Identity Security Architect
Openkyber
Position: Principal Security Engineer Location: Dallas, TX or Charlotte, NC Duration: 6 Months Contract Level is open to mid or senior does not need to be principal. Priority is strong hands-on experience with Palo Alto and Panorama. AI experience is a strong plus. Position Summary We are seeking a highly experienced Principal Security Engineer to lead the strategy, engineering, optimization, and modernization of our global firewall infrastructure. This is a hands-on technical leadership role responsible for driving enterprise-wide firewall policy governance, standardization, and operational excellence across a complex global environment. The ideal candidate will possess deep expertise in Palo Alto Networks firewalls and Panorama, with a proven ability to design scalable security architectures, optimize policy frameworks, eliminate operational bottlenecks, and improve security effectiveness through automation and innovation. This individual will partner with security architecture, infrastructure, networking, operations, and application teams to modernize the organization"s firewall posture while maintaining strong security controls and business agility. Additionally, experience leveraging AI-driven security operations, automation, and vulnerability management approaches is highly desirable. Key Responsibilities:
Firewall Strategy & Engineering Serve as the technical lead and subject matter expert for the enterprise firewall environment. Design, implement, and maintain global firewall standards, policies, and governance processes. Lead enterprise-wide firewall policy standardization initiatives across multiple regions, business units, and environments. Establish scalable firewall design patterns that support cloud, data center, and hybrid infrastructures. Drive continuous improvement of firewall architecture, security controls, and operational processes.
Policy Management & Optimization Own firewall rule lifecycle management, including design, implementation, validation, and ongoing maintenance. Develop and maintain policy sequencing strategies to improve performance, manageability, and security effectiveness. Perform rule reviews, policy tuning, cleanup, and recertification activities. Identify redundant, orphaned, shadowed, and overly permissive firewall rules. Implement best practices for change management, policy governance, and compliance requirements.
Security Analysis & Modernization Analyze firewall environments to identify gaps, risks, inefficiencies, and operational bottlenecks. Conduct assessments and develop strategic roadmaps to modernize firewall operations and architecture. Drive the adoption of advanced security capabilities including application-based policies, threat prevention, DNS security, SSL inspection, and zero-trust principles. Partner with architecture and engineering teams to improve segmentation and security posture across the enterprise.
Automation & AI Innovation Evaluate and implement automation opportunities to improve firewall operations, policy deployment, compliance reporting, and vulnerability remediation. Leverage AI, analytics, and machine learning technologies where applicable to streamline security workflows and enhance operational efficiency. Identify opportunities to reduce manual effort through intelligent automation and infrastructure-as-code methodologies. Collaborate with vulnerability management teams to automate risk-based remediation and policy recommendations.
Leadership & Collaboration Act as the senior technical advisor for firewall engineering initiatives and strategic security programs. Mentor engineers and provide technical guidance on firewall and network security best practices. Work closely with network engineering, cloud, infrastructure, security operations, and compliance teams. Influence enterprise security standards and contribute to long-term cybersecurity strategy.
Required QualificationsBachelor's degree in Information Security, Computer Science, Engineering, or equivalent experience. 10+ years of experience in network security engineering within large-scale enterprise environments. 5+ years of advanced experience with Palo Alto Networks Firewalls and Panorama. Deep expertise in: Firewall policy design and implementation Security policy optimization and sequencing Network segmentation Threat prevention technologies Enterprise security architecture Multi-site/global firewall deployments Strong understanding of: TCP/IP networking Routing and switching Network security architectures Hybrid and cloud networking models Zero Trust security frameworks Experience leading enterprise security modernization initiatives. Strong analytical, troubleshooting, and communication skills. Ability to translate technical findings into strategic recommendations for leadership.
Preferred QualificationsExperience with firewall automation using APIs, Python, Ansible, Terraform, or Infrastructure-as-Code solutions. Experience integrating security controls with cloud platforms including AWS, Azure, or Google Cloud Platform. Knowledge of vulnerability management platforms and risk-based remediation processes. Experience leveraging AI-driven operational efficiencies within cybersecurity programs. Familiarity with security analytics, SIEM, SOAR, and security automation technologies. Palo Alto certifications such as: PCNSA PCNSE Palo Alto Cybersecurity Professional certifications CISSP, CISM, or equivalent security certification preferred.
For applications and inquiries, contact:View email address on us.fitly.work
- ...the IT Compliance and Risk Manager, this position serves as a Security Awareness and Compliance Analyst within the Enterprise Information... ...to race, color, religion, gender, sexual orientation, gender identity or expression, national origin, age, disability, genetic information...SuggestedWork at officeLocal area
- ...Job Title: Security Solution Architect Location: Deerfield Beach, FL (Hybrid 3 days onsite/2 days remote) Duration: 6 Months+ with anticipated... ...architecture, security architecture, infrastructure, cloud, identity, data, and integrations. Key Responsibilities...SuggestedWork at officeLocal areaRemote workFlexible hours
$75 per hour
...Devops Architect Role: Certified - Application Security Architect(AWS) Level: Senior (8 12 years) Location: Remote Client: OpenKyber (Previous known as OpenKyber) Rate: $75/hr No EAD/OPT Role Summary We are seeking an experienced Application Security Engineer to secure...SuggestedRemote work- ...Job Description Job Description Title: Senior Security Engineer Team: Engineering Location: Remote-Friendly About the... ...~ Collaborate with the Platform team on secrets management, identity, and access controls ~ Work with the GRC function to translate...SuggestedRemote work
- ...Description & Qualifications Are you an Information System Security Engineer (ISSE) looking for a place where you can make an impact... ...of or retain/store the information provided as proof of identity. For more information on how Serco uses your information, please...SuggestedFull timeContract workPart timeInterim roleLocal areaFlexible hours
- ...using Metadata API, ChangeSet and Ant.Best Practices understanding on Coding Standards, Deployment, Apex, VF, Salesforce Integration, Security implementationsExperience on Force.com Integration Technologies (WebServices, 3rd Party tool like CastIron/Boomi) to Integrate...Permanent employmentFull timeH1bFlexible hours
- ...environments - Strong attention to detail and ability to work in structured, compliance-driven environments - Familiarity with network security concepts, including firewalls, access control, and traffic monitoring - Experience or exposure to vulnerability management,...Minimum wageContract workTemporary workWork experience placementRemote work
$100k - $120k
...Job Description Job Description As a Firmware Security Engineer at OnLogic, you will be a vital part of a team dedicated to developing and protecting cutting-edge industrial computing products. You will lead vulnerability management and firmware/software coding...Temporary workWork at officeRelocation
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Identity Security Architect. Be the first to apply!

