> Markdown version of [/jobs/ext/3660174-palo-alto-firewall-engineer](https://www.wearedevelopers.com/jobs/ext/3660174-palo-alto-firewall-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Palo Alto Firewall Engineer - **Company:** Eclaro International Inc. - **Location:** New Berlin, NY, United States (Remote available) - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Border Gateway Protocol, Configuration Management, Network Address Translation, Failover, Internet Protocol Security (IP SEC), Virtual Private Networks (VPN), Network Security, Routing, Network Segmentation, Open Shortest Path First (OSPF), Zero Trust Network Access, TCP/IP, Virtual Local Area Networks, Data Logging, Firewalls (Computer Science), Palo Alto Networks, Firewall Services Module, SSL VPN - **Published:** October 9, 2026 - **Apply:** https://www.careers-eclaro.com/job/6291/palo_alto_firewall_engineer#apply-now-header ## About the Role * 3+ years of hands-on network security/firewall engineering experience. * Strong production experience with Palo Alto Networks firewalls. * Experience making configuration changes directly on physical Palo Alto appliances. * Strong knowledge of PAN-OS, security policies, NAT, routing, zones and interfaces. * Experience with IPsec/GlobalProtect VPNs and troubleshooting. * Strong understanding of TCP/IP, routing, switching and network security. * Experience with firewall upgrades, maintenance and configuration management. * Ability to work independently and execute changes accurately with minimal supervision. * Strong troubleshooting and problem-solving skills. * Willingness to support occasional weekend and after-hours maintenance windows. * Palo Alto: PAN-OS, PA-Series firewalls, Panorama, HA * Security: Security Policies, NAT, App-ID, User-ID, URL Filtering, SSL Decryption * Networking: TCP/IP, BGP, OSPF, VLANs, routing, segmentation * VPN: GlobalProtect, IPsec, SSL VPN * Operations: Change Management, maintenance windows, configuration backup/restore, logging and monitoring, * PCNSE or Palo Alto Networks certification. * Experience with Palo Alto Panorama. * Experience supporting HA firewall pairs and failover environments. * Experience with BGP, OSPF and advanced routing. * Experience with GlobalProtect. * Experience with network segmentation and Zero Trust security architectures. * Experience working in large enterprise environments. * Familiarity with ITIL/change-management processes. ## Description * Experienced Palo Alto Firewall Engineer to provide part-time remote engineering support for a production network environment. * This is a highly hands-on role focused on making configuration changes and updates to physical Palo Alto firewall appliances. * The position will average approximately 25 hours per week, with flexibility required for occasional weekend and after-hours maintenance windows. * Strong Palo Alto engineer who can independently execute approved changes, troubleshoot issues, validate configurations, and document work with minimal supervision. * Hands-on Palo Alto expert, not simply a security architect. * Should be comfortable getting into the firewall configuration, making production changes, validating the results, troubleshooting when something doesn't work as expected, and documenting exactly what was done. Responsibilities: * Perform hands-on configuration changes and updates on physical Palo Alto Networks firewalls. * Implement approved firewall policy, NAT, routing, VPN and security configuration changes. * Manage and modify security policies, NAT policies, objects, zones and interfaces. * Support firewall upgrades, configuration changes, maintenance and hardware-related activities. * Validate firewall changes and confirm connectivity and security functionality following implementation. * Troubleshoot firewall, routing, VPN and connectivity issues. * Review existing configurations and recommend appropriate improvements or remediation. * Maintain accurate firewall configurations, diagrams, change records and technical documentation. * Follow established change-management, maintenance-window and rollback procedures. * Coordinate with network, security and infrastructure teams during planned changes. * Participate in occasional after-hours and weekend maintenance windows when required. * Respond to production issues and provide timely troubleshooting support. * Ensure changes follow security standards and established operational procedures.