{"schemaVersion":"jobsearcher.job.v1","id":"fdf18dfa1074403ddb835016","url":"https://jobsearcher.com/jobs/fdf18dfa1074403ddb835016","canonicalUrl":"https://jobsearcher.com/jobs/fdf18dfa1074403ddb835016","title":"Lead Firewall Engineer","description":"Overview:\nAbile Group has an exciting and challenging opportunity for a Lead Firewall Engineer on a contract providing Network and Cybersecurity services supporting an Intelligence Community customer. All the personnel on the team will work together to support transport and cybersecurity information technology (IT) services on multiple networks and security domains, at multiple locations worldwide, inclusive of new facilities and building constructions to support the IC mission.\n\nThe right candidate will possess the below skills and qualifications and be ready to handle all responsibilities independently and professionally.\nResponsibilities:\nServes as the focal point for all firewall tasks, operations, and projects.\nLeads, directs, and manages execution of all daily operations, troubleshooting, and maintenance activities of the NSS Boundary work center.\nDesigns, implements, and manages security solutions using F5, Juniper SRX, and Palo Alto for project-based requirements.\nEnsures systems, devices, and application under your responsibility and span of control meet applicable STIG/SRG and organizational configuration baselines.\nLeads regular compliance evaluations and audits.\nDevelops, oversees, maintains, and enforces configuration management processes, Standard Operational Procedures (SOPs), and other documentation as needed/required.\nMonitors platform performance, logs, software version(s), and configuration drift to identify and mitigate performance, compliance, and security issues.\nDevelops and maintains network architecture diagrams, inventories, and licensing status for the various capabilities within the scope of the team.\nProvides written reports and oral briefings to contract and government leadership.\nCoordinates issues with the appropriate stakeholders to ensure task completeness and overall customer satisfaction.\nProvides recommendations on newly submitted customer requests.\nEvaluates and reports on new/emerging network/communication technologies to enhance capacity, performance and reliability of the network.\nEvaluates and recommends changes and/or technology upgrades to address performance, standardization and industry best practices.\nConducts performance assessments, mentor, and coach personnel.\nThis position is 100% onsite in Springfield, VA.\nQualifications:\nClearance Required: TS/SCI with ability to obtain and maintain a CI poly.\n\nDegree and Years of Experience: BS or MS degree in Computer Science, Cyber Security, Network Security or related field.\n8+ years related technical experience network security technologies, tools, and techniques.\n5+ years' experience with large-scale enterprise/global networks in a high paced diverse environment.\nRequired Certifications:\nS6DoD 8140.01 and DoD 8570.01-M IAT Level II compliant certification (current). Must be able to successfully obtain/maintain CSSP Infrastructure Support certification within 120 days.\nDesired Certifications:\nF5 Networks certifications.\nRequired Skills:\nUnderstanding and experience with the DoD Architecture Framework and other key DoD network architecture and strategic planning instructions.\nDemonstrated knowledge in planning, directing, and managing a Firewall / Boundary Security Team in an organization similar in size.\nFirewall experience within the DoW or IC.\nDemonstrated knowledge of implementation of Perimeter and Internal Firewalls (both physical and virtual contexts)\nDemonstrated advanced experience in managing baseline configurations across numerous firewalls.\nDemonstrated advanced experience in evaluating rules to ensure maximum security while minimizing redundancy and processing overhead.\nDemonstrated experience with researching and fielding new and innovative firewall technology.\nExperience with F5 platforms/technologies (APM, AFM, SSLO, etc.)\nExperience with Palo Alto platforms/technologies (Threat Prevention, Wildfire, URL Filtering, Global Protect)\nExperience with Juniper SRX platforms/technologies.\nExperience with Online Certificate Status Protocol OCSP revocation.\nFamiliar with DoD PKI, Kerberos, LDAP, Active Directory, Authentication (SAML, OAuth)\nAbility to describe and troubleshoot TLS/SSL handshake/connection issues.\nNetwork design, engineering, and implementation (Advanced Level)\nCreation of network related Rough Order Magnitude (ROM) equipment lists and costing, Level of Effort (LOE) estimation for labor.\nUnderstanding of DoW, DISA, and IC standards and processes.\nAbility to work weekends and evening hours as needed.\nDesired Skills:\nJuniper JNCIS/JNCIP, Palo Alto PCNSE (or equivalent)\nAbout Abile Group, Inc.:\nAbile Group, founded in July 2004 to support the Intelligence Community and its contractors across Enterprise Analytics, IT & Systems Engineering, and Program & Project Management, merged with Valiant Solutions in January 2026 - an established provider of cybersecurity technologies and services for Federal Agencies since 2005. Together, this partnership creates a stronger, more integrated cybersecurity organization with expanded opportunities for employees, deeper technical collaboration, and a unified mission. With significant experience serving the Federal Government, we remain dedicated to our employees and clients and seek high‑performing professionals who excel at providing guidance, developing solutions, and delivering implementation support that blends industry best practices with client expertise and Abile’s broad technical capabilities.\nHiring Statement:\nAbile is committed to hiring the most qualified and best fit person for the job - always has, always will. Anyone requiring reasonable accommodations should email careers@abilegroup.com with requested details. A member of the HR team will respond to your request within 2 business days.