Implementation Engineer 4 (Perimeter)

Akkodis

United States

On-site

USD 76,000 - 79,000

Full time

7 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Akkodis is seeking an Implementation Engineer 4 (Perimeter) for a remote, 12-month contract role focused on firewall lifecycle management and secure perimeter engineering. The selected expert will manage hardware/software refreshes, platform migrations, vulnerability remediation, and secure configurations across Fortinet FortiGate and IDS/IPS tooling.

The role requires hands-on firewall experience in large-scale environments, troubleshooting, and collaboration with security architecture and

Qualifications

  • Bachelor's degree or equivalent.
  • Eight (8) or more years of IT experience with firewall solutions.

Responsibilities

  • Lifecycle management and rapid vulnerability response activities.
  • Perform assessments, plan development, scheduling, and implementation with zero production impact.
  • Develop implementation plans with standards and runbooks; review pre/post validation and UAT criteria.
  • Operate QA functions to meet engineering standards and mitigate risks.
  • Communicate risks, status, and remediation plans to stakeholders and leadership.
  • Support scheduled maintenance windows, including nights/weekends as required.

Skills

Fortinet FortiGate
TippingPoint IPS
Firewall lifecycle management
Enterprise networking
Troubleshooting
Communication skills
Python scripting
Change management

Education

Bachelor's degree

Tools

Fortinet FortiGate
TippingPoint IPS

Job description

Akkodis is looking for a Implementation Engineer 4 (Perimeter) that is Remote.

Title: Implementation Engineer 4 (Perimeter)
Location: Remote
Duration: 12 Months contract with possible extension

Pay Range: $55- $57 per hour; The rate may be negotiable based on experience, education, geographic location, and other factors.

ABOUT THE ROLE:

The Network Delivery and Execution Team is seeking a Cybersecurity Engineer to support firewall lifecycle management initiatives, including hardware and software refreshes, platform migrations, and vulnerability remediation activities. The role focuses on maintaining a secure, supported perimeter environment by replacing end-of-life hardware, eliminating non-permitted technologies, and executing technical solutions that reduce operational and security risk.

Position Summary

The Firewall Engineer is responsible for delivering and supporting enterprise firewall and IDS/IPS lifecycle management activities across the organization's perimeter security infrastructure. Primary responsibilities include hardware and software refreshes, platform upgrades, migrations, replacements, capacity expansions, decommissions, and deployment of new secure environments. The engineer will lead technical planning, implementation, validation, and troubleshooting activities to ensure successful delivery with minimal operational impact.

The ideal candidate possesses hands-on experience building, configuring, deploying, upgrading, and troubleshooting Fortinet firewall and IDS/IPS technologies within complex enterprise environments. This role requires strong technical troubleshooting skills, the ability to quickly diagnose and resolve infrastructure issues, and experience executing changes during maintenance and implementation windows.

Success in this position requires effective collaboration across engineering, operations, architecture, and project teams. The candidate must be able to manage multiple technical initiatives simultaneously, communicate technical risks and implementation status to stakeholders at all levels, and consistently deliver high-quality results in a fast-paced enterprise environment.

