Firewall Engineer

TECHNOKRAFT LLC
United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Compensation
$107,467.0 - $129,422.0
Working hours
Regular working hours
Job source

Tech stack

Microsoft Access Application Programming Interfaces (APIs) Amazon Web Services Microsoft Azure Border Gateway Protocol Cloud Computing Computer Networks Dynamic Host Configuration Protocol Network Address Translation Domain Name System (DNS) Enhanced Interior Gateway Routing Protocol Internet Protocol Security (IP SEC)
+35 more
IPv4 IPv6 IP Routing Virtual Private Networks (VPN) Python (Programming Language) Network Security Network Diagrams Network Monitoring Routing Network Segmentation Cisco Nexus Switches Open Shortest Path First (OSPF) Remote Access Technology Zero Trust Network Access Software Deployment TCP/IP Virtual Local Area Networks Wide Area Networks Google Cloud Load Balancing Computer Network Operations Cloud Platform System System Availability Multi-Cloud HybridCloud Firewalls (Computer Science) Palo Alto Networks Check Point Firewalls Fortinet Firepower Open Network Automation Platform Cisco Switches Big Ip Cisco SSL VPN

Job description

Technokraft Consultancy Services is seeking a highly skilled Network Security Engineer to join our team. The ideal candidate will have strong hands-on experience designing, implementing, troubleshooting, and supporting enterprise network security solutions across on-premises, hybrid, and cloud environments. This role requires deep expertise in firewall technologies, Zero Trust architecture, secure remote access, cloud networking, routing and switching, and enterprise security operations. The successful candidate will work closely with Infrastructure, Cloud, Security, and Operations teams to build and maintain secure, scalable, and highly available network environments. Key Responsibilities

  • Design, implement, and support secure enterprise LAN, WAN, VPN, and hybrid cloud network infrastructures.

  • Deploy, configure, and manage Next-Generation Firewalls (NGFW) including Palo Alto, Fortinet, Cisco Firepower/ASA, and Check Point.

  • Implement and support Zero Trust Network Access (ZTNA) solutions using Zscaler ZIA, Zscaler ZPA, and Palo Alto Prisma Access.

  • Design and maintain secure remote access solutions including IPsec VPN, SSL VPN, site-to-site VPN, and cloud connectivity solutions.

  • Configure and troubleshoot routing and switching technologies including BGP, OSPF, EIGRP, VLANs, STP, VRFs, and enterprise LAN/WAN architectures.

  • Deploy, manage, and optimize Cisco Catalyst and Cisco Nexus (5K, 7K, 9K) switching environments.

  • Design and support hybrid cloud and multi-cloud networking solutions across AWS, Azure, and GCP.

  • Configure and manage cloud networking components including VPCs, VNets, Route Tables, Security Groups, VPN Gateways, and Transit Connectivity.

  • Implement network segmentation, access control policies, Zero Trust frameworks, and security best practices.

  • Configure and maintain F5 BIG-IP Load Balancers for high availability, traffic management, and application delivery.

  • Utilize Cisco APIs and automation tools to streamline network operations and infrastructure management.

  • Monitor network performance, security events, and availability while performing root cause analysis and incident resolution.

  • Collaborate with cross-functional teams to implement security standards, compliance requirements, and network modernization initiatives.

  • Create and maintain network diagrams, implementation documentation, operational procedures, and technical standards.

  • Participate in network upgrades, migrations, maintenance activities, and production support.

Requirements

  • 7+ years of Network Security Engineering and Network Engineering experience.

  • Strong hands-on experience with:

  • Zscaler Internet Access (ZIA)

  • Zscaler Private Access (ZPA)

  • Palo Alto Next-Generation Firewalls (NGFW)

  • Palo Alto Prisma Access

  • Fortinet FortiGate Firewalls

  • Cisco Firepower / ASA

  • Check Point Firewalls

  • Cisco Catalyst Switches

  • Cisco Nexus 5000, 7000, and 9000 Series

  • F5 BIG-IP Load Balancers

  • Strong hands-on experience implementing and supporting:

  • LAN/WAN Infrastructure

  • VPN Solutions (IPsec, SSL VPN, Site-to-Site)

  • Zero Trust Security Architecture

  • Network Segmentation and Access Control

  • Advanced knowledge of routing and switching protocols:

  • BGP

  • OSPF

  • EIGRP

  • VLANs

  • STP

  • VRFs

  • Strong experience with hybrid and multi-cloud networking:

  • Microsoft Azure

  • AWS

  • Google Cloud Platform (GCP)

  • Experience utilizing Cisco APIs and network automation tools.

  • Strong understanding of TCP/IP, DNS, DHCP, NAT, IPv4/IPv6, and enterprise networking fundamentals.

  • Excellent troubleshooting, analytical, and problem-solving skills.

  • Strong verbal and written communication skills.

Preferred Qualifications

  • Experience with SASE and Zero Trust Network Access (ZTNA) architectures.

  • Experience with Python-based network automation.

  • Experience supporting large enterprise and multi-site environments.

  • Experience with network monitoring, incident response, and root cause analysis.

  • Relevant certifications such as:

  • CCNA / CCNP

  • PCNSA / PCNSE

  • NSE Certifications

  • Zscaler Certifications

  • Azure Networking Certifications

Benefits & conditions

5.05.0 out of 5 stars Remote $107,466.87 - $129,422.47 a year - Full-time

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:34 min

The pros and cons of campus-wide IP authentication

Christoph Eicke Christoph Eicke · WWC 2025

2:22 min

Introducing Skupper for application connectivity

Alex Soto Alex Soto · WWC 2024

1:29 min

Expanding practical knowledge with community sandboxes and resources

Stuart Clark · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:05 min

Exploring microcontrollers and communication protocols for amateur hardware

Philipp-Alexander Blum · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all