Job description
Job Title – Network Security Engineer III - IN
Location: Remote
Experience: 7–12 years
Project: Cisco ASA to Palo Alto / Firepower EOL Migration
Job Type: Full-time
Role Overview:
- We are looking for an experienced L3 Network Security Engineer to support a large-scale Firewall Migration Project, transitioning firewalls from Cisco ASA (5508,5525,5545,5555 etc.) to Cisco Firepower and Palo Alto Next-Gen Firewalls (including 1410 models, VSYS, and VM-Series). The candidate will work closely with technical leads to execute migration activities, validate configurations, and support post-migration troubleshooting.
Key Responsibilities:
- Participate in the migration and config conversion of:
- ASA → Palo Alto (1410 VSYS, 1410 Single Tenant & VM-Series)
- ASA → Cisco Firepower with ASA Code or FTD
- Perform configuration conversion using tools and manual methods.
- Configure and validate:
- NAT policies (Static, Dynamic)
- Site-to-Site VPNs and Client-to-Site VPNs (AnyConnect/Global Protect)
- Firewall Policies, HA, SSL VPNs, NextGen features (IPS/IDS)
- Strong knowledge of change/Incident management process.
- Conduct pre- and post-migration validation.
- Support change windows, participate in troubleshooting during cutovers.
- Document configurations and migration steps.
- Collaborate with L4 engineers and stakeholders during complex migrations.
Must-Have Skills:
- Hands-on experience with:
- Cisco ASA
- Cisco FTD/Firepower
- Palo Alto NGFW (including 1410, VM-Series, VSYS)
- Palo Alto NGFW (VSYS, Panorama, Expedition, Migration Manager)
- Strong command of:
- Cisco ASA- ACL, VPN setup (IPSec/SSL), AnyConnect, HA Setup,NAT, Policy Management, OS Upgrade.
- Palo Alto- VPN setup (IPSec/SSL), Global protect, HA Setup, NAT, Policy Management, PANOS Upgrade.
- Routing protocols (Static, OSPF, BGP) and switching fundamentals
- Experience in ASA to Palo Alto / Firepower config conversion.
- Familiarity with tools like Expedition, Migration Manager, or similar.
- Solid troubleshooting and packet capture analysis skills.
Soft Skills & Professional Attributes:
- Excellent interpersonal and communication skills – able to clearly articulate ideas, processes, and technical concepts to both technical and non-technical audiences.
- Strong documentation abilities – capable of creating and maintaining clear, concise technical documentation and procedures.
- Flexible, proactive, and self-driven – demonstrates initiative, reliability, and adaptability in dynamic environments.
Preferred Certifications:
- Cisco Certifications: CCNP Security / CCNP R&S
- Palo Alto Certifications: PCNSA/PCNSE