Firewall Engineer

4 weeks ago


Washington, United States Goldman Edwards Inc Full time
Job DescriptionJob Description

We are looking for a Firewall Engineer with project lead experience and hands-on engineering experience. The Firewall Engineer will be responsible for the engineering, implementation, and support of security solutions for the State of Maryland DoIT Security Operations Center (SOC) with a special focus on enterprise firewall systems.

This role will be responsible for performing the following tasks:

Duties and Responsibilities:

• Gap assessment and analysis of security solutions and recommendation of improvement initiatives.

• Implementation of scalable, redundant, and reliable firewall solutions.

• Security hardening firewall configurations.

• Configuration management and control of architectural/design/functional configuration changes to firewalls.

• Firewall brake-fix troubleshooting, root cause analysis, and support.

• Firewall patch/upgrade monitoring, reviews, maintenance scheduling and deployment.

• Management of firewall operational and security audits logs.

• Definition, development, and configuration of firewall security and operational alerts, dashboards, and reporting.

• Monitoring firewall operation and security alerts and dashboards.

• Defining, implementing, and monitoring process/procedures for maintaining the lifecycle firewall policies and rules.

• Configuration, maintenance, and support of additional firewall services such as URL filtering, Malware Sandboxing Analysis, Threat Intelligence Feeds, Threat Prevention, User ID etc.

• Provide firewall log correlation support for emerging and retroactive security incident investigations.

• Support the integration with other security tools such IDS/IPS, SIEM, NACs, VPN etc.

• Define requirements and develop roles-based Standard Operating Procedure (SOPs) documents.

Education and Years of Experience:

• At least 6-8 years of hands-on experience in Network Engineering/Architecture.

• At least five (5) years of technical experience in architecture, design, implementation, and support of firewall technologies.

• Bachelor’s degree from an accredited college or university with a major in Computer Science, Information Systems, Engineering or related scientific or technical discipline.

Required Skills/Certifications:

• Must have current Palo Alto Networks Certified Network Security Engineer (PCNSE) certification or hands-on experience implementing Palo Alto Advanced/NextGen features to include App-ID, User-ID, Content-ID, URL Filtering, Threat Prevention, Wildfire, Virtual Wire, Virtual System (VSys), Global Protect, NAT Policies, Security Profiles, Inbound SSL Decryption, Outbound SSL Decryption (SSL Forward Proxy), File Blocking, and Data Filtering

• Hand-on experience with Palo Alto Panorama for centralized management of PANOS firewalls

• Self-starter, able to gather requirements, plan, execute firewall architecture and deployment efforts.

• Able to perform gap analysis and initiate and execute architectural improvements.

• Strong demonstrated experience with network security architecture, design, and implementation best-practices i.e., Defense-in-depth architecture, knowledge of emerging Zero Trust architecture.

• Hands-on experience with firewall architecture, design, and implementation.

• Hands-on experience with operational and security hardening configuration for firewall solutions.

• Hands-on experience with configuration management and change control for firewall solutions.

• Demonstrated experience with networking and switching protocols and infrastructure services, able to troubleshoot and identify DNS, DHCP, Wi-Fi protocols, NTP, SNMP, routing, switching, and firewall issues affecting connectivity of applications and services.

• Must have working knowledge and understanding of network infrastructure components such as Routers, Switches, IDS, IPS, NAC, VPN Gateways, Wireless APs etc.

• Customer-oriented with excellent issue follow-through and resolution abilities.

• Outstanding leadership and organizational skills.

• Utilize tools and analytical skills to plan and execute technical changes.

• Excellent written and oral communication, and presentation skills.

• Ability to effectively work both autonomously as well as on a team.

• Outstanding interpersonal skills, strong work ethic, self-motivated and excellent presentation skills. Desired Skills/Certifications:

• Hands-on experience with Juniper firewalls

• CISSP, CompTIA Security +, CCNA/CCNP Security, Juniper JNCIP-SEC or relevant industry security certifications

• Cisco CCNA or CompTIA Network + or relevant networking industry certifications

• Experience in project task technical analysis, planning, and estimation

• Experience with technology capabilities market research, technical analysis/review, and recommendation.

State of Maryland - SNMS DOIT- Office of Security Management

Location: 100 Community Pl, Crownsville, MD 21032 Crownsville, Maryland 21032

Min. Citizenship Status Required: U.S Citizenship.

Physical Requirement(s): None

Benefits: Full benefit package included with salary/W2.

Clearance Type: Fingerprints



  • Washington, United States Cloud Peritus Full time

    Job DescriptionJob DescriptionCompany DescriptionVentureSoft Global is a recognized leader and trusted partner to Global 1000 businesses. We provide our customers immediate and sustained value in Data Science, IoT, Big Data, Analytics, Information Technology strategy and execution, Business Process Optimization and Knowledge transfer.Job DescriptionJob...


  • Washington, United States Cloud Peritus Full time

    Job DescriptionJob DescriptionCompany DescriptionVentureSoft Global is a recognized leader and trusted partner to Global 1000 businesses. We provide our customers immediate and sustained value in Data Science, IoT, Big Data, Analytics, Information Technology strategy and execution, Business Process Optimization and Knowledge transfer.Job DescriptionJob...


  • Washington, United States Vision It US Full time

    Job DescriptionJob DescriptionSupports the service owner and may serve as a service offering lead in the delivery of security technologies. Leads the evaluation and recommendation of hardware and software systems that provide security functions. Leads security assessments of technology systems and recommends system changes to ensure adherence to standards,...


  • Washington, United States iSenpai Full time

    iSenpai is a Woman-Owned Small Business (WOSB) that provides enterprise IT and cyber security services, cloud technology, and data analytics solutions for US Government and commercial customers. We specialize in cloud-based solutions with cyber security integrated into the design, delivered using efficient Agile DevSecOps. Engaging across industry and...


