Onsite Perimeter Firewall Engineer, USC Only at Remote, Remote, USA |
Email: [email protected] |
https://shorturl.at/zCvmO https://jobs.nvoids.com/job_details.jsp?id=2299371&uid= From: Shubham Choudhary, Quantum World Technologies [email protected] Reply to: [email protected] Job Title : Perimeter Firewall Engineer Location : Onsite (Plano, TX) Local Interview : Phone/Video USC Only Job Description: Provision and configure firewalls for customers, including Next-Generation Firewall (NGFW) devices and Zone-Based Firewalls (ZBFW) within the SD-WAN network. Develop and maintain rule sets for firewalls. Help determine tactics, techniques, and procedures (TTPs) for firewalls. Recommend improvements for IT systems and infrastructure. Perform patch management for MSP firewall tools and customer-provided firewall tools. Provides recommendations to leadership based on significant threats and vulnerabilities. Work with established policies to design and implement firewall rules and configurations across various platforms. Implement and document firewall changes based on customer specifications and requirements. Characterize and analyze network traffic to identify anomalous activity and potential threats to network resources. Document and escalate incidents (including event history, status, and potential impact for further action) that may cause ongoing and immediate impact to the environment. Create and document procedures and work instructions for use by the firewall Engineering staff (Tier 2 through Tier 3). Train and mentor other engineers as needed. Essential Skills: This is an engineer role, and the candidate must be able to demonstrate ability to install, manage and maintain Firewalls in both on-premises and SD-WAN environments. Demonstrated experience in supporting Cisco Firepower and SD-WAN as an engineer is REQUIRED. Holding one or more Technical Certifications is REQUIRED. Holding one or more vendor-neutral certifications (e.g., Network +, CISM, CISSP) is a plus for this position. Requirements: Must be able to pass a CJIS background check process and other background checks to comply with customers contracts. Complete basic safety and compliance training to meet the customer requirements. Ability to work a rotating shift and on-call schedule as required. Eight (8) years of Network IT implementation and/or Network design experience. With five (5) years as a part of a perimeter defense team. The Preferred candidate holding one or more of the following industry certifications will be a plus. Certified Ethic Hacker (CEH) or equivalent. Certified Incident Handler (GCIH or ECIH). Other Certs - such as CompTIA Networking+, any Cloud Certification, Azure Sentinel. The Preferred candidate holding one or more technical certifications will be a plus. o Cisco Certified Network Professional (CCNP) o Implementing Cisco SD-WAN Solutions Desirable Skills: Ability to configure, deploy, and troubleshoot Cisco Firewall Platforms. Ability to configure, deploy, and troubleshoot Cisco SD-WAN. Under limited supervision, support and develop Firewall policies. Design and implement firewall solutions using Cisco FMC and related technologies. Develop and maintain comprehensive firewall design documentation. Work with internal teams to integrate applications with firewall policies. Provide accurate and timely reporting on all project deliverables. Recommends secure and effective solutions for system/application development in compliance with Information protection standards. Ability to analyze firewall configurations and rule sets. Working knowledge of Cisco 8300/8500 series, FTD, FMC. Working knowledge of SIEM integration preferred. Working knowledge of Windows Active Directory Domains. Working Knowledge of various Linux OS. Strong Knowledge of information technology (IT) principles and methods (e.g., firewalls, demilitarized zones, encryption). Ability to interpret the information collected by network tools (e.g. Nslookup, Ping, and Traceroute). Knowledge of computer networking concepts and protocols, and related methodologies. Knowledge of data protection and privacy principles. Knowledge of cyber threats and vulnerabilities. Knowledge of encryption algorithms, cryptography, and cryptographic key management concepts. Knowledge of host/network access control mechanisms (e.g., access control list, capabilities lists). Knowledge of vulnerability information dissemination sources (e.g., alerts, advisories, errata, and bulletins). Knowledge of incident response and handling methodologies. Knowledge of network traffic analysis methods. Knowledge of new and emerging information technology (IT) and cyber defense technologies. Knowledge of how traffic flows across the network (e.g., Transmission Control Protocol [TCP] and Internet Protocol [IP], Open System Interconnection Model [OSI], Information Technology Infrastructure Library, current version [ITIL]). Knowledge of key concepts in IT management (e.g., Release Management, Patch Management). Knowledge of system design tools, methods, and techniques. Knowledge of what constitutes a network attack and its relationship to both threats and vulnerabilities. Knowledge of defense-in-depth principles and network architecture. Knowledge of different types of network communication (e.g., LAN, WAN, MAN, WLAN, WWAN, SD-WAN). Knowledge of cyber defense policies, procedures, and regulations. Knowledge of the common attack vectors on the application layer. Knowledge of different classes of attacks (e.g., passive, active, insider, close-in, distribution attacks). Knowledge of cyber attackers (e.g., script kiddies, insider threat, nation/non-nation state sponsored). Knowledge of system administration, network, and operating system hardening techniques. Knowledge of cyber-attack stages Unfeigned Regards, Shubham Chaudhary Technical Recruiter [email protected] linkedin.com/in/shubham-choudhary-816b00236 Quantum World Technologies Inc. 4281 Katella Ave, Suite #102 Los Alamitos CA 90720 USA Keywords: information technology California South Dakota Texas Onsite Perimeter Firewall Engineer, USC Only [email protected] https://shorturl.at/zCvmO https://jobs.nvoids.com/job_details.jsp?id=2299371&uid= |
[email protected] View All |
06:36 AM 29-Mar-25 |