Senior Firewall Administrator

Systems, Inc
Greenbelt, MD, United States
3 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

Amazon Web Services Application Firewall Microsoft Azure Bash Shell Border Gateway Protocol Cisco PIX Cloud Computing Cloud Computing Security CompTIA Security+ Information Systems Computer Networks System Configuration
+44 more
Linux Network Address Translation Enhanced Interior Gateway Routing Protocol Monitoring of Systems Internet Protocol Security (IP SEC) Intrusion Detection and Prevention Intrusion Detection Systems Virtual Private Networks (VPN) Information Systems Security Architecture Professional Python (Programming Language) Network Security Network Troubleshooting Log Analysis Windows Servers Network Architecture Network Diagrams Routing Packet Analyzer Open Shortest Path First (OSPF) PCI Data Security Standards Windows PowerShell Zero Trust Network Access Reverse Proxy Security Information and Event Management Software Engineering Scripting Transport Layer Security Identity Services Engine Google Cloud Network Access Control Load Balancing QRadar Firewalls (Computer Science) Juniper Information Technology Palo Alto Networks Fortinet Routing & Switching 3-tier Architectures Firepower Firewall Services Module Splunk Cisco Citrix Netscaler

Job description

The contractor shall provide IT Infrastructure support services, which includes Tier 1 Help Desk, Tier 2 End User Support, Tier 3 Server, Platform, and Network Infrastructure Support and Engineering. Services shall include, but are not limited to, technical assistance for hardware, software, and network issues; incident and problem resolution; service request management; infrastructure monitoring and support; hardware and software lifecycle support; and management of escalation across all tiers., Position Description: Responsible for managing and maintaining the organization’s (currently PaloAlto based) firewall infrastructure. This role involves overseeing the deployment, configuration, and support of PaloAlto firewall devices, ensuring optimal performance, security, and availability. This position requires strong knowledge of PaloAlto firewall technologies, excellent troubleshooting skills, and familiarity with network security solutions.

The contractor shall provide IT Infrastructure support services, which includes Tier 1 Help Desk, Tier 2 End User Support, Tier 3 Server, Platform, and Network Infrastructure Support and Engineering. Services shall include, but are not limited to, technical assistance for hardware, software, and network issues; incident and problem resolution; service request management; infrastructure monitoring and support; hardware and software lifecycle support; and management of escalation across all tiers.

Position Description: Responsible for managing and maintaining the organization’s (currently PaloAlto based) firewall infrastructure. This role involves overseeing the deployment, configuration, and support of PaloAlto firewall devices, ensuring optimal performance, security, and availability. This position requires strong knowledge of PaloAlto firewall technologies, excellent troubleshooting skills, and familiarity with network security solutions.

  • Monitoring and optimizing the performance of the network, ensuring efficient resource allocation and minimal downtime.

  • Leading the installation, configuration, and maintenance of PaloAlto firewall devices as well as Cloud firewall configurations.

  • Monitoring and optimizing the performance of firewall systems, ensuring efficient resource allocation and minimal downtime.

  • Diagnosing and resolving complex firewall issues, including connectivity, performance, and security problems.

  • Ensuring the security of the network by applying patches, updates, and security configurations to PaloAlto devices.

  • Maintaining comprehensive documentation of firewall configurations, procedures, and policies.

  • Working closely with other IT teams to support network security needs and integrate firewall solutions with other systems.

  • Providing guidance and mentorship to junior network and firewall administrators and other IT staff.

Requirements

  • Bachelor’s degree in computer science, Information Systems, Engineering, or related field and 5+ years of applicable experience

  • Public trust security clearance

  • Firewall Administration: Expertise configuring, managing, and troubleshooting enterprise firewalls (e.g., Palo Alto, Cisco ASA/Firepower, Fortinet, Check Point, Juniper SRX).

  • Network Security: Strong understanding of network security principles, including segmentation, VPNs (IPSec/SSL), NAT, ACLs, and IDS/IPS.

  • Routing & Switching: Working knowledge of routing protocols (BGP, OSPF, EIGRP) and Layer 2 technologies.

  • Policy Management: Ability to design, implement, and optimize security policies, objects, and rulesets while maintaining compliance and minimizing overlap/conflicts.

  • Security Monitoring & Incident Response: Experience with log analysis, packet captures, and network traffic inspection for threat identification and remediation.

  • SIEM Integration: Familiarity with tools like Splunk, QRadar, or ELK for centralized event monitoring and alert correlation.

  • Operating Systems: Proficiency in administering Linux/Unix and Windows Server environments.

  • Change Management: Experience following structured change control processes and documentation in ITIL or ISO environments.

  • Scripting & Automation: Basic to intermediate scripting (Python, PowerShell, or Bash) for automating configuration or monitoring tasks.

  • Documentation: Ability to create and maintain detailed network diagrams, firewall rule documentation, and standard operating procedures.

Preferred Skills:

  • A PaloAlto Networks Certified Network Security Engineer (PCNSE) certification is preferred.

  • Cloud Security: Experience with cloud firewalls and network security configurations in AWS, Azure, or Google Cloud.

  • Next-Gen Firewall (NGFW) Technologies: Advanced knowledge of threat prevention, URL filtering, SSL decryption, application control, and user-ID mapping.

  • Zero Trust Architecture: Understanding of zero trust principles and micro segmentation strategies.

  • Network Access Control (NAC): Experience integrating firewalls with NAC solutions (e.g., Cisco ISE, Aruba ClearPass).

  • Load Balancing & Proxy Technologies: Familiarity with F5, Citrix Netscaler, or reverse proxy systems.

  • Certifications: Palo Alto Networks Certified Network Security Engineer (PCNSE) Cisco Certified Network Professional - Security (CCNP Security) Fortinet NSE 4-7 CompTIA Security+ / CySA+ / CASP+ Certified Information Systems Security Professional (CISSP) or equivalent

  • Experience in Regulated Environments: Understanding of compliance requirements (FISMA, FedRAMP, NIST 800-53, PCI-DSS, HIPAA).

Soft Skills:

  • Organizational Skills: Can plan and prioritize work. Follow tasks to their logical conclusion and makes sure that everything has been done to the right standard. Good attention to detail.

  • Teamwork: Able to enthuse and maintain project interest. Comfortable working both individually and as part of a team. Prepared to challenge ideas within a group in a constructive way.

  • Communications: Ability to communicate clearly and efficiently to team members and clients, verbally and in writing. Able to present ideas in a variety of ways depending upon audience and context. Excellent active listening skills.

  • Quantitative Management: Ability to determine process measures and track to determine process effectiveness and efficiency.

  • Results oriented: Able to drive things forward regardless of personal interest in the task.

Benefits & conditions

SES provides a competitive salary and the following benefits:

  • Medical
  • Dental
  • Vision
  • AD&D
  • STD
  • LTD
  • Company paid Life Insurance
  • 401k with employer contribution
  • Paid Time Off
  • Pet Insurance

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on localjobnetwork.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

1:29 min

Expanding practical knowledge with community sandboxes and resources

Stuart Clark · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

Videos

See all

Related articles

See all