Network Security Engineer Apply
This is a hybrid position. Employee will be working two days remotely and 3 days will be in the office. Key Responsibilities: Design, implement, and maintain secure firewall policies aligned with business and security requirements Perform firewall hardening activities, including rulebase optimization, risk reduction, and compliance alignment Analyze incoming project and business requests, translating them into well‑defined firewall rules and security policies Collaborate with project managers, network engineers, and security teams to ensure accurate implementation of requirements Conduct impact analysis and risk assessments for proposed firewall changes Manage firewall policy changes through established change control processes Monitor, troubleshoot, and resolve firewall‑related issues to ensure high availability and performance Maintain comprehensive documentation for firewall rules, configurations, and design standards Required Experience & Skills: 5–8+ years of experience in network security engineering Strong hands‑on experience with Palo Alto Networks firewalls (PAN-OS) Deep understanding of firewall rulebases, NAT policies, zones, and security profiles Experience with firewall hardening, audit remediation, and compliance frameworks Proven ability to translate business requirements into technical security controls Strong analytical and problem‑solving skills Experience working in structured project environments with multiple stakeholders Preferred Skills: Experience with Tufin (or similar firewall policy orchestration tools) for rule analysis, automation, and compliance Experience designing and implementing network segmentation, including micro‑segmentation strategies Familiarity with cloud security environments (AWS, Azure) and hybrid infrastructures Knowledge of Zero Trust architecture principles Certifications (Preferred): Palo Alto Networks Certified Network Security Engineer (PCNSE) – strongly preferred Palo Alto Networks Certified Network Security Administrator (PCNSA) CISSP, CISM, or equivalent security certification (nice to have) CCNP Security or equivalent networking certification #J-18808-Ljbffr

