Network Security Engineer - PaloAlto
Role summary
We are seeking an experienced Network Security Engineer to design, implement, and manage enterprise-grade network security infrastructure, with a strong focus on Palo Alto technologies. The role involves configuring and maintaining security systems like firewalls, VPNs, IDS/IPS, NAC, and SIEM integrations. Key responsibilities include threat analysis, vulnerability assessments, proactive monitoring, leading incident response, and implementing zero-trust architectures. The engineer will also conduct security audits, risk assessments, ensure compliance with frameworks like NIST and ISO 27001, and mentor junior staff. Required qualifications include 4-5 years of network security experience and active CCNA/CCIE certifications.
Role Overview
We are seeking an experienced Network Security Engineer to join our team. The ideal candidate holds both CCNA and CCIE certifications and has hands-on experience designing, implementing, and managing enterprise-grade network security infrastructure with Palo Alto technologies.
Key Responsibilities
- Design, deploy, and manage Palo Alto Networks firewalls, Panorama, and associated security policies across enterprise environments.
- Configure and maintain network security infrastructure including VPNs, IDS/IPS, NAC, and SIEM integrations.
- Perform threat analysis, vulnerability assessments, and proactive security monitoring.
- Lead network security incident response and root cause analysis activities.
- Collaborate with cross-functional teams to implement zero-trust network architecture.
- Develop and maintain network security standards, documentation, and runbooks.
- Conduct security audits, risk assessments, and ensure compliance with industry frameworks (NIST, ISO 27001, CIS).
- Mentor junior engineers and provide technical leadership on security projects.
Required Qualifications
- Minimum 4–5 years of hands-on experience in network security engineering.
- Active CCNA (Cisco Certified Network Associate) certification — required.
- Active CCIE (Cisco Certified Internetwork Expert) certification — required.
- Demonstrated expertise with Palo Alto Networks firewalls, Panorama, and Prisma Access.
- Deep understanding of TCP/IP, BGP, OSPF, VLANs, SD-WAN, and related networking protocols.
- Experience with security technologies: VPN, NAC, IDS/IPS, SIEM, DLP.
- Proficiency with network monitoring and packet analysis tools (Wireshark, NetFlow, etc.).
Preferred Qualifications
- Palo Alto Networks Certified Network Security Engineer (PCNSE) certification.
- Experience with cloud security in AWS, Azure, or GCP environments.
- Familiarity with automation and scripting (Python, Ansible, Terraform).
- Knowledge of compliance frameworks: NIST CSF, CIS Benchmarks, ISO 27001.
- Prior experience in a managed security services or consulting environment.
Work Location
This role is open to candidates based in the United States. Remote, hybrid, or on-site arrangements will be considered depending on location and business needs.
Work Location: Remote