\n\nPlease review our current job openings and apply for the positions you believe may be a fit. If you are not an immediate fit, we will also keep your resume in our database for future opportunities.","company":"Abile Group","rawCompany":"abile group","city":"Springfield","state":"VA","isRemote":false,"isActive":false,"createdAt":"2026-08-03T22:52:42.611Z","occupations":[{"code":"15-1244.00","title":"Network and Computer Systems Administrators","slug":"network-and-computer-systems-administrators"},{"code":"15-1241.00","title":"Computer Network Architects","slug":"computer-network-architects"},{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541519","title":"Other Computer Related Services","slug":"other-computer-related-services"},{"code":"541513","title":"Computer Facilities Management Services","slug":"computer-facilities-management-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Lead Firewall Engineer","description":"Overview:\nAbile Group has an exciting and challenging opportunity for a Lead Firewall Engineer on a contract providing Network and Cybersecurity services supporting an Intelligence Community customer. All the personnel on the team will work together to support transport and cybersecurity information technology (IT) services on multiple networks and security domains, at multiple locations worldwide, inclusive of new facilities and building constructions to support the IC mission.\n\nThe right candidate will possess the below skills and qualifications and be ready to handle all responsibilities independently and professionally.\nResponsibilities:\nServes as the focal point for all firewall tasks, operations, and projects.\nLeads, directs, and manages execution of all daily operations, troubleshooting, and maintenance activities of the NSS Boundary work center.\nDesigns, implements, and manages security solutions using F5, Juniper SRX, and Palo Alto for project-based requirements.\nEnsures systems, devices, and application under your responsibility and span of control meet applicable STIG/SRG and organizational configuration baselines.\nLeads regular compliance evaluations and audits.\nDevelops, oversees, maintains, and enforces configuration management processes, Standard Operational Procedures (SOPs), and other documentation as needed/required.\nMonitors platform performance, logs, software version(s), and configuration drift to identify and mitigate performance, compliance, and security issues.\nDevelops and maintains network architecture diagrams, inventories, and licensing status for the various capabilities within the scope of the team.\nProvides written reports and oral briefings to contract and government leadership.\nCoordinates issues with the appropriate stakeholders to ensure task completeness and overall customer satisfaction.\nProvides recommendations on newly submitted customer requests.\nEvaluates and reports on new/emerging network/communication technologies to enhance capacity, performance and reliability of the network.\nEvaluates and recommends changes and/or technology upgrades to address performance, standardization and industry best practices.\nConducts performance assessments, mentor, and coach personnel.\nThis position is 100% onsite in Springfield, VA.\nQualifications:\nClearance Required: TS/SCI with ability to obtain and maintain a CI poly.\n\nDegree and Years of Experience: BS or MS degree in Computer Science, Cyber Security, Network Security or related field.\n8+ years related technical experience network security technologies, tools, and techniques.\n5+ years' experience with large-scale enterprise/global networks in a high paced diverse environment.\nRequired Certifications:\nS6DoD 8140.01 and DoD 8570.01-M IAT Level II compliant certification (current). Must be able to successfully obtain/maintain CSSP Infrastructure Support certification within 120 days.\nDesired Certifications:\nF5 Networks certifications.\nRequired Skills:\nUnderstanding and experience with the DoD Architecture Framework and other key DoD network architecture and strategic planning instructions.\nDemonstrated knowledge in planning, directing, and managing a Firewall / Boundary Security Team in an organization similar in size.\nFirewall experience within the DoW or IC.\nDemonstrated knowledge of implementation of Perimeter and Internal Firewalls (both physical and virtual contexts)\nDemonstrated advanced experience in managing baseline configurations across numerous firewalls.\nDemonstrated advanced experience in evaluating rules to ensure maximum security while minimizing redundancy and processing overhead.\nDemonstrated experience with researching and fielding new and innovative firewall technology.\nExperience with F5 platforms/technologies (APM, AFM, SSLO, etc.)\nExperience with Palo Alto platforms/technologies (Threat Prevention, Wildfire, URL Filtering, Global Protect)\nExperience with Juniper SRX platforms/technologies.\nExperience with Online Certificate Status Protocol OCSP revocation.\nFamiliar with DoD PKI, Kerberos, LDAP, Active Directory, Authentication (SAML, OAuth)\nAbility to describe and troubleshoot TLS/SSL handshake/connection issues.\nNetwork design, engineering, and implementation (Advanced Level)\nCreation of network related Rough Order Magnitude (ROM) equipment lists and costing, Level of Effort (LOE) estimation for labor.\nUnderstanding of DoW, DISA, and IC standards and processes.\nAbility to work weekends and evening hours as needed.\nDesired Skills:\nJuniper JNCIS/JNCIP, Palo Alto PCNSE (or equivalent)\nAbout Abile Group, Inc.:\nAbile Group, founded in July 2004 to support the Intelligence Community and its contractors across Enterprise Analytics, IT & Systems Engineering, and Program & Project Management, merged with Valiant Solutions in January 2026 - an established provider of cybersecurity technologies and services for Federal Agencies since 2005. Together, this partnership creates a stronger, more integrated cybersecurity organization with expanded opportunities for employees, deeper technical collaboration, and a unified mission. With significant experience serving the Federal Government, we remain dedicated to our employees and clients and seek high‑performing professionals who excel at providing guidance, developing solutions, and delivering implementation support that blends industry best practices with client expertise and Abile’s broad technical capabilities.\nHiring Statement:\nAbile is committed to hiring the most qualified and best fit person for the job - always has, always will. Anyone requiring reasonable accommodations should email careers@abilegroup.com with requested details. A member of the HR team will respond to your request within 2 business days.\n\nPlease review our current job openings and apply for the positions you believe may be a fit. If you are not an immediate fit, we will also keep your resume in our database for future opportunities.","datePosted":"2026-08-03T22:52:42.611Z","dateModified":"2026-08-03T22:52:42.611Z","hiringOrganization":{"@type":"Organization","name":"Abile Group","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Springfield","addressRegion":"VA","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"fdf18dfa1074403ddb835016"},"url":"https://jobsearcher.com/jobs/fdf18dfa1074403ddb835016"}}