Enable job alerts via email!

Network Security Engineer

Genuent

Merrifield (VA)

Remote

USD 100,000 - 130,000

Full time

3 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading company is seeking a Network Security Engineer specializing in Palo Alto for a remote role. The successful candidate will evaluate firewall rules and comply with evolving audit requirements, contributing to the security of on-premise and cloud systems. With a focus on compliance and optimization, this contract position offers competitive compensation and comprehensive benefits.

Benefits

Comprehensive medical benefits
Competitive pay, 401(k)
Retirement plan

Qualifications

  • 7 – 10 years advanced hands-on experience
  • Experience in large company environments, preferably financial institutions.
  • Cisco CCNA cert OR CompTIA Security+ Certification.

Responsibilities

  • Validate existing firewall rulesets and optimize them.
  • Provide network security engineering services.
  • Conduct firewall rule analysis across various vendor devices.

Skills

Knowledge of Palo Alto SCM
General understanding of Cisco CDO
Check Point experience
FireMon experience
Splunk experience
Cross-functional communication skills

Education

Bachelor's Degree in Computer or Electrical Engineering, Computer Science or related field

Job description

Title: Network Security Engineers (specializing in Palo Alto)

Location: Remote

Duration: Initial 6 months contract plus extension

Work Requirements: US Citizen, GC Holders or Authorized to work in US

Job Description

Network Security Engineering services to validate existing firewall rulesets in place and approve new firewall requests for client's on-premise and cloud firewalls. The project requires that all firewall rules be reviewed and optimized, removing legacy rules, and validating business owners for existing production rules to meet Automated Cybersecurity Evaluation Toolbox (ACET) evolving private banking audit requirements. Additionally, the project requires security engineering services support the integration of FireMon and ServiceNow ticketing to automate the quarterly and annual firewall rules compliance reviews.

Scope of Work:

Network Security Services

  1. Firewall Rule analysis across various vendor devices (over 30,000 firewall rules & 11,000 servers)
  2. Ensure new firewall rule requests align with client’s security and compliance policies
  3. Recommendation of Firewall Rule security and design improvements
  4. Validation of rules to disable
  5. In-depth troubleshooting of infrastructure as applicable
  6. Establish and maintain system documentation
  7. Integration support between FireMon and ServiceNow
  8. Integration support between Firemon and Illumio
  9. Tracking of Firewall Rule status and their metrics
  10. Ability to provide OnCall coverage and work after-hour changes as needed to support project/KTLO efforts

Firewall Rule Configuration and Audit Consulting:

  1. Review existing FireMon rule audit reports and findings with client’s team (hit counts, unused rules, etc.)
  2. Determine process for rule owner identification and cleanup
  3. Review of firewall rules – Cisco and Check Point virtual firewalls
  4. For each rule, determine current asset owner and document
  5. For each rule, validate if the firewall rule is still required for all assets covered by rule (consult Navy Federal rule owners)
  6. If rules contain assets that are no longer in production or policy that is no longer required, document finding and schedule change control to remove/clean up rule from existing firewall policy.
  7. Leverage existing firewall management tools for discovery and maintenance/cleanup:
    • Adaptive Security Device Manager (ASDM)/Cisco Defense Orchestrator and FireMon Security Manager
  8. Determine and document process for validating rules with client's team members
  9. Monitor ServiceNow ticket queue to avoid SLA delay for client tickets
Key Qualifications:
  • Bachelor's Degree in Computer or Electrical Engineering, Computer Science or related field or equivalent work experience
  • 7 – 10 years advanced hands-on experience and knowledge
  • General understanding of Cisco CDO for legacy Cisco ASAs
  • Knowledge of Palo Alto SCM for NGFW migration and effort estimation
  • Check Point experience needed
  • FireMon experience needed
  • Azure Cloud experience a plus
  • Palo Alto experience a plus
  • Splunk experience needed
  • Cisco CCNA cert OR CompTIA Security+ (Plus) Certification
  • Experience in large company environments, preferably financial institutions
  • Cross-functional communication skills
Additional Responsibilities:

A Cyber Security Engineer protects the organization's computer systems and networks from cyber threats by implementing security measures, monitoring systems, and responding to incidents. Key skills include expertise in executing security measures, proficiency with firewalls, VPNs, IDS/IPS, web proxies, and strong attention to detail and problem-solving skills.

Benefits:
  • Comprehensive medical benefits
  • Competitive pay, 401(k)
  • Retirement plan
  • …and much more!
About INSPYR Solutions:

Technology is our focus and quality is our commitment. We deliver flexible technology and talent solutions tailored to client needs. Learn more at inspyrsolutions.com.

INSPYR Solutions provides Equal Employment Opportunities (EEO) to all employees and applicants, complying with all applicable laws.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Network Security Engineer

INSPYR Solutions

Merrifield

Remote

USD 100’000 - 120’000

6 days ago
Be an early applicant

Network Security Engineer

Jobs via Dice

Merrifield

Remote

USD 100’000 - 130’000

4 days ago
Be an early applicant

Palo Alto Network Security Engineer

Tandym Group

Vienna

Remote

USD 100’000 - 120’000

2 days ago
Be an early applicant

Network Security Engineer with Security Clearance

Marathon TS Inc

Washington

Remote

USD 100’000 - 150’000

3 days ago
Be an early applicant

Senior Network Security Engineer | New York, NY, USA

Jack Henry & Associates

New York

Remote

USD 109’000 - 190’000

2 days ago
Be an early applicant

Remote Network Security Engineer

StopAHack.com

Remote

USD 81’000 - 230’000

2 days ago
Be an early applicant

Network Security Engineer

The Planet Group

Remote

USD 81’000 - 121’000

6 days ago
Be an early applicant

Senior Cloud Network Security Engineer

The Brixton Group

Charlotte

Remote

USD 120’000 - 140’000

6 days ago
Be an early applicant

Lead Network Security Engineer

Insurity

Remote

USD 115’000 - 175’000

3 days ago
Be an early applicant