Information Security - Information Security Engineer 4 - Contingent

Mindlance

IRVING, TX

JOB DETAILS
SKILLS
Ansible, Application Programming Interface (API), Artificial Intelligence (AI), Automation, Cloud Computing, Continuous Deployment/Delivery, Continuous Integration, Firewalls, GitHub, Identify Issues, Information/Data Security (InfoSec), Network Access Control (NAC), Network Architecture/Engineering, Network Security, Network Security Design, Protective Services, Python Programming/Scripting Language, Security Architecture, Security Policy, Software Architecture, Software Development Lifecycle (SDLC), Technical Support, Telemetry, Topology
LOCATION
IRVING, TX
POSTED
10 days ago
IMUST HAVE
" Senior level hands on experience with Python
" Extensive experience with GitHub, GitHub Actions, and CI/CD pipelines
" GitHub Actions and Infrastructure as Code expertise
" Strong hands-on operational automation experience using Ansible
" Deep familiarity with Proxy and Firewalls technologies, including integration with Palo Alto Firewall, Fortinet Firewall, and Broadcom Cloud proxy services
" Hands on experience designing, implementing, and automating security controls and policy management across Palo Alto Firewall, Fortinet Firewall, and Broadcom Cloud proxy service environments
" Ability to deliver independently in complex enterprise environments

What Success Looks Like
" Unified into SAT, Proxy and Sepio software architecture adopted
" Significant reduction in SAT, Proxy and Sepio deployment time and manual effort
" Technology teams removed from routine SAT, Proxy and Sepio provisioning tasks
" Clear documentation enabling sustainable internal ownership
Proven delivery of stateful workflow orchestration (Temporal / ORCA or similar)

NICE TO HAVE
" Strong exposure to AI assisted engineering or AI driven automation workflows


Engagement Objectives (6 12 Month Horizon)
" Transform existing Network Access Control, Firewall and Proxy code certification and lifecycle implementations into an automated process.
" Deliver end to end zero touch provisioning (ZTP) workflows for SASE infrastructure
" Implement stateful workflow orchestration using ORCA / Temporal
" Integrate Nautobot as the authoritative source of truth for Firewall, Proxy and Sepio topology
" Establish CI pipelines using GitHub and GitHub Actions
" Implement Infrastructure as Code using Temporal/GihubActions
" Enable automated operational changes using Ansible
" Expose automation capabilities via APIs using Apigee
" Instrument NAC, Firewall and Proxy automation workflows using Grafana and/or Prometheus
" Deliver measurable reductions in Firewall, Proxy and NAC deployment time and Technology support effort
This contract role requires a senior engineer capable of driving the transformation from traditional Firewall and Proxy operations to a fully automated, unified model with true end to end provisioning.

Key Responsibilities
Unified Network Security Automation Architecture
" Design a unified Network Security automation architecture that standardizes networking, security services, and automation behaviors across Palo Alto Firewall, Fortinet Firewall, and Broadcom Cloud proxy services
" Implement fully automated, Sepio, SAT and Proxy software lifecycle workflows
" Implement fully automated, standard changes workflows
" Automate software lifecycle events including day 0, day 1, and day 2 operations
Automation & Orchestration Execution
" Design and implement stateful, fault tolerant workflows using Temporal / ORCA
" Embed retry, timeout, validation, and compensation logic into SAT, Proxy and Sepio workflows
" Build reusable orchestration patterns for SAT, Proxy and Sepio deployment and operations
Source of Truth Integration
" Extend and integrate Nautobot as the authoritative source of intent and state
" Model into SAT, Proxy and Sepio, topology, IPAM, and configuration data
" Ensure SAT, Proxy and Sepio automation executes strictly from source of truth data
CI/CD & Infrastructure as Code
" Implement CI pipelines using GitHub Actions
" Use Temporal to provision and manage automation and Branch related infrastructure
" Follow version control, testing, and promotion standards
Operational Automation
" Design and execute Ansible based operational automation for Branch environments
" Automate configuration, compliance validation, rollback, and remediation
" Ensure changes are secure, auditable, and repeatable
API & Observability Enablement
" Expose SAT, Proxy and Sepio and automation services through Apigee
" Instrument workflows using Grafana and/or Prometheus
" Provide telemetry for reliability, scaling, and troubleshooting

EEO:

Mindlance is an Equal Opportunity Employer and does not discriminate in employment on the basis of Minority/Gender/Disability/Religion/LGBTQI/Age/Veterans.

About the Company

M

Mindlance