Firewall Engineer

Tech Inc
Charlotte, NC, United States
15 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Compensation
$114,400.0 - $124,800.0
Working hours
Regular working hours
Job source

Tech stack

Microsoft Access Cloud Computing Security Network Address Translation Domain Name System (DNS) Identity and Access Management Virtual Private Networks (VPN) Python (Programming Language) Network Security Network Connections Routing Network Protocols Remote Access Technology
+14 more
Broadcom Ansible Web Application Security TCP/IP Enterprise Software Applications Computer Network Operations Software Troubleshooting Firewalls (Computer Science) Web Filtering Infrastructure Automation Frameworks Palo Alto Networks Fortinet Firewall Services Module Terraform

Job description

We are seeking a highly skilled Senior Firewall Engineer with strong expertise in enterprise firewall technologies, network security, and remote access solutions. The ideal candidate will have hands-on experience with Palo Alto and Fortinet firewalls, advanced networking concepts, security policy management, troubleshooting, and automation technologies. This role involves supporting global remote access infrastructure, managing firewall policies, and ensuring secure connectivity for end users across the organization., * Design, implement, manage, and troubleshoot enterprise firewall environments primarily using Palo Alto and Fortinet technologies.

  • Support and maintain remote access solutions, including GlobalProtect VPN.
  • Manage firewall access requests, security policies, NAT configurations, and rule optimization.
  • Troubleshoot network connectivity, VPN, proxy, and security-related issues for end users and enterprise applications.
  • Support and maintain secure remote access infrastructure with a focus on firewall access management.
  • Work with HIP (Host Information Profile) Posturing and endpoint compliance policies.
  • Assist with Broadcom WSS Agent (Web Security Service) configurations and troubleshooting.
  • Collaborate with networking and security teams to improve infrastructure security and performance.
  • Develop and maintain automation scripts/tools using Python, Ansible, or Terraform to streamline firewall and network operations.
  • Participate in after-hours maintenance activities, weekend implementations, and emergency support when required.
  • Monitor firewall health, logs, and alerts to ensure optimal system performance and security compliance.
  • Document configurations, procedures, and operational standards.
  • Looking for Senior Firewall Engineer with strong Firewall background (Palo Alto, Fortinet)
  • Source Network, IP Protocols, Palo Alto, Fortinet (Must), Global Protect & WSS Broadcom (Nice to have)

  • Global Protect is the tool that they support remotely
  • 75% Firewall remote access, Firewall Access
  • Someone High Level Networking 3 experiences
  • They work on an Access, Policies & troubleshoot for the end users
  • WSS Broadcom - Broadcom WSS Agent (Web Security Service Agent)
  • Someone who knows little proxy
  • HIP Posturing, also known as Host Information Profile (HIP) Posturing
  • Automation Background - Coding, Python, Ansible, TerraformRequired Skills & Experience

Requirements

  • 7+ years of experience in Network Security or Firewall Engineering.
  • Strong hands-on experience with:
  • Palo Alto Firewalls
  • Fortinet Firewalls
  • Network Security & IP Protocols
  • Firewall policy management and troubleshooting
  • Remote access technologies and VPN support
  • Strong understanding of:
  • TCP/IP, Routing, Switching, DNS, NAT, VPNs
  • Access policies and firewall rule management
  • Proxy technologies and web filtering concepts
  • Experience supporting GlobalProtect remote access environments.
  • Familiarity with Broadcom WSS Agent / Web Security Service is preferred.
  • Knowledge of HIP Posturing and endpoint compliance controls.
  • Experience with automation and infrastructure-as-code tools:
  • Python
  • Ansible
  • Terraform
  • Strong troubleshooting and analytical skills.
  • Excellent communication and collaboration abilities.

Preferred Qualifications

  • PCNSE (Palo Alto Networks Certified Network Security Engineer) certification preferred.
  • Experience in large enterprise or global network environments.
  • Exposure to cloud security and automation frameworks is a plus.

Benefits & conditions

Pay: $55.00 - $60.00 per hour

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira Ā· Coffee With Developers

2:04 min

Enhancing network privacy with routing fees and onion routing

Andreas M Antonopoulos Ā· LIVE

1:42 min

Automating Skupper deployments using Ansible

Alex Soto Alex Soto Ā· WWC 2024

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner Ā· LIVE

1:51 min

Overview of the three Google Maps routing applications

GermÔn Álvarez · LIVE

3:19 min

Executing complex workflows using Ansible Automation Platform

Goetz Rieger Goetz Rieger Ā· WWC 2025

Videos

See all

Related articles

See all