Location : Remote
Experience : 7-12 years
Project : Cisco ASA to Palo Alto / Firepower EOL Migration
Job Type : Full-time
Role Overview :
- We are looking for an experienced L3 Network Security Engineer to support a large-scale Firewall Migration Project, transitioning firewalls from Cisco ASA (5508,5525,5545,5555 etc.) to Cisco Firepower and Palo Alto Next-Gen Firewalls (including 1410 models, VSYS, and VM-Series). The candidate will work closely with technical leads to execute migration activities, validate configurations, and support post-migration troubleshooting.
Key Responsibilities :
Participate in the migration and config conversion of :ASA Palo Alto (1410 VSYS, 1410 Single Tenant & VM-Series)ASA Cisco Firepower with ASA Code or FTDPerform configuration conversion using tools and manual methods.Configure and validate :NAT policies (Static, Dynamic)Site-to-Site VPNs and Client-to-Site VPNs (AnyConnect / Global Protect)Firewall Policies, HA, SSL VPNs, NextGen features (IPS / IDS)Strong knowledge of change / Incident management process.Conduct pre- and post-migration validation.Support change windows, participate in troubleshooting during cutovers.Document configurations and migration steps.Collaborate with L4 engineers and stakeholders during complex migrations.Must-Have Skills :
Hands-on experience with :Cisco ASACisco FTD / FirepowerPalo Alto NGFW (including 1410, VM-Series, VSYS)Palo Alto NGFW (VSYS, Panorama, Expedition, Migration Manager)Strong command of :Cisco ASA- ACL, VPN setup (IPSec / SSL), AnyConnect, HA Setup,NAT, Policy Management, OS Upgrade.Palo Alto-VPN setup (IPSec / SSL), Global protect, HA Setup, NAT, Policy Management, PANOS Upgrade.Routing protocols (Static, OSPF, BGP) and switching fundamentalsExperience in ASA to Palo Alto / Firepower config conversion.Familiarity with tools like Expedition, Migration Manager, or similar.Solid troubleshooting and packet capture analysis skills.Soft Skills & Professional Attributes :
Excellent interpersonal and communication skills - able to clearly articulate ideas, processes, and technical concepts to both technical and non-technical audiences.Strong documentation abilities - capable of creating and maintaining clear, concise technical documentation and procedures.Flexible, proactive, and self-driven - demonstrates initiative, reliability, and adaptability in dynamic environments.Preferred Certifications :
Cisco Certifications : CCNP Security / CCNP R&SPalo Alto Certifications : PCNSA / PCNSESkills Required
Cisco Asa, Ips, Bgp, Routing Protocols, Ids, Ha