AHEAD

AHEAD

AHEAD accelerates the impact of technology on clients by engineering customized data, developer, and infrastructure platforms that improve IT operations. By weaving together cloud infrastructure, intelligent operations, and modern applications, we help...

IT Services
1K-5K
$43M raised

Description

  • Lead end-to-end delivery of large, multi-technology security engagements, including discovery, architecture, implementation, testing, cutover, and documentation.
  • Design, deploy, migrate, and troubleshoot Palo Alto, Fortinet, and Cisco Secure Firewall environments, including high availability, VPN, segmentation, cloud firewalls, logging, and automation.
  • Design and implement Cisco ISE network access control, identity-based segmentation, authentication, profiling, posture assessment, guest access, BYOD, and distributed deployments.
  • Architect and deploy F5 BIG-IP, NGINX, cloud-native, and managed load-balancing, WAF, API security, application access, and traffic-management solutions.
  • Design and implement Zscaler and Palo Alto Prisma Access SASE and Zero Trust architectures for users, branches, cloud workloads, and data centers.
  • Lead client discovery sessions, design workshops, architecture reviews, migration planning, cutover activities, and knowledge-transfer sessions.
  • Serve as technical authority and escalation point while directing cross-functional delivery teams and mentoring consultants and engineers.
  • Support sales campaigns through solution design, scoping, estimates, statements of work, and sales-to-delivery transition.
  • Create reusable delivery assets, automation, reference architectures, technical content, runbooks, and enablement materials.
  • Own technical quality, documentation, risk escalation, client satisfaction, and practice maturity across assigned engagements.

Requirements

  • 10+ years of network security, infrastructure security, or security engineering experience, including at least 4 years in consulting, professional services, or client-facing delivery.
  • Hands-on enterprise production experience with next-generation firewalls on at least two of Palo Alto Networks, Cisco Secure Firewall, and Fortinet platforms.
  • Production experience deploying Cisco ISE for 802.1X, TACACS+, network access policies, and distributed wired, wireless, and VPN environments.
  • Production experience with F5 BIG-IP LTM and at least one of BIG-IP DNS or Advanced WAF.
  • Production experience with Zscaler ZIA/ZPA or Palo Alto Prisma Access, including SWG, CASB, ZTNA, and traffic-forwarding design.
  • Strong knowledge of BGP, OSPF, EIGRP, IPsec, SSL/TLS, DNS, network segmentation, cloud networking, and Zero Trust principles.
  • Experience with AWS, Azure, or GCP security services, cloud-native load balancing, and hybrid connectivity.
  • Experience integrating Okta, Microsoft Entra ID, SAML 2.0, SCIM, SIEM platforms, syslog, Terraform, Ansible, and REST APIs.
  • Ability to independently lead complex projects, direct technical resources, scope engagements, and communicate with executive stakeholders.
  • Ability to travel at least 25%; 60% target utilization is expected.
  • Preferred certifications include CCIE Security, CISSP, PCNSE/PCNSC, Fortinet NSE 7/8, F5 certifications, Zscaler ZCCA/ZCCP, or CCNP Security.
  • Preferred experience includes firewall migrations, microsegmentation, additional SSE platforms, regulated industries, multi-cloud IaC/CI/CD, and public-facing technical content.

Benefits

  • Medical, dental, and vision insurance.
  • 401(k) plan.
  • Paid company holidays and paid time off.
  • Paid parental and caregiver leave.
  • Professional development, cross-department training, and sponsored certifications.
  • Access to a multi-million-dollar technology lab.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Associate, Compliance Security Penetration Tester

Coalfire 251-1K Internet Software & Services

Coalfire is seeking a penetration testing professional to conduct cybersecurity assessments and simulate sophisticated attacks for clients across network, application, cloud, wireless, and social engineering environments.

C Cybersecurity HIPAA Network Security Penetration Testing PowerShell Python Ruby Shell Scripting
1 day, 17 hours ago

Security Officer

European Dynamics 251-1K IT Services

European Dynamics is seeking a remote Security Officer to support a major client’s IT team by leading information security, risk management, governance, and resilience activities.

Agile Cybersecurity DevSecOps
3 days, 17 hours ago

Vendor Security & Standards Manager

Nebius 51-250 Internet Software & Services

Nebius is seeking a Vendor Security & Standards Manager to globally enforce security compliance across its external supply chain partners, including carriers, 3PLs, freight forwarders, guarding companies, and last-mile providers.

1 week ago

Research Security Consultant

Attain Partners 251-1K Media

Attain Partners is seeking a Research Security Officer to manage university research security and export controls compliance programs within a higher-education and research environment.

1 week, 2 days ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers