Join our Talent Network >

Firewall Engineer

Job ID: 2301202
Location: SPRINGFIELD, VA, United States
Date Posted: Jan 26, 2023
Category: Cyber
Subcategory: Cyber Engineer
Schedule: Full-time
Shift: Day Job
Travel: No
Minimum Clearance Required: Secret
Clearance Level Must Be Able to Obtain: Top Secret
Potential for Remote Work: Temporarily Remote
Benefits: Click here

Share: mail

Job Description


This position is for the Firewall Engineering Security Team within the Vanguard Perimeter Security Division (PSD), providing firewall engineering over multiple firewall and perimeter security appliances. The well qualified candidate must be capable of developing and provide evaluation of firewall performance results, perform risk assessments, and recommend changes impacting the perimeter security systems.  The candidate must be capable of planning and leading engineering activities to include the testing, implementation, and maintenance of perimeter security technologies and devices and must be capable of communicating and coordinating all firewall related work to the Firewall Manager to include the Government customer. The position directly supports DoS on-site to provide perimeter security protection to over 100,000 customers globally.

Temporary hybrid remote work may be offered due to Covid-19, but could be asked to return to the office at the request of the customer.

Responsibilities include:

  • Build, design, test and deploy perimeter security appliances (Palo Alto, Forcepoint and Fortinet Firewalls, Cisco ESA/SMA and A10 Load Balancers)
  • Directs compilation of records and reports concerning perimeter operations and maintenance to analyze the performance of perimeter security systems.
  • Provides input to the problem management process, including assessing and evaluating software and hardware anomalies.  Supports the root cause analysis efforts to determine problems and develop remediation activities. Interfaces with vendor support service groups to ensure proper support during outages or periods of degraded system performance.
  • Manages the proper transition to operations of perimeter security devices.
  • Collaborate across Bureaus and Agencies to implement network changes as it relates to perimeter security
  • Supports the configuration testing  of replacement perimeter devices
  • Plans, documents, and implements hardware and software build and refresh
  • Create and maintain standard operating procedures and guides for new and/or existing perimeter hardware and software.
  • Attend weekly teleconferences, onsite meetings, and participates in working groups, as related to constant changing security environment.


Required Education & Experience

  • Bachelor degree in a computer science/computer engineering related discipline and 5 years IT network engineering support experience (Tier II, Tier III, network infrastructure implementation and maintenance); may accept additional experience in lieu of degree.
  • Strong experience with one or more of the following security devices: Palo Alto firewalls, Forcepoint Firewalls, Fortinet Firewalls, A10 Encrypted Traffic Inspection/Application Delivery, and Cisco ESA/SMA
  • Experience supporting the configuration and maintenance of Firewall/DMZ infrastructure including Network and Application Firewall Packet Filtering technologies (Palo Alto, Forcepoint, FortiNet)
  • Firsthand experience in developing and providing quality assurance review of engineering change orders relating to the replacement or enhancement of perimeter security hardware and software
  • Experienced with performing root cause analysis, risk identification, and risk mitigation
  • Knowledgeable with configuring Cisco switches and routers
  • Experienced with network monitoring devices such as NeuralStar, SPLUNK or other similar monitoring tools

Required Clearance

  • US Citizenship
  • An active Secret clearance is required to start work and requires eligibility to obtain a Top Secret clearance.

Desired Education/Skills

  • Experience developing and configuring SSL/TLS encryption/decryption solutions for traffic inspection
  • Experience with Red Hat Linux/CentOS and Ubuntu including administration scripting is a plus
  • ITIL ® Foundation certification
  • Certifications: Palo Alto Networks Certified Network Security Engineer (PCNSE), A10 Certification/Accreditation, FortiNet NSE, Cisco CCNP Security, Microsoft Certified Professional (MCP), Network+, Security+
  • Familiarity with DoS environment (data and voice networks, IT security systems, policies and procedures), Foreign Affairs Handbooks (FAHs), Foreign Affairs Manuals (FAMs)
  • Interpersonal skills including the ability to collaborate effectively, self-awareness, and excellent written and oral communications.

Covid Policy: SAIC does not require COVID-19 vaccinations or boosters. Customer site vaccination requirements must be followed when work is performed at a customer site.


SAIC® is a premier Fortune 500® technology integrator driving our nation's technology transformation. Our robust portfolio of offerings across the defense, space, civilian, and intelligence markets includes secure high-end solutions in engineering, digital, artificial intelligence, and mission solutions. Using our expertise and understanding of existing and emerging technologies, we integrate the best components from our own portfolio and our partner ecosystem to deliver innovative, effective, and efficient solutions that are critical to achieving our customers' missions.

We are approximately 26,000 strong; driven by mission, united by purpose, and inspired by opportunities. SAIC is an Equal Opportunity Employer, fostering a culture of diversity, equity, and inclusion, which is core to our values and important to attract and retain exceptional talent. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $7.4 billion. For more information, visit For ongoing news, please visit our newsroom.

Share: mail

Similar Jobs

Firewall Engineer

SPRINGFIELD, VA, United States

Systems Engineer

SPRINGFIELD, VA, United States

Are you an SAIC Employee?

Please apply through the internal career site here >