We’re looking for a Senior Network Security Engineer to support a multi phase security initiative involving Palo Alto FIPS conversions and Aruba/ClearPass infrastructure. This role is hands-on, engineering focused, and ideal for someone experienced with complex firewall environments, NAC, and secure wireless/switching deployments.
Key Responsibilities
- Lead Palo Alto firewall FIPS mode conversions across VM Series, PA 3220, PA 440, and PA 820 devices
- Work with Panorama (v11.2.x) to update templates, device groups, and HA configurations
- Validate policies, certificates, logging, and authentication integrations
- Perform cutovers during Sunday maintenance windows
- Support Aruba ClearPass (6.11.x), including AD/LDAP, RADIUS, and certificate-based auth
- Assist with NAC / IoT VLAN design, Aruba 6200F switching, and wireless environments (~250 APs)
- Provide documentation, runbooks, and knowledge transfer
Required Experience
- 5+ years with Palo Alto engineering, upgrades, and Panorama
- Strong experience with FIPS-mode readiness and conversions
- Must have extensive experience in ClearPass and Aruba Wireless / Gateway’s.
- Must have implemented and troubleshooting skills for Palo Alto SSL decryption.
- ClearPass (6.x), RADIUS/LDAP/Cert auth, NAC fundamentals
- Aruba switching/wireless experience
- Bonus: Azure Palo Alto VM firewalls

