Enter a job title or keyword

Palo Alto Integration Engineer Mid


Job Location:

Washington, DC - USA

Monthly Salary: Not provided by the employer
Posted: 1 September 2026 (14 days ago)
Application Deadline: 29 November 2026
Vacancies: 1 Vacancy

Job Summary

Koniag Data Solutions a Koniag Government Services company is seeking an experiencedPalo Alto Integration Engineer (Mid)to support enterprise network security operations and IT administrative and operational support services for a federal government client. This position requires an active security clearance or the ability to obtain and maintain a government background investigation and all requisite IT access authorizations prior to performing work. Specific clearance requirements will be confirmed at time of offer. Primary work will be performed at the client site and approved remote/telework offer competitive compensation and an extraordinary benefits package including health dental and vision insurance 401K with company matching flexible spending accounts paid holidays three weeks paid time off and role serves as an important technical function responsible for the engineering implementation administration and operational support of enterprise Palo Alto Networks security platform capabilities across a complex geographically distributed federal IT environment spanning on-premises infrastructure cloud platforms and hybrid network ideal candidate is a technically proficient and security-focused network security engineer with solid hands-on experience across key Palo Alto Networks platformsincluding Next-Generation Firewalls (NGFW) Panorama and Prisma Accesscombined with a strong understanding of enterprise network security concepts threat prevention capabilities and Federal cybersecurity compliance requirements. This individual must possess the technical depth operational discipline and collaborative mindset required to contribute meaningfully to the engineering and sustained operation of enterprise-grade Palo Alto Networks security capabilities under the guidance of senior engineers while demonstrating the initiative and growing expertise needed to take on increasing technical responsibility over Palo Alto Integration Engineer (Mid) will serve as a contributing technical engineer within the programs network security team supporting the engineering implementation administration and continuous improvement of enterprise Palo Alto Networks security infrastructure under the technical leadership of the Senior Palo Alto Integration Engineer. This individual works closely with network engineers security engineers cloud operations teams and Government stakeholders to ensure Palo Alto Networks platforms are properly configured reliably operated and continuously improved in alignment with enterprise security requirements Federal cybersecurity frameworks and Zero Trust Architecture responsibilities will include but are not limited to:Next-Generation Firewall Engineering & AdministrationAssist in and independently execute the engineering implementation and administration of enterprise Palo Alto Networks Next-Generation Firewall (NGFW) infrastructure across perimeter internal segmentation data center and cloud-attached deployment contexts under the technical guidance of the Senior Palo Alto Integration implement and maintain NGFW security policies including application-based policies using App-ID user-based policies using User-ID and content inspection policies using Content-ID ensuring policies are aligned with enterprise security requirements and least-privilege access control and maintain NGFW security profiles including antivirus anti-spyware vulnerability protection URL filtering file blocking WildFire malware analysis and DNS security profiles tuning profiles to balance threat prevention effectiveness with operational in the design and implementation of SSL/TLS decryption policies ensuring encrypted traffic is inspected in accordance with security requirements while appropriately managing certificate trust and performance NGFW security policy lifecycle management activities including policy review cycles rule base optimization shadow rule identification and policy documentation NGFW connectivity performance and security policy issues conducting root cause analysis and implementing corrective actions to restore service or resolve security gaps within defined SLA firewall rule changes security profile updates and configuration modifications in accordance with the change management process preparing implementation plans test procedures and rollback documentation for CAB and analyze NGFW logs traffic reports and threat prevention reports to support security monitoring incident investigation and operational performance analysis Management Platform AdministrationAssist in and support the administration of the Panorama centralized management platform ensuring managed NGFW devices are properly onboarded configured and maintained through Panorama under the guidance of senior and maintain Panorama device group and template configurations ensuring management policies are consistently applied across managed NGFW instances in alignment with the enterprise security policy the development and maintenance of Panorama-based policy configurations including shared policies pre-rules and post-rules ensuring policy management practices are consistent auditable and aligned with enterprise security Panorama platform health and managed device connectivity identifying and escalating platform issues and managed device synchronization failures that may impact policy consistency or management Panorama platform upgrades patches and configuration changes assisting in change preparation testing and documentation activities under the guidance of the Senior Palo Alto Integration Panorama logging and reporting capabilities to generate operational reports compliance evidence artifacts and security dashboards supporting program leadership and Government stakeholder visibility Access Administration & SupportSupport the administration and maintenance of Palo Alto Networks Prisma Access Secure Access Service Edge (SASE) capabilities assisting in the configuration monitoring and troubleshooting of cloud-delivered security services for distributed users and in the configuration and maintenance of GlobalProtect remote access configurations including gateway settings agent configurations and authentication integrations ensuring remote users receive consistent security policy Prisma Access service health connectivity and security effectiveness identifying and escalating service disruptions performance issues and security policy gaps to senior engineers for the troubleshooting of GlobalProtect connectivity issues analyzing logs and diagnostic data to identify root causes and implement corrective actions under the guidance of senior in the maintenance and optimization of Prisma Access security policies URL filtering configurations and threat prevention Prevention & Security Operations SupportMonitor and analyze NGFW and Panorama threat prevention logs WildFire analysis results and security event data identifying security events requiring escalation investigation or policy response in accordance with defined monitoring the tuning and optimization of threat prevention profiles and security policies based on threat log analysis false positive identification and security effectiveness assessment under the guidance of senior in the monitoring and management of WildFire integration ensuring unknown file and URL submissions are processed correctly and that WildFire verdicts are effectively operationalized within NGFW security to threat prevention effectiveness reviews identifying opportunities to improve prevention coverage reduce false positives and strengthen security policy enforcement across managed security incident response activities involving Palo Alto Networks platforms providing platform-level log analysis policy investigation and configuration support to containment and remediation in the development and maintenance of threat prevention effectiveness metrics contributing platform-level data to program security performance reports and Cloud SupportAssist in the administration and monitoring of Palo Alto Networks Prisma Cloud cloud security posture management (CSPM) capabilities supporting the monitoring of cloud security posture and configuration compliance across enterprise cloud Prisma Cloud alerts and compliance findings triaging findings and escalating high-severity cloud security posture issues to senior engineers and the cloud operations team for in the maintenance of Prisma Cloud compliance policy configurations alert thresholds and reporting settings under the guidance of the Senior Palo Alto Integration the integration of Prisma Cloud findings with the enterprise SIEM platform and vulnerability management program assisting in the development of data integration workflows and remediation tracking XDR SupportAssist in the administration and monitoring of Palo Alto Networks Cortex XDR extended detection and response capabilities supporting the monitoring of endpoint and network telemetry and the triage of XDR-generated Cortex XDR alert queues and detection output triaging alerts and escalating confirmed or suspected security incidents to senior analysts and the incident response team in accordance with defined escalation in the maintenance of Cortex XDR prevention policies behavioral threat protection configurations and agent management activities ensuring agent coverage is comprehensive and policies are consistently the development and maintenance of Cortex XDR detection content assisting senior engineers in developing and tuning BIOC rules and behavioral analytics configurations under the MITRE ATT&CK Management & DocumentationPrepare and submit Palo Alto Networks change requests for Change Advisory Board (CAB) review developing implementation plans technical impact assessments rollback procedures and test plans for assigned platform with the change management process to ensure all assigned Palo Alto Networks platform changes are properly reviewed approved scheduled and implemented without degradation to security posture or service post-implementation reviews for assigned platform changes documenting outcomes and lessons learned to support continuous improvement of change execution and maintain Palo Alto Networks operational documentation including runbooks troubleshooting guides configuration records and standard operating procedures ensuring documentation is current and accurately reflects platform accurate and current platform configuration records change logs and operational documentation in the programs knowledge management and documentation & ATO SupportEnsure Palo Alto Networks platforms are configured and maintained in compliance with applicable Federal cybersecurity frameworks and requirements including NIST SP 800-53 FISMA FedRAMP NIST SP 800-207 Zero Trust Architecture OMB M-22-09 applicable DISA STIGs and client-specific cybersecurity in ATO activities for Palo Alto Networks platforms including security control implementation documentation system security plan (SSP) contribution continuous monitoring evidence collection and audit artifact regular Palo Alto Networks platform configuration compliance assessments assisting in the identification and remediation of configuration deviations from applicable security baselines and DISA vulnerability management activities for Palo Alto Networks platforms tracking platform vulnerabilities identified through vendor advisories and vulnerability scanning and coordinating remediation activities under the guidance of senior and Experience:Required:Bachelors degree in Computer Science Information Technology Cybersecurity Network Engineering or a related field from an accredited college or university. Equivalent combination of education and directly relevant experience may be of 35 years of hands-on experience in network security engineering firewall administration or a closely related discipline with at least 23 years of demonstrated hands-on experience engineering and administering Palo Alto Networks NGFW platforms in an enterprise hands-on experience implementing and administering Palo Alto Networks NGFW security policies threat prevention profiles and Panorama management with Federal cybersecurity compliance frameworks including NIST SP 800-53 FISMA and applicable DISA STIGs as applied to network security platform security clearance or the ability to obtain and maintain a government background investigation and all requisite IT access authorizations. Specific clearance requirements will be confirmed at time of :Prior experience supporting Palo Alto Networks platform engineering and administration on a federal IT -on experience with Palo Alto Networks Prisma Access SASE platform administration and GlobalProtect to Palo Alto Networks Prisma Cloud and/or Cortex XDR platform Skills and Competencies:Solid technical proficiency with Palo Alto Networks NGFW platform administration including security policy development using App-ID User-ID and Content-ID threat prevention profile configuration SSL decryption policy management and operational experience with Panorama centralized management platform administration including device onboarding template and device group configuration management and policy understanding of enterprise networking concepts including routing switching VLANs VPN technologies (IPsec SSL) network segmentation and firewall zone architectures as they relate to Palo Alto Networks security platform integration and policy with Palo Alto Networks Prisma Access SASE platform administration including GlobalProtect remote access configuration cloud-delivered security policy management and connectivity of Federal cybersecurity frameworks and compliance requirements including NIST SP 800-53 FISMA NIST SP 800-207 Zero Trust Architecture OMB M-22-09 and applicable DISA of Zero Trust Architecture principles and their practical application to network security policy design and enforcement using Palo Alto Networks platform preparing and executing firewall change requests including implementation plan development rollback procedure documentation and CAB submission in accordance with enterprise change management analyzing NGFW logs threat prevention reports and traffic data to support security monitoring incident investigation and operational performance analytical and troubleshooting skills with demonstrated ability to diagnose and resolve NGFW connectivity performance and security policy issues in a production enterprise written and verbal communication skills with demonstrated ability to develop clear operational documentation change request packages and technical reports for both technical and non-technical to work effectively both independently and as a contributing member of a cross-functional security engineering team following established procedures and seeking guidance from senior engineers on complex or ambiguous technical Skills and Competencies:Palo Alto Networks Certified Network Security Administrator (PCNSA) certification strongly Alto Networks Certified Network Security Engineer (PCNSE) certification or active pursuit as a near-term professional development Security CompTIA Network or equivalent foundational cybersecurity or networking Information Systems Security Professional (CISSP) GIAC Certified Enterprise Defender (GCED) or equivalent cybersecurity Certified Network Associate (CCNA) or Cisco Certified Network Professional (CCNP) certification or equivalent networking knowledge demonstrating broad enterprise networking expertise complementary to Palo Alto Networks -on experience with Palo Alto Networks WildFire threat intelligence and malware analysis platform integration and with Palo Alto Networks Cortex XDR extended detection and response platform administration and alert with Palo Alto Networks Prisma Cloud cloud security posture management platform administration and alert with cloud security operations in AWS and/or Microsoft Azure Government environments including familiarity with cloud networking concepts relevant to Palo Alto Networks virtual firewall and Prisma Cloud with the MITRE ATT&CK framework and its application to threat prevention policy development detection content tuning and security posture assessment scripting proficiency in Python PowerShell or Bash for operational task automation and Palo Alto Networks API integration under the guidance of senior with Palo Alto Networks PAN-OS CLI for advanced troubleshooting diagnostic data collection and configuration verification with SIEM platform integration for Palo Alto Networks log forwarding including syslog configuration log format documentation and log source onboarding with FedRAMP continuous monitoring requirements and ATO documentation activities as they relate to network security platform administration and compliance evidence with Section 508 compliance requirements for security dashboards and reporting tools delivered under federal supporting security incident response activities involving network security platforms including log analysis traffic investigation and policy-level containment Equal Employment Opportunity Policy:The company is an equal opportunity employer. The company shall not discriminate against any employee or applicant because of race color religion creed ethnicity sex sexual orientation gender or gender identity (except where gender is a bona fide occupational qualification) national origin or ancestry age disability citizenship military/veteran status marital status genetic information or any other characteristic protected by applicable federal state or local law. We are committed to equal employment opportunity in all decisions related to employment promotion wages benefits and all other privileges terms and conditions of company is dedicated to seeking all qualified applicants. If you require an accommodation to navigate or to apply to a position on our website please contact Heaven Wood via e-mail at or by calling to request accommodations. Koniag Government Services (KGS) is an Alaska Native Owned corporation supporting the values and traditions of our native communities through an agile employee and corporate culture that delivers Enterprise Solutions Professional Services and Operational Management to Federal Government Agencies. As a wholly owned subsidiary of Koniag we apply our proven commercial solutions to a deep knowledge of Defense and Civilian missions to provide forward leaning technical professional and operational solutions. KGS enables successful mission outcomes for our customers through solution-oriented business partnerships and a commitment to exceptional service delivery. We ensure long-term success with a continuous improvement approach while balancing the collective interests of our customers employees and native communities. For more information please visit Opportunity Employer/Veterans/Disabled. Shareholder Preference in accordance with Public Law 88-352

Required Experience:

IC


About Company

Company Logo

What We Do Koniag Government Services (KGS) is an Alaska Native Corporation comprised of multiple wholly owned subsidiary companies that deliver Enterprise Solutions, Professional Services, and Operations Management to Federal Government agencies. With an agile employee and corporate ... View more

View Profile View Profile