Palo Alto Integration Engineer, MID

Digital-Global-Connectors

McLean (VA)

On-site

USD 110,000 - 140,000

Full time

4 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Digital Global Connectors, LLC seeks a Palo Alto Integration Engineer, MID to deploy and sustain enterprise Palo Alto security infrastructure in a federal environment. The role is on-site in the Washington, DC area with active security clearance or ability to obtain one.

You will collaborate with security and network teams to implement NGFW, Panorama, Prisma Cloud, and Cortex XDR capabilities, ensuring secure, compliant operations.

Qualifications

  • Bachelor's degree or equivalent combination of education and experience.
  • 3–5 years of hands-on network security engineering experience.
  • 2–3 years with Palo Alto NGFW in enterprise environments.
  • Experience developing and administering Palo Alto firewall security policies.
  • Experience with Panorama.
  • Knowledge of enterprise networking concepts and Federal requirements.

Responsibilities

  • Engineer, implement, configure, administer, and troubleshoot Palo Alto NGFW infrastructure across environments.
  • Develop and maintain firewall security policies using App-ID, User-ID, and Content-ID.
  • Configure threat prevention capabilities and SSL/TLS decryption policies.
  • Perform rule reviews, optimization, and policy lifecycle management.
  • Analyze NGFW traffic, logs, and threats to support incident investigations.
  • Administer Panorama centralized management and device groups.
  • Configure Prisma Access, GlobalProtect, and cloud security configurations.
  • Support change-management procedures and documentation.

Skills

Network security
Palo Alto NGFW
Panorama
Security policy development
Threat prevention
Firewall administration
Troubleshooting
Federal compliance
Communication

Education

Bachelor's degree in Computer Science / IT / Cybersecurity / Network Engineering

Tools

Palo Alto NGFW
Panorama
Prisma Access
GlobalProtect
Prisma Cloud
Cortex XDR

Job description

Palo Alto Integration Engineer, MID

Location: Washington, DC – On-Site
Work Schedule: Full-Time, On-Site – Daily Commute Required
Employment Type: Full-Time
Clearance: Active security clearance or ability to obtain and maintain the required Government background investigation and IT access
Salary Range: $110,000 – $140,000 annually

Position Summary

Digital Global Connectors (DGC) is seeking a Palo Alto Integration Engineer, MID to support the engineering, implementation, administration, and continuous improvement of enterprise Palo Alto Networks security infrastructure in a federal government environment.

This is a local, on-site position requiring a daily commute to the customer site in the Washington, DC area. Only candidates who currently reside within a reasonable daily commuting distance of the worksite will be considered. This position is not remote, and candidates seeking to relocate to the area at a later date will not be considered for this opening.

The Palo Alto Integration Engineer will work as part of a network and cybersecurity engineering team supporting Palo Alto Networks Next-Generation Firewalls (NGFW), Panorama, Prisma Access, GlobalProtect, Prisma Cloud, and Cortex XDR capabilities. The engineer will work closely with senior security engineers, network engineers, cloud operations personnel, and Government stakeholders to maintain secure, reliable, and compliant network security services.

The ideal candidate has hands-on Palo Alto Networks experience, strong enterprise networking fundamentals, and experience supporting cybersecurity operations in environments governed by Federal security and compliance requirements.

