Lead Firewall Engineer in Temple Hills
Listed on 2026-05-31
-
IT/Tech
Cybersecurity, Systems Engineer, Network Security
Description
Leidos' Digital Modernization sector is seeking a Senior Firewall Engineer to support the GSM‑O effort. This position is located at the Pentagon and is 100% on‑site. This role requires an engineer who can design, implement, and manage complex firewall solutions to ensure the security and integrity of network infrastructure. The ideal candidate has experience with firewall technologies including Cisco ASA, Juniper SRX, and Palo Alto, as well as a strong background in security networking.
PrimaryResponsibilities
- Design, implement, and manage firewall solutions using Cisco ASA/Firepower, Juniper SRX and Palo Alto.
- Monitor firewall performance and security logs to identify and mitigate potential threats.
- Develop and enforce network security policies and procedures.
- Perform system audits to ensure compliance with standards and regulations.
- Collaborate with other IT, Security and Network teams to integrate firewall solutions.
- Troubleshoot and resolve network and firewall related issues promptly and document within ticket systems.
- Maintain and update firewall configurations (security policies/firewall ACLs as approved by Change Management).
- Serve as the focal point for all firewall tasks, operations, projects, and assessments.
- Ensure all tasks are delivered according to timelines.
- Provide written reports and oral briefings to the Government Task Lead and PMO Team.
- Conduct annual performance assessments to include periodic check‑ins.
- Validate/approve time charging for both Leidos and vendor personnel.
- Provide coaching/mentoring to personnel.
- Develop and execute continuous service improvement technical strategies to modify and enhance operational processes and impact strategic project/program goals and business results.
- Must have, at minimum, an active DoD Top Secret security clearance with ability to obtain TS/SCI. An active TS/SCI is required.
- Must have DoD 8570 IAT II or higher certification prior to start.
- Must have a Juniper, Cisco, or Palo Alto certification prior to start.
- BS degree and 12+ years of directly relevant experience. Additional military or relevant work experience may be considered lieu of a degree.
- 3+ years of Firewall experience within the DoD environment.
- Demonstrated knowledge in planning, directing, and managing a Firewall Team in an organization similar in size to this acquisition.
- Demonstrated knowledge of implementation of perimeter and internal firewalls (both physical and virtual contexts).
- Demonstrated advanced experience in managing standard baseline configuration across numerous firewalls.
- Demonstrated advanced experience in evaluating rules to ensure maximum security while minimizing redundancy in rules.
- Demonstrated experience with researching and fielding new and innovative firewall technology.
Through the J6 Penetration Handling, Incident, System Health (PHISH) support services task order on the GSM‑O contract, we provide IT products, services and solutions to the Pentagon and other DoD offices and agencies for them to meet mission and business requirements. Our Cybersecurity team performs cyber defensive actions in support of J6 to prevent, detect, respond and recover from adversarial activities.
PayRange
Pay Range: $ – $
Pay and BenefitsEmployment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. For more details, visit
Commitment to Non-DiscriminationAll qualified applicants will receive consideration for employment without regard to , , , , , citizenship, , physical or mental , medical condition, genetic information, , family structure, marital status, ancestry, domestic partner status, , or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).