Firewall Engineer (Hibrido, Lisboa)

Publicada 2 de Setembro

We are looking for a Firewall Engineer to support the operational maintenance and continuous improvement of network security infrastructures, with a strong focus on security, service quality and operational efficiency.

The role focuses on firewall policy management, network troubleshooting and micro-segmentation across enterprise security environments, including Palo Alto, Fortinet and VMware NSX-T / VCF9 Network.

Key Responsibilites:

  • Ensure the operational maintenance and administration of network security infrastructures.
  • Diagnose and troubleshoot network malfunctions, blocked flows and connectivity issues.
  • Implement, modify and maintain firewall and security policies.
  • Manage security rules across Palo Alto, Fortinet and VMware NSX-T / VCF9 Network environments.
  • Implement and maintain network and micro-segmentation policies.
  • Analyze and propose improvements to security policies and operational processes.
  • Manage requests, incidents, changes and technical documentation in an IT production environment.
  • Ensure compliance with security standards, internal policies and SLAs.
  • Provide technical expertise and collaborate with other infrastructure and security teams.

Requisitos mínimos

  • Experience combining Software Engineering and Enterprise Network Security.
  • Advanced knowledge of Python 3 and hands-on experience with Django and/or Django REST Framework.
  • Strong experience designing and consuming REST APIs and developing automation backends.
  • Experience with asynchronous task processing, such as Celery and Redis, for managing long-running network operations.
  • Practical experience with Git and CI/CD platforms such as GitLab CI or GitHub Actions.
  • Good understanding of Infrastructure as Code (IaC) principles and modern software development practices.
  • Deep knowledge of FortiGate/FortiOS and FortiManager architectures.
  • Strong hands-on experience automating Fortinet firewall policies and objects through FortiManager APIs (JSON-RPC/REST).
  • Deep understanding of VMware NSX-T architecture and networking/security concepts.
  • Hands-on experience with the NSX-T Policy API and automation of firewall policies and security groups.
  • Solid understanding of enterprise routing, switching, network zoning and micro-segmentation.
  • Experience implementing secure automation with a strong focus on validation, error handling, rollback and idempotency.
  • Strong understanding of network security principles, firewall policy management and security compliance.
  • Good technical documentation, communication and problem-solving skills.
  • Language skills: Fluency in at least two of the following languages is mandatory: English, French or Portuguese.