{"schemaVersion":"jobsearcher.job.v1","id":"3fde8b985d66b2f8dd31cba8","url":"https://jobsearcher.com/jobs/3fde8b985d66b2f8dd31cba8","canonicalUrl":"https://jobsearcher.com/jobs/3fde8b985d66b2f8dd31cba8","title":"Network Security Engineer","description":"DescriptionRemoteOur client seeks a Network Security Engineer to onboard approximately 350 Palo Alto firewalls into a new Panorama deployment. You will work in a two-person team following a locked design and a defined runbook within scheduled change windows. Devices are transitioning from a third-party managed provider, so precision, validation, and rollback discipline are required. Pairs will execute a repeatable onboarding sequence at pace, identifying exceptions and recording deviations to inform subsequent waves.We can facilitate w2 and corp-to-corp consultants. For our w2 consultants, we offer a great benefits package that includes Medical, Dental, and Vision benefits, 401k with company matching, and life insurance.Rate: $95.00 to $115.00/hr. w2JN -092026-108525ResponsibilitiesRun the per-device onboarding sequence: pre-checks, configuration capture, device group and template assignment, commit, validation, and rollback if validation fails.Work in a two-person team against a wave calendar, in scheduled four-hour change windows.Stage and deploy the Panorama high-availability pair and its log collectors.Migrate policy and clean up rulebases: shadowed rules, unused rules, overly permissive rules, and object consolidation across archetypes.Configure log forwarding to two destinations during the parallel-run period, and verify the receiving side actually has the logs.Record every device that does not match its archetype to inform the next wave.Experience RequirementsHands-on PAN-OS at production scale: security and NAT policy, security profiles, objects, zones, interfaces, routing, and commit and validation behavior.Experience onboarding firewalls to Panorama or comparable bulk device migration to a central management platform.Comfort working scheduled evening and weekend change windows through October, November, and early December.Discipline with a runbook, following the sequence and escalating rather than improvising during windows.Ability to read a firewall configuration and articulate impact if a rule moves.Education Requirements","company":"Eliassen Group","rawCompany":"eliassen group","city":"Chicago","state":"IL","isRemote":false,"isActive":false,"createdAt":"2026-09-12T07:53:32.875Z","occupations":[{"code":"15-1244.00","title":"Network and Computer Systems Administrators","slug":"network-and-computer-systems-administrators"},{"code":"15-1231.00","title":"Computer Network Support Specialists","slug":"computer-network-support-specialists"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541519","title":"Other Computer Related Services","slug":"other-computer-related-services"},{"code":"541513","title":"Computer Facilities Management Services","slug":"computer-facilities-management-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Network Security Engineer","description":"DescriptionRemoteOur client seeks a Network Security Engineer to onboard approximately 350 Palo Alto firewalls into a new Panorama deployment. You will work in a two-person team following a locked design and a defined runbook within scheduled change windows. Devices are transitioning from a third-party managed provider, so precision, validation, and rollback discipline are required. Pairs will execute a repeatable onboarding sequence at pace, identifying exceptions and recording deviations to inform subsequent waves.We can facilitate w2 and corp-to-corp consultants. For our w2 consultants, we offer a great benefits package that includes Medical, Dental, and Vision benefits, 401k with company matching, and life insurance.Rate: $95.00 to $115.00/hr. w2JN -092026-108525ResponsibilitiesRun the per-device onboarding sequence: pre-checks, configuration capture, device group and template assignment, commit, validation, and rollback if validation fails.Work in a two-person team against a wave calendar, in scheduled four-hour change windows.Stage and deploy the Panorama high-availability pair and its log collectors.Migrate policy and clean up rulebases: shadowed rules, unused rules, overly permissive rules, and object consolidation across archetypes.Configure log forwarding to two destinations during the parallel-run period, and verify the receiving side actually has the logs.Record every device that does not match its archetype to inform the next wave.Experience RequirementsHands-on PAN-OS at production scale: security and NAT policy, security profiles, objects, zones, interfaces, routing, and commit and validation behavior.Experience onboarding firewalls to Panorama or comparable bulk device migration to a central management platform.Comfort working scheduled evening and weekend change windows through October, November, and early December.Discipline with a runbook, following the sequence and escalating rather than improvising during windows.Ability to read a firewall configuration and articulate impact if a rule moves.Education Requirements","datePosted":"2026-09-12T07:53:32.875Z","dateModified":"2026-09-12T07:53:32.875Z","hiringOrganization":{"@type":"Organization","name":"Eliassen Group","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Chicago","addressRegion":"IL","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"3fde8b985d66b2f8dd31cba8"},"url":"https://jobsearcher.com/jobs/3fde8b985d66b2f8dd31cba8"}}