Mid-Level Network Security Engineer
- Location
- New York City, NY
- Work type
- Full Time
- Posted
- 2026-08-24
Job description
About The Role
The Network Security Engineer – Palo Alto Networks supports the delivery of client security engagements through hands-on configuration, deployment, migration, validation, troubleshooting, and operational transition of Palo Alto Networks firewalls and supporting security services.
This role combines technical implementation with growing design, consulting, and technical leadership responsibility. The engineer will deliver assigned workstreams, participate in client workshops and technical reviews, and contribute reusable knowledge that helps build a scalable, high-quality Network Security practice.
Other responsibilities include: B
Configure, deploy, migrate, validate, and troubleshoot Palo Alto Networks firewalls and support security services.
Support discovery, implementation planning, testing, cutover, rollback, documentation, and operational transition activities.
Administer security policy, NAT, routing, VPN, high availability, logging, threat prevention, and Panorama-managed environments.
Participate in client workshops, technical reviews, and knowledge-transfer sessions with increasing independence.
Partner with senior engineers, Technical Project Leads, PMO, and Delivery Operations to surface risks and deliver predictable outcomes.
Build trusted client relationships through strong ownership, clear communication, and reliable delivery.
Produce implementation plans, test results, as-built documentation, diagrams, and knowledge-transfer materials.
Contribute lessons learned, implementation standards, reusable playbooks, and delivery documentation.
Mentor developing engineers and support knowledge sharing across the Network Security practice.
Support planned maintenance windows and travel when client delivery requires it.
Complete ongoing security awareness training and comply with company policies to the requirements section .
Identify and escalate security risks to the appropriate Executive Leadership Team member and actively contribute to remediation efforts
Other duties as assigned
Desired skills and experience:
4-7 years of experience in network security, firewall engineering, or enterprise networking, including hands-on project delivery.
2+ years of Palo Alto Networks experience across implementation, migration, operations, or troubleshooting.
Working knowledge of PAN-OS, Panorama, security policy, NAT, GlobalProtect, site-to-site VPN, routing, high availability, logging, and security profiles.
Understanding of TCP/IP, VLANs, BGP/OSPF, segmentation, identity services, certificates, and enterprise network dependencies.
Experience supporting discovery, implementation planning, testing, cutover, rollback, and operational transition activities.
Ability to create clear technical documentation, diagrams, implementation plans, test results, and knowledge-transfer materials.
Professional Services, consulting, multi-site deployment, or customer-facing delivery experience strongly preferred.
Palo Alto Networks professional-level certification or active progress toward one preferred; PCNSA or PCNSE legacy credentials remain relevant evidence.
Experience with Prisma Access, Strata Cloud Manager, GlobalProtect, decryption, SD-WAN, cloud firewalls, or SIEM integrations is a plus.
Complementary certifications such as CCNA, CCNP Security, Security+, CISSP Associate, Azure Security, or AWS Security are a plus.
Strong communication, ownership, and collaboration skills with the ability to escalate risks before they become delivery issues.