Key Responsibilities
Palo Alto NGFW Engineering & Administration
  • Engineer, implement, configure, administer, and troubleshoot Palo Alto Networks Next-Generation Firewall infrastructure across perimeter, internal segmentation, data center, and cloud-connected environments.
  • Develop and maintain firewall security policies using Palo Alto Networks App-ID, User-ID, and Content-ID capabilities.
  • Configure and maintain threat prevention capabilities, including antivirus, anti-spyware, vulnerability protection, URL filtering, file blocking, WildFire, and DNS Security.
  • Assist with the implementation and maintenance of SSL/TLS decryption policies.
  • Perform firewall rule reviews, rule-base optimization, shadow-rule identification, and security policy lifecycle management.
  • Troubleshoot firewall connectivity, performance, routing, and security policy issues and perform root-cause analysis.
  • Analyze NGFW traffic, threat, and security logs to support troubleshooting, security monitoring, and incident investigations.
Panorama & Centralized Management
  • Administer and maintain Palo Alto Networks Panorama centralized management capabilities.
  • Configure and maintain Panorama device groups, templates, shared policies, pre-rules, and post-rules.
  • Support onboarding and configuration management of Palo Alto Networks firewalls through Panorama.
  • Monitor Panorama platform health, device connectivity, synchronization, and policy deployment.
  • Support Panorama upgrades, patches, configuration changes, and operational maintenance.
  • Generate operational, security, and compliance reports through Panorama.
Prisma Access & GlobalProtect
  • Support the administration and maintenance of Palo Alto Networks Prisma Access capabilities.
  • Configure and troubleshoot GlobalProtect remote-access services, gateways, agents, and authentication integrations.
  • Monitor Prisma Access availability, connectivity, performance, and security effectiveness.
  • Maintain and optimize cloud-delivered security policies, URL filtering, and threat prevention configurations.
Security Operations & Threat Prevention
  • Monitor and analyze Palo Alto Networks threat prevention logs, WildFire results, and security events.
  • Assist with tuning threat prevention profiles and firewall policies to improve security effectiveness and reduce false positives.
  • Support cybersecurity incident response activities through firewall log analysis, traffic investigation, policy analysis, and containment support.
  • Assist with Cortex XDR monitoring, alert triage, prevention policy administration, and detection-content tuning.
  • Support the use of MITRE ATT&CK concepts in security monitoring and detection activities.
Cloud Security
  • Assist with the administration and monitoring of Palo Alto Networks Prisma Cloud capabilities.
  • Monitor and triage cloud security posture and compliance findings.
  • Support Prisma Cloud policy configuration, alerting, reporting, and remediation tracking.
  • Assist with integration of Prisma Cloud findings into SIEM and vulnerability-management processes.
  • Support cloud security operations within AWS and/or Microsoft Azure environments.
Change Management & Documentation
  • Prepare firewall and security-platform changes for Change Advisory Board (CAB) review.
  • Develop implementation plans, technical impact assessments, testing procedures, and rollback plans.
  • Execute approved configuration changes in accordance with established change-management procedures.
  • Develop and maintain technical documentation, including SOPs, runbooks, troubleshooting guides, configuration records, and operational procedures.
  • Maintain accurate configuration, change, and operational records.
Federal Cybersecurity Compliance
  • Support configuration and operation of Palo Alto Networks technologies in accordance with applicable Federal cybersecurity requirements and security baselines.
  • Support NIST SP 800-53, FISMA, FedRAMP, NIST SP 800-207 Zero Trust Architecture, OMB Zero Trust requirements, and applicable DISA STIG requirements.
  • Assist with Authorization to Operate (ATO) activities, including security-control implementation documentation, SSP contributions, continuous-monitoring evidence, and audit artifacts.
  • Support configuration-compliance assessments and remediation of security baseline or STIG deviations.
  • Monitor applicable Palo Alto Networks vulnerabilities and vendor advisories and support vulnerability-remediation activities.
Required Qualifications
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Network Engineering, or a related field. An equivalent combination of education and directly relevant professional experience may be considered.
  • 3–5 years of hands-on experience in network security engineering, firewall administration, or a closely related discipline.
  • At least 2–3 years of hands-on experience with Palo Alto Networks NGFW platforms in an enterprise environment.
  • Demonstrated experience developing and administering Palo Alto Networks firewall security policies and threat prevention profiles.
  • Hands-on experience with Palo Alto Networks Panorama.
  • Strong knowledge of enterprise networking concepts, including:
    • Routing and switching
    • VLANs
    • Network segmentation
    • Firewall zones
    • IPsec and SSL VPNs
    • TCP/IP and network troubleshooting
  • Experience troubleshooting firewall connectivity, performance, and security-policy issues.
  • Experience analyzing firewall, traffic, and threat-prevention logs.
  • Familiarity with Federal cybersecurity requirements, including NIST SP 800-53, FISMA, and applicable DISA STIGs.
  • Experience working within formal change-management processes.
  • Strong written and verbal communication skills.
  • Ability to develop clear technical documentation and communicate effectively with technical and non-technical stakeholders.
  • Active security clearance or ability to obtain and maintain the Government background investigation, clearance, and IT access required for the position.
Preferred Qualifications
  • Previous experience supporting Palo Alto Networks technologies on a Federal Government contract or Federal IT program.
  • Experience administering Palo Alto Networks Prisma Access and GlobalProtect.
  • Experience with Prisma Cloud.
  • Experience with Cortex XDR.
  • Experience with Palo Alto Networks WildFire.
  • Experience supporting AWS and/or Microsoft Azure Government environments.
  • Experience integrating Palo Alto Networks logging with enterprise SIEM platforms.
  • Experience supporting ATO and continuous-monitoring activities.
  • Knowledge of Zero Trust Architecture and NIST SP 800-207.
  • Familiarity with MITRE ATT&CK.
  • Experience using the PAN-OS CLI for troubleshooting and configuration verification.
  • Basic scripting experience using Python, PowerShell, or Bash.
  • Experience with Palo Alto Networks APIs and security-platform automation.
Preferred Certifications
  • Palo Alto Networks Certified Network Security Administrator (PCNSA)
  • Palo Alto Networks Certified Network Security Engineer (PCNSE)
  • CompTIA Security+
  • CompTIA Network+
  • Cisco Certified Network Associate (CCNA)
  • Cisco Certified Network Professional (CCNP)
  • Certified Information Systems Security Professional (CISSP)
  • GIAC Certified Enterprise Defender (GCED)
  • Other relevant networking, Palo Alto Networks, or cybersecurity certifications
Core Competencies
  • Strong Palo Alto Networks technical proficiency
  • Enterprise network-security engineering knowledge
  • Analytical and troubleshooting ability
  • Security-first decision making
  • Attention to configuration and documentation accuracy
  • Ability to operate within structured Federal change-management and compliance environments
  • Strong collaboration with engineering, cybersecurity, cloud, and Government teams
  • Ability to work independently while appropriately escalating complex technical issues
Compensation

