Salary
💰 $127,900 - $160,200 per year
Tech Stack
AnsibleChefCyber SecurityITSMPuppetTCP/IPTerraform
About the role
- Oversee firewall-related tasks performed by third-party Managed Service Providers (MSPs), ensuring quality, timeliness, and compliance
- Monitor and review firewall access control changes to ensure they align with enterprise policies and risk posture
- Track and analyze firewall performance metrics, audit logs, and change requests
- Ensure regular updates and patching of firewall operating systems and configurations in accordance with security best practices and vulnerability management processes
- Maintain and continuously improve operational documentation, including playbooks, runbooks, and escalation procedures
- Ensure all firewall activities are audit-ready and aligned with internal standards and regulatory requirements (e.g., PCI-DSS, SOX, GDPR)
- Participate in change advisory board (CAB) meetings and project planning sessions to represent firewall operational requirements
- Drive documentation and automation of processes to reduce manual effort and operational risk
- Coordinate firewall incident response efforts with MSPs and internal teams
- Lead or participate in root cause analysis (RCA) for firewall-related incidents or breaches
- Evaluate the impact of proposed firewall changes and assess risk before implementation
- Act as the primary liaison between infrastructure, cybersecurity, enterprise architecture, and vendor teams
- Provide mentorship and support to junior engineers and technical analysts
- Represent firewall operations in IT governance forums and cross-functional initiatives
Requirements
- Bachelor’s degree in Information Technology, Cybersecurity, Computer Science, or a related field (equivalent work experience may be considered)
- Industry certifications such as CompTIA Security+, Cisco CCNA Security, or Palo Alto PCNSA preferred
- 5–7 years of experience in firewall administration, network security, or security operations
- Strong knowledge of TCP/IP networking, routing principles, and firewall ruleset design
- Hands-on experience with enterprise firewall platforms such as Palo Alto Networks, Fortinet, Cisco ASA/Firepower, or similar
- Experience working with or managing third-party vendors or Managed Security Service Providers (MSSPs)
- Familiarity with ITSM/ticketing systems, change management workflows, and SLA tracking
- Proficiency in Infrastructure as Code (IaC) and automation tools such as Ansible, Terraform, OpenTofu, Chef, or Puppet
- Ability to participate in an on-call rotation or after-hours change windows
- High attention to detail and strong adherence to process
- Analytical and methodical in evaluating logs, events, and configuration changes
- Effective in incident response and risk assessment
- Strong interpersonal and communication skills; ability to coordinate across technical and non-technical teams