Salary
💰 $127,900 - $160,200 per year
Tech Stack
AnsibleAWSAzureChefCloudGoogle Cloud PlatformPuppetTerraform
About the role
- Define and continuously evolve the enterprise firewall strategy in alignment with organizational goals, emerging threats, and architectural principles
- Develop and maintain a comprehensive firewall lifecycle roadmap, including refresh cycles, decommissioning timelines, and technology modernization initiatives
- Influence platform selection, service models, and architectural direction based on technical merit, risk impact, and business value
- Serve as the primary point of contact for all firewall-related third-party vendors and managed service providers (MSPs)
- Drive vendor selection processes, capability evaluations, and contract negotiations
- Oversee vendor execution against SLAs, strategic initiatives, and compliance requirements
- Lead initiatives to modernize firewall policy models, automation frameworks, and management tools
- Evaluate and implement Infrastructure as Code (IaC) methodologies to enhance policy deployment and change management
- Ensure alignment between cloud-native and on-premise firewall strategies in hybrid environments
- Develop governance models that ensure auditability, documentation consistency, and alignment with regulatory frameworks
- Review audit findings, control gaps, and incident trends to drive systemic improvements
- Collaborate with security, compliance, legal, Enterprise Architecture, Infrastructure Engineering, and Restaurant Engineering teams
- Lead cross-functional workshops and steering committees and present business cases to executive stakeholders
Requirements
- Bachelor’s degree in Computer Science, Information Security, or a related technical discipline (or equivalent work experience)
- Advanced certifications such as CISSP, CCNP Security, or equivalent preferred
- 7–10 years of experience in network or security architecture roles
- At least 3 years focused on firewall governance, lifecycle planning, or product ownership
- Demonstrated success in vendor management, strategic sourcing, and contract negotiation
- Proficiency in automation and orchestration tools such as Ansible, Terraform, OpenTofu, Chef, or Puppet
- In-depth experience with enterprise firewall platforms including Palo Alto Networks, Fortinet, Cisco ASA/Firepower, or equivalent
- Solid understanding of hybrid cloud environments (AWS, Azure, or GCP)
- Familiarity with security frameworks and regulatory mandates (e.g., NIST, ISO 27001, PCI-DSS, SOX)