Senior Technical Consultant - Network Security

1 day, 4 hours ago
Full-time
Senior
DevOps and Infrastructure
AHEAD

AHEAD

AHEAD accelerates the impact of technology on clients by engineering customized data, developer, and infrastructure platforms that improve IT operations. By weaving together cloud infrastructure, intelligent operations, and modern applications, we help...

IT Services
1K-5K
$43M raised

Description

  • Design and deploy Cisco Secure Firewall and Palo Alto Networks next-generation firewall solutions in enterprise production environments.
  • Lead firewall migration projects, including ASA-to-FTD conversions and cross-vendor migrations with policy translation and optimization.
  • Design network segmentation architectures using firewall zones, VRFs, virtual routers, and policy-based routing.
  • Deploy cloud-native firewall solutions for AWS, Azure, and containerized or cloud workload environments.
  • Implement firewall high availability, centralized logging, SIEM integration, NetFlow/IPFIX, and compliance reporting.
  • Automate firewall provisioning, configuration backup, and policy deployment using Terraform, Ansible, and vendor APIs.
  • Deploy Cisco ISE for authentication, authorization, posture assessment, guest access, BYOD, and certificate-based onboarding.
  • Integrate ISE with Cisco infrastructure and third-party devices, and troubleshoot access issues using logs and debug tools.
  • Design and implement SASE and Zero Trust architectures across remote user, branch, cloud, and data center use cases.
  • Lead discovery sessions, architecture reviews, documentation, migration planning, knowledge transfer, and technical mentorship for client engagements.

Requirements

  • 7+ years of network security, infrastructure security, or security engineering experience.
  • At least 3 years of consulting, professional services, or client-facing delivery experience.
  • Hands-on experience with Cisco Secure Firewall (FTD/FMC) and Palo Alto Networks NGFW (PAN-OS/Panorama) in enterprise production environments.
  • Production experience with Cisco ISE for 802.1X authentication, TACACS+ device administration, and access policy enforcement.
  • Production experience with at least one SASE platform such as Zscaler, Palo Alto Prisma Access, Cisco Secure Access, or Netskope.
  • Strong understanding of routing protocols, VPN technologies, network segmentation, and Zero Trust principles.
  • Experience with cloud platforms such as AWS VPC, Azure VNet, or GCP VPC and hybrid connectivity architectures.
  • Experience integrating with identity platforms such as Okta, Microsoft Entra ID, SAML 2.0, and SCIM.
  • Experience integrating with SIEM platforms such as Splunk or Microsoft Sentinel, and with automation tools such as Terraform and Ansible.
  • CCIE Security, CCNP Security, Palo Alto PCNSE/PCNSC, Zscaler ZCCA/ZCCP, Cisco Secure Access, Netskope, CISSP, or Security+ certification preferred.
  • Firewall migration experience, including ASA-to-FTD and cross-vendor migrations, preferred.

Benefits

  • $170,000 - $200,000 annual On-Target Earnings, including base salary and target bonus.
  • Medical, dental, and vision insurance.
  • 401(k) plan.
  • Paid company holidays.
  • Paid time off.
  • Paid parental and caregiver leave.
  • Professional development support, including cross-department training and sponsorship for certifications and credentials.
  • Access to a multi-million-dollar lab and top-tier internal technology resources.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Vulnerability Researcher

Magnet Forensics 251-1K Internet Software & Services

Magnet Forensics is hiring a Vulnerability Researcher to support its remote research and development team in advancing digital investigative software used by customers worldwide.

2 hours, 27 minutes ago

Associate Principal - Network and Wireless

TEECOM 51-250 Construction & Engineering

TEECOM is hiring an Associate Principal, Network and Wireless to lead mid- to large-size technology design projects for buildings and guide them from pursuit through closeout.

Asana CRM GitHub
4 hours, 57 minutes ago

Principal, FedRAMP Advisory

Coalfire 251-1K Internet Software & Services

Coalfire is seeking a Principal Consultant, FedRAMP Advisory to lead public sector compliance engagements and guide clients through complex security and regulatory programs.

AWS Azure Cybersecurity DevSecOps Encryption GCP
4 hours, 57 minutes ago

Senior Network Engineer (AWS Focus)

CXM Direct 51-250 Capital Markets

CXM Group is hiring a Senior Network Engineer to design, secure, and optimize hybrid cloud and AWS-based network infrastructure that supports high availability, scalability, and performance.

AWS Bash CloudFormation DHCP DNS Kubernetes Nagios Python TCP/IP Terraform
7 hours, 42 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers