Start next 9/18 or 9/20
Must be on our pay role
Must be local to Dallas will need to be onsite ….then moving to remote
Willing to work evening and weekend change windows from late October through early December.
This ia a lead level position
Most Important Job Requirements
Must have personally designed and implemented a Palo Alto Panorama hierarchy for a large production estate, ideally 350+ firewalls, including device groups, templates/template stacks, shared versus local policy, rule structure, admin roles, and logging architecture.
Must have led a network security engineering team through a large-scale firewall migration, including wave planning, runbook enforcement, change-window execution, escalation handling, and client-facing delivery ownership.
Must remain hands-on and be able to directly execute firewall onboarding and migration work during change windows, not just supervise the team.
Requires deep PAN-OS expertise across policy, NAT, security profiles, App-ID, User-ID, GlobalProtect, high availability, mixed-version environments, policy cleanup, validation, rollback, and cutover planning.
Strongly prefer experience taking over a firewall estate from a third-party managed provider or a similar migration where administrative control starts outside the client organization.
Must be able to produce a clear design document, defend architectural decisions in client review, and hand over usable runbooks to the client team.
PCNSE certification is preferred, or equivalent demonstrable Palo Alto depth.