Overview
Skills
Job Details
We are seeking a highly skilled Firewall Engineer to strengthen and maintain our organization s network security posture. The successful candidate will configure, manage, and optimize firewall infrastructures within Cisco FMC/FTD/FTDv environments, ensuring protection against evolving threats.
You will be responsible for designing and managing multi-tenant leaf-and-spoke architectures, supporting secure DMZ environments, conducting firewall rule audits, and leveraging FireMon to streamline policy management and risk reduction. This role also involves developing and maintaining firewall documentation, supporting compliance audits, and mentoring junior engineers.
Key Responsibilities
Configure, manage, and optimize Cisco FMC, FTD, and FTDv firewalls.
Design and manage leaf-and-spoke firewall architectures for global scalability.
Proactively detect and respond to threats using Cisco Secure Firewall Threat Defense and Malware Protection.
Conduct firewall rule audits, cleanups, and optimizations to strengthen security posture.
Leverage FireMon Policy Manager, Policy Planner, and Risk Analyzer for firewall policy lifecycle management.
Troubleshoot firewall issues (connectivity, misconfigurations, performance) using packet captures, logs, and CLI.
Implement and manage VPNs, NAT policies, application-layer controls, and DMZ configurations in hybrid cloud environments.
Develop, document, and maintain firewall policies and procedures aligned with compliance and best practices.
Support security audits and assessments to ensure adherence to security standards.
Mentor team members to build technical expertise in firewall management.
Required Skills & Experience
Strong expertise with Cisco FMC, FTD, and FTDv.
Experience designing multi-tenant firewall architectures.
Deep knowledge of threat defense, malware protection, VPN, NAT, DMZ, and app-layer security controls.
Proficiency with FireMon tools (Policy Manager, Planner, Risk Analyzer).
Hands-on troubleshooting skills using packet captures, logs, and CLI.
Strong knowledge of network security principles, compliance, and firewall best practices.
Experience documenting policies and supporting security audits.
Commitment to staying current with emerging threats and technologies.
Leadership/mentoring ability.
Nice-to-Have Skills
Experience with Cisco ISE for network access control.
Knowledge of Cisco ACLs.
Familiarity with Palo Alto firewalls.