Firewall Engineer (PAN specifically)

ShiftCode Analytics

Santa Clara, CA

JOB DETAILS
SKILLS
Amazon Web Services (AWS), Analysis Skills, Ansible, Architectural Design, BGP, Centralized Operations/Management, Cloud Computing, Communication Skills, Computer Firmware, Computer Science, Computer Security, DevOps, Documentation, Endpoint Security, Firewall Administration, Firewalls, GCP (Good Clinical Practices), ISO (International Organization for Standardization), Identify Issues, Incident Response, Information Technology & Information Systems, Information/Data Security (InfoSec), Internet Security, Intrusion Detection and Prevention (IDP), Microsoft Windows Azure, NAT (Network Address Translation), Network Access Control (NAC), Network Administration/Management, Network Architecture/Engineering, Network Protocols, Network Security, Open Shortest Path First Protocol (OSPF), PCI-DSS, Personal Area Network (PAN), Python Programming/Scripting Language, Regulatory Compliance, Remote Access, Scripting (Scripting Languages), Security Auditing, Security Information and Event Management (SIEM), Security Infrastructure, Security Monitoring, Security Policy, Software Patches, Systems Administration/Management, Systems Maintenance, TCP/IP (Transmission Control Protocol/Internet Protocol), U.S. National Institute of Standards and Technology (NIST), VLAN (Virtual Local Area Network), VPN (Virtual Private Network), Virtual Machine (VM)
LOCATION
Santa Clara, CA
POSTED
4 days ago

Interview : Video

Visa : USC, GC, GC EAD, H4, L2

This is hybrid from day-1 ( Local candidates highly preferred )

Description :
HM Note: Firewall + Networking engineer, someone who not only knows how to design and configure firewall ACLs, but also how to bring up routing interfaces, who understands routing connectivity and can configure adjacent switches.

Job Summary:

We are seeking a skilled and motivated Palo Alto Networks Firewall Engineer to join our IT security team. In this role, you will be responsible for the design, implementation, management, and troubleshooting of network security infrastructure with a focus on Palo Alto Networks firewalls. You will work closely with IT, DevOps, and InfoSec teams to ensure the organization's network is secure, scalable, and resilient

Key Responsibilities:

  • Design, deploy, and maintain Palo Alto firewalls (physical and virtual) across multiple environments.
  • Manage and optimize security policies, NAT rules, and VPN configurations (site-to-site and remote access).
  • Monitor firewall logs, investigate incidents, and respond to alerts from threat intelligence systems.
  • Work with the Security Operations Center (SOC) to analyze potential threats and respond to intrusions.
  • Perform regular firmware upgrades and patch management for Palo Alto appliances.
  • Implement and manage advanced features such as App-ID, User-ID, Content-ID, WildFire, and GlobalProtect.
  • Collaborate with other IT teams on architecture design, network segmentation, and access control.
  • Maintain documentation for system configurations, processes, and policies.
  • Participate in network and security audits, including compliance with standards like ISO 27001, PCI-DSS, or NIST.
  • Provide Level 2/3 support and training for firewall-related issues.
Qualifications:

Required:
  • Proven experience with Palo Alto Networks firewall platforms (PA-Series and VM-Series).
  • Strong understanding of networking protocols (TCP/IP, BGP, OSPF, NAT, VPN, VLANs).
  • Experience with Panorama for centralized management of multiple firewalls.
  • Familiarity with threat detection, intrusion prevention, and zero-trust architectures.
  • Hands-on experience with GlobalProtect, URL filtering, and security policy tuning.
  • Strong troubleshooting and analytical skills.
  • Excellent communication and documentation skills.
Preferred:
  • Palo Alto Networks certifications such as PCNSE or PCNSA.
  • Experience with cloud-based firewalls (e.g., Palo Alto in AWS, Azure, GCP).
  • Background in scripting/automation (Python, Ansible, etc.) for network/security tasks.
  • Exposure to SIEM platforms, endpoint protection, and other cybersecurity tools.
Education & Experience:
  • Bachelor's degree in Computer Science, Information Technology, or a related field, or equivalent work experience.
  • 3+ years of hands-on experience with enterprise-level firewall infrastructure.

About the Company

S

ShiftCode Analytics