Security Engineer
Savrec Limited trading
France
3 days ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Apply on www.savantrecruitment.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source
Tech stack
Microsoft Azure
Scripting
Delivery Pipeline
Job description
We are seeking an experienced Firewall / Palo Alto Security Engineer for a large-scale corporate divestiture programme. You will design, build, and configure perimeter security infrastructure and execute firewall policy separation across multiple sites. This role requires close collaboration with core routing, Zscaler security, and automation teams to deliver at pace., * Perimeter Build-Out: Design and deploy Palo Alto firewalls (including HA pairs) at new PoP locations, configuring zones, routing, NAT, and core threat prevention suites.
- Panorama Management: Configure device groups, template stacks, and enforce strict role-based access control (RBAC) for entity administrative separation.
- Policy Separation & Cleanup: Analyse legacy rulebases, migrate retained-entity policies, and cleanly remove residual cross-entity access from divested infrastructure.
- Collaboration & Automation: Partner with routing and Zscaler teams on traffic flows while utilizing Terraform, Ansible, and Git for firewall-as-code delivery.
Requirements
- Palo Alto Expertise: Deep hands-on experience with Palo Alto NGFWs, Panorama management, SSL/TLS decryption, and GlobalProtect VPNs.
- Network Security Architecture: Strong command of zone-based firewalls, micro-segmentation, HA deployments, routing integration (BGP/OSPF), and public IP management.
- Migration & Separation: Proven track record of executing detailed firewall migration, policy rationalisation, and rigid change management cutover plans.
- Automation & DevOps: Daily experience with Git/GitHub, structured data (JSON/YAML), Terraform (PAN-OS provider), and basic Python scripting for automation pipelines.
- Identity & Cloud: Familiarity with User-ID integration, Cisco ISE, and hybrid cloud security architectures (AWS/Azure/GCP).
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.savantrecruitment.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
AJ
Austin Joy
over 4 years ago
DC
Daniel Cranney
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
7 months ago
CH
Chris Heilmann
Dev Digest 134 - Where pixels sing?
almost 2 years ago
BB
Benedikt Bischof
Walking Into The Era of Supply Chain Risks
about 4 years ago
IK
Igor Khokhriakov
How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again
19 days ago
DC
Daniel Cranney
Understanding and Mitigating Common Web Vulnerabilities
over 1 year ago