Today
Secret
Unspecified
Unspecified
Springfield, VA (On-Site/Office)
Description
This is a senior firewall position within the Vanguard 2025 Contract, providing general engineering support to multiple firewall and perimeter security systems and devices. The well qualified candidate will possess and apply comprehensive knowledge regarding perimeter security devices. The candidate must be capable of planning and leading the testing, implementation, and maintenance of perimeter security technologies and devices. The candidate must be capable of evaluating performance results, performing risk assessments, and recommending changes affecting perimeter security configuration/implementations. The position directly supports DoS on-site to provide perimeter security protection to over 80,000 customers globally.
This role is hybrid and will require at least 2-3 days per week onsite in the office.
Responsibilities include:
Qualifications
Required Education & Experience:
Required Clearance:
Desired:
This is a senior firewall position within the Vanguard 2025 Contract, providing general engineering support to multiple firewall and perimeter security systems and devices. The well qualified candidate will possess and apply comprehensive knowledge regarding perimeter security devices. The candidate must be capable of planning and leading the testing, implementation, and maintenance of perimeter security technologies and devices. The candidate must be capable of evaluating performance results, performing risk assessments, and recommending changes affecting perimeter security configuration/implementations. The position directly supports DoS on-site to provide perimeter security protection to over 80,000 customers globally.
This role is hybrid and will require at least 2-3 days per week onsite in the office.
Responsibilities include:
- Build, design, test and deploy perimeter security systems.
- Directs compilation of records and reports concerning perimeter operations and maintenance to analyze the performance of perimeter security systems.
- Provides input to the problem management process, including assessing and evaluating software and hardware anomalies. Supports the root cause analysis efforts to determine problems and develop remediation activities. Interfaces with vendor support service groups to ensure proper support during outages or periods of degraded system performance.
- Manages the transition to operations of perimeter security devices for 24x7 O&M.
- Collaborate with Cross-Bureaus and Agencies to implement network changes as it relates to perimeter security.
- Supports the configuration and testing of replacement perimeter devices.
- Plans, documents, and implements hardware and software build and refresh cycles.
- Create and Maintain standard operating procedures and guides for new and/or existing perimeter hardware and software.
- Attend weekly teleconferences, onsite meetings, and participates in working groups, as related to constant changing security environment.
Qualifications
Required Education & Experience:
- Bachelor degree in a computer science/computer engineering related discipline and 14+ years IT network engineering support experience (Tier II, Tier III, network infrastructure implementation and maintenance)
- Expert experience in one or more of the following security devices: Palo Alto firewalls, Panorama management console, Fortinet FortiGate NGFW, A10 Encrypted Traffic Inspection/Application Delivery, and Cisco ESA & ASA
- Experience developing and configuring SSL encryption/decryption solutions for traffic inspection
- Experience supporting the configuration and maintenance of Firewall/DMZ infrastructure including Network and Application Firewall Packet Filtering technologies (Palo Alto, FortiNet FortiGate)
- Firsthand experience in developing and providing quality assurance review of engineering change orders relating to the replacement or enhancement of perimeter security hardware and software
- Experienced with performing root cause analysis, risk identification, and risk mitigation
- Knowledgeable with configuring Cisco switches
- Experienced with network monitoring devices such as NeuralStar or other similar monitoring tools
Required Clearance:
- US Citizenship
- Active secret clearance with the ability to obtain top secret clearance.
Desired:
- Experience with Red Hat Linux/CentOS and Ubuntu including administration scripting is a plus
- ITIL ® Foundation certification
- Certifications: Palo Alto Networks Certified Network Security Engineer (PCNSE), A10 Certification/Accreditation, , FortiGate FCA/FCP/FCEMicrosoft Certified Professional (MCP), Network+, Security+, Fortinet NSE
- Familiarity with DoS environment (data and voice networks, IT security systems, policies and procedures), Foreign Affairs Handbooks (FAHs), Foreign Affairs Manuals (FAMs)
- Familiarity with ServiceNOW ticketing system
- Interpersonal skills including the ability to collaborate effectively, self-awareness, and excellent written and oral communications.
group id: 10111346