A leading cybersecurity firm in St. Louis is seeking a candidate with strong skills in firewall management and automation to ensure robust security across data centers and cloud platforms. The role involves designing firewall policies, conducting policy rationalization, and developing workflows for efficient rule management. Experience with cloud platforms such as AWS and Azure is essential. This position offers a dynamic environment where you can shape network security strategies and contribute to policy compliance efforts.
Qualifications
Experience in designing and deploying enterprise firewall rule sets.
Proficient with automation tools for rule management.
Strong knowledge of cloud governance models.
Responsibilities
Design enterprise firewall policies and compliances.
Conduct policy rationalization for efficiency.
Develop automation workflows for firewall rule management.
Skills
Enterprise firewall management
Automation tools (Ansible, Terraform, Python)
Network security policy development
Cloud platforms (AWS, Azure, GCP)
Incident response
Infrastructure-as-Code
Tools
ServiceNow
CI/CD pipelines
Job description
Design and deploy enterprise firewall rule sets across data centers, cloud platforms, and edge environments, including zone-based segmentation and micro segmentation policies to minimize attack surface.
Conduct rule reviews, cleanup initiatives, and policy rationalization efforts to eliminate redundancy and reduce complexity.
Develop and maintain workflows for rule provisioning, validation, and decommissioning using automation tools (e.g., Ansible, Terraform, Python) and integrate them with ITSM systems (e.g., ServiceNow) and CI/CD pipelines.
Implement policy-as-code frameworks to standardize rule creation, change control, and compliance monitoring across on-prem and cloud environments.
Design and manage firewall policies for AWS, Azure, and GCP, implement transit gateway/hub-and-spoke architectures, and align network security with cloud governance models.
Provide tactical response for critical global incidents, codify lessons learned into reusable playbooks, and translate outcomes into enduring standards.
Conduct network consulting engagements, produce reference architectures, define structured solutions (HLD, LLD, BoM, QA), emphasize Infrastructure-as-Code and observability, and map as-is to to-be states with prioritized remediation plans.
Support the creation, refinement, and validation of firewall policies used for both production and lab deployments.
Assist in reviewing and aligning firewall rulesets to updated segmentation strategies defined during design phases.
Contribute to policy updates and validations required for migration of DMZ workloads to new fabrics.
Support testing activities—including baseline traffic verification and resiliency checks—from a policy governance perspective.
Assist in maintaining policy documentation, contributing to knowledge transfer, and supporting post-migration cleanup of legacy rules.