Qualifications:
  • Bachelor's degree or equivalent.
  • Eight (8) or more years of IT experience with firewall solutions (i.e., building FWs from scratch).
Key Responsibilities
  • Responsible for lifecycle management and rapid vulnerability response activities.
  • Performs technical assessments to fully understand a variety of complex technical requests, vetting of the proposed solution, plan development, scheduling, and the implementation of these changes, which delivers the intended outcome along with zero impact to the production network.
  • Detailed implementation plans will be reviewed for all designs, pre- and post-validation procedures, UAT acceptance criteria, and back-out plans. Candidate must understand how designs turn into implementation, and those implementations to be based upon standards and predefined runbooks.
  • Operate quality assurance functions prior to each implementation to meet engineering standards and mitigate risks.
  • Proactively raise questions and/or concerns to the Design Engineering Team to address them prior to change implementation.
  • Functional understanding of diverse set of networked applications requiring perimeter management solutions (HTTP, HTTPS, SSH, BGP, SNMP, MULTICAST, DHCP RELAY, ANYCAST services, etc.).
  • Adheres to work effort and project close-out practices (e.g., database updates, asset tracking, inventory systems, records retention, and the related systems, tools, and process updates).
  • Works with Firewall Security Architecture and Design Engineering Teams to share knowledge in support of standards, new technology adoption, systems enhancements/automation, or process changes.
  • Identify opportunities to improve service delivery and objectively measure the effects of these efforts over time.
  • Able to work nights and weekends as required to support implementation activities.
  • Understanding of the bank's network infrastructure and associated risk management practices are highly recommended to remain successful.
  • Knowledge of DMZ networking and Cisco routing/switching is a plus.
Required Skills:
  • Build, configure, deploy, and support Fortinet FortiGate firewalls and TippingPoint IPS platforms in enterprise environments, including Inline and IDS deployments.
  • Execute hardware and software lifecycle management activities, including platform refreshes, migrations, upgrades, replacements, and decommissioning efforts.
  • Perform FortiOS, TippingPoint software, including planning, pre-checks, implementation, validation, and post-installation support.
  • Strong understanding of enterprise networking fundamentals, including routing, switching, Layer 2/Layer 3 protocols, multicast, and traffic flows.
  • Strong troubleshooting skills across network connectivity, routing, traffic inspection, firewall policy, platform performance, and configuration-related issues.
  • Lead and support technical troubleshooting efforts during implementations, maintenance activities, and production incidents.
  • Develop and maintain implementation procedures, technical documentation, deployment guides, and low-level configuration details.
  • Effectively communicate technical risks, implementation status, issues, and remediation plans to engineering teams, project stakeholders, and leadership.
  • Strong analytical, problem-solving, organizational, and attention-to-detail skills.
  • Ability to support scheduled maintenance windows, including nights and weekends, as required.
Desired Skills:
  • Experience developing automation, reporting, and operational tooling using Python, Shell scripting, JSON, APIs, or similar technologies.
  • Demonstrated ability to identify and implement process improvements through automation, standardization, and operational optimization.
  • Strong verbal and written communication skills with the ability to communicate technical concepts to both technical and non-technical audiences.
  • Experience operating in large-scale enterprise environments supporting multiple concurrent projects, strict change management processes, and aggressive delivery timelines.
  • Working knowledge of enterprise DMZ architectures, perimeter security controls, and supporting network infrastructure.

Equal Opportunity Employer/Veterans/Disabled

Benefit offerings available for our associates include medical, dental, vision, life insurance, short-term disability, additional voluntary benefits, an EAP program, commuter benefits, and a 401K plan. Our benefit offerings provide employees the flexibility to choose the type of coverage that meets their individual needs. In addition, our associates may be eligible for paid leave including Paid Sick Leave or any other paid leave required by Federal, State, or local law, as well as Holiday pay where applicable. Disclaimer: These benefit offerings do not apply to client-recruited jobs and jobs that are direct hires to a client.

To read our Candidate Privacy Information Statement, which explains how we will use your information, please visit https://www.akkodis.com/en/privacy-policy.

The Company will consider qualified applicants with arrest and conviction records in accordance with federal, state, and local laws and/or security clearance requirements, including, as applicable:

  • The California Fair Chance Act.
  • Los Angeles City Fair Chance Ordinance.
  • Los Angeles County Fair Chance Ordinance for Employers.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Perimeter Firewall Engineer (Remote)
Senior Perimeter Firewall Engineer (Remote)

Akkodis • United States

On-site
USD 76,000 - 79,000
Network Engineer
Network Engineer

Akkodis • Omaha (NE)

On-site
USD 80,000 - 105,000
401(k) with match
Medical insurance
Vision assistance
+1
Senior Network Consultant
Senior Network Consultant

Akkodis • Nashville (TN)

Hybrid
USD 120,000 - 150,000
401(k) with match
Technical Coordinator
Technical Coordinator

Akkodis • Irving (TX)

Hybrid
USD 96,000 - 103,000
Medical insurance
401K plan
Firewall Infrastructure Engineer
Firewall Infrastructure Engineer

Matlen Silver • Chandler (AZ)

Hybrid
USD 110,000 - 150,000
Network Engineer
Network Engineer

Fenix24 • United States

Remote
USD 80,000 - 110,000
Internal and external learning & development opportunities
Flexible PTO programs
Family friendly programs - Care packages
+3
Sr. Firewall/Network Security Administrator
Sr. Firewall/Network Security Administrator

Calance • Tallapoosa (GA)

Hybrid
USD 90,000 - 130,000
EPO/PPO Medical Plans
401K Retirement vesting program
Flex Spending Plan
+1
Staff Software Development Engineer
Staff Software Development Engineer

Zoomcar • Sunnyvale (CA)

On-site
USD 150,000 - 215,000
Medical, dental, and vision insurance
401(k)
Paid holidays and vacation time
Information Security Engineer
Information Security Engineer

Akkodis • United States

Remote
401(k) with match
Network Infrastructure Engineer
Network Infrastructure Engineer

Akkodis • San Francisco (CA)

On-site
Medical insurance
Dental insurance
Vision insurance
+2