Network Security Engineer specializing in Palo Alto Networks for enterprise firewall and security. Focusing on compliance, cloud security, and infrastructure transformation projects.
Responsibilities
Design, optimize, and maintain **Palo Alto device group policy structures** across enterprise firewall environments.
Define scalable policy frameworks to support global segmentation, operational consistency, and governance standards.
Lead the review and rationalization of firewall rule bases to improve maintainability and reduce risk exposure.
Drive **Firewall Rule Automation 2.0** initiatives, enabling increased automation, standardization, and lifecycle governance of security policies.
Perform detailed **compliance reviews** of firewall configurations and security policies against internal standards and regulatory requirements.
Identify remediation actions and implement corrective measures to close compliance gaps.
Support audit preparation and documentation related to network security controls.
Configure, support, and optimize **CASB (Cloud Access Security Broker)** solutions within the broader enterprise security architecture.
Set up and maintain **AIRs (Automated Incident Response / related security service components)** to strengthen operational security capabilities.
Ensure proper integration of cloud security controls with network perimeter security.
Deliver security engineering support for additional **Cyber and Infrastructure Security (CIS) project initiatives**.
Lead or contribute to **DEV zone segregation projects**, ensuring secure network segmentation between development, production, and sensitive environments.
Provide technical security consulting for infrastructure transformation projects.
Advise project teams on network security architecture during infrastructure change initiatives.
Consult on the **redesign of data center network architecture**, including:
• Security zoning concepts
• Traffic flow control
• High availability design
• Active / Passive firewall cluster strategies
Support design and validation of **Active / Passive DC firewall cluster architectures** for resilience and operational continuity.
Requirements
Strong hands-on experience with **Palo Alto Networks firewalls** in enterprise environments.
Deep knowledge of firewall policy design, device groups, templates, and rule lifecycle management.
Proven experience in firewall compliance review and remediation.
Solid understanding of **network segmentation**, **high availability**, and **data center security architecture**.
Experience with **CASB platforms** and cloud security controls.
Familiarity with security automation concepts and firewall rule orchestration.
Strong understanding of enterprise networking principles including routing, switching, NAT, VPN, and traffic inspection.
Ability to work independently in project-based and consulting-oriented environments.
**Preferred Qualifications**
Palo Alto certifications (PCNSE or equivalent).
Experience in complex hybrid infrastructure environments.
Exposure to regulated enterprise environments with strong governance requirements.
Knowledge of data center transformation and zero trust architecture principles.
**Core Competencies**
Analytical and structured problem solving
Strong stakeholder communication
Consulting mindset
High ownership and delivery orientation
Ability to translate security requirements into scalable technical solutions
VP, Staff Endpoint Security Engineer at Synchrony managing endpoint security including EDR and FIM. Leading operational excellence and collaborating with cross - functional teams in a technology - driven culture.
Cyber Security Engineer responsible for enhancing network security at American Family Insurance. Focusing on implementation, maintenance, and troubleshooting of security technologies in a dynamic environment.
Cyber Security Lead Engineer for American Family Insurance designing and maintaining network security solutions across the organization and mentoring junior team members.
Engineer building reliability and security infrastructure for Jacobian's AI - driven radiology services cloud platform. Oversee observability, CI/CD, and ensure service reliability standards.
Principal Security Architect driving security architecture for BlueCross BlueShield of Tennessee. Collaborating across teams to ensure security standards and risk mitigation in a hybrid environment.
Cyber Security Engineer supporting design and implementation of secure systems in multiple R&D projects. Collaborating with teams to ensure systems are secure - by - design and regulatory compliant.
AWS Cloud Security Engineer ensuring cloud stability and security for federal clients at AIS. Engaging in impactful projects and collaborating on cloud - based infrastructure and security implementations.
Software Development Specialist for 5G products in defense and security at Telefónica. Design, develop, and maintain software solutions for innovative technologies.
Industrial Security Specialist executing Internal Security Controls through compliance assessments at Boeing. Ensuring adherence to government and company regulations and protecting sensitive information.
Agent de Maitrise chargé d’études et travaux sécurité ferroviaire au sein de RATP Infrastructures. Participer aux études de faisabilité, organisation des chantiers, et suivi des travaux.