Cyber Security Firewall Engineer

Overview

On Site
0 to 0
Full Time
No Travel Required

Skills

Firewalls
Azure
Cisco
Juniper
Palo Alto Networks
Microsoft Active Directory
VPN
CompTIA Network+
CompTIA Security+

Job Details

Description:

Business Operational Concepts (BOC) is a recognized leader in providing Technical and Program Management Services, Information Technology, and Support.

BOC has enabled their Government and Commercial clients to achieve their organizational initiatives through the application of high quality, innovative, and cost-effective professional services and solutions. We provide a positive working environment, with opportunities for advancement in our growing Federal sector workforce.

We offer an excellent compensation package which includes a generous salary, insurance (medical, dental, etc.), paid leave, 401k plan and more. We are committed to the diversity we bring to the marketplace and believe customer satisfaction comes first.

JOB SUMMARY:

Business Operational Concepts (BOC) is currently seeking a seeking a Cyber Security Firewall Engineer to work with our federal client. The selected candidates primary jobs duties will involve configuring and administering a suite of cutting-edge enterprise-grade network security tools, including Palo Alto Networks firewalls, Azure Premium Firewall, Office365 Defender products, Akamai web application firewall (WAF), and more. The selected candidate will work closely with a team of highly skilled security engineers protecting the federal clients network from state-sponsored advanced persistent threat (APT) adversaries, cybercriminals, malicious insiders, and all other cyber threat actors.

A candidate with a strong background in network administration will be successful in this position. Proficiency with enterprise network infrastructure technologies, such as firewalls, routers, switches, load balancers, and VPNs are critical for this position. Hardcore, hands-on technical skills and knowledge are required to deploy, configure, operate, maintain, and troubleshoot the sophisticated enterprise-grade security technologies within the clients network environment. This position is ideal for network administrators looking to advance their careers into the realm of cybersecurity.

In course of regular job duties, the selected candidate will gain exposure to many different enterprise-grade security technologies, which perform critical functions such as vulnerability scanning, malware detection, network intrusion prevention, firewall blocking, enterprise-wide incident response, and security information and event management (SIEM). Some examples of the 20+ cutting-edge security technologies that the selected candidate will work with are: SentinelOne, Palo Alto firewalls, Microsoft Security Suite, and CyberArk.

DUTIES AND RESPONSIBILITIES:

* Work with a team of network security engineers to deploy, configure, administer, operate, maintain, and troubleshoot the following network security products:

* Palo Alto Networks firewall appliances

* Azure Premium Firewall

* Microsoft Defender Products

* Gigamon network taps

* Akamai WAF

* Implement firewall rules in Azure and Palo Alto Networks firewalls.

* Troubleshoot network issues caused by security tools to enable business functionality while maintaining a least privilege/least functionality security model.

* Evaluate emerging/competing network security technologies for consideration during annual procurement cycles.

* Architect and deploy any newly procured security products in a configuration optimized to protect the federal clients network and data.

* Design, implement and maintain highly available software and hardware-based firewall solutions.

* Build, maintain and optimize firewall rulesets.

* Maintain firewall layer 3 services including traffic management, routing and quality of service

* Design, implement, and maintain firewall rules currently supporting a VMware NSX environment utilizing service using Palo Alto firewalls to achieve a fully micro-segmented datacenter solution. As we transition to the Azure cloud the contractor will provide the technical support to use of Azure Firewalls in place of these solutions.

* Design, implementation, and maintain VPN solutions as required.

* Configure additional firewall services including URL filter, Malware sandboxing, threat prevention, layer 7 filtering, managing threat intelligence feeds.

* Manage IT audits and respond to findings with clear and concise remediations. Compile relevant plan of action and milestone documentation, remediate issues in a timely fashion and work with security officers to resolve and close actions.

* Respond to customer support requests through tickets, phone calls and emails. Act as escalation support for EOC and work effectively with other technical groups for troubleshooting.

* Develop documentation pertaining to design goals, as built solutions and issue resolution, so that it can be included in an existing OPM internal knowledge base.

* Provide 24x7 escalation support as needed.



Requirements:

QUALIFICATIONS:

Required (Minimum) Qualifications Education, Certification, Experience, and Skills

* 2+ years of firewall/network engineering experience

* Basic proficiency with one or more of the following common enterprise technologies:

* Firewalls: Azure, Cisco, Juniper, or Palo Alto Networks

* VPNs client access and site-to-site

* Microsoft Active Directory

* Windows operating systems

* Linux/Unix-based operating systems

* Basic understanding of common computer and networking technologies:

* TCP/IP stack

* Networking technologies (routing, switching, VLANs, subnets, firewalls)

* Common networking protocols SSH, SMB, SMTP, FTP/SFTP, HTTP/HTTPS, DNS, etc.

* Excellent analytical and problem-solving skills:

* Ability to work independently to identify errors, pinpoint root causes, and devise solutions with minimal oversight.

* Excellent communications skills:

* Ability to communicate with senior management and federal client staff both technical and non-technical in a clear and concise manner using proper spelling, punctuation, and grammar.

Preferred Qualifications Education, Certification, Experience, Skills, Knowledge, and Abilities

* Any of the following professional certifications are desired but not required:

* CompTIA Network+

* CompTIA Security+

* Cisco CCNA

* Cisco CCNP

* Palo Alto PCNSE

* Certified Information Systems Security Professional (CISSP)

* VMWare VCA Network Virtualization (VCA-NV 2022)