
Network Security Engineer (Onsite in Halifax NS)
- Halifax, NS
- Permanent
- Full-time
- Deploy and configure Zscaler ZTNA solutions, including ZIA (Internet Access) and ZPA (Private Access), to enforce Zero Trust security policies.
- Implement and manage Next Gen Firewalls. Palo Alto Networks firewalls, including next-generation firewall (NGFW) features, threat prevention, and Panorama for centralized management.
- Configure and maintain Web Application Firewalls (WAF) to protect client applications from threats like SQL injection, XSS, and DDoS attacks.
- Design and deploy Appgate SDP (Software-Defined Perimeter) solutions for micro-segmentation and secure access control.
- Provide Tier 2/3 support for Zscaler, Palo Alto, and Appgate platforms, resolving complex technical issues promptly.
- Monitor and analyze network traffic, security logs, and performance metrics to identify and mitigate potential misconfigurations.
- Troubleshoot connectivity, policy enforcement, and application access issues across hybrid and cloud environments.
- Work in a 24/7 on call rotation
- Optimize firewall rules, ZTNA policies, and micro-segmentation configurations to enhance performance and security.
- Perform regular updates and patch management on supported platforms.
- Collaborate with clients to understand their security requirements and provide tailored solutions.
- Deliver required documentation to clients.
- Participate in client meetings to present technical solutions, reports, and recommendations.
- Generate reports on operational incidents, system performance, and compliance for internal and client use.
- 3+ years of hands-on experience with Zscaler (ZIA, ZPA) for ZTNA implementation and support.
- 3+ years of experience configuring and managing Palo Alto Networks firewalls (NGFW, Panorama, Prisma Access).
- 2+ years of experience with Appgate SDP or similar micro-segmentation technologies.
- Proven experience with WAF solutions (e.g., Imperva, AWS WAF, or Palo Alto Prisma Cloud).
- Experience in a Managed Service Provider (MSP) or enterprise environment is highly desirable.
- Deep understanding of Zero Trust security principles and micro-segmentation strategies.
- Proficiency in Palo Alto firewall features (e.g., App-ID, User-ID, URL filtering, WildFire).
- Strong knowledge of networking protocols (TCP/IP, DNS, VPN, BGP, SSL/TLS).
- Familiarity with cloud environments (AWS, Azure, GCP) and hybrid network architectures.
- Zscaler Certified Cloud Professional (ZCCP) or Zscaler Certified Cloud Administrator (ZCCA).
- Palo Alto Networks Certified Network Security Engineer (PCNSE).
- Appgate SDP Administrator or equivalent certification.
- Other relevant certifications (e.g., CCNP Security, CISSP, AWS Certified Security).
- Excellent problem-solving and analytical skills.
- Strong communication skills, with the ability to explain complex technical concepts to non-technical stakeholders.
- Ability to work independently and in a team-oriented, fast-paced environment.
- Strong customer service mindset with a focus on client satisfaction.
- Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field (or equivalent experience)