Tier4 Group is looking for a Senior Network Security Engineer to support a multi-phase security initiative. This role involves hands-on engineering focused on complex firewall environments, NAC, and secure wireless/switching deployments, particularly with Palo Alto and Aruba infrastructure.
Responsibilities:
- Lead Palo Alto firewall FIPS mode conversions across VM Series, PA 3220, PA 440, and PA 820 devices
- Work with Panorama (v11.2.x) to update templates, device groups, and HA configurations
- Validate policies, certificates, logging, and authentication integrations
- Perform cutovers during Sunday maintenance windows
- Support Aruba ClearPass (6.11.x), including AD/LDAP, RADIUS, and certificate-based auth
- Assist with NAC / IoT VLAN design, Aruba 6200F switching, and wireless environments (~250 APs)
- Provide documentation, runbooks, and knowledge transfer
Requirements:
- 5+ years with Palo Alto engineering, upgrades, and Panorama
- Strong experience with FIPS-mode readiness and conversions
- Must have extensive experience in ClearPass and Aruba Wireless / Gateway's
- Must have implemented and troubleshooting skills for Palo Alto SSL decryption
- ClearPass (6.x), RADIUS/LDAP/Cert auth, NAC fundamentals
- Aruba switching/wireless experience
- Azure Palo Alto VM firewalls