  • Washington, United States iSenpai, LLC Full time

    iSenpai is a Woman-Owned Small Business (WOSB) that provides enterprise IT and cyber security services, cloud technology, and data analytics solutions for US Government and commercial customers. We specialize in cloud-based solutions with cyber security integrated into the design, delivered using efficient Agile DevSecOps. Engaging across industry and...

  • Network Engineer

    2 days ago


    Washington, United States Recru Full time

    Hybrid: 3 days on-site 6-month contract that could get extended or convert to perm. Must be eligible to convert to perm. Job Description: Overview: We are seeking a skilled Network Engineer to join our IT department in Tacoma, WA. This role involves a hands-on approach to network management, including the physical setup of network components, maintenance,...


  • Washington, United States Datasoft Technologies, Inc. Full time

    Security Operations Engineer Job ID : RFQ1694316-1 One year Contract, can be extended to five years Washington, DC Overview The Security Operations Engineer shall be responsible for implementing new firewall architectures, upgrades and features as necessary and assisting in the administration of all information security firewalls to include updates,...


  • Washington, United States DATASOFT TECHNOLOGIES Full time

    Security Operations Engineer Job ID : RFQ1694316-1 One year Contract, can be extended to five years Washington, DC Overview The Security Operations Engineer shall be responsible for implementing new firewall architectures, upgrades and features as necessary and assisting in the administration of all information security firewalls to include updates,...


  • Washington, United States Ageatia Global Solutions Full time

    PURPOSE: Develops and implements security solutions. Administers security technology systems by architecting and engineering/developing trusted systems into secure systems. Assists in the development of implementation and deployment plans that are aligned to the organizational strategic plan objectives and security requirements. Advises management in...


  • Washington, United States Datasoft Technologies, Inc. Full time

    Security Operations Engineer **Top Secret Security Clearance Required**Job ID : RFQ1694316-1One year Contract, can be extended to five yearsWashington, DCOverview The Security Operations Engineer shall be responsible for implementing new firewall architectures, upgrades and features as necessary and assisting in the administration of all information security...


  • Washington, United States Datasoft Technologies, Inc. Full time

    Security Operations Engineer **Top Secret Security Clearance Required**Job ID : RFQ1694316-1One year Contract, can be extended to five yearsWashington, DCOverview The Security Operations Engineer shall be responsible for implementing new firewall architectures, upgrades and features as necessary and assisting in the administration of all information security...


  • Washington, United States Alta It Services Full time

    NETWORK CYBERSECURITY ENGINEER (Palo Alto Firewall Engineer) Palo Alto, WildFire Threat Protection, F5 Load Balancer, Gigamon Packet Broker, Proofpoint email security, and Infoblox DNS ALTA IT Services has a contract-to-hire opening for a Palo Alto Network Security Engineer to support a DMV area health insurance customer. Work is primarily remote with...


  • Washington, United States Ageatia Global Solutions Full time

    PURPOSE: Develops and implements security solutions. Administers security technology systems by architecting and engineering/developing trusted systems into secure systems. Assists in the development of implementation and deployment plans that are aligned to the organizational strategic plan objectives and security requirements. Advises management in...


  • Washington Highlands, Washington, D.C., United States Two95 International Inc. Full time

    Network Engineers Duration: 3-12 Months Type: Remote Description: Assist the lead network engineer on IP usage analysis by collecting the source data which includes but not limits to routing table, IPAM, DHCP, the configuration of router and switch, ARP entries, DNS records. Be able to run initial data process such as sorting the data, removing the...


  • Washington, United States Infojini Full time

    Position will be located within Digital Technology: Firewall Management and Network Security Team. Resource will be assigned to the day shift. Required skillset must include: •9+ years of experience in firewall and network administration (emphasis on firewall) •Hands-on experience performing firewall administration (maintaining, upgrading, testing, and...


  • Washington, United States eTeam Full time

    Document and maintain detail network schematics and design documentations all network deployments and solution implementations for infrastructure projects. Provide Tier 2, Tier 3, Tier 4 advanced technical support and guidance as required to assist network enterprise clients and third-party business partners in formulating network design solutions and...

  • System Engineer

    1 week ago


    Washington, United States ALTA IT Services Full time

    System Engineer Top Secret/SCI Springfield, VA JOB DESCRIPTION: Contributes to completion of milestones associated with specific engineering projects Develops solutions to a variety of engineering problems of moderate scope and complexity Perform systems design, development, and integration from the start of a systems life cycle to the end ...


  • Washington, United States Experis Full time

    As a Security Engineer specializing in Vulnerability Mitigation and Intelligence, you will be responsible for devising and implementing effective strategies to mitigate vulnerabilities, enhance cybersecurity defenses, and provide actionable intelligence. Your expertise will be crucial in identifying, assessing, and responding to potential threats. Strong...

  • DHS Network Engineer

    1 month ago


    Washington, United States Versar, Inc. Full time

    Job DescriptionJob DescriptionPosition SummaryBayFirst Solutions, a subsidiary of Versar, Inc., is seeking a mid-level Network Engineer to support the enterprise architecture, design, development and deployment of network services in support of the Department of Homeland Security’s Wide Area Network. The position supports a variety of network technologies...

  • DHS Network Engineer

    3 weeks ago


    Washington, United States Versar, Inc. Full time

    Job DescriptionJob DescriptionPosition SummaryBayFirst Solutions, a subsidiary of Versar, Inc., is seeking a mid-level Network Engineer to support the enterprise architecture, design, development and deployment of network services in support of the Department of Homeland Security’s Wide Area Network. The position supports a variety of network technologies...