Palo Alto L3 Support Engineer

IT Gig LLC
Columbus, United States
15 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Amazon Web Services Microsoft Azure Border Gateway Protocol Cisco PIX Cloud Computing Cloud Computing Security Complex Networks Cyber Security Network Address Translation Domain Name System Security Extensions Firmware Internet Protocol Security (IP SEC)
+26 more
Intrusion Detection and Prevention Virtual Private Networks (VPN) Python (Programming Language) Network Security Network Troubleshooting Log Analysis Open Shortest Path First (OSPF) Windows PowerShell Remote Access Technology Ansible Security Information and Event Management TCP/IP Virtual Local Area Networks Google Cloud System Availability QRadar Firewalls (Computer Science) Palo Alto Networks Check Point Firewalls Microsoft Sentinel Fortinet Routing & Switching Firewall Services Module Prisma Cloud Platform Splunk SSL VPN

Job description

We are seeking an experienced Palo Alto L3 Support Engineer to provide advanced operational support for enterprise network security infrastructure. The ideal candidate will have strong expertise in Palo Alto Firewalls, Panorama, GlobalProtect, VPN technologies, and network troubleshooting. The role involves handling complex L3 incidents, implementing changes, performing root cause analysis, and ensuring the stability, security, and availability of enterprise network environments., * Provide Level 3 (L3) support for Palo Alto firewalls in production environments.

  • Troubleshoot and resolve complex network security incidents and service requests.
  • Configure, maintain, and optimize Palo Alto PA-Series Firewalls and Panorama.
  • Manage firewall policies, NAT rules, security profiles, and VPN configurations.
  • Support GlobalProtect, IPSec VPN, SSL VPN, and remote access solutions.
  • Perform firewall upgrades, patches, and firmware updates with minimal downtime.
  • Analyze logs and security events to identify and resolve security issues.
  • Work closely with Network, Security, Cloud, and Infrastructure teams during incident resolution.
  • Conduct root cause analysis (RCA) and implement preventive measures.
  • Participate in change management, maintenance windows, and on-call support.
  • Create and maintain technical documentation, SOPs, and knowledge base articles.
  • Ensure compliance with organizational security policies and industry best practices.

Requirements

  • 5+ years of experience in Network Security.
  • Strong hands-on experience with Palo Alto Networks Firewalls (PA-Series).
  • Expertise in Panorama administration and centralized policy management.
  • Experience with GlobalProtect, IPSec VPN, SSL VPN, NAT, and Security Policies.
  • Strong knowledge of networking protocols including:
  • TCP/IP
  • BGP
  • OSPF
  • VLAN
  • Routing & Switching
  • Experience with Threat Prevention, URL Filtering, WildFire, and DNS Security.
  • Strong troubleshooting skills for production network environments.
  • Knowledge of high availability (HA) firewall deployments.
  • Experience with ITIL processes, Incident Management, Problem Management, and Change Management.

Preferred Skills

  • Experience with cloud security platforms such as Prisma Access or Prisma Cloud.
  • Familiarity with Cisco ASA, Fortinet, or Check Point firewalls.
  • Experience with Azure, AWS, or Google Cloud Platform networking.
  • Knowledge of automation using Python, PowerShell, or Ansible.
  • SIEM experience (Splunk, QRadar, Microsoft Sentinel) is an advantage.

Certifications (Preferred)

  • Palo Alto Networks Certified Network Security Engineer (PCNSE)
  • Palo Alto Networks Certified Network Security Administrator (PCNSA)
  • CCNP Security
  • CCNA Security
  • ITIL Foundation

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:34 min

Pivoting careers into specialized platform engineering roles

Xavier Portilla Edo · LIVE

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

3:50 min

Queues in TCP stacks and continuous network connections

Clemens Vasters Clemens Vasters · WWC 2022

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

Videos

See all

Related articles

See all