IBM has an exciting opportunity for talented individuals to join the IBM CIO Network Engineering organization. This role supports full lifecycle of network firewalls for IBM’s internal customers. Activities would include collecting requirements, deploying, configuring, supporting and troubleshooting firewalls within IBM. Our team is set up to be an L3/L4 escalation point which provides engagements in complex issues. Initially the role will focus on migrating Cisco ASA/Firepower firewalls from vendor managed to IBM CIO managed and would then consist of operational and/or project-based work supporting multi-vendor firewall technologies such as Cisco ASA/Firepower and Palo Alto NGFW firewalls.
- Configure, deploy, and manage network security appliances including Palo Alto firewalls, Cisco ASA, and Cisco FirePower.
- Support firewall migrations and ensure smooth transitions with minimal downtime.
- Lead and respond to security incidents, perform root cause analysis, and implement long-term solutions.
- Execute network changes, software upgrades, and hardware replacements in accordance with industry best practices.
- Create playbooks, runbooks, and automation scripts to improve operational efficiency and deployments.
- Develop and maintain Architectural Design Document
- Provide L3 on-call support
- Create and enable a full-service model support workflow with all the stakeholders
- Compliance and governance work driven CIO/IBM
- Participate in the change management process activities as an advisor, approver and SME.
- Intake security risk and vulnerabilities assessment data and perform the hands-on support and triage and management to resolution.
- Experience with monitoring network and security events and conducting incident response operations per documented procedures and industry best practices.
- 5+ Experience with analyzing log files with the ability troubleshoot complex issues.
- 5+ Experience in Architecture/Design Role of Cisco Firepower and Palo Alto technologies.
- Experience with routers and switches and other network technologies
- Knowledge of Security concepts and ability to apply them to business processes
- Strong team oriented interpersonal skills, with the ability to effectively interface with a broad range of internal/external contacts and roles, including vendors and IT-business personnel.
- Ability to work proactively and independently managing multiple work streams with shifting priorities.
- Ability to work under stress in emergencies, with the flexibility to handle multiple high-pressure situations simultaneously.
- Industry recognized security certifications this can include security methodology (Eg.CISSP, CISA, ITIL, etc.) or vendor specific (product) certifications (Eg. CCNP, CCSE, CCSP, JNCIS, PCNSA, etc.).
- Experience with IDS/IPS, Proxy, DLP, & SIEM Solutions
- Automation skills, specifically include the application of automation to firewall operations
- Programming in Python
Other requirements:
- Availability to work outside of business hours and during the weekends
- Focus on US hours, at least until 2 PM EST