Network Engineer – Firewall & Load Balancing
$104,000–$166,000 year
On-siteOrlando, Florida, United States or Ashburn, Virginia, United States
Job Summary
Design, configure, maintain, and troubleshoot enterprise network security infrastructure including F5 BIG-IP, Palo Alto Next Generation Firewalls, and Cisco Firepower Threat Defense devices. Administer centralized management platforms like Panorama and Firepower Management Center while developing access control policies, IPS rules, and Snort tuning. Perform SSL/TLS certificate management, traffic optimization, and application delivery troubleshooting to support hybrid environments. Monitor network performance, conduct root cause analysis, and collaborate with cybersecurity teams on Zero Trust architecture and compliance requirements. Develop technical documentation and manage change processes in accordance with established procedures.
Required Qualifications
- Bachelor's degree with 8 years of experience
- Master's degree and 6 years of experience
- Associate's degree with 10 years of experience
- High School Diploma/equivalent with 12 years of experience
- U.S. Citizenship
- Ability to obtain a CBP Public Trust clearance
- 5+ years of hands-on experience supporting enterprise network engineering or network security environments
- Experience administering and troubleshooting F5 BIG-IP solutions, including LTM, virtual servers, pools, SSL profiles, and traffic management configurations
- Experience configuring and managing Palo Alto Networks Next Generation Firewalls, including security policies, NAT, VPNs, and Panorama administration
- Experience supporting Cisco Firepower Threat Defense (FTD) devices using Firepower Management Center (FMC)
- Strong understanding of network security concepts, TCP/IP networking, OSI model, routing protocols, VLANs, VPNs, and network segmentation
- Experience using network monitoring and troubleshooting tools such as SolarWinds, PRTG, Splunk, Wireshark, or similar platforms
- Candidates must reside near Ashburn, VA, Springfield, VA or Orlando, FL
Desired Qualifications
- Active security clearance; DHS clearance or prior DHS suitability preferred
- Experience supporting DHS, CBP, federal government, or other mission critical network environments
- Experience with DISA STIGs, NIST 800-53 security controls, or federal cybersecurity compliance requirements
- Experience supporting SD-WAN technologies such as Palo Alto Prisma SD-WAN or Cisco Viptela
- Experience supporting cloud networking environments, including AWS, Azure, and hybrid connectivity solutions
- Experience with network automation and scripting using Python, Ansible, Terraform, or similar technologies
- Experience using IT Service Management platforms such as ServiceNow or Remedy
- Experience supporting legacy Cisco ASA migration to Cisco Firepower Threat Defense
- F5 Certified BIG-IP Administrator (F5-CA)
- Palo Alto Networks Certified Network Security Engineer (PCNSE)
- Cisco Certified Network Professional (CCNP) Security or CCNP Enterprise
- Cisco Certified Internetwork Expert (CCIE) Security
- CompTIA Security+ or equivalent security certification
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.