Sr. Firewall Engineer (Palo Alto/Panorama)
Role details
Job location
Tech stack
Job description
We are seeking a Senior-level Firewall and Network Engineer to plan, implement, and maintain critical technology platforms supporting global operations and international deployment initiatives.
This person must be willing to go onsite to Naperville, IL, 3 to 4 days per week (no on-call schedule!)
This position is a key contributor to an active firewall and VPN cloud-migration effort - transitioning network security infrastructure into a true multi-cloud environment spanning AWS, Azure, and GCP. Deep, hands-on expertise with Palo Alto Networks firewalls and Panorama is essential, as this engineer will play a central role in designing, migrating, and managing firewall and VPN services across cloud platforms., * Administer, configure, and maintain enterprise firewall infrastructure, including Palo Alto Networks firewalls and centralized management through Panorama
- Design, implement, and support cloud network infrastructure, including connectivity, routing, segmentation, and hybrid cloud networking
- Monitor system and network performance, tuning configurations for better throughput, latency, and resilience
- Diagnose and resolve platform issues spanning connectivity, outages, and deployments, including on-call support and clear communication during incidents
- Use scripting and infrastructure-as-code tools to automate deployments, configurations, and patch management
- Implement security measures per IT policy - access controls, patching, vulnerability remediation - and support disaster recovery testing and restoration
- Partner with senior engineers, architects, and application teams to plan upgrades, translate business requirements into infrastructure solutions, and maintain technical documentation
Requirements
- Hands-on expertise with Palo Alto Networks firewalls, including centralized management via Panorama
- Cloud network engineering experience (AWS, Azure, GCP, or comparable) - virtual networking, routing, connectivity, and security configurations
- Proficiency in a scripting language (Python, PowerShell, Bash, etc.) for task automation; infrastructure-as-code experience (Terraform, Ansible) preferred
- Strong troubleshooting skills and broad networking knowledge (LAN/WAN, VPN, DNS, TCP/IP), including root cause analysis across technology layers
- Experience with server administration, DNS management, and virtualization or cloud environments
- Solid understanding of IT security principles and backup/disaster recovery strategies
- Excellent communication skills, with the ability to convey technical information to non-technical stakeholders
- Relevant certifications (PCNSE, PCNSA, or cloud networking) a plus
Benefits & conditions
Pay: $60.00 - $95.00 per hour