Firewall Expert with Focus on Network Security | Firewall-Experte mit Schwerpunkt Netzwerksicherheit (m/w/d)

Stadtverwaltung Jena

Jena, Thüringen, Deutschland
Published Dec 18, 2025
Full-time
Permanent

Job Summary

This role involves the autonomous operation and administration of the network infrastructure, specifically focusing on Palo Alto Networks firewalls, within the municipal IT and telecommunications sector (KITT) in Jena. The expert will be responsible for designing, implementing, and optimizing complex security architectures, particularly within a Zero-Trust framework, ensuring segmented access control across various network zones. Day-to-day tasks include configuration and maintenance of central firewall infrastructure (PA-Series, VM-Series, Panorama), managing security policies (App-ID, Threat Prevention, URL Filtering), and responding to network security incidents. A key component of the role is the development and implementation of automation solutions using scripting languages like Python and tools such as Ansible to enhance efficiency in policy management and administrative tasks. Candidates must possess a relevant university degree, at least 10 years of professional experience with Palo Alto Next-Generation Firewalls, and deep expertise in network protocols and security hardening techniques.

Required Skills

Education

University degree in a relevant field (e.g., Computer Science, IT Security, Network Technology, or comparable)

Experience

  • Minimum 10 years of professional experience in the administration, configuration, and operation of enterprise firewalls, specifically Palo Alto Next-Generation Firewalls (PA-Series, VM-Series, Panorama)
  • Professional experience using Palo Alto Panorama for central firewall management
  • Practical experience configuring Palo Alto features (App-ID, User-ID, Content-ID, SSL Decryption, Threat Prevention, URL Filtering, WildFire, GlobalProtect)
  • Experience in the design and operation of complex network architectures involving firewalls, load balancers, and proxies
  • Demonstrable experience in the hardening and security protection of networks according to recognized IT security guidelines
  • Demonstrable experience in the introduction and operational use of monitoring solutions

Languages

German (Fluent)English (Very good (Implied Fluent/Advanced))

Additional

  • Not specified