SHR Consulting Group ยท 18 hours ago
Palo Alto Network Security Engineer - Senior
SHR Consulting Group is a premier technology integrator addressing complex modernization and readiness challenges in defense and federal markets. The Senior Palo Alto Network Security Engineer will lead the design, implementation, and sustainment of enterprise network security, focusing on Palo Alto Networks firewalls and Panorama to support federal government clients.
Information ServicesInformation Technology
Responsibilities
Architect, deploy, and maintain Palo Alto firewalls (physical/virtual), Panorama, security policies, NAT, VPNs (site-to-site/remote), and advanced services including Threat Prevention, URL Filtering, WildFire, and GlobalProtect
Lead Palo Alto-focused cybersecurity engineering across system requirements, design, development, testing, and sustainment for network security solutions
Administer Palo Alto platforms and integrate complementary tools like BIG IP (load balancing/ADC), Gigamon (traffic visibility), FireEye (threat detection), CoreLight (NDR), IDS/IPS, proxies, and monitoring systems; handle upgrades, rules development, and system management
Perform technical assessments using Vendor Best Practices, STIGs, SRGs, and similar standards to harden Palo Alto and supporting network/perimeter security
Provide Security/IA support to clients, aligning Palo Alto architectures with agency policies; advise on network security for current/emerging systems
Provide direct oversight and technical support to support the client Audit and Inspection program requirements such as engaging in Cyber Operational Readiness Assessment (CORA), Cyber Command Readiness Inspection (CCRI), Key Indicator of Risk (KIoR) assessments and status of the following technology areas of network and boundary security requirements
Troubleshoot application/web connectivity with development teams using deep Palo Alto and network expertise (TCP/IP, routing, LAN/WAN, SNMP)
Research open-source/commercial innovations for Palo Alto-enhanced network modernization; facilitate security solution adoption
Analyze performance, conduct cost/benefit evaluations, and document designs, runbooks, and SOPs; mentor junior staff
Qualification
Required
Active DoD Secret Clearance
7+ years in network/cybersecurity engineering with hands-on firewall experience
4+ years engineering/implementing Palo Alto firewalls and Panorama in enterprise/federal environments
Experience with firewalls, IDS/IPS, proxies (policy design/tuning/troubleshooting)
Hands-on with BIG IP, Gigamon, FireEye, CoreLight, and similar security products
Technical assessments via Vendor Best Practices, STIGs, SRGs for network hardening
Lifecycle management, health/monitoring for failures/intrusions
Scripting (Python, PowerShell, Bash) for automation
STIG/vulnerability remediation and best practices alignment
Strong analysis/communication; leadership/mentoring skills
Experience with Microsoft Productivity Suite
Bachelor's in Computer Science, Information Systems, Engineering, Cybersecurity, or equivalent
Required Certifications (at least one): CISSP, CISM, CISA, or similar IAT/IAM Level 3
Preferred
PCNSE/PCNSA (highly desirable), CCNA, CCSP, or equivalent
Benefits
Competitive compensation.
Comprehensive benefits.
Flexible work environment.