Engineer/Senior Engineer, Firewall
TerraForm Power
OverviewLocation: TerraForm Power Remote Operation Center, Albany NYEmployment Type: Full-timeTravel: Ability to travel to remote sites (10–20%)About UsTerraForm Power ("TERP"), a platform company of Brookfield, attracts high-performing individuals who are driven to make an impact in a fast-paced and collaborative environment. We offer unparalleled opportunities to lead and manage one of the largest renewable energy businesses with decades of history, while contributing to the global need for sustainable energy.The company is committed to employee development, encouraging curiosity, ownership, and continuous learning. You'll be empowered to take initiative, contribute ideas, and grow your career within a supportive and ambitious organization. This position will be based in remote.Job SummaryThis is an Operational Technology (OT) role embedded in the TerraForm Power Remote Operations Centre, responsible for designing, implementing, and maintaining secure network perimeters for wind, solar, and battery storage operations with a focus on NERC CIP compliant architecture. The Firewall Engineer will work in close partnership with the TERP Cybersecurity Manager, Compliance and Operations Centre staff to ensure robust, compliant, and resilient OT network security across all sites and control centers.ResponsibilitiesArchitecture, Design & ImplementationDesign and implement OT network security controls, such as perimeter firewalls, internal segmentation, site-to-site and remote-access VPNs, and WAFs.Build secure network solutions that align with system architecture for wind, solar, and BESS facilities, EMS/SCADA, and the system control centers.Define network security zones and conduits for OT, corporate IT, and cloud environments; enforce least privilege and micro-segmentation.Engineer solutions using Cisco (ASA/Firepower/FTD) and Check Point (CCSA/CCSE) platforms; integrate with management consoles and policy orchestration tools.Implement secure remote access for operators, vendors, and field technicians using MFA, bastion/Jump hosts, and role-based access.Operations, Monitoring & Incident ResponseAdminister firewall policies, objects, NAT, routing (OSPF/BGP), and HA/cluster configurations; manage rule lifecycle and clean-up.Maintain WAF protections (e.g., F5, Fortinet, Check Point, or cloud WAF) including rule tuning, bot mitigation, and API security.Operate and improve monitoring and control tools (SIEM/SOAR, NetFlow, packet capture, IDS/IPS); build dashboards and alerts for NERC systems.Conduct log analysis, threat hunting, and participate in incident triage and response; provide on-call support for critical events.Perform regular firewall health checks, performance tuning, firmware/OS upgrades, and vulnerability remediation.Support occasional after-hours maintenance windows on an as needed basis.Compliance & Change Management (NERC Focus)Implement and maintain controls aligned to NERC CIP standards applicable to Low Impact sites and Medium Impact control centers (e.g., CIP-003, CIP-005, CIP-007, CIP-008, CIP-009, CIP-010, CIP-011, CIP-013).Serve as the technical owner for firewall-related CIP controls (for example CIP-005, CIP-007, CIP-010), including configuration baselines, access controls, logging, and evidence collection.Establish and enforce configuration baselines, access controls, evidence collection, and audit-ready documentation.Run structured change management programs for firewall and WAF policies, including risk assessment, testing, approvals, and post-implementation review.Support audits, self-assessments, and impact ratings; assist with personnel risk assessment and vendor risk management where applicable.Collaborate with OT, IT, Compliance, Engineering, and Plant Operations to ensure controls meet operational needs without compromising reliability.Collaborative ResponsibilitiesWork in close partnership with the TERP Cybersecurity Manager to align firewall, VPN, and WAF controls with OT/IT cybersecurity strategy, incident response protocols, and compliance requirements.Participate in joint incident response, risk assessments, and continuous improvement initiatives with the Cybersecurity Manager and Operations Centre leadership.Coordinate with Operations Centre, plant operators, and engineering teams to ensure security controls support operational reliability and compliance.Technology Evaluation & Continuous ImprovementEvaluate new firewall, WAF, VPN, and OT security technologies; lead POCs and make data-driven recommendations.Identify opportunities to enhance resilience (segmentation, Zero Trust, SD-WAN security, secure cloud connectivity), and automate repeatable tasks (e.g., policy linting, backup/restore, compliance evidence collection).OT-Specific DutiesManage vendor and contractor access for maintenance and commissioning, ensuring robust controls for temporary access and logging.Design solutions that address site-specific challenges, including limited bandwidth, remote access constraints, and environmental factors.Support operational resilience by coordinating change windows with grid operations and implementing failsafe configurations to avoid plant outages.Education & CertificationsBachelor's degree in Computer Science, Electrical/Computer Engineering, Information Security, or related field; or equivalent experience.Relevant certifications preferred:• Cisco: CCNP Security, CCIE (Security) (plus)• Check Point: CCSA/CCSE• Others, a plusIndustry-Specific (Renewable Energy & OT/ICS) RequirementsExperience with the secure transport of with SCADA/EMS, plant DCS/RTUs/PLCs, and OT protocols (OPC, DNP3, Modbus).Understanding of interconnections between substations, collector systems, BESS EMS, and corporate networks; secure data flows to forecasting, trading, and asset performance platforms.Knowledge of telecom links common in renewables (leased lines, microwave, LTE/private cellular) and secure backhaul to control centers.Awareness of site conditions (limited bandwidth, remote access constraints, environmental factors) and designing resilient, maintainable solutions.Vendor and contractor access management for maintenance, OEM support, and commissioning activities, with strong control over temporary access and logging.Safety and reliability mindset: change windows coordinated with grid operations, rollback plans, and fail-safe configurations to avoid plant outages.Compensation: $120,000-$140,000 USD, bonus eligibleJ-18808-Ljbffr TerraForm Power
- A leading renewable energy firm is seeking a Firewall Engineer to design and implement secure network infrastructures for their Remote Operations Center. The role focuses on managing network security for renewable energy operations such as wind, solar, and battery storage...SeniorRemote job
$140k
...Job Description Job Description Job Title: Senior Cybersecurity Engineer Location: 405 Lexington Avenue, New York, NY 10174 Duration:... ...for alert management and incident response Knowledge of firewall/IPS devices and understanding of encryption and VPN technologies...SeniorWork at office2 days per week3 days per week- ...monitored, and treated. About the Role We are seeking a Senior Information Security Engineer to maintain and evolve critical security monitoring,... ...Platforms You’ll Work With CrowdStrike Cisco & Palo Alto Firewalls (Syslog data) Active Directory Okta GitLab Network...SeniorRemote workWork from homeWorldwide
- ...Senior AWS Engineer About TRS Since 1917, the Teachers' Retirement System of the City of New York (TRS) has been securing better futures... ...understanding of networking concepts such as VPCs, subnets, firewalls, load balancers, VPNs, and DNS. - Problem-Solving Skills: Excellent...SeniorFull time
$130.45k - $142.38k
...information, please visit What We DoJob Summary * The Senior IP Telephony Engineer is responsible for the engineering, reliability, security,... ...fundamentals impacting VoIP (QoS, routing, switching, firewall/NAT). Preferred Qualifications * Experience with contact...SeniorLocal areaRemote work$135k - $155k
...internal career site to apply for this position. Job: Senior Cybersecurity Engineer We are seeking a seasoned Cybersecurity Engineer to... ...managing and hardening network infrastructure, including firewall policy logic, VPN architecture, and VLAN segmentation for...SeniorFull timeRemote work$140k - $160k
...Senior Cybersecurity Engineer The Senior Cybersecurity Engineer is responsible for protecting Focus' computer systems, networks, and data from... ...Secure Access Service Edge (SASE), identity management, firewalls, intrusion detection/prevention systems (IDS/IPS), email...SeniorRemote work3 days per week- ...ROLE DESCRIPTION The Senior Systems Engineer is a senior-level technical consulting role responsible for architecting, implementing, securing... ...Networking & Systems Troubleshooting • Troubleshoot DNS, routing, firewall, and connectivity issues across client environments •...SeniorRemote work
$77.5k - $140.9k
...build a better working world. Job Title: CyberSecurity SIEM Engineer (Senior SDC) About the job At EY, you’ll have the chance to... ...(Windows, UNIX, mainframe), security technologies (firewalls, IDS/IPS, etc.), and application programming/scripting languages...SeniorWork experience placementSummer holidayFlexible hours- ...Salary Range: Undisclosed Description Title of Position Senior Cybersecurity Engineer I Organizational Relationship Reports to Manager, Cybersecurity... ...and systems Implement security controls, such as firewalls and encryption, to protect networks and systems Conduct...SeniorFull timeLocal areaRemote work
$95k - $110k
Senior Engineer, Stay Experiences & Technical Operations is responsible for the technical design, validation, and operational readiness of... ...middleware platforms Network infrastructure (routing, switching, firewalls) Identity, authentication, and security frameworks Vendor...SeniorWork at office3 days per week- ...Senior Network & Systems Engineer The New York City Department of Youth and Community Development (DYCD) invests in a network of community-based... ...include, but are not limited to: switching and routing, firewalls, load balancers, VoIP, Windows and Linux servers, cloud-...SeniorWork at office
- ...varying in length and complexity. As Project Engineer, you will not only perform professional... ...knowledge of routing, switching, firewalls, VPNs, wireless, and network segmentation... ...correct resource (onsite vs remote, junior vs senior). Dependency Alignment: 95% of work...SeniorTemporary workRemote work
- A technology firm seeks a Senior Network Security Engineer to manage and maintain network security systems. The role involves troubleshooting issues... ...of relevant experience, particularly with Palo Alto firewalls and strong networking skills. This position is fully remote...SeniorRemote job
