Palo Alto SME

SITEC Consulting, LLCSpringfield, Missouri, VirginiaOn-siteFull-timeStaff, 8–12 yearsListed 1 week ago

Apply now

About this role

Palo Alto Subject Matter Expert

## Clearance: Active TS/SCI
Travel: Up to 15%

Serve as the technical authority for Palo Alto security platforms across a large hybrid enterprise. You will lead architecture, administration, modernization, and complex troubleshooting across legacy hardware, next-generation firewalls, cloud security, and centralized policy management.

What You Will Do

- Design, test, and implement secure network architectures using Palo Alto technologies.

- Administer and troubleshoot physical and virtual next-generation firewalls.

- Lead hardware refreshes, PAN-OS upgrades, and legacy platform modernization.

- Manage policies, templates, and device groups through Panorama.

- Configure App-ID, User-ID, Content-ID, SSL Decryption, WildFire, and related security services.

- Maintain standards, procedures, configuration controls, and technical documentation.

- Investigate security incidents and recommend corrective actions.

- Mentor junior engineers and serve as an escalation point.

What You Bring

- Active TS/SCI clearance with the ability to obtain and maintain a government polygraph.

- At least seven years of hands-on Palo Alto NGFW experience in large enterprise environments.

- Active PCNSE certification.

- Current DoD 8140/8570 IAT Level II certification.

- Ability to obtain CSSP Infrastructure Support certification within 120 days.

- Experience with legacy Palo Alto hardware, PAN-OS, Panorama, Prisma Access, Prisma SD-WAN, and VM-Series firewalls.

- Advanced knowledge of BGP, OSPF, IPSec VPNs, NAT, and hybrid cloud networking.

- Bachelor's degree in a related field or equivalent additional experience.

Preferred Qualifications

- PCNSC, PCSAE, or another advanced Palo Alto certification.

- Python, Ansible, Terraform, or API-based automation experience.

- Cortex XDR, Cortex XSOAR, or Expedition experience.

- Zero Trust architecture and experience with F5, Juniper, or Cisco security technologies.