DGC anticipates a base salary range of $110,000–$140,000 annually for this position. Actual compensation will be determined based on factors including relevant experience, Palo Alto Networks expertise, certifications, Federal contracting experience, clearance status, education, and other job-related qualifications.

Equal Employment Opportunity

Digital Global Connectors, LLC is an Equal Opportunity Employer. DGC provides equal employment opportunities to all qualified applicants and employees without regard to race, color, religion, sex, national origin, age, disability, protected veteran status, genetic information, or any other characteristic protected by applicable Federal, state, or local law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Palo Alto Integration Engineer, MID
Palo Alto Integration Engineer, MID

Digital Global Connectors • McLean (VA)

On-site
USD 110,000 - 140,000
Palo Alto Integration Technician, Junior
Palo Alto Integration Technician, Junior

Digital-Global-Connectors • McLean (VA)

On-site
USD 70,000 - 95,000
Palo Alto Integration Technician, Junior
Palo Alto Integration Technician, Junior

Digital Global Connectors • McLean (VA)

On-site
USD 70,000 - 95,000
Palo Alto Integration Engineer, Senior
Palo Alto Integration Engineer, Senior

Digital Global Connectors • McLean (VA)

On-site
USD 135,000 - 160,000
Palo Alto Integration Engineer, Senior
Palo Alto Integration Engineer, Senior

Digital-Global-Connectors • McLean (VA)

On-site
USD 135,000 - 160,000
Palo Alto Integration Engineer - Mid
Palo Alto Integration Engineer - Mid

Koniag Government Services • Washington

On-site
USD 110,000 - 160,000
Health insurance (medical, dental, and
Palo Alto Firewall Engineer
Palo Alto Firewall Engineer

System One • Springfield (VA)

On-site
USD 150,000 - 170,000
Health benefits
401(k) plan
Onsite work
Senior Palo Alto Networks Engineer
Senior Palo Alto Networks Engineer

CELESTIAL INNOVATIONS GROUP LLC • Washington

Hybrid
USD 100,000 - 130,000
401(k)
Competitive salary
Health insurance
+3
On-Site Palo Alto NGFW Engineer — Washington, DC
On-Site Palo Alto NGFW Engineer — Washington, DC

Digital-Global-Connectors • McLean (VA)

On-site
USD 110,000 - 140,000
Palo Alto NGFW Engineer — On-Site in DC
Palo Alto NGFW Engineer — On-Site in DC

Digital Global Connectors • McLean (VA)

On-site
USD 110,000 - 140,000