Senior Technical Consultant - Network Security

2 weeks, 1 day ago
Full-time
Senior
DevOps and Infrastructure
AHEAD

AHEAD

AHEAD accelerates the impact of technology on clients by engineering customized data, developer, and infrastructure platforms that improve IT operations. By weaving together cloud infrastructure, intelligent operations, and modern applications, we help...

IT Services
1K-5K
$43M raised

Description

  • Design and deploy Cisco Secure Firewall and Palo Alto Networks next-generation firewall solutions in enterprise production environments.
  • Lead firewall migration projects, including ASA-to-FTD conversions and cross-vendor migrations with policy translation and cutover planning.
  • Design network segmentation architectures using zones, virtual routers, VRFs, and policy-based routing to enforce least-privilege traffic controls.
  • Deploy cloud-native firewall solutions for AWS, Azure, and containerized workloads.
  • Implement firewall high availability, centralized logging, SIEM integration, NetFlow/IPFIX, and compliance-focused rule optimization.
  • Automate firewall provisioning, backups, and policy deployment using Terraform, Ansible, and vendor APIs.
  • Design and implement Cisco ISE for 802.1X, MAB, RADIUS/TACACS+, authorization policies, profiling, posture, and guest/BYOD workflows.
  • Lead SASE and Zero Trust deployments across remote user, branch, cloud, and data center use cases using platforms such as Zscaler, Prisma Access, Cisco Secure Access, or Netskope.
  • Create HLDs, LLDs, diagrams, runbooks, cutover plans, and as-built documentation for client engagements.
  • Lead discovery sessions, architecture reviews, knowledge transfer sessions, and provide technical escalation support and mentorship.

Requirements

  • 7+ years of experience in network security, infrastructure security, or security engineering, including at least 3 years in a consulting, professional services, or client-facing delivery role.
  • Hands-on experience designing and deploying Cisco Secure Firewall (FTD/FMC) and Palo Alto Networks NGFW (PAN-OS/Panorama).
  • Production experience deploying Cisco ISE for 802.1X authentication, TACACS+ device administration, and network access policy enforcement.
  • Production experience with at least one SASE platform, such as Zscaler ZIA/ZPA, Palo Alto Prisma Access, Cisco Secure Access, or Netskope.
  • Strong understanding of routing protocols, VPN technologies, network segmentation, and Zero Trust architecture principles.
  • Experience with cloud platforms including AWS VPC, Azure VNet, or GCP VPC, plus hybrid connectivity architectures.
  • Experience integrating with identity and access management platforms such as Okta, Microsoft Entra ID, SAML 2.0, and SCIM.
  • Experience integrating security platforms with SIEM tools such as Splunk or Microsoft Sentinel, syslog, and automation tools like Terraform and Ansible.
  • CCIE Security or CCNP Security certification preferred.
  • Palo Alto PCNSE or PCNSC, Zscaler ZCCA/ZCCP, Cisco Secure Access, or Netskope certifications preferred.
  • CISSP, CompTIA Security+, or an equivalent industry security certification preferred.
  • Firewall migration experience, including ASA to FTD conversions and cross-vendor migrations, preferred.

Benefits

  • $170,000 - $200,000 a year OTE, including base salary and any applicable target bonus.
  • Medical, dental, and vision insurance.
  • 401(k) plan.
  • Paid company holidays.
  • Paid time off.
  • Paid parental and caregiver leave.
  • Sponsorship for certifications and credentials for continued learning.
  • Access to a multi-million-dollar lab and cross-department training and development opportunities.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior Software Engineer - Networking

New Relic 1K-5K Internet Software & Services

New Relic is hiring a Network Engineer to support and evolve the cloud network infrastructure behind its observability platform, with a focus on automation, reliability, and scalable operations.

Agile AWS Azure Confluence Go JIRA Python Ruby Scrum Shell Scripting Terraform
5 hours, 37 minutes ago

Senior Consultant - FedRAMP Assessment

Coalfire 251-1K Internet Software & Services

Coalfire is hiring a Senior Consultant for remote FedRAMP assessment work, leading security and compliance evaluations for client environments and delivering audit results and guidance to support authorization and risk management objectives.

AWS Azure Cybersecurity HIPAA
9 hours, 17 minutes ago

Senior Security Assurance Manager

Trase Systems Professional Services

Trase Systems is hiring a Senior Security Assurance Manager to lead its security and compliance governance for regulated enterprise markets.

HIPAA LLM
18 hours, 36 minutes ago

NOC Analyst - OP02134-01

Dev.Pro 251-1K Internet Software & Services

Dev.Pro is hiring a NOC Analyst to support a mission-critical cloud environment through continuous monitoring, incident response, and operational maintenance for a global client base.

AWS Azure Bitbucket Datadog DNS Docker GitHub Actions HTTP Kubernetes Load Balancing MySQL PostgreSQL SOC TLS
22 hours, 57 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers