9131 - Palo Alto Security Technical Lead/Manager

IndraSoft Inc.

Virginia (MN)

Hybrid

USD 120,000 - 160,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

A technology solutions provider based in Virginia is seeking a Palo Alto Security Technical Lead/Manager to oversee the deployment and management of advanced cybersecurity solutions. The ideal candidate will lead a team and work closely with government stakeholders, leveraging expertise in Palo Alto and Cisco products. Successful candidates must have an active DoD Top Secret clearance and significant experience in network engineering and cybersecurity. This full-time role offers the opportunity to make impactful contributions in a fast-paced environment.

Qualifications

  • Active DoD Top Secret clearance.
  • 10+ years of IT or Cybersecurity experience.
  • 5+ years managing Palo Alto systems.

Responsibilities

  • Deploy and configure Palo Alto solutions.
  • Manage security systems and staff.
  • Automate responses and reporting.

Skills

Network engineering
Threat management
Vulnerability management
Palo Alto expertise
Cisco product knowledge
Analytic skills
Effective communication

Education

Bachelor’s degree

Tools

Palo Alto Hardware
Cisco routers/switches
SolarWinds
RedSeal

Job description

9131 - Palo Alto Security Technical Lead/Manager

Job Category: Information Technology

Requisition Number: 9130C003510

Apply now

  • Posted : August 30, 2021
  • Full-Time
Locations

Showing 1 location

Yorktown, VA 23693, USA

Description

Job Posting Title: Palo Alto Security Technical Lead/Manager

IndraSoft, Inc. is seeking a highly qualified Senior to SME level Security Engineer with an active Top Secret clearance to support our DoD client, located in Seaside, CA. The selected, highly motivated candidate will implement, configure, manage, and monitor IDS/IPS solutions for a geographically dispersed, high-availability enterprise. The successful candidate will leverage demonstrated experience in network engineering, threat management, and vulnerability management, coupled with proven subject matter expertise in Palo Alto and Cisco suites of products, to support DoD cybersecurity requirements and objectives.

Qualifications Required:

  • Must be a US citizen, possess a DoD Top Secret clearance: Minimum vetting Tier 5(T5)-Single Scope Background Investigation (SSBI)
  • Active DoD 8570 IAT Level 3 certification for compliance, including at least one of the following certifications in good standing: CASP+ CE, CCNP Security, CISA, CISSP (or Associate), GCED, GCIH
  • Computing Environment Certification
  • Bachelor’s degree and 10+ years of Information Technology or Cybersecurity related experience
  • 5+ years of experience with operations and management of Palo Alto Hardware and products to include Next generation Firewalls, Panorama, SSL Decrypt, Threat Prevention, URL Filter, and Wildfire
  • Ability to communicate effectively with government and contract leadership, while conveying highly technical concepts to both technical and nontechnical stakeholders
  • Capacity to thrive in a complex, fast paced environment with competing demands while delivering consistent, high-quality commitment to mission-critical systems and solutions
  • Excellent analytic skills, including qualitative and quantitative data analysis to support and defend data-driven decision-making regarding system threats, vulnerabilities, and risk
  • Knowledge of DoD cybersecurity policies, practices, and requirements

Desired Qualifications:

  • Experience in an enterprise environment (1500 servers plus 2500 workstations)
  • Experience configuring disaster recovery (DR) environments
  • Experience with Cisco routers/switches and Palo Alto firewall solutions, including the integration of Active Directory with Palo Alto
  • IT/Network monitoring and modeling experience, preferably utilizing SolarWinds and RedSeal
  • Knowledge of F5 local traffic manager (LTM) and Web Application Firewall (WAF)

Job Description:

The successful candidate will be responsible for deploying, configuring, and monitoring Palo Alto solutions across the enterprise both on premise and cloud environments, including oversight of the Palo Alto Panorama solution, and integration with existing infrastructure and security controls. Once operational, be responsible for the day-to-day analysis, engineering and maintenance of the IPS/IDS solution both on-site and in the cloud.

Key Responsibilities:

  • Serve as the Technical Lead for IPS/IDS Proxy Break and Inspect products/systems
  • Serve as a Line Manager for staff supporting cybersecurity network activities (RedSeal, IDS/IPS) ranging from a staff of 1 to 5 staff members over the life of the contract
  • Lead and manage the deployment, design and day to day system administration and analyst functions for both DMDC & DHRA on premise and cloud infrastructures
  • Build and configure IPS/IDS break and inspect devices according to DISA STIGs and Security Requirements Guides (SRG)
  • Work with the Network Team to implement, configure, and troubleshoot Palo Alto firewall solutions
  • Implement Palo Alto Firewall features such as URL filtering, User-ID, App-ID, Content-ID on both inbound and outbound traffic
  • Facilitate the implementation of SSL decryption (break and inspect) for full visibility of network traffic
  • Create correlation policies, customized rules, responses and violations based on threats.
  • Configure the system to a series of responses to a policy violation
  • Perform event analysis to reduce false positive alerts and optimize the performance and effectiveness of IPS to protect network assets by tuning the decoders, preprocessors and rules to optimize the performance and effectiveness.
  • Automate responses and reporting
  • Ensure system backup and restore procedures are in place and operating
  • Troubleshoot any connectivity or operational issues
  • Access
    • Manage access control lists and audit logs settings, dashboard settings and database event limits
    • Configure and create access control policy. Configure what network traffic to pass through the appliances and what type of detection to perform on the traffic
    • Manage user accounts and roles
    • Identify users and hosts that should be removed from the network
  • Metrics/Reporting
    • Create dashboards to monitor significant events, traffic and data collection
    • Provide weekly Scanning and Monitoring reports
    • Create IDS/IPS metrics detailing security posture
    • Create and maintain the IDS/IPS Break and Inspect topology diagram
    • Create weekly, monthly and in-progress review presentations, as needed
  • Create and maintain Standard Operating Procedures (SOP)
  • Provide direct support for ports, protocols, and services management (PPSM)
  • Support other cybersecurity objectives as required, including patch and vulnerability management, network monitoring, intrusion detection, intrusion prevention, and log analysis

Physical Demands:

While performing duties of the job, the successful candidate will be exposed to normal demands of an office environment,including:

Sitting and working on a computer for long, continuous periods each day; effective communications by telephone, email, and face-to-face; standing, walking, and sitting; handling and feeling objects or controls; reaching; talking and hearing; lifting and/or moving up to 20 pounds; and specific vision abilities including close vision, distance vision, color vision, peripheral vision, depth perception, and the ability to adjust and focus.

Work Environment: The noise level in the work environment is usually moderate.

About Us

At IndraSoft, you will be joining a team of highly qualified individuals who solve today’s challenges, transform to future state, and execute innovate technology solutions for our federal customers. For more than 16 years, we provide cutting-edge solutions in areas of DevSecOps, Cybersecurity, Advanced Data Analytics, emerging Cloud technologies and Enterprise IT to our Defense and Civilian customers. You will be leading our efforts to integrate and innovate technology solutions to solve our clients’ toughest technology problems.

EEO Commitment

IndraSoft is an equal employment opportunity/affirmative action employer, we are committed to providing a workplace that is free from discrimination based on race, color, ethnicity, religion, sex, national origin, age, marital status, sexual orientation, gender identity and expression, disability, veteran status, pregnancy, genetic information, or any other status protected by applicable federal, state, local, or international law. These protections also extend to applicants. Follow the links below to find out more;

If you are an individual with a disability and would like to request a reasonable workplace accommodation, please send an email toHR@IndraSoft.com . Indicate the specifics of the assistance needed.

Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
This employer is required to notify all applicants of their rights pursuant to federal employment laws.For further information, please review the Know Your Rights notice from the Department of Labor.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

9129 - Software Vulnerability Technical Lead/Manager
9129 - Software Vulnerability Technical Lead/Manager

IndraSoft Inc. • Virginia (IL)

Hybrid
9094 - Senior Systems Engineer (DevSecOps)
9094 - Senior Systems Engineer (DevSecOps)

IndraSoft Inc. • Columbia (MD)

On-site
USD 100,000 - 130,000
9123 - Senior Systems Administrator
9123 - Senior Systems Administrator

IndraSoft Inc. • San Antonio (TX), Columbia (MD)

On-site
USD 100,000 - 120,000
Competitive salary
Flexible working hours
Professional development opportunities
9130 - Cloud Container Security Technical Lead
9130 - Cloud Container Security Technical Lead

IndraSoft Inc. • Virginia (IL)

Hybrid
USD 100,000 - 140,000
9017 -Senior Engineer II
9017 -Senior Engineer II

IndraSoft Inc. • Warner Robins (GA)

On-site
USD 90,000 - 120,000
Senior DevSecOps Systems Engineer | Remote
Senior DevSecOps Systems Engineer | Remote

IndraSoft Inc. • Columbia (MD)

Hybrid
USD 100,000 - 130,000
9117- Information Assurance I
9117- Information Assurance I

IndraSoft Inc. • Warner Robins (GA)

On-site
USD 85,000 - 125,000
2123 - Full Stack Developer
2123 - Full Stack Developer

IndraSoft Inc. • Columbia (MD), Fort Leavenworth (KS), Kansas City (MO), San Antonio (TX)

Hybrid
USD 90,000 - 120,000
9018 - Information Assurance II
9018 - Information Assurance II

IndraSoft Inc. • Warner Robins (GA)

On-site
USD 80,000 - 100,000
9132 - ESS Technical Lead/Manager
9132 - ESS Technical Lead/Manager

IndraSoft Inc. • Virginia (IL)

Hybrid
USD 100,000 - 130,000
Flexible working hours
Professional development opportunities
Health insurance