Intellibridge
Senior Firewall Engineer
Intellibridge, Silver Spring, Maryland, United States, 20900
Role Overview:IntelliBridge supports the Department of Labor, Bureau of Labor Statistics (DOL BLS) by providing IT Support Services. We are seeking a highly skilled and experienced Senior Firewall Engineer to join our dynamic IT team. The ideal candidate will have over a decade of hands-on experience in designing, implementing, and managing CheckPoint firewall solutions, as well as extensive experience with Cisco FirePower remote VPN solutions, Cisco AnyConnect client, and supporting CheckPoint firewalls in AWS. This role requires a deep understanding of network security principles, excellent problem-solving skills, and the ability to work in a fast-paced environment.Responsibilities:
Architect, design, and implement CheckPoint firewall solutions to meet the security needs of the organization.Configure and manage CheckPoint firewalls, including policy creation, rule management, and system upgrades (hardware and software).Configure, manage, and troubleshoot Cisco FirePower remote VPN solutions and Cisco AnyConnect client deployments.Deploy, configure, and manage CheckPoint firewalls within AWS environments, ensuring secure and efficient cloud operations.Monitor firewall performance and security events, troubleshoot issues, and implement corrective actions.Develop and enforce security policies and procedures to ensure compliance with industry standards and best practices.Lead and participate in security incident response activities, including investigation, mitigation, and reporting.Maintain detailed documentation of firewall configurations, changes, and security incidents.Work closely with other IT teams, including network, systems, and application teams, to ensure seamless integration and operation of security solutions.Provide training and mentorship to junior engineers and other team members on CheckPoint firewall technologies, Cisco FirePower, Cisco AnyConnect, and AWS best practices.Keep abreast of the latest developments in CheckPoint, Cisco, and AWS technologies and network security trendsRequired Skills & Experience:
Ten (10) years of experience designing scalable and reliable network infrastructure for large.Bachelor's degree in Computer Science, Information Technology, or a related field. Advanced certifications in CheckPoint and Cisco technologies are highly desirable.Provide senior-level, advanced hands-on support for CheckPoint enterprise firewalls, Cisco FirePower VPN appliances, Cisco AnyConnect client, remote (VPN) management solutions (e.g., two-factor authentication), AAA servers, log reporting, firewall audits, and vulnerability management.Take on technical leadership roles with minimal supervision, leveraging experience with enterprise security solutions, IPv4 and dynamic routing, and integrated firewall technologies such as PKI, OCSP responders, AD, LDAP, YubiKey and SecureID servers.MS Teams, MS Visio, MS Excel, MS PowerPointNetwork monitoring tools (i.e. Solarwinds)Essential Duties & Responsbilities:
Exhibit advanced troubleshooting skills, manage incidents and problems, oversee escalations, and have a solid understanding of encryption technologies.Be an expert in all aspects of firewall device installations, maintenance, and usage of large-scale local and wide area networks.Manage network performance and maintain a high security posture.Utilize network monitoring tools such as SolarWinds, Wireshark, tcpdump, fw monitor, snoop, or similar network packet capturing tools.Demonstrate excellent communication, documentation, and presentation skills.Show organizational and project planning skills by being a visionary and self-starter, taking charge of current operations from a high level, covering all aspects of security operations including, but not limited to: patch management, vulnerability remediation, network security designs, endpoint security, client-to-site and site-to-site VPNs, IPSEC tunnels, CheckPoint firewall clustering, CheckPoint security management servers, Cisco AnyConnect profiles, Cisco FirePower Clustering, wireless technologies, McAfee Web Proxy, and CheckPoint URL filtering blade, project management, change management, configuration management, and scheduling.Professional Certification(s):
CheckPoint Certified Security Expert (CCSE) orCheckPoint Certified Security Master (CCSM) preferred.Cisco Certified Network Professional (CCNP) Security or equivalent is a plus.AWS Certified Solutions Architect or AWS Certified Security Specialty is highly desirable.
Architect, design, and implement CheckPoint firewall solutions to meet the security needs of the organization.Configure and manage CheckPoint firewalls, including policy creation, rule management, and system upgrades (hardware and software).Configure, manage, and troubleshoot Cisco FirePower remote VPN solutions and Cisco AnyConnect client deployments.Deploy, configure, and manage CheckPoint firewalls within AWS environments, ensuring secure and efficient cloud operations.Monitor firewall performance and security events, troubleshoot issues, and implement corrective actions.Develop and enforce security policies and procedures to ensure compliance with industry standards and best practices.Lead and participate in security incident response activities, including investigation, mitigation, and reporting.Maintain detailed documentation of firewall configurations, changes, and security incidents.Work closely with other IT teams, including network, systems, and application teams, to ensure seamless integration and operation of security solutions.Provide training and mentorship to junior engineers and other team members on CheckPoint firewall technologies, Cisco FirePower, Cisco AnyConnect, and AWS best practices.Keep abreast of the latest developments in CheckPoint, Cisco, and AWS technologies and network security trendsRequired Skills & Experience:
Ten (10) years of experience designing scalable and reliable network infrastructure for large.Bachelor's degree in Computer Science, Information Technology, or a related field. Advanced certifications in CheckPoint and Cisco technologies are highly desirable.Provide senior-level, advanced hands-on support for CheckPoint enterprise firewalls, Cisco FirePower VPN appliances, Cisco AnyConnect client, remote (VPN) management solutions (e.g., two-factor authentication), AAA servers, log reporting, firewall audits, and vulnerability management.Take on technical leadership roles with minimal supervision, leveraging experience with enterprise security solutions, IPv4 and dynamic routing, and integrated firewall technologies such as PKI, OCSP responders, AD, LDAP, YubiKey and SecureID servers.MS Teams, MS Visio, MS Excel, MS PowerPointNetwork monitoring tools (i.e. Solarwinds)Essential Duties & Responsbilities:
Exhibit advanced troubleshooting skills, manage incidents and problems, oversee escalations, and have a solid understanding of encryption technologies.Be an expert in all aspects of firewall device installations, maintenance, and usage of large-scale local and wide area networks.Manage network performance and maintain a high security posture.Utilize network monitoring tools such as SolarWinds, Wireshark, tcpdump, fw monitor, snoop, or similar network packet capturing tools.Demonstrate excellent communication, documentation, and presentation skills.Show organizational and project planning skills by being a visionary and self-starter, taking charge of current operations from a high level, covering all aspects of security operations including, but not limited to: patch management, vulnerability remediation, network security designs, endpoint security, client-to-site and site-to-site VPNs, IPSEC tunnels, CheckPoint firewall clustering, CheckPoint security management servers, Cisco AnyConnect profiles, Cisco FirePower Clustering, wireless technologies, McAfee Web Proxy, and CheckPoint URL filtering blade, project management, change management, configuration management, and scheduling.Professional Certification(s):
CheckPoint Certified Security Expert (CCSE) orCheckPoint Certified Security Master (CCSM) preferred.Cisco Certified Network Professional (CCNP) Security or equivalent is a plus.AWS Certified Solutions Architect or AWS Certified Security Specialty is highly desirable.