1:00 PM - 2:00 PM
Senior Product Manager Interview
Sarah Jenkins

Govcio LLC
·2 days agoGovcio LLC
·2 days agoLocation
remote, United States
Salary
$120k – $140k/yr
Commitment
Full Time
Level
Senior (5+ years)
GovCIO is seeking a highly experienced Senior Network & Security Engineer to lead the design, operation, troubleshooting, and continuous improvement of enterprise network-security infrastructure. This role is responsible for Palo Alto Networks next-generation firewalls, Panorama, High Availability, Cisco switching, network segmentation, Cortex XSIAM, and Strata Logging Service.
The Senior Engineer will serve as a technical escalation point for complex network and security incidents, lead architecture and implementation initiatives, establish standards, and partner with SOC, infrastructure, cloud, application, and leadership teams to reduce risk and maintain highly available services. This position will be located within the United States and will be a fully remote opportunity.
The successful Senior Network & Security Engineer will be a hands-on technical leader with deep expertise in Palo Alto Networks firewalls, Panorama, HA, and Cisco enterprise networking. This person will lead firewall-policy and microsegmentation design, troubleshoot complex TCP/IP and packet-flow issues, ensure resilient HA operations, and integrate security telemetry with Cortex XSIAM and Strata Logging Service. The candidate must be able to independently lead technical projects, resolve high-impact incidents, improve security controls, and mentor other engineering team members.
Bachelor’s degree with 8+ years (or commensurate experience) 7+ years of progressive experience in network engineering, network security, firewall administration, or security infrastructure operations. 5+ years of hands-on Palo Alto Networks firewall experience in a production enterprise environment. Advanced operational experience with Palo Alto Panorama, including multi-device policy management, templates, device groups, upgrades, configuration management, and troubleshooting. Strong hands-on experience designing, maintaining, and troubleshooting Palo Alto High Availability environments. Advanced understanding of HA1, HA2, HA3, configuration synchronization, session synchronization, failover behavior, link monitoring, path monitoring, peer health, and recovery processes. Strong expertise in TCP/IP, IPv4/IPv6, DNS, DHCP, ARP, routing, NAT, VPNs, and packet-level troubleshooting. Demonstrated ability to investigate TCP handshakes, resets, retransmissions, MTU/MSS issues, asymmetric routing, connection timeouts, and firewall session behavior. Extensive experience with Cisco Catalyst and/or Nexus switching technologies. Strong knowledge of enterprise switching and routing, including VLANs, trunking, STP/RSTP/MST, EtherChannel, HSRP/VRRP, routing protocols, ACLs, QoS, and switch-security controls. Proven experience designing or implementing network segmentation and microsegmentation solutions. Working knowledge of Cortex XSIAM, Strata Logging Service, security-event correlation, alert investigation, XQL Search, and firewall log ingestion. Ability to lead technical design discussions, independently manage complex workstreams, and communicate risks and recommendations to technical and nontechnical stakeholders. Strong documentation, change-management, incident-management, and root-cause-analysis skills.
Clearance Required: Must be able to attain and maintain AOUSC Public Trust
Master’s degree in Cybersecurity, Information Technology, Computer Science, Engineering, or a related field preferred Palo Alto Networks certifications: PCNSA, PCNSE, PCCSE, or equivalent enterprise-level experience. Cisco certifications: CCNP Enterprise, CCNP Security, CCIE Enterprise Infrastructure, CCIE Security, or comparable expertise. Experience with Palo Alto Prisma Access, Prisma Cloud, Cortex XDR, Cortex XSOAR, or cloud-delivered security services. Experience with Cortex XSIAM alert triage, XQL queries, data-source integrations, detection tuning, dashboards, reporting, and response automation. Experience with Cisco ISE, Cisco ACI, SD-Access, or enterprise network-access-control solutions. Familiarity with Fortinet Security Fabric, FortiGate, FortiManager, and FortiAnalyzer. Experience with AWS, Azure, Google Cloud Platform, hybrid-cloud network design, and cloud-security controls. Familiarity with SIEM, SOAR, EDR/XDR, vulnerability-management, NDR, network-monitoring, and ticketing platforms. Automation skills using Python, Ansible, Terraform, REST APIs, or related infrastructure-as-code and orchestration tools. Experience supporting 24x7 environments, participating in an on-call rotation, leading critical incidents, and executing emergency changes.