Palo Alto, Check Point

1 week ago


Sydney, New South Wales, Australia ITbility Full time $120,000 - $200,000 per year
  • Technical L3 SME for Firewall Platforms
  • Sydney/Melbourne
  • Contract - 6 + Months

Our client in Sydney is looking for
Technical L3 SME for Firewall Platforms
consultant this is a
Permanent
role. Please email me at for more information.

Job description:
As a
Technical L3 SME for Firewall Platforms
, you will lead the design, implementation, and lifecycle management of firewall policies across
Palo Alto Networks
,
Check Point
, and
Cisco FTD
environments. You'll ensure secure, compliant, and efficient rule management aligned with customer's security standards and customer-specific requirements.

Key Responsibilities

  • Firewall Rule Creation & Validation
  • Design and implement new firewall rules with
    pre-deployment validation
    to prevent duplication, policy conflicts, and ensure alignment with customer's
    security standards
    .
  • Policy Modification & Optimization
  • Update existing firewall policies to incorporate
    new source IPs, destinations, and ports
    , ensuring minimal disruption and consistent access control.
  • Rule Decommissioning
  • Identify and safely
    remove obsolete or unused firewall rules
    , maintaining a clean and efficient policy base across platforms.
  • Policy Lifecycle Management
  • Ensure consistent
    policy governance
    , documentation, and change control across
    multi-vendor environments
    and customer-specific deployments.

Platform Expertise

  • Palo Alto Networks
    : Manage security policies, App-ID, User-ID, and Panorama-based deployments
  • Check Point
    : Administer SmartConsole, rule base tuning, and threat prevention modules
  • Cisco FTD
    : Configure policies via FMC, manage access control, NAT, and SSL inspection
  • Advanced Troubleshooting & Escalation
  • Serve as the
    L3 escalation point
    for firewall-related incidents, performing diagnostics using CLI, logs, and packet captures.
  • Compliance & Documentation
  • Maintain detailed records of rule changes, policy reviews, and audit logs to support
    security compliance frameworks
    (ISO 27001, NIST, PCI-DSS).

Required Skills & Qualifications

  • 10+ years in
    network security engineering
    , with deep expertise in firewall policy management
  • Hands-on experience with:
  • Palo Alto PAN-OS & Panorama
  • Check Point R80+
  • Cisco FTD & FMC
  • Strong understanding of:
  • Access control
    ,
    NAT
    ,
    SSL decryption
    , and
    intrusion prevention
  • Policy lifecycle management
    ,
    change control
    , and
    rule optimization
  • Security standards and compliance requirements

Mandate Certifications

  • PCNSE
    (Palo Alto Networks Certified Network Security Engineer)
  • CCSE
    (Check Point Certified Security Expert)
  • Cisco CCNP Security / CCIE Security
  • CISSP
    ,
    CCSP
    , or
    ITIL Foundation

All candidates should have full working rights in Australia.

Only shortlisted candidates will be contacted for this role.

To apply, please submit your resume ASAP for immediate consideration or email


  • Domain Consultant

    4 weeks ago


    Sydney, New South Wales, Australia Palo Alto Networks Full time

    Domain Consultant - Security Operations TransformationDomain Consultant - Security Operations TransformationOur MissionAt Palo Alto Networks everything starts and ends with our mission:Our MissionAt Palo Alto Networks everything starts and ends with our mission:Being the cybersecurity partner of choice, protecting our digital way of life.Our vision is a...

  • Domain Consultant

    3 weeks ago


    Sydney, New South Wales, Australia Palo Alto Networks Full time

    Domain Consultant - Security Operations Transformation 2 days ago Be among the first 25 applicants Overview As a Domain Consultant for SOC Transformation you will be the expert for our Cortex portfolio, a Next-Gen AI-powered security operations platform. You will define technical solutions that secure a customer's key business imperatives and...

  • Domain Consultant

    3 weeks ago


    Sydney, New South Wales, Australia Palo Alto Networks Full time

    Domain Consultant - Security Operations Transformation2 days ago Be among the first 25 applicantsOverviewAs a Domain Consultant for SOC Transformation you will be the expert for our Cortex portfolio, a Next-Gen AI-powered security operations platform. You will define technical solutions that secure a customer's key business imperatives and evangelize our...


  • Sydney, New South Wales, Australia Palo Alto Networks Full time $40,000 - $80,000 per year

    Company DescriptionOur Mission Who We AreJob DescriptionYour ImpactQualificationsYour ExperienceAdditional InformationThe TeamOur Commitment Palo Alto Networks


  • Sydney, New South Wales, Australia Palo Alto Networks Full time $120,000 - $150,000 per year

    Company Description Our Mission At Palo Alto Networks everything starts and ends with our mission: Being the cybersecurity partner of choice, protecting our digital way of life. Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are...

  • Firewall Design

    1 week ago


    Sydney, New South Wales, Australia AYAN INFOTECH PTY LTD Full time $120,000 - $180,000 per year

    AYAN InfoTech is looking for Firewall Design (Palo Alto) - Security Specialist/Network Technical Specialist to join an exciting project based in Sydney / Melbourne / Canberra. The role offers you the opportunity to contribute towards an extremely well structured and mature environment, working on sophisticated enhancement projects. Role: Firewall Design...

  • Network Engineer

    6 hours ago


    Sydney, New South Wales, Australia CareCone Group Full time $120,000 - $180,000 per year

    Role: Network Engineer (Arista/Palo Alto)Location: SydneyJob Description:Must require skills: Key technology – Arista LAN, Palo Alto FW, Cisco LANAdd on skills: AWS Networking, ISP Carrier Network, Enterprise and Data Center Network, Security Appliances (Load Balancers, PA Firewall etc),MPLS,Certification – CCIE/CCNA /CCNP/CCAr/Arista/F5/Palo Alto...

  • Network Engineer

    1 week ago


    Sydney, New South Wales, Australia CareCone Group Full time $120,000 - $180,000 per year

    Role: Network EngineerLocation: SydneyJob Description:Must require skills: Key technology – Arista LAN, Palo Alto FW, Cisco LANAdd on skills: AWS Networking, ISP Carrier Network, Enterprise and Data Center Network, Security Appliances (Load Balancers, PA Firewall etc),MPLS,Certification – CCIE/CCNA /CCNP/CCAr/Arista/F5/Palo Alto etcData Center / LAN /...


  • Sydney, New South Wales, Australia CareCone Group Full time $104,000 - $130,878 per year

    Role: Senior Network Security Engineer (Cisco/Arista)Location: SydneyJob Description:Must require skills: Key technology – Arista LAN, Palo Alto FW, Cisco LANAdd on skills: AWS Networking, ISP Carrier Network, Enterprise and Data Center Network, Security Appliances (Load Balancers, PA Firewall etc),MPLS,Certification – CCIE/CCNA...


  • Sydney, New South Wales, Australia CareCone Group Full time $120,000 - $180,000 per year

    Role: Network Security Engineer (Cisco/Arista)Location: SydneyJob Description:Must require skills: Key technology – Arista LAN, Palo Alto FW, Cisco LANAdd on skills: AWS Networking, ISP Carrier Network, Enterprise and Data Center Network, Security Appliances (Load Balancers, PA Firewall etc),MPLS,Certification – CCIE/CCNA /CCNP/CCAr/Arista/F5/Palo Alto...