Senior Network Security Engineer


Milestone Technologies, Inc.
Dice Job Match Score™
🔢 Crunching numbers...
Job Details
Skills
- Palo Alto Networks
- Azure
- AWS
Summary
Senior Network Security Engineer
3 - 6 month W2 (ONLY) contract - No C2C or 3rd parties
Free parking
$65 - $75/hr. - Please let me know what you seek.
Must Haves:
- 5+ years’ experience in network engineering and network security
- Proven hands-on experience with Palo Alto Networks firewalls (policy creation, NAT, routing, troubleshooting)
- Experience configuring and supporting GlobalProtect VPN
- Experience building site-to-site VPN tunnels with Azure and AWS
- Working knowledge of 802.1X authentication (wired/wireless) and certificate-based network access
- Experience with Ruckus switch configuration and routing
What Success Looks Like
- Firewall policies and routing are well-organized, documented, and optimized for security and performance
- GlobalProtect VPN provides reliable, secure remote access for all authorized users
- Site-to-site tunnels to Azure and AWS are stable and properly monitored
- Certificate-based authentication (EZPKI/EZRadius) is integrated smoothly with minimal access disruptions
- IoT devices and cameras are securely onboarded via 802.1X/TLS with minimal friction
- Ruckus switch routing is stable and correctly segmented across the network
Seeking a Senior Network Security Engineer to design, implement, and maintain enterprise network security infrastructure. This role focuses heavily on Palo Alto Networks firewall administration, secure remote access via GlobalProtect VPN, cloud connectivity across Azure and AWS, and network access control for wired, wireless, and IoT devices. The ideal candidate combines deep firewall/routing expertise with practical experience securing endpoints, cameras, and IoT devices through certificate-based (TLS/802.1X) authentication.
Key Responsibilities
Firewall & Network Security
- Configure and manage Palo Alto Networks firewall security policies, NAT rules, and threat prevention profiles
- Design and implement Palo Alto Firewall routing (static, dynamic, and policy-based routing)
- Monitor, troubleshoot, and optimize firewall performance and rule sets
VPN & Cloud Connectivity
- Build, configure, and maintain GlobalProtect VPN for secure remote access
- Create and manage site-to-site VPN tunnels between on-premises infrastructure and Azure and AWS environments
- Troubleshoot VPN connectivity, tunnel stability, and routing issues across hybrid cloud environments
Identity, Certificates & Access Control
- Integrate and manage EZPKI and EZRadius (Azure-based SaaS RADIUS and SaaS TLS/PKI services) for certificate-based network authentication
- Deploy and support TLS-based 802.1X authentication for IP cameras and other IoT devices
- Configure 802.1X network access control policies across wired and wireless infrastructure
Switching & LAN Infrastructure
- Configure and maintain routing on Ruckus switches
- Support VLAN segmentation, inter-VLAN routing, and network access policies for IoT and camera device segments
Cross-Functional / Nice-to-Have
- Support Prisma (Prisma Access / Prisma Cloud) initiatives as needed
- Support Palo Alto CASB deployment and policy configuration as needed
Required Qualifications
- 5+ years’ experience in network engineering and network security
- Proven hands-on experience with Palo Alto Networks firewalls (policy creation, NAT, routing, troubleshooting)
- Experience configuring and supporting GlobalProtect VPN
- Experience building site-to-site VPN tunnels with Azure and AWS
- Working knowledge of 802.1X authentication (wired/wireless) and certificate-based network access
- Experience with Ruckus switch configuration and routing
- Strong understanding of enterprise routing concepts (static routing, VLANs, inter-VLAN routing)
- Solid troubleshooting skills across firewall, VPN, and switching layers
- Performed root-cause analysis on wireless access point failures, adjusted AP placement and power/range settings to optimize coverage, and resolved intermittent Wi-Fi connectivity issues.
- Skilled in wireless access point diagnostics, RF coverage tuning, and troubleshooting client connectivity and signal degradation issues.
Preferred Qualifications
- Experience with Prisma Access and/or Prisma Cloud
- Experience with Palo Alto CASB
- Experience with EZPKI / EZRadius or similar Azure-based SaaS RADIPKI/TLS certificate services
- Experience deploying TLS/802.1X authentication for IoT devices and IP cameras
- Relevant certifications such as PCNSE (Palo Alto Certified Network Security Engineer), CCNP\CCNP Security, or similar
- Light automation such ansible, Terraform, Saltstack
The estimated pay range for this position is USD $65.00/hr - USD $75.00/hr. Exact compensation and offers of employment are dependent on job-related knowledge, skills, experience, licenses or certifications, and location. We also offer comprehensive benefits. The Talent Acquisition Partner can share more details about compensation or benefits for the role during the interview process
- Dice Id: smci
- Position Id: 894132
- Posted 5 hours ago
Company Info
Milestone Technologies is a global IT managed services firm that partners with organizations to scale their technology, infrastructure, and services to drive specific business outcomes such as digital transformation, innovation, and operational agility. Milestone is focused on building an employee-first, performance-based culture and for over 25 years, we have a demonstrated history of supporting category-defining enterprise clients that are growing ahead of the market. The company specializes in providing solutions across Application Services and Consulting, Digital Product Engineering, Digital Workplace Services, Private Cloud Services, AI/Automation, and ServiceNow.
Milestone culture is built to provide a collaborative, inclusive environment that supports employees and empowers them to reach their full potential.

Similar Jobs
It looks like there aren't any Similar Jobs for this job yet.
Search all similar jobs