• Senior/SME Firewall Engineer

    Job Locations US-VA-Springfield
    Posted Date 1 week ago(10/10/2018 10:21 AM)
    Job ID
    # of Openings
    Information Technology
  • Overview

    SC3 is a leading provider of high-end mission support, consulting and technology solutions to the federal government in defense, intelligence, and civil markets, and to major corporations and nonprofit organizations. SC3’s national security efforts reach across the intelligence community and Department of Defense, providing full life-cycle operational and cyber support and differentiated capabilities to meet our customer’s challenging mission.


    In addition to our government services area, SC3 provides cutting-edge competitive intelligence and strategic management consulting to commercial clients. Private industry leaders from the financial, health care, manufacturing and other sectors turn to SC3 to ensure that they have access to the most relevant, current, and strategically important information – not only to grow their businesses, but also to protect them.


    1. Works directly with the DoS Perimeter Security customer to build, design, test and deploy perimeter security (Firewall) solutions.
    2. Develop and deploy perimeter security solutions utilizing multi-vendor firewalls, email security, IPS/IDS, SSL decryption, DMZs, and virtualization/zones for on premise and cloud based services.
    3. Collaborate with technical SMEs on Enterprise wide solutions, participate in technical working groups, and contribute to technical advisory boards.
    4. Supports the compilation of records and reports concerning perimeter operations and maintenance to analyze the performance of perimeter security systems.
    5. Provides input to the problem management process, including assessing and evaluating software and hardware anomalies. Supports the root cause analysis efforts to determine problems and develop remediation activities. Interfaces with vendor support service groups to ensure proper support during outages or periods of degraded system performance.
    6. Supports the transition to operations of perimeter security devices.
    7. Collaborate with Cross-Bureaus and Agencies to implement network changes as it relates to perimeter security
    8. Supports the configuration testing of replacement perimeter devices
    9. Plans, documents, and implements hardware and software build and refresh
    10. Create and Maintain standard operating procedures and guides for new and/or existing perimeter hardware and software.
    11. Address Tier III escalation issues
    12. Attend weekly teleconferences, onsite meetings, and participates in working groups, as related to constant changing security environment.


    1. Bachelor degree in a computer science/computer engineering related discipline
    2. 10+ years IT security/network engineering support experience (Tier II, Tier III, network infrastructure implementation and maintenance)
    3. Experience working directly with Government customer
    4. Expert experience in one or more of the following security devices: Palo Alto firewalls, Panorama management console, McAfee/Forcepoint StoneGate firewalls, A10 Encrypted Traffic Inspection/Application Delivery, and Cisco ESA & ASA
    5. Experience developing and configuring SSL encryption/decryption solutions for traffic inspection
    6. Experience supporting the configuration and maintenance of Firewall/DMZ infrastructure including Network and Application Firewall Packet Filtering technologies (Palo Alto, McAfee/Forcepoint Stonegate)
    7. Firsthand experience in developing and providing quality assurance review of engineering change orders relating to the replacement or enhancement of perimeter security hardware and software
    8. Experienced with performing root cause analysis, risk identification, and risk mitigation
    9. Knowledgeable with configuring Cisco switches
    10. Strong understanding of routing/switching technologies, IP addressing/subnetting, and network traffic analysis/troubleshooting
    11. Experience with network monitoring devices such as HP Openview, Nagios, Zenoss, NeuralStar or other similar monitoring tools
    12. Candidate must be a US Citizen and possess a US “TOP SECRET” security clearance, Secret clearance with upgrade to Top Secret is acceptable.


    Desired Education/Skills:


    • Bachelor Degree plus relevant work experience
    • ITIL ® Foundation certification
    • Certifications: Palo Alto Networks Certified Network Security Engineer (PCNSE), A10 Certification/Accreditation, StoneGate Firewall/VPN Architect Certification, StoneGate Management Client (SMC) Certification, Microsoft Certified Professional (MCP), Network+, Security+, CISSP
    • Familiarity with DoS environment (data and voice networks, IT security systems, policies and procedures), Foreign Affairs Handbooks (FAHs), Foreign Affairs Manuals (FAMs)
    • Experience with Red Hat Linux/CentOS and Ubuntu including administration scripting is a plus
    • Interpersonal skills including the ability to collaborate effectively, self-awareness, and excellent written and oral communications.


    Sorry the Share function is not working properly at this moment. Please refresh the page and try again later.
    Share on your newsfeed