TIC 3.0 Developer

Big Impact Tech (BIT)

Washington (District of Columbia)

On-site

USD 100,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Big Impact Tech (BIT) seeks a TIC 3.0 Developer in Washington, DC. The role involves architecting and managing secure AWS network environments, deploying Palo Alto firewalls, and implementing Zero Trust principles. Candidates should have over 5 years of experience in AWS network design, strong knowledge of firewall management, and capabilities in Infrastructure as Code with Terraform or CloudFormation. A Public Trust determination is required, and certification in AWS or Palo Alto is a plus.

Qualifications

  • 5+ years of experience architecting and managing complex AWS network environments.
  • 3+ years of experience deploying and managing Palo Alto VM-Series firewalls within AWS.
  • 2+ years of experience with Terraform or CloudFormation.

Responsibilities

  • Architect and manage AWS network environments to meet TIC 3.0 standards.
  • Deploy and manage Palo Alto VM-Series firewalls in AWS.
  • Use Terraform or CloudFormation to deploy networking components as IaC.

Skills

AWS network architecture
Palo Alto VM-Series firewalls
Terraform
Hybrid Connectivity
Zero Trust principles

Education

HS diploma or GED

Tools

Terraform
CloudFormation

Job description

Big Impact Tech (BIT) is a Small Business providing IT and business management consulting to federal and commercial clients. We deliver mission-focused solutions in data, cloud, cybersecurity, and program management.

Role Overview

The TIC 3.0 Developer will focus on architecting, implementing, and maintaining secure, compliant network environments in AWS with an emphasis on Trusted Internet Connections (TIC) 3.0 principles. This role involves hands‑on deployment and management of Palo Alto VM-Series firewalls, infrastructure as code (IaC), hybrid connectivity, and Zero Trust/TIC‑aligned security controls, often functioning independently to support federal client requirements.

Responsibilities
  • Architect and manage complex AWS network environments to meet TIC 3.0 and federal security standards.
  • Deploy and manage Palo Alto VM-Series firewalls in AWS, including configuration of GlobalProtect, Panorama, and security policy orchestration.
  • Use Terraform or CloudFormation to deploy major networking components via Infrastructure as Code (IaC), ensuring repeatable, documented, and auditable environments.
  • Configure, troubleshoot, and maintain hybrid connectivity solutions, including AWS Direct Connect, Site‑to‑Site VPNs, and SD‑WAN integrations.
  • Design and implement Transit Gateway architecture and VPC Peering in multi‑account AWS environments.
  • Apply Zero Trust principles and TIC 3.0 requirements within AWS and Palo Alto ecosystems to enhance application and network security.
  • Serve as the primary (or sole) Network Architect/Engineer responsible for discovery, documentation, design, and execution of network security solutions with minimal supervision.
  • Collaborate with stakeholders to ensure secure, compliant network designs that support mission‑critical federal applications.
Qualifications
  • 5+ years of experience architecting and managing complex AWS network environments.
  • 3+ years of experience deploying and managing Palo Alto VM-Series firewalls within a public cloud environment (AWS), including with Global Protect, Panorama, and security policy orchestration.
  • 2+ years of experience with Terraform or CloudFormation, including using IaC to deploy major networking components to ensure repeatable, documented environments.
  • Experience with Hybrid Connectivity and WAN, including configuring and troubleshooting AWS Direct Connect, Site‑to‑Site VPNs, and SD‑WAN integrations to maintain hybrid‑cloud connectivity.
  • Knowledge of Transit Gateway architecture and VPC Peering in multi‑account environments.
  • Knowledge of implementing Zero Trust or TIC 3 principles within an AWS or Palo Alto ecosystem.
  • Ability to function as the sole Network Architect or Engineer to be responsible for discovery, documentation, and execution with minimal supervision.
  • Ability to obtain and maintain a Public Trust or Suitability/Fitness determination based on client requirements.
  • HS diploma or GED.
Nice to Have
  • AWS Certified Advanced Networking – Specialty Certification
  • Palo Alto Networks Certified Network Security Engineer (PCNSE) Certification
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

TIC 3.0 Network Architect - AWS, Palo Alto & IaC
TIC 3.0 Network Architect - AWS, Palo Alto & IaC

Big Impact Tech (BIT) • Washington

On-site
USD 100,000 - 130,000
TIC Systems Engineer
TIC Systems Engineer

ERT, Inc. • Arlington (VA)

On-site
USD 120,000 - 160,000
TIC Systems Engineer
TIC Systems Engineer

Entarian • Arlington (VA)

On-site
USD 140,000 - 190,000
TIC Security Engineer: Zero Trust & Cloud Boundary Expert
TIC Security Engineer: Zero Trust & Cloud Boundary Expert

Entarian • Arlington (VA)

On-site
USD 140,000 - 190,000
Firewall Engineer
Firewall Engineer

Tetrad-Digital-Integrity-LL • Arlington (VA)

On-site
USD 115,000 - 125,000
Palo Alto Firewall Engineer - IoT
Palo Alto Firewall Engineer - IoT

Entelligence • United States

On-site
USD 100,000 - 130,000
Competitive base salary
Medical, dental, vision and life insurance
Vacation, sick time and paid holidays
+1
Firewall Engineer
Firewall Engineer

Tetrad Digital Integrity LLC • Arlington (VA)

On-site
USD 115,000 - 125,000
Cloud Network Security Engineer (Terraform)
Cloud Network Security Engineer (Terraform)

Insight Global • Atlanta (GA)

On-site
USD 8,265 - 13,776
Cloud Engineer – Contract
Cloud Engineer – Contract

Jobtailor • Columbia (SC)

On-site
USD 140,000 - 190,000
Network Architect III
Network Architect III

NextGen • Greenwood Village (CO)

On-site
USD 120,000 - 170,000