Sorry, this listing is no longer accepting applications. Don’t worry, we have more awesome opportunities and internships for you.

Principle Solutions Architect

Swoon

Principle Solutions Architect

Sacramento, CA
Full Time
Paid
  • Responsibilities

    Job Description

    DEPARTMENT SUMMARY

    Information Systems Technology Services is a unified organization comprised of various departments which collaborate effectively in order to deliver high quality technology solutions.

    POSITION SUMMARY

    The Cybersecurity IT Solutions Engineer, Principal is a highly organized, thorough, security-minded problem solver focused on the protection of PG&E information system assets against compromise and cyber-attacks. The successful candidate is responsible for planning, implementing, deploying, and maintenance of security solutions to ensure the stability and security of PG&E infrastructure for both on premise data centers and cloud deployments. They will have extensive knowledge and broad functional experience with Firewalls, AWS, ADC, IDS/IPS across a wide range of complex architectures, platforms and mediums. This position will help in the secure deployment of network systems and help in the administration of same in a mission-critical, 24/7 environment.

    The successful candidate is expected to have strong technical and soft skills, must be a proven self-starter with the ability to problem-solve, communicate, participate in diverse project teams from a technical perspective, interface effectively with our internal Cybersecurity teams and LOB customers, vendor partners, and colleagues.They must also document all work for metrics and billing reporting using a designated change management or request system. They Expert Specialist also participate in audits from outside vendors and government regulators (NERC, WECC, etc.)

    QUALIFICATIONS

    Minimum:

    • 10 years of IT engineering design and/or technical implementation, network, or IT operations experience
    • BA or BS degree in Computer Science, Engineering, Business or related discipline or equivalent experience
    • Experience with implementing and configuring Palo Alto next generation firewalls, F5 ADC
    • Experience with configuring Palo Alto Global Protect VPN solution
    • Experience with creating, running and maintaining cloud (AWS, Google Cloud, and Azure) network and security stack
    • Experience with Wireshark, ANUE/IXIA

    Desired:

    • 10+ years of strong network security experience
    • Experience with developing, testing and maintaining REST based services and APIs
    • CISSP or other industry standard network security certification
    • Experience with encryption protocols
    • Experience with firewall rule automation tools such as Tufin
    • Experience with monitoring or syslog collection/analysis tools
    • Experience in the Utility Industry and meeting audit requirements for NERC and WECC
    • Experience with Cisco VSG or VMWare ESX firewalls
    • Experience with Cloud-based solutions
    • Experience with IDS/IPS
    • Experience with Application Delivery Controllers (preferably F5)
    • Experience or knowledge of DNS or DHCP
    • Experience with web, middleware, or database servers
    • Experience with Cyclades or other serial console terminal servers

    Knowledge, Skills, and Abilities:

    • Demonstrated team player with strong and effective customer care skills
    • Experience with Palo Alto Firewalls in highly available and hybrid cloud environments
    • Experience with F5 Big-IP, Access Policy Manager (APM), Application Security Module (ASM), and Local Traffic Manager (LTM) including tmsh, writing/reading/modifying configurations, route domains, and vCMP on Viprion
    • Understanding of network security concepts, including segmentation and defense-in-depth strategies
    • Experience with automation using scripting languages (Python, Perl, Powershell, or similar)
    • Ability to create VLANs, routes and configure network interfaces on switches, routers, and firewalls to facilitate the building of DMZs and create network segmentation
    • Ability to troubleshoot, diagnose, and repair firewall issues
    • Ability to troubleshoot and pinpoint network issues outside of firewalls
    • Understanding of network concepts from layer 2 through 7 including NAT/PAT and application identification (Palo Alto AppID)
    • Experience patching and maintaining firewalls in highly available network environments with minimal down time
    • Ability to perform work while maintaining integrity and stability of network
    • Ability to work with Architects, Solutions Engineers, and Project Managers to meet aggressive project deadlines.
    • Familiar with network monitoring tools such as NetMRI, Netflow, and provide metrics in this area
    • Available for 24x7 on call rotation

    Job Responsibilities

    • Install, configure, and maintain network security hardware, software, devices and appliances in support of PG&E on premise data centers and cloud deployments.
    • Prepare network or infrastructure Visio topology diagrams, write Standard Operating Procedures and maintenance plans, and provide status reports as required.
    • Participate in data calls and other operational and maintenance tasks.
    • Assist with technical issues, project management, design, analysis, and implementation of network security solutions as needed.
    • Develop and execute mitigation plans for technical issues.
    • Prepare periodic maintenance plans and comply with change management procedures.
    • Maintain detailed knowledge of company network and technology standards.
    • Work closely with other IT groups to ensure systems are maintained in an efficient manner, and communicate all issues, changes, outages, and maintenance in accordance with processes, procedures, and policies.
    • Responsible for technical support and administration of critical infrastructure network components (e.g., firewalls, wireless controllers, VPN, etc)
    • THIS IS A PRINCIPAL LEVEL, REALLY STRONG NETWORK BACKGROUND IS REQUIRED
    • STRONG NETWORK SECURITY ENGINEERING AT PRINCIPAL LEVEL.
    • AT LEAST 2-3 YEARS AND MOST RECENT EXPERIENCE IN F5 NETWORKS. THIS IS NOT AN F5 SME- THIS PERSON WILL BE HANDS-ON IN THE SECURITY ENGINEER ASPECT BUT SHOULD HAVE F5 HANDS-ON EXPERIENCE

    Company Description

    Swoon connects with job candidates one-on-one to learn exactly who they are and understand which of our Fortune 1000 clients would have their dream jobs. We form relationships, not just connections, and we pride ourselves on our contractor care initiatives. Our accomplishments continue to increase each year, and we have received some of the highest honors in the industry. We were named a “Best Staffing Firm to Temp For” by Staffing Industry Analysts in 2020, 2019, 2018, 2017, 2015 and 2014.