Sr. Systems Engineer - Firewall
About the Role
You have a passion for data networking with a specific focus on large, global security engineering for Palo Alto firewall architecture and operations. You thrive in team-oriented environments and possess the technical depth and experience to effectively lead / influence / participate in engineering, architecture, and policy discussions, strategic planning, and roadmaps to ensure we design, build, and operate a robust, scalable, and secure network at every location. The ideal candidate will be familiar with the unique advantages and challenges of multi-vsys Palo Alto architectures, successfully advocate for WSI security needs both internally and externally, and thrive in scripting, automation, and AI Operations.
Responsibilities
- Design, implement, and maintain high-availability in our multi-vsys Palo Alto firewall infrastructure across the global enterprise environment
- Ensure high-availability and disaster recovery designs for all firewall systems and services
- Architect and enforce advanced security policies, including application-aware and user-based rules, leveraging Palo Alto’s Panorama and security subscriptions (Threat, URL, WildFire,
- Perform in-depth troubleshooting and root cause analysis on complex security incidents and firewall-related network issues
- Lead firewall projects, choosing target software upgrades, and integrations with other security appliances and cloud platforms across the enterprise
- Collaborate with cross-functional teams to ensure firewall solutions align with compliance, regulatory, and business requirements
- Develop and maintain scripts for firewall configuration, automation, and health monitoring (., using Python, Ansible, or similar tools) that the operations team will utilize
- Conduct regular security assessments, vulnerability testing, and risk analysis specific to firewall environments
- Stay current with emerging threats, Palo Alto Networks product updates, and cybersecurity best practices
- Document technical solutions, standard operating procedures, and incident response playbooks
- Provide mentorship and technical leadership to junior engineers and peers
- Support tier 3 / 4 networking escalations in an on-call rotation
- Perform systems resource optimization activities and capacity planning
- Consistently lead by example, be a role model and change agent for your team and the larger technology group
- Measure what matters through KPIs and drive continual process improvements
- Embrace AI and automation for effective operations and scalability
- Bring a passion for automation and data-driven analytical approaches to solving problems while flexing to emerging needs and changes as they arise
- Other duties as assigned
Criteria
You have a BS in Computer Science, Engineering, or related field or equivalent work experienceYou have 5+ years of Core Firewall ExperienceYou have a Next-Generation Firewall Engineer Certification from Palo Alto or equivalent experienceYou are an expert in diagnosing and solving complex problems and providing detailed technical analysisYou have strong verbal and written communication skills with the ability to influence othersHardware : Expertise in Palo Alto Firewalls, PANOS, Panorama, Strata Cloud Manager. Bonus for expertise in Cisco ASRs, Catalysts, Nexus 9 / 7 / 5 / 2k, F5 Load Balancers, InfobloxExtensive understanding and competency with SNMP-based monitoring tools, Netflow, and other network-related monitoring and data-gathering toolsAdvanced scripting skills in Python, Perl, iRules, TCL, Chef / Puppet or Go a plusExperience with vendor management and contract negotiationsThis role requires being onsite in the Rocklin, California office Monday through Thursday with optional office presence on Friday.