Job Description
Palo Alto Firewall L3 Engineer (AWS Security)
Location: Marysville, Ohio
Experience: 8+ Years
Duration: Full Time
Role Summary
Seeking an experienced Palo Alto Firewall L3 Engineer with strong expertise in firewall architecture, design, implementation, and operations. The candidate will serve as the L3 SME for Palo Alto security infrastructure and AWS native security services, supporting complex deployments, security enhancements, and enterprise-scale firewall operations.
Candidate should be a US Citizen (Holding valid US Passport)
Key Responsibilities
Design & Implementation
· Lead firewall design, planning, and implementation activities for new deployments, migrations, and technology refresh projects.
- Develop High-Level Design (HLD), Low-Level Design (LLD), and security architecture documentation.
- Design network segmentation, DMZ, VPN, and Zero Trust security solutions.
- Implement Palo Alto NGFW, Panorama, GlobalProtect, IPSec VPN, SSL Decryption, Threat Prevention, and WildFire solutions.
Operations & Engineering
· Manage Palo Alto firewalls, Panorama, security policies, NAT, VPNs, HA clustering, and threat prevention services.
- Perform advanced troubleshooting for firewall, routing, VPN, and application connectivity issues.
- Conduct firewall rule reviews, policy optimisation, recertification, and compliance assessments.
- Lead firewall upgrades, migrations, vulnerability remediation, and infrastructure changes.
- Provide L3 escalation support for critical incidents and perform Root Cause Analysis (RCA).
AWS Security
· Manage AWS Security Groups, Network ACLs, AWS Network Firewall, WAF, GuardDuty, Security Hub, IAM, CloudTrail, and AWS Config.
- Support secure hybrid-cloud connectivity and cloud security governance.
Required Skills
· Palo Alto NGFW, Panorama, GlobalProtect
- App-ID, User-ID, WildFire, Threat Prevention, URL Filtering
- IPSec VPN, SSL VPN, NAT, HA Clustering
- Firewall Design, Deployment, Migration & Security Architecture
- BGP, OSPF, TCP/IP, DNS
- AWS Security Services
- SIEM Integration (Microsoft Sentinel, Splunk, QRadar)
- Strong Incident, Change & Problem Management experience
Preferred Experience
· Large enterprise firewall environments (100+ firewalls)
- Design and implementation of global firewall infrastructure
- Hybrid Cloud Security (AWS)
- Firewall automation using Python, Terraform, or Ansible
- Managed Security Services (24x7 Operations)
͏
Areas of responsibility
Monitoring and Incident Detection-Analyse attack trends and correlate logs across systems to identify advance threats. Enhance monitoring processes and implement improvements for faster detection, to ensure compliance with security frameworks and regulatory standards.
Incident Handling and Analysis-Perform root cause analysis, create incident response plans and implement disaster recovery measures to minimize business disruption
Threat Assessment and Analytics-Undertake forensic analysis using advanced analytics tools and implement mitigation measures to align with compliance requirements.
Stakeholder Coordination and Audit Assistance-"Liaise with cross functional teams, external vendors and auditors to ensure compliance with security frameworks.
Maintain audit documentation and ensure its accuracy while implementing processes that support audit readiness and continuous compliance."
Training and Awareness-Assist in creating and delivering cybersecurity awareness sessions, including guidance on phishing and malicious emails.
͏
͏
͏
Experience: 5-8 Years .
The expected compensation for this role ranges from $60,000 to $135,000 .
Final compensation will depend on various factors, including your geographical location, minimum wage obligations, skills, and relevant experience. Based on the position, the role is also eligible for Wipro's standard benefits including a full range of medical and dental benefits options, disability insurance, paid time off (inclusive of sick leave), other paid and unpaid leave options.
Applicants are advised that employment in some roles may be conditioned on successful completion of a post-offer drug screening, subject to applicable state law.
Wipro provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state, or local laws. Applications from veterans and people with disabilities are explicitly welcome.
Reinvent your world. We are building a modern Wipro. We are an end-to-end digital transformation partner with the boldest ambitions. To realize them, we need people inspired by reinvention. Of yourself, your career, and your skills. We want to see the constant evolution of our business and our industry. It has always been in our DNA - as the world around us changes, so do we. Join a business powered by purpose and a place that empowers you to design your own reinvention.