Senior Network/Security Engineer (Palo Alto)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior Network/Security Engineer (Palo Alto): Engineering and operating enterprise network security infrastructure for US federal agencies with an accent on Zero Trust principles and proxy engineering. Focus on configuring Palo Alto firewalls, managing SSL/TLS inspection, and ensuring strict compliance with IRS/NIST boundary protection standards.
Location: Remote (Must be based in the US)
Salary: $153,000–$187,000
Company
is a technology company that empowers public-sector organizations, such as NASA and the GSA, to deliver scalable and impactful digital services.
What you will do
- Operate and engineer enterprise web proxies and Palo Alto firewalls using PAN-OS and Strata Cloud Manager.
- Design secure network infrastructure enforcing Zero Trust principles.
- Configure Network ACLs, firewalls, and security groups to isolate sensitive workloads.
- Manage SSL/TLS inspection, certificate chains, and authentication flows (SAML/OIDC).
- Perform deep-packet analysis using tcpdump/Wireshark and log correlation via Splunk/ELK.
- Maintain 100% compliance with IRS/NIST boundary protection standards.
Requirements
- Proficiency with Palo Alto, PAN-OS, SIEM, and Security Configuration Management (SCM).
- Deep knowledge of Layer 3 fundamentals (BGP/OSPF, CIDR, VRFs) and TCP/UDP behavior.
- Expertise in writing complex PCRE for performance-optimized filtering.
- Experience with Data Loss Prevention (DLP) and RBAC access models.
- US-based residency and work authorization.
Nice to have
- Current or previous Federal Government Clearance.
Culture & Benefits
- Remote-first culture with tools and processes built for flexibility and collaboration.
- Company-subsidized health, dental, and vision insurance.
- Flexible PTO and 401K with employer match.
- Paid parental leave after one year of service.
- Employee Assistance Program.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →