Yum! Center for Global Franchise Excellence

Firewall Operations Engineer

Yum! Center for Global Franchise Excellence

full-time

Posted on:

Origin:  • 🇺🇸 United States • Kentucky

Visit company website
AI Apply
Apply

Salary

💰 $127,900 - $160,200 per year

Job Level

Mid-LevelSenior

Tech Stack

AnsibleChefCyber SecurityITSMPuppetTCP/IPTerraform

About the role

  • Oversee firewall-related tasks performed by third-party Managed Service Providers (MSPs), ensuring quality, timeliness, and compliance
  • Monitor and review firewall access control changes to ensure they align with enterprise policies and risk posture
  • Track and analyze firewall performance metrics, audit logs, and change requests
  • Ensure regular updates and patching of firewall operating systems and configurations in accordance with security best practices and vulnerability management processes
  • Maintain and continuously improve operational documentation, including playbooks, runbooks, and escalation procedures
  • Ensure all firewall activities are audit-ready and aligned with internal standards and regulatory requirements (e.g., PCI-DSS, SOX, GDPR)
  • Participate in change advisory board (CAB) meetings and project planning sessions to represent firewall operational requirements
  • Drive documentation and automation of processes to reduce manual effort and operational risk
  • Coordinate firewall incident response efforts with MSPs and internal teams
  • Lead or participate in root cause analysis (RCA) for firewall-related incidents or breaches
  • Evaluate the impact of proposed firewall changes and assess risk before implementation
  • Act as the primary liaison between infrastructure, cybersecurity, enterprise architecture, and vendor teams
  • Provide mentorship and support to junior engineers and technical analysts
  • Represent firewall operations in IT governance forums and cross-functional initiatives

Requirements

  • Bachelor’s degree in Information Technology, Cybersecurity, Computer Science, or a related field (equivalent work experience may be considered)
  • Industry certifications such as CompTIA Security+, Cisco CCNA Security, or Palo Alto PCNSA preferred
  • 5–7 years of experience in firewall administration, network security, or security operations
  • Strong knowledge of TCP/IP networking, routing principles, and firewall ruleset design
  • Hands-on experience with enterprise firewall platforms such as Palo Alto Networks, Fortinet, Cisco ASA/Firepower, or similar
  • Experience working with or managing third-party vendors or Managed Security Service Providers (MSSPs)
  • Familiarity with ITSM/ticketing systems, change management workflows, and SLA tracking
  • Proficiency in Infrastructure as Code (IaC) and automation tools such as Ansible, Terraform, OpenTofu, Chef, or Puppet
  • Ability to participate in an on-call rotation or after-hours change windows
  • High attention to detail and strong adherence to process
  • Analytical and methodical in evaluating logs, events, and configuration changes
  • Effective in incident response and risk assessment
  • Strong interpersonal and communication skills; ability to coordinate across technical and non-technical teams
CrowdStrike

Senior Client Platform Engineer

CrowdStrike
Seniorfull-time🇮🇳 India
Posted: 3 days agoSource: crowdstrike.wd5.myworkdayjobs.com
AnsibleChefCyber SecurityFirewallsJamfLinuxMacOSPuppetPython
TalentWerx

Site Reliability Engineer IV

TalentWerx
Mid · Seniorfull-time$118k–$144k / year🇺🇸 United States
Posted: 21 days agoSource: jobs.lever.co
AnsibleAWSCloudCyber SecurityLinuxMicroservicesPythonTerraform
Rockwell Automation

Senior Infrastructure Automation Engineer

Rockwell Automation
Seniorfull-time🇺🇸 United States
Posted: 34 days agoSource: rockwellautomation.wd1.myworkdayjobs.com
AnsibleAWSAzureChefCloudGoGoogle Cloud PlatformITSMJenkinsKubernetesPuppetPython+2 more
Boeing

Network Designer – Senior/Lead

Boeing
Seniorfull-time$122k–$197k / yearWashington · 🇺🇸 United States
Posted: 19 hours agoSource: boeing.wd1.myworkdayjobs.com
AnsibleiOSPythonSplunkTCP/IP
Trace3

Senior SOC Analyst

Trace3
Seniorfull-time$80k–$100k / year🇺🇸 United States
Posted: 5 days agoSource: boards.greenhouse.io
AzureCloudCyber SecurityFirewallsITSMJamfMacOSServiceNowSplunk