- QTS Realty Trust is looking for a Network Engineer III to oversee the provisioning and maintenance of network services for customers. You... ..., configure, and troubleshoot networking platforms, managing firewall changes and resolving escalated tickets. The ideal candidate needs...Senior
$130k - $150k
Overview Senior Information Technology System Engineer. Base pay range: $130,000.00/yr - $150,000.00/yr. Our client is a leading cross-border platform on... ...cloud computing, Linux, Python, and network devices (firewall, switch, and router). Personal Attributes: A self-...SeniorFull time- ...A prominent health sciences university in Brooklyn, NY is seeking a Senior Interface Analyst. This full-time role involves analyzing and designing integration and supporting HL7 interfaces. Candidates should have a Bachelor's degree and extensive experience in healthcare...SeniorFull time
- Framework Ventures is seeking a Senior Staff Software Development Engineer for its ZIA Cloud team. In this role, you will drive the design, development, and optimization of firewall/SWG platforms within Cloud Infrastructure, ensuring the technical roadmap aligns with business...Senior
$147.5k - $211k
...services organization in New York is seeking an Access Management & Authentication Lead Engineer to oversee the design and governance of enterprise authentication capabilities. This senior technical role requires expertise in identity and access management, including SSO,...Senior- ...near- and long-term success. We are looking for a Senior Systems & Infrastructure Engineer to own and evolve the platforms that keep our exchange... ...connectivity Manage and maintain modern enterprise firewalls and VPN solutions, including policy configuration, rule...SeniorTemporary workMonday to Friday
$86.8k - $198k
...specifications makes you an integral part of delivering a customer-focused engineering solution. Your expertise will directly contribute to enhancing... ..., and network hardware, including routers, bridges, and firewalls Knowledge of systems engineering and standards processes,...SeniorFull timeContract workPart timeLocal areaRemote work$90k - $110k
The Role: The Senior Systems Engineer is responsible for the maintenance, configuration, and reliable operation of IT infrastructure, cloud platforms... ...Experience with cybersecurity, including knowledge of firewalls and best practices for securing systems Experience with...SeniorWork experience placementWork at officeRemote workWork from homeVisa sponsorshipShift workNight shift$145k - $200k
...Palantir Technologies is seeking a Senior Software Engineer in New York to design and build managed Kubernetes product offerings. The ideal candidate will have expertise in Golang and infrastructure automation tools, with 4+ years of experience in software development...Senior$160k - $240k
...Bloomberg L.P. is seeking a Senior Software Engineer for their Permissioning Interfaces team in New York. You will develop UIs and APIs using Python and TypeScript, collaborating within cross-functional teams. The role requires strong skills in Python development, modern...Senior$160k - $240k
...A global financial services company in New York is seeking a Senior Software Engineer for its Identity & Privileged Access Management team. The ideal candidate will design scalable identity and access control services and engineer automation for managing credentials across...Senior- ...conversation. Job Summary Iron Mountain is seeking an experienced Senior Systems Engineer to join our Global Digital Solutions Service Operations... ...Control Protocol/Internet Protocol, switches, routers, and firewalls. Specialized Application Skills: Experience deploying and...SeniorShift work
$110k - $170k
...for our expanding Civil Highway Group in our flagship NYC office. H&H is a nationally recognized, full-service infrastructure engineering firm delivering innovative solutions that move communities forward. With more than 139 years of experience and over 600 professionals...SeniorWork at officeLocal area- ...and communities to flourish. DYCD is recruiting for a Senior Network & Systems Engineer to lead the design, implementation, security, and... ...include, but are not limited to: switching and routing, firewalls, load balancers, VoIP, Windows and Linux servers, cloud...SeniorPermanent employmentFull timeWork at officeRemote work
- ...Job Description: We are looking for a Senior Low Latency Engineer to join our core technology team in New York. The ideal candidate will have hands-on experience building, optimizing, and maintaining ultra-low latency systems for real-time trading. You will work closely...Senior
- ...Senior Hypervisor Engineer Jersey City, NJ Contract We are seeking a highly skilled Senior Hypervisor Engineer with extensive experience in open- source development and hypervisor technology. The Ideal candidate will be responsible for designing, implementing...SeniorContract workWork experience placement
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Engineer/Senior Engineer, Firewall. Be the first to apply!
- senior cost analyst New York, NY
- senior computer engineer New York, NY
- senior electrical estimator New York, NY
- senior process manager New York, NY
- senior development engineer New York, NY
- senior program specialist New York, NY
- senior manager quality engineering New York, NY
- senior software test automation engineer New York, NY
- senior design technologist New York, NY
- senior director corporate development New York, NY


