Tampa Electric

Sr. Firewall Engineer, Progression

Sr. Firewall Engineer, Progression
Notice info
LocationLutz, FL
Job Typefull time
On-site
Utilities

About This Job

Title:

Sr. Firewall Engineer, Progression

Company

: Tampa Electric Company

Location:

Bearss Operations Center

State and City:

Florida - LUTZ

Shift:

8 Hr. X 5 Days

Hiring Manager:

David Cain

Recruiter:

Mark Koener

TITLE: Sr Firewall Engineer, Progression

PERFORMANCE COACH: Mgr. Network Engineering & Cyber Security Operations

COMPANY: Tampa Electric

DEPARTMENT: High Performance Computing & BP Support

FOCUS Areas:

- Strong hands on Palo Alto experience in production

- Previous Checkpoint experience a plus

- Proven experience designing and supporting VPN solutions

- Experience in high availability or large scale enterprise environments

Note that this position can be hired at any level within the job family of progression based on Education and years of experience but is ideally targeting to hire at the Sr. level (level 3).

POSITION CONCEPT

The Network & Systems Security Analyst (Firewall Engineer), is responsible for planning/designing, implementing, and supporting new and existing network, server, storage infrastructure. This role is also responsible for ensuring all network security controls (i.e., firewalls, web application firewalls [WAF], proxies, network segmentation, NAC, ACLs, etc.) are implemented and managed per corporate information security standards. Additionally, responsibilities include assessing enterprise assets and critical assets for secure configurations and maintaining and enforcing regulations and standards such as NERC Critical Infrastructure Protection (CIP), Sarbanes-Oxley (SOX), and Payment Card Industry (PCI).

Responsible for the design, planning, operation, maintenance, and support of the TECO and NMGC network infrastructure. This includes primary accountability for network technologies such as route/switch, on-premise LAN/WAN, IPAM, Wi-Fi, ISP management, site-to-site VPNs, proxies (forward and reverse), perimeter firewall management, DNS, Azure cloud environments, automation, NAC/user access, hyperconverged infrastructure, and overall network security. Partners with the Telecommunication teams on establishing/upgrading existing circuits/communication links. Responsible for the NERC Cyber Infrastructure Protection and disaster recovery plans.

Responsible for VoIP, SIP, DHCP, DNS, TCP/IP routing and routing protocols such as OSPF and BGP, binary mathematics, NAT, PAT, IPsec and SSL VPN technologies, GRE tunneling, route redistribution, traffic shaping, port-level filtering, SD-WAN, MPLS and other communications related technologies. Responsible for the installation, configuration, and maintenance of all WAN and LAN connectivity which includes core and campus switches, routers, firewalls, wireless access points, WAN scalers and load balancer technologies. Responsible for the design, installation, configuration, and maintenance of DNP over IP and serial SCADA communications between the primary and backup control centers, power plants, solar sites, and substations. Responsible for the configuration and maintenance of Smart GRID communication hardware switches and routers between the primary and backup control centers.

NETWORK & SYSTEMS SECURITY ANALYST I (LEVEL 1)

Monitors and troubleshoots server, network, and security controls related problems and failures; and installs and configures hardware/software. Works under direct supervision.

Primary Duties And Responsibilities

- Plan, design, and implement network, server, and storage infrastructure based on project requirements, capacity plans, and system support. (20%)

- Problem solving involves basic troubleshooting following the OSI (Open Systems Interconnection) model, making or calling for equipment repairs, and problem escalation. (20%)

- Detection and correction of work stoppages and/or errors are accomplished by monitoring systems and changing configurations, as necessary. (20%)

- Install and support network, server, and storage hardware and software. (10%)

- Direct participation in the planning and designing, maintenance, testing and documentation of the company’s disaster recovery plans are vital. (10%)

- Provide and apply appropriate security consulting and support for IT infrastructure across multiple platforms (Firewalls, proxies, WAFs, ACLs, NAC, Operating Systems, NetScaler load balancers, DDoS protection, and other network devices). (10%)

- Provide third-level technical support for security systems and authentication mechanisms on all operating system platforms. (10%)

Qualifications

EDUCATION Required: High School Diploma or GED

Preferred: Bachelor’s degree in Computer Science, Engineering, Math, or equivalent IT discipline (e.g., MIS).

LICENSES/CERTIFICATIONS

Required: Has obtained at least one related network, system, operating system, or information security professional certification: (e.g., Microsoft Certified Solutions Associate (MCSA), VMware Certified Professional (VCP), Cisco Certified Network Associate (CCNA), Certified Ethical Hacker (CEH), GIAC Certifications, Certified Information Systems Security Professional (CISSP).

Preferred: ITIL v3, CCNA, MCSA, VCP, Security+, CISSP

Experience Required: Minimum four (4) years of related hands-on experience implementing and maintaining Windows, VMware, firewall support, DDoS protection, proxies, WAFs, NetScaler load balancers, or Cisco Networking.

In lieu of some experience listed above, may consider three (3) years of related experience with an Associate’s Degree or two (2) years of related experience with a Bachelor’s Degree in Computer Science, Engineering, Math, or equivalent IT discipline (e.g., MIS).

Knowledge/Skills/Abilities (ksa)

- Working knowledge of network, server, and security controls infrastructure regardless of the complexity

- Working knowledge for most of the following technologies and operational functions: switching, routing, DNS/DHCP, Windows Active Directory, VMware, Voice over IP, Storage Area Networking, firewall support, DDoS protection, proxy, WAF, NetScaler load balancing, network segmentation, NAC, IDS/IPS, antivirus support, cyber security best practices, and networking/hardware installation and maintenance

- Working knowledge with packet analysis and denial of service protection

- Strong critical thinking, analytical, problem solving, and risk assessment skills as well as strong listening and communication skills (oral and written)

- Ability to present issues and topics of a complex technical nature to non-technical audiences

- Excellent interpersonal and organizational skills

- Basic working knowledge of the processes that ensure compliance with regulatory or industry requirements such as NERC CIP, SOX, and PCI

WORKING CONDITIONS

Normal working conditions with occasional extended hours during the week and weekends.

Physical Demands/Requirements

Normal physical demands related to an office and operational (Power Plant, Solar, Control Center) workplace environment. Must be able to lift 50-pound boxes and ascend/descend a ladder to service network access points.

NETWORK & SYSTEMS SECURITY ANALYST II (LEVEL 2)

In addition to the duties & responsibilities of the Level 1 Analyst, has increased responsibilities in consulting on small project design and plans. May serve as a project lead and mentor Level 1 Analyst. Works under general supervision.

Additional Duties And Responsibilities

- Monitors, troubleshoots, diagnoses, and remedies server, network, DDoS protection, NetScaler load balancers, and security controls related problems and failures. (30%)

- Installs and configures server and network related hardware/software which meet the company’s security standards. (40%)

- Design and planning required for small projects. (20%)

- Project leadership, consulting, or cross-train peers. (10%)

Qualifications

EDUCATION

Required: High School Diploma or GED

Preferred: Bachelor’s degree in Computer Science, Engineering, Math, or equivalent IT discipline (e.g., MIS).

LICENSES/CERTIFICATIONS

Required: Has obtained at least two related network, system, operating system, or information security professional certification: (e.g., Microsoft Certified Solutions Associate (MCSA), Microsoft Certified Solutions Expert (MCSE), VMware Certified Professional (VCP), Cisco Certified Network Associate (CCNA), Cisco Certified Network Professional (CCNP), Certified Ethical Hacker (CEH), GIAC Network Forensic Analyst (GNFA) or other GIAC Certifications, Certified Information Systems Security Professional (CISSP).

Preferred: ITIL v3, CCNP, MCSE, VCP, GNFA, CISSP

Experience Required: Minimum six (6) years of related hands-on experience implementing and maintaining Windows, VMware, firewall support, DDoS protection, proxies, WAFs, NetScaler load balancers, Storage Area Networks, or Cisco Networking. In lieu of some experience listed above, may consider four (4) years of related experience with an Associate’s Degree or three (3) years of related experience with a Bachelor’s Degree in Computer Science, Engineering, Math, or equivalent IT discipline (e.g., MIS).

Knowledge/Skills/Abilities (ksa)

- Intermediate knowledge of network, server, and security controls infrastructure regardless of the complexity

- Good working knowledge for most of the following technologies and operational functions: switching, routing, DNS/DHCP, Windows Active Directory, VMware, Voice over IP, Storage Area Networking, firewall support, DDoS protection, proxy, WAF, NetScaler load balancing, network segmentation, NAC, IDS/IPS, antivirus support, cyber security best practices, and networking/hardware installation and maintenance

- Good working knowledge with packet analysis and denial of service protection

- Strong critical thinking, analytical, problem solving, and risk assessment skills as well as strong listening and communication skills (oral and written)

- Ability to present issues and topics of a complex technical nature to non-technical audiences

- Excellent interpersonal and organizational skills

- Good working knowledge of the processes that ensure compliance with regulatory or industry requirements such as NERC CIP, SOX, and PCI

NETWORK & SYSTEMS SECURITY ANALYST III (LEVEL 3)

In addition to the duties & responsibilities of the Level 2 Analyst, has increased responsibilities in consulting on small project design and plans. May serve as a project lead, cross-train peers, and mentor Analysts. Works under general direction.

Additional Duties And Responsibilities

- Monitors, troubleshoots, diagnoses, and remedies server, network, DDoS protection, NetScaler load balancers, and security controls related problems and failures. (20%)

- Installs and configures server and network related hardware/software which meet the company’s security standards. (20%)

- Design and planning required for small projects. (40%)

- Project leadership, consulting, or cross-train peers. (20%)

Qualifications

EDUCATION

Required: High School Diploma or GED

Preferred: Bachelor’s degree in Computer Science, Engineering, Math, or equivalent IT discipline (MIS).

LICENSES/CERTIFICATIONS

Required: Has obtained at least three or two, with the condition to obtain a third certification within one year of hire for this position, related network, system, operating system, or information security professional certifications: (e.g., Microsoft Certified Solutions Associate (MCSA), Microsoft Certified Solutions Expert (MCSE), VMware Certified Professional (VCP), Cisco Certified Network Associate (CCNA), Cisco Certified Network Professional (CCNP), Certified Ethical Hacker (CEH), GIAC Network Forensic Analyst (GNFA) or other GIAC Certifications, Certified Information Systems Security Professional (CISSP), Certified SCADA Security Architect (CSSA).

Preferred: ITIL v3, CCNP, MCSE, VCP, GNFA, CISSP

Experience Required: Minimum eight (8) years of related hands-on experience implementing and maintaining Windows, VMware, firewall support, DDoS protection, proxies, WAFs, NetScaler load balancers, Storage Area Networks, or Cisco Networking. In lieu of some experience listed above, may consider six (6) years of related experience with an Associate’s Degree or four (4) years of related experience with a Bachelor’s Degree in Computer Science, Engineering, Math, or equivalent IT discipline (e.g., MIS).

Knowledge/Skills/Abilities (ksa)

- Expert knowledge of network, server, and security controls infrastructure regardless of the complexity

- Thorough working knowledge for most of the following technologies and operational functions: switching, routing, DNS/DHCP, Windows Active Directory, VMware, Voice over IP, Storage Area Networking, firewall support, DDoS protection, proxy, WAF, NetScaler load balancing, network segmentation, NAC, IDS/IPS, antivirus support, cyber security best practices, and networking/hardware installation and maintenance

- Thorough working knowledge with packet analysis and denial of service protection

- Strong critical thinking, analytical, problem solving, and risk assessment skills as well as strong listening and communication skills (oral and written)

- Ability to present issues and topics of a complex technical nature to non-technical audiences

- Excellent interpersonal, mentoring, and organizational skills

- Good working knowledge of the processes that ensure compliance with regulatory or industry requirements such as NERC CIP, SOX, and PCI

NETWORK & SYSTEMS SECURITY ARCHITECT (LEVEL 4)

In addition to the duties & responsibilities of the Level 3 Analyst, has increased responsibilities in consulting on small project design and plans. May serve as a project lead on larger projects, cross-train peers, and mentor all levels of Analysts. Works under general direction.

Additional Duties And Responsibilities

- Monitors, troubleshoots, diagnoses, and remedies server, network, DDoS protection, NetScaler load balancers, and security controls related problems and failures. (10%)

- Installs and configures server and network related hardware/software which meet the company’s security standards. (10%)

- Design and planning required for small and large projects. (40%)

- Project leadership, consulting, or cross-train peers. (40%)

Qualifications

EDUCATION

Required: High School Diploma or GED

Preferred: Bachelor’s degree in Computer Science, Engineering, Math, or equivalent IT discipline (MIS).

LICENSES/CERTIFICATIONS

Required: Has obtained at least three related network, system, operating system, or information security professional certifications: (e.g., Microsoft Certified Solutions Associate (MCSA), Microsoft Certified Solutions Expert (MCSE), VMware Certified Professional (VCP), Cisco Certified Network Associate (CCNA), Cisco Certified Network Professional (CCNP), Certified Ethical Hacker (CEH), GIAC Network Forensic Analyst (GNFA) or other GIAC Certifications, Certified Information Systems Security Professional (CISSP), Certified SCADA Security Architect (CSSA).

Preferred: ITIL v3, CCNP, MCSE, VCP, GNFA, CISSP

Experience Required: Minimum ten (10) years of related hands-on experience implementing and maintaining Windows, VMware, firewall support, DDoS protection, proxies, WAFs, NetScaler load balancers, Storage Area Networks, or Cisco Networking.

In lieu of some experience listed above, may consider eight (8) years of related experience with an Associate’s Degree or six (6) years of related experience with a Bachelor’s Degree in Computer Science, Engineering, Math, or equivalent IT discipline (e.g., MIS).

Knowledge/Skills/Abilities (ksa)

- Expert knowledge of network, server, and security controls infrastructure regardless of the complexity

- Thorough working knowledge for most of the following technologies and operational functions: switching, routing, DNS/DHCP, Windows Active Directory, VMware, Voice over IP, Storage Area Networking, firewall support, DDoS protection, proxy, WAF, NetScaler load balancing, network segmentation, NAC, IDS/IPS, antivirus support, cyber security best practices, and networking/hardware installation and maintenance

- Thorough working knowledge with packet analysis and denial of service protection

- Strong critical thinking, analytical, problem solving, and risk assessment skills as well as strong listening and communication skills (oral and written)

- Ability to present issues and topics of a complex technical nature to non-technical audiences

- Excellent interpersonal, mentoring, consulting, and organizational skills

- Thorough working knowledge of the processes that ensure compliance with regulatory or industry requirements such as NERC CIP, SOX, and PCI

LEAD NETWORK & SYSTEMS SECURITY ANALYST (PERFORMANCE COACH)

In addition to the duties & responsibilities of the Level 3 Analyst, has increased responsibilities in leading and managing Level 1 through 3 Analyst. May serve as a project lead on larger projects, cross-train peers, and mentor all levels of Analyst. Works under general direction.

Additional Duties And Responsibilities

- Monitors, troubleshoots, diagnoses, and remedies server, network, DDoS protection, NetScaler load balancers, and security controls related problems and failures. (10%)

- Installs and configures server and network related hardware/software which meet the company’s security standards. (10%)

- Design and planning required for small and large projects. (25%)

- Project leadership, consulting, or cross-train peers. (25%)

- Lead and manage the network analyst (Level 1, 2, and 3) team (30%)

Qualifications

LICENSES/CERTIFICATIONS

Required: Has obtained at least three or two, with the condition to obtain a third certification within one year of hire for this position, related network, system, operating system, or information security professional certifications: (e.g., Microsoft Certified Solutions Associate (MCSA), Microsoft Certified Solutions Expert (MCSE), VMware Certified Professional (VCP), Cisco Certified Network Associate (CCNA), Cisco Certified Network Professional (CCNP), Certified Ethical Hacker (CEH), GIAC Network Forensic Analyst (GNFA) or other GIAC Certifications, Certified Information Systems Security Professional (CISSP), Certified SCADA Security Architect (CSSA). Leadership/management certifications/certificates may be considered in lieu of professional certifications.

Preferred: ITIL v3, CCNP, MCSE, VCP, GNFA, CISSP

EDUCATION

Required: High School Diploma or GED

Preferred: Bachelor’s degree in Computer Science, Engineering, Math, or equivalent IT discipline (MIS).

Knowledge/Skills/Abilities (ksa)

- Expert knowledge of network, server, and security controls infrastructure regardless of the complexity

- Thorough working knowledge for most of the following technologies and operational functions: switching, routing, DNS/DHCP, Windows Active Directory, VMware, Voice over IP, Storage Area Networking, firewall support, DDoS protection, proxy, WAF, NetScaler load balancing, network segmentation, NAC, IDS/IPS, antivirus support, cyber security best practices, and networking/hardware installation and maintenance

- Thorough working knowledge with packet analysis and denial of service protection

- Strong critical thinking, analytical, problem solving, and risk assessment skills as well as strong listening and communication skills (oral and written)

- Ability to present issues and topics of a complex technical nature to non-technical audiences

- Excellent interpersonal, mentoring, coaching, and organizational skills

- Thorough working knowledge of the processes that ensure compliance with regulatory or industry requirements such as NERC CIP, SOX, and PCI

TECO offers a competitive Benefits package!!

Competitive Salary 401k Savings plan w/ company matching Pension plan Paid time off Paid Holiday time Medical, Prescription Drug, & Dental Coverage Tuition Assistance Program Employee Assistance Program Wellness Programs On-site Fitness Centers Bonus Plan and more!

Similar Jobs

ET

Software Engineer

logo
Erico Technologies LLC
Job TypeFull time
Salary
$50 - $50
New York, New York
30 days ago
company-logo

Sr. Firewall Engineer, Progression

Tampa Electric
Job Typefull time
 
Lutz, FL
about 1 month ago
company-logo

Sr Network Engineer

Western Midstream
 
The Woodlands, TX
about 1 month ago
company-logo

Sr Network Engineer

Strategic Storage Partners
Job Typefull time
 
New Orleans, LA
3 months ago
company-logo

Sr Network Engineer

Duquesne Light Company
Job Typefull time
 
Pittsburgh, PA
6 months ago
company-logo

Network Security Engineer

ExxonMobil
 
Spring, TX
3 months ago
company-logo

Security Engineer Specialist I,II, III, Sr

Entergy
Job Typefull time
 
Jackson, MS
6 months ago
company-logo

Sr Cybersecurity Engineer

NiSource
Job Typefull time
Salary
$110200 - $165300
Columbus, OH
6 months ago
company-logo

Infrastructure Engineer Sr

American Electric Power
Job Typefull time, temporary
Salary
$87633 - $109543
Gahanna, OH
4 months ago
company-logo

Sr OT Network Engineer

Florida Power & Light
Job Typefull time
 
Palm Beach Gardens, FL
6 months ago
company-logo

Sr. Systems Engineer 1

Exelon
Job Typefull time
 
Baltimore, MD
about 1 month ago
company-logo

Sr. Systems Engineer 1

Exelon
Job Typefull time
 
Owings Mills, MD
about 1 month ago
company-logo

Sr. Operations Engineer

Wind Energy Transmission Texas, LLC
Job Typefull time
 
Austin, TX
4 months ago
company-logo

Information Security Engineer III or Sr.

Entergy
 
The Woodlands, TX
5 months ago
company-logo

Fire Protection Engineer

Centrus Energy Corp.
Job Typefull time
 
Piketon, OH
about 2 months ago
company-logo

Fire Protection Engineer

X-Energy
Job Typefull time
Salary
$80100 - $173875
Oak Ridge, TN
3 months ago
company-logo

Senior Network Security Engineer

Radiant
Job Typefull time
Salary
$133500 - $252525
El Segundo, CA
3 months ago
company-logo

Sr. Software Test Engineer

Osmose
Job Typefull time
 
Atlanta, GA
5 months ago
company-logo

Sr. Software Test Engineer

Osmose Utilities Services, Inc.
Job Typefull time
 
Atlanta, GA
5 months ago
company-logo

Fire Protection Engineer

TRS Staffing Solutions
Job Typefull time
Salary
$140000 - $170000
Greer, SC
5 months ago

Trending Jobs

company-logo

Lead Software Engineer

Energy Hire
Job TypeFull time
Salary
$120000 - $180000
Dallas, Texas
10 months ago
LL

Field Landmen, Division Order Analysts & Lease Analysts

Liberty Land Management, LLC
Job TypeContract
 
Houston, Texas
3 months ago
company-logo

Armed Nuclear Security Officer

Ontario Power Generation
Job Typefull time
 
Pickering, ON
5 months ago
company-logo

Landman

Aaron Resources, LLC
Job Typefull time
 
00
6 months ago
company-logo

Industrial Craft Electricians for 2026 Start– Kennecott Copper

Rio Tinto
Job Typefull time
 
Salt Lake City, UT
6 months ago
company-logo

Deckhand 3

Marathon Petroleum Corporation
Job Typefull time
 
Catlettsburg, KY
5 months ago
company-logo

Title Landman

Norwood Land Services, LLC
Job Typecontract
 
00
6 months ago
TL

Independent Petroleum Landman

Texhoma Land Consultants, Inc
Job Typefull time, contract
Salary
$84500 - $104000
Oklahoma City, OK
6 months ago
company-logo

Title Landman

Perpetual Resource Partners LLC
Job Typefull time
 
Dallas, TX
5 months ago
PR

Executive Coordinator

Perpetua Resources
Job Typefull time
Salary
$55000 - $75000
Boise, ID
6 months ago
HE

Accounting Clerk II - Oahu

Hawaiian Electric Company, Inc.
Salary
$47840 - $47840
Honolulu, HI
6 months ago
company-logo

Haul Truck Operators – Kennecott Copper

Rio Tinto
Job Typefull time
 
Salt Lake City, UT
6 months ago
company-logo

Nuclear Security Officer

Constellation
Job Typefull time
 
Cordova, IL
4 months ago
company-logo

STOREKEEPER

Manitoba Hydro
 
Winnipeg, MB
5 months ago
company-logo

Wastewater Treatment Plant Operator-Lower Jackson

Environmental Systems Service, Ltd.
Job Typefull time
Salary
$31200 - $52000
Eagle Rock, VA
3 months ago
company-logo

Surface Landman

Bison Oil & Gas IV, LLC
Job Typefull time
Salary
$83500 - $132400
Denver, CO
6 months ago
BF

Torque and Test Operator

BJ Field Services
Job Typefull time
Salary
$47840 - $83200
Midland, TX
6 months ago
company-logo

Nuclear Document Mgmt Specialist I/II

Dominion Energy
 
Surry, VA
5 months ago
company-logo

Hydro Operator

SANTEE COOPER
Job Typefull time
Salary
$74880 - $93600
Moncks Corner, SC
6 months ago
MI

Land Manager

McEwen Inc. Gold Bar
Job TypeFull time
Salary
$120000 - $150000
Eureka, Nevada
about 2 months ago