🚀 Level 2 Firewall Engineer
🌍 About the Role
A2IT Technology is looking for an experienced Level 2 Firewall Engineer to join an enterprise environment focused on network security, automation, and infrastructure engineering.
In this role, you will be responsible for ensuring the stability, security and continuous improvement of the firewall infrastructure, while driving automation initiatives and supporting complex enterprise environments.
🛠️ Key Responsibilities
🔹 Incident & Problem Management
- Handle escalated Level 2 firewall incidents;
- Troubleshoot complex issues involving routing, NAT, VPNs, clustering and firewall performance;
- Perform Root Cause Analysis (RCA) and contribute to post-mortem reviews;
- Identify recurring issues and drive continuous improvement initiatives;
- Participate in the Level 2 on-call rotation.
🤖 Firewall Engineering & Automation
- Design and maintain automation for: Firewall software upgrades; Cluster upgrades and failover validation; Policy deployment; Backup and restore procedures;
- Implement infrastructure changes using: Ansible / AWX; Git-based workflows; CI/CD pipelines
- Promote Infrastructure as Code and configuration versioning.
📋 Configuration & Governance
- Ensure firewall configurations remain aligned with the CMDB (Source of Truth);
- Prevent configuration drift through validation and automation;
- Support compliance reporting and security governance.
🔒 Security & Lifecycle Management
- Plan and execute firewall upgrades, hotfixes and security patches;
- Maintain upgrade and rollback procedures;
- Support vulnerability remediation and security hardening initiatives;
- Assist with audit and compliance activities.
✅ Required Technical Skills:
Mandatory
- 5+ years of experience in Enterprise Firewall Engineering;
- Strong hands-on experience with: Check Point R8x, FortiGate;
- Solid knowledge of: TCP/IP, Routing (BGP & OSPF), NAT, VPN technologies, Linux Networking;
- Experience with Ansible (preferred automation tool)
- Git version control;
- Strong troubleshooting and analytical skills;
🔥 Firewall Technologies:
Check Point: R8x Architecture, Management Server / MDS, SmartConsole, ClusterXL, Policy installation & troubleshooting;
Fortinet: FortiGate, FortiManager, High Availability Clusters, Security Fabric;
Open-Source Firewalls: nftables / iptables, pfSense, OPNsense.
⭐ Nice to Have
- CI/CD pipelines (GitLab CI or similar)
- Infrastructure as Code
- API-driven firewall automation
- Containerized firewall deployments
- AWS firewall integrations
- High Availability architectures
- Observability (logs, metrics and monitoring)
- Secure automation and scripting practices
🤝 Soft Skills
- Analytical mindset
- Strong Root Cause Analysis (RCA) capabilities
- Proactive and autonomous approach
- Excellent documentation practices
- Ability to mentor junior engineers
- Clear communication during incident management
📍 Location: Remote (Portugal)
⚠️ Candidates must be currently residing in Portugal.
📩 Interested?
Send me a private message or your CV to discuss!