Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
CTI Staffing

Security Network Architect – Engineer

CTI Staffing

. Design, deploy, and maintain Palo Alto Networks NGFW infrastructure across on-premises and Azure environments .

Posted 9/15/2026contractRemote • United StatesMid-LevelSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in designing, deploying, and maintaining Palo Alto Networks NGFW infrastructure and Azure networking components, with a strong focus on BGP routing, GlobalProtect architecture, and multi-region connectivity. Proficient in troubleshooting and managing security policies across diverse environments.

Highest-signal resume keywords
Palo Alto Networks Firewalls (PAN-OS)GlobalProtect ArchitectureBGP Routing DesignMicrosoft Azure NetworkingMulti-Region WAN/VPN Architecture

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
BGPOSPFIPSec VPN DesignGRE TunnelsRouting Table AnalysisCLI TroubleshootingRoute RedistributionVNet PeeringExpressRouteVPN Gateway
Soft Skills
Troubleshooting SkillsCollaboration Across Time Zones
Tools & Technologies
PanoramaAzure VNetsRoute TablesNSGsVPN Gateway
Certifications & Qualifications
PCNSEMicrosoft Certified: Azure Network Engineer AssociateCCNPJNCIP
Industry Keywords
Zero Trust SecurityNetwork SegmentationSD-WANMulti-Homed PeeringHub-and-Spoke Topologies

Tech Stack

Tools & technologies
AzureCloudFirewallsSwitching

About the role

Key responsibilities & impact
  • Design, deploy, and maintain Palo Alto Networks NGFW infrastructure across on-premises and Azure environments
  • Architect and manage site-to-site VPN and dynamic routing (BGP/OSPF) between regional offices, data centers, and Azure VNets
  • Configure and support GlobalProtect for secure remote-user access, including route redistribution into BGP/OSPF
  • Design and manage Azure networking components: VNets, VNet peering, ExpressRoute, VPN Gateway, Route Tables, and NSGs
  • Build and maintain multi-region connectivity architecture linking offices across three continents with consistent security policy
  • Manage centralized policy and logging via Panorama across all sites
  • Own BGP routing design and troubleshooting between Palo Alto virtual routers and Azure/ExpressRoute circuits
  • Support network segmentation and Zero Trust security zone design across cloud and branch environments
  • Ensure multi-region connectivity architecture is stable, documented, and consistently enforced
  • Resolve routing issues and maintain clean BGP peering between Palo Alto and Azure/ExpressRoute
  • Maintain consistent security policy and logging via Panorama across every site

Requirements

What you’ll need
  • 5+ years of hands-on experience with Palo Alto Networks firewalls (PAN-OS), including Panorama management
  • Strong working knowledge of GlobalProtect architecture (portal/gateway design, IP pools, split tunneling, redistribution)
  • Solid understanding of BGP (route redistribution, filtering, multi-homed peering); OSPF a plus
  • Demonstrated experience with Microsoft Azure networking: VNets, ExpressRoute, VPN Gateway, NSGs, Route Tables
  • Experience designing and supporting multi-region WAN/VPN architectures across multiple continents
  • Working knowledge of IPSec VPN design, GRE tunnels, and hub-and-spoke topologies
  • Experience supporting distributed teams across US, EU, and Asia time zones
  • Strong troubleshooting skills using CLI (PAN-OS), packet captures, and routing table analysis
  • PCNSE certification nice-to-have
  • Microsoft Certified: Azure Network Engineer Associate nice-to-have
  • CCNP / JNCIP or equivalent routing/switching certification nice-to-have
  • Familiarity with SD-WAN concepts and technologies nice-to-have
  • Juniper experience nice-to-have

Benefits

Comp & perks
  • Fully remote engagement