Senior Technical Consultant - Network Security

20 hours, 24 minutes ago
Full-time
Senior
DevOps and Infrastructure
AHEAD

AHEAD

AHEAD accelerates the impact of technology on clients by engineering customized data, developer, and infrastructure platforms that improve IT operations. By weaving together cloud infrastructure, intelligent operations, and modern applications, we help...

IT Services
1K-5K
$43M raised

Description

  • Design and deploy Cisco Secure Firewall and Palo Alto Networks next-generation firewall solutions in enterprise production environments.
  • Lead firewall migration projects, including ASA-to-FTD conversions and cross-vendor migrations with policy translation and cutover planning.
  • Design network segmentation architectures using zones, virtual routers, VRFs, and policy-based routing to enforce least-privilege traffic controls.
  • Deploy cloud-native firewall solutions for AWS, Azure, and containerized workloads.
  • Implement firewall high availability, centralized logging, SIEM integration, NetFlow/IPFIX, and compliance-focused rule optimization.
  • Automate firewall provisioning, backups, and policy deployment using Terraform, Ansible, and vendor APIs.
  • Design and implement Cisco ISE for 802.1X, MAB, RADIUS/TACACS+, authorization policies, profiling, posture, and guest/BYOD workflows.
  • Lead SASE and Zero Trust deployments across remote user, branch, cloud, and data center use cases using platforms such as Zscaler, Prisma Access, Cisco Secure Access, or Netskope.
  • Create HLDs, LLDs, diagrams, runbooks, cutover plans, and as-built documentation for client engagements.
  • Lead discovery sessions, architecture reviews, knowledge transfer sessions, and provide technical escalation support and mentorship.

Requirements

  • 7+ years of experience in network security, infrastructure security, or security engineering, including at least 3 years in a consulting, professional services, or client-facing delivery role.
  • Hands-on experience designing and deploying Cisco Secure Firewall (FTD/FMC) and Palo Alto Networks NGFW (PAN-OS/Panorama).
  • Production experience deploying Cisco ISE for 802.1X authentication, TACACS+ device administration, and network access policy enforcement.
  • Production experience with at least one SASE platform, such as Zscaler ZIA/ZPA, Palo Alto Prisma Access, Cisco Secure Access, or Netskope.
  • Strong understanding of routing protocols, VPN technologies, network segmentation, and Zero Trust architecture principles.
  • Experience with cloud platforms including AWS VPC, Azure VNet, or GCP VPC, plus hybrid connectivity architectures.
  • Experience integrating with identity and access management platforms such as Okta, Microsoft Entra ID, SAML 2.0, and SCIM.
  • Experience integrating security platforms with SIEM tools such as Splunk or Microsoft Sentinel, syslog, and automation tools like Terraform and Ansible.
  • CCIE Security or CCNP Security certification preferred.
  • Palo Alto PCNSE or PCNSC, Zscaler ZCCA/ZCCP, Cisco Secure Access, or Netskope certifications preferred.
  • CISSP, CompTIA Security+, or an equivalent industry security certification preferred.
  • Firewall migration experience, including ASA to FTD conversions and cross-vendor migrations, preferred.

Benefits

  • $170,000 - $200,000 a year OTE, including base salary and any applicable target bonus.
  • Medical, dental, and vision insurance.
  • 401(k) plan.
  • Paid company holidays.
  • Paid time off.
  • Paid parental and caregiver leave.
  • Sponsorship for certifications and credentials for continued learning.
  • Access to a multi-million-dollar lab and cross-department training and development opportunities.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Manager, Governance, Risk and Compliance

Path Robotics 51-250 Automotive

Path Robotics is hiring a Cybersecurity GRC Manager to build and lead its enterprise governance, risk, and compliance program as the company scales into regulated markets.

AWS Azure Cybersecurity GCP
2 hours, 43 minutes ago

Staff Network Engineer

Relativity Space 251-1K Aerospace & Defense

Relativity Space is hiring a Staff Network Engineer to design and support enterprise and industrial wireless networks that keep corporate, manufacturing, marine, and hazardous-environment operations connected as the company scales its rocket business.

Active Directory Cisco IoT Wireshark
2 hours, 47 minutes ago

Security Business Partner, Frontier Systems

Anduril Industries 1K-5K Aerospace & Defense

Anduril Industries is seeking a Security Business Partner to embed strategic security support within its Frontier Systems Division, enabling classified defense programs and business growth across Department of War and Intelligence Community customers.

SAP
3 hours, 2 minutes ago

Senior Security Researcher

Point Wild Internet Software & Services

Point Wild is hiring a security researcher to own end-to-end detection for its software supply chain security platform, identifying malicious packages and CI/CD threats before they reach production.

Cybersecurity GitHub Actions Go Java JavaScript LLM Maven PHP Python Ruby Rust TypeScript
4 hours, 2 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers