Job Title: Remote Palo Alto NGFW Engineer ( Panorama to SCM Pro Migration expertise )
For immediate consideration, please connect with me on LinkedIn at and then email your resume, work authorization status, current location, availability, and compensation expectations directly to - make sure to include the exact job title and job location in your email message
Contract position for 12+ month
Senior Palo Alto NGFW Engineer ( Panorama to SCM Pro Migration expertise , etc ) / Extended Expertise Consultant - on assignment with Palo Alto Networks
- HW NGFW ( Hardware Next-Generation Firewall ) customer with just over 100+ NGFWs with current ELA/ESA ( Enterprise License Agreement / Enterprise Support Agreement) using Panorama for management and log collection.
- They will be adding Device Security to their ELA, purchasing Prisma Browser
- Primary role expertise: Strata - HW NGFWs, SCM Pro ( Strata Cloud Manager ), SASE ( Secure Access Service Edge ) - Prisma Browser, Device Security + ELA CDSS ( Cloud-Delivered Security Services )
- Project details: SCM Pro Migration from Panorama for their HW NGFWs, Rollout of Prisma Browser, Rollout of Device Security.
- Traditional Hub and Spoke Network Architecture using heavy MPLS and other private type network circuits with 3 Large Datacenters across U.S. and many (500+) smaller Branch Of?ce or Distribution Center/Retail Locations.
- Public Cloud (AWS/Azure/Google Cloud Platform) is connected only via the Large Data Centers. Backhaul type current Network Architecture for on-premises locations. Remote users use GlobalProtect connected to HW NGFW gateways when not working in the of?ce. Heavy use of BGP and OSPF for dynamic routing with their HW NGFWs connected to Cisco/Versa SD-WAN interconnecting all sites/locations.
- Customer is also heavily using a Panorama API integration for automated policy con?guration / updates and management from their ticketing system.
- Will need someone who has some knowledge of API policy automation with Panorama / SCM Pro.
- Other technologies in environment: Cisco Routers/Cisco SDWAN, Versa SDWAN, Crowdstrike, NetBrain, Google SecOPs/Chronicle
- Legacy Vendors: Citrix VDI (Prisma Browser is planned to replace this), FireMon (SCM Pro is planned to replace this) InfoBlox DNS Security (PANW ELA planned to replace DNS Security from Infoblox)
- Additional notes: Need an EE who is good in overall Strata + SASE/PB. HW NGFWs but also going to help WS migrate off Panorama and onto SCM Pro for ?rewall mgmt. Someone who has familiarity with Device Security implementation and also Prisma Browser from SASE portfolio. Prisma Access + Prisma Browser experience a plus if we ever move WS from GP HW NGFW gateways to MU Prisma Access. High Availability (HA): Active/Active con?gurations, including understanding HA links, path/link monitoring, and failover triggers.
For immediate consideration, please connect with me on LinkedIn at and then email your resume, work authorization status, current location, availability, and compensation expectations directly to - make sure to include the exact job title and job location in your email message .
System One, and its subsidiaries including Joulé, ALTA IT Services, and Mountain Ltd., are leaders in delivering outsourced services and workforce solutions across North America. We help clients get work done more efficiently and economically, without compromising quality. System One not only serves as a valued partner for our clients, but we offer eligible employees health and welfare benefits coverage options including medical, dental, vision, spending accounts, life insurance, voluntary plans, as well as participation in a 401(k) plan.
System One is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, age, national origin, disability, family care or medical leave status, genetic information, veteran status, marital status, or any other characteristic protected by applicable federal, state, or local law.
#M1
#LI-DP1
Ref: #404-IT Pittsburgh