Automate configuration, compliance validation, rollback, and remediation
  • Ensure changes are secure, auditable, and repeatable

API & Observability Enablement

  • Expose SAT, Proxy and Sepio and automation services through Apigee
  • Instrument workflows using Grafana and/or Prometheus
  • Provide telemetry for reliability, scaling, and troubleshooting

qualifications: Senior level hands on experience with Python

Extensive experience with GitHub, GitHub Actions, and CI/CD pipelines

GitHub Actions and Infrastructure as Code expertise

Robust hands-on operational automation experience using Ansible

Deep familiarity with Proxy and Firewalls technologies, including integration with Palo Alto Firewall, Fortinet Firewall, and Broadcom Cloud proxy services

Hands on experience designing, implementing, and automating security controls and policy management across Palo Alto Firewall, Fortinet Firewall, and Broadcom Cloud proxy service environments

Ability to deliver independently in complex enterprise environments

What Success Looks Like

Unified into SAT, Proxy and Sepio software architecture adopted

Significant reduction in SAT, Proxy and Sepio deployment time and manual effort

Technology teams removed from routine SAT, Proxy and Sepio provisioning tasks

Clear documentation enabling sustainable internal ownership

Proven delivery of stateful workflow orchestration (Temporal / ORCA or similar)

NICE TO HAVE

Robust exposure to AI assisted engineering or AI driven automation workflows

Engagement Objectives (6-12 Month Horizon)

Transform existing Network Access Control, Firewall and Proxy code certification and lifecycle implementations into an automated process.

Deliver end to end zero touch provisioning (ZTP) workflows for SASE infrastructure

Implement stateful workflow orchestration using ORCA / Temporal

Integrate Nautobot as the authoritative source of truth for Firewall, Proxy and Sepio topology

Establish CI pipelines using GitHub and GitHub Actions

Implement Infrastructure as Code using Temporal/GihubActions

Enable automated operational changes using Ansible

Expose automation capabilities via APIs using Apigee

Instrument NAC, Firewall and Proxy automation workflows using Grafana and/or Prometheus

Deliver measurable reductions in Firewall, Proxy and NAC deployment time and Technology support effort

This contract role requires a senior engineer capable of driving the transformation from traditional Firewall and Proxy operations to a fully automated, unified model with true end to end provisioning.

Equal Opportunity Employer: Race, Color, Religion, Sex, Sexual Orientation, Gender Identity, National Origin, Age, Genetic Information, Disability, Protected Veteran Status, or any other legally protected group status.

At Randstad Digital, we welcome people of all abilities and want to ensure that our hiring and interview process meets the needs of all applicants. If you require a reasonable accommodation to make your application or interview experience a great one, please contact HRsupport@randstadusa.com.

Pay offered to a successful candidate will be based on several factors including the candidate’s education, work experience, work location, specific job duties, certifications, etc. In addition, Randstad Digital offers a comprehensive benefits package, including: medical, prescription, dental, vision, AD&D, and life insurance offerings, short-term disability, and a 401K plan (all benefits are based on eligibility).

This posting is open for thirty (30) days.

,

Unified Network Security Automation Architecture

  • Design a unified Network Security automation architecture that standardizes networking, security services, and automation behaviors across Palo Alto Firewall, Fortinet Firewall, and Broadcom Cloud proxy services
  • Implement fully automated, Sepio, SAT and Proxy software lifecycle workflows
  • Implement fully automated, standard changes workflows
  • Automate software lifecycle events including day 0, day 1, and day 2 operations

Automation & Orchestration Execution

  • Design and implement stateful, fault tolerant workflows using Temporal / ORCA
  • Embed retry, timeout, validation, and compensation logic into SAT, Proxy and Sepio workflows
  • Build reusable orchestration patterns for SAT, Proxy and Sepio deployment and operations

Source of Truth Integration

  • Extend and integrate Nautobot as the authoritative source of intent and state
  • Model into SAT, Proxy and Sepio, topology, IPAM, and configuration data
  • Ensure SAT, Proxy and Sepio automation executes strictly from source of truth data

CI/CD & Infrastructure as Code

  • Implement CI pipelines using GitHub Actions
  • Use Temporal to provision and manage automation and Branch related infrastructure
  • Follow version control, testing, and promotion standards

Operational Automation

  • Design and execute Ansible based operational automation for Branch environments
  • Automate configuration, compliance validation, rollback, and remediation
  • Ensure changes are secure, auditable, and repeatable

API & Observability Enablement

  • Expose SAT, Proxy and Sepio and automation services through Apigee
  • Instrument workflows using Grafana and/or Prometheus
  • Provide telemetry for reliability, scaling, and troubleshooting

Requirements

Senior level hands on experience with Python Extensive experience with GitHub, GitHub Actions, and CI/CD pipelines GitHub Actions and Infrastructure as Code expertise Robust hands-on operational automation experience using Ansible Deep familiarity with Proxy and Firewalls technologies, including integration with Palo Alto Firewall, Fortinet Firewall, and Broadcom Cloud proxy services Hands on experience designing, implementing, and automating security controls and policy management across Palo Alto Firewall, Fortinet Firewall, and Broadcom Cloud proxy service environments Ability to deliver independently in complex enterprise environments What Success Looks Like Unified into SAT, Proxy and Sepio software architecture adopted Significant reduction in SAT, Proxy and Sepio deployment time and manual effort Technology teams removed from routine SAT, Proxy and Sepio provisioning tasks Clear documentation enabling sustainable internal ownership Proven delivery of stateful workflow orchestration (Temporal / ORCA or similar) NICE TO HAVE Robust exposure to AI assisted engineering or AI driven automation workflows Engagement Objectives (6-12 Month Horizon) Transform existing Network Access Control, Firewall and Proxy code certification and lifecycle implementations into an automated process. Deliver end to end zero touch provisioning (ZTP) workflows for SASE infrastructure Implement stateful workflow orchestration using ORCA / Temporal Integrate Nautobot as the authoritative source of truth for Firewall, Proxy and Sepio topology Establish CI pipelines using GitHub and GitHub Actions Implement Infrastructure as Code using Temporal/GihubActions Enable automated operational changes using Ansible Expose automation capabilities via APIs using Apigee Instrument NAC, Firewall and Proxy automation workflows using Grafana and/or Prometheus Deliver measurable reductions in Firewall, Proxy and NAC deployment time and Technology support effort This contract role requires a senior engineer capable of driving the transformation from traditional Firewall and Proxy operations to a fully automated, unified model with true end to end provisioning.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on randstadusa.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:01 min

Bridging the gap between software development and security

Vandana Verma · LIVE

10:40 min

Visualizing Prometheus open metrics using custom Grafana dashboards

Stijn Polfliet · LIVE

6:36 min

Funding open source through GitHub Accelerator and Sponsors

Stormy Peters · World Congress 2023

1:34 min

Pivoting careers into specialized platform engineering roles

Xavier Portilla Edo · LIVE

1:04 min

Visualizing Keycloak performance via standard Grafana troubleshooting dashboards

Alexander Schwartz Alexander Schwartz · World Congress 2025

2:40 min

Using GitHub primitives for internal documentation and corporate operations

Kyle Daigle · Coffee With Developers

Videos

See all

Related articles

See all