... cloud-delivered Firewall Management Center (cdFMC) * 5+ years of experience designing and implementing Cisco Identity Services Engine (ISE), including distributed node architectures, high ...
... cloud-delivered Firewall Management Center (cdFMC) * 5+ years of experience designing and implementing Cisco Identity Services Engine (ISE), including distributed node architectures, high ...
Technologies-Security Engineer
Tacoma, WA · On-site
$85 - $120/hr
... for other firewall technologies. * Serve as IT Security expert for projects; manage work breakdown structures and coordinate work efforts with other teams. * Researches, analyzes, monitors ...
New
Technologies-Security Engineer
Tacoma, WA · On-site
$85 - $120/hr
... for other firewall technologies. * Serve as IT Security expert for projects; manage work breakdown structures and coordinate work efforts with other teams. * Researches, analyzes, monitors ...
New
Technologies-Security Engineer
Tacoma, WA · On-site
... for other firewall technologies. * Serve as IT Security expert for projects; manage work breakdown structures and coordinate work efforts with other teams. * Researches, analyzes, monitors ...
Technologies-Security Engineer
Tacoma, WA · On-site
... for other firewall technologies. * Serve as IT Security expert for projects; manage work breakdown structures and coordinate work efforts with other teams. * Researches, analyzes, monitors ...
... for other firewall technologies. * Serve as IT Security expert for projects; manage work breakdown structures and coordinate work efforts with other teams. * Researches, analyzes, monitors ...
... for other firewall technologies. * Serve as IT Security expert for projects; manage work breakdown structures and coordinate work efforts with other teams. * Researches, analyzes, monitors ...
Technologies-Security Engineer
Tacoma, WA · On-site
... for other firewall technologies. * Serve as IT Security expert for projects; manage work breakdown structures and coordinate work efforts with other teams. * Researches, analyzes, monitors ...
Technologies-Security Engineer
Tacoma, WA · On-site
... for other firewall technologies. * Serve as IT Security expert for projects; manage work breakdown structures and coordinate work efforts with other teams. * Researches, analyzes, monitors ...
Customers rely on our four services, AWS Shield, AWS WAF, AWS Network Firewall, and AWS Firewall Manager, to protect application availability across their organization so they can focus on growing ...
Customers rely on our four services, AWS Shield, AWS WAF, AWS Network Firewall, and AWS Firewall Manager, to protect application availability across their organization so they can focus on growing ...
Senior Product Manager - Tech, AWS Application Protection
Seattle, WA · On-site
$144K - $190K/yr
Customers rely on our four services, AWS Shield, AWS WAF, AWS Network Firewall, and AWS Firewall Manager, to protect application availability across their organization so they can focus on growing ...
Senior Product Manager - Tech, AWS Application Protection
Seattle, WA · On-site
$144K - $190K/yr
Customers rely on our four services, AWS Shield, AWS WAF, AWS Network Firewall, and AWS Firewall Manager, to protect application availability across their organization so they can focus on growing ...
AWS Perimeter Protection has created unique technology and innovative services such as AWS Shield, AWS WAF, AWS Firewall Manager and Network Firewall to monitor and defend some of the largest ...
AWS Perimeter Protection has created unique technology and innovative services such as AWS Shield, AWS WAF, AWS Firewall Manager and Network Firewall to monitor and defend some of the largest ...
AWS Perimeter Protection has created unique technology and innovative services such as AWS Shield, AWS WAF, AWS Firewall Manager and Network Firewall to monitor and defend some of the largest ...
AWS Perimeter Protection has created unique technology and innovative services such as AWS Shield, AWS WAF, AWS Firewall Manager and Network Firewall to monitor and defend some of the largest ...
Senior Product Manager - Tech, AWS Application Protection
Seattle, WA · On-site
$144K - $190K/yr
Customers rely on our four services, AWS Shield, AWS WAF, AWS Network Firewall, and AWS Firewall Manager, to protect application availability across their organization so they can focus on growing ...
Senior Product Manager - Tech, AWS Application Protection
Seattle, WA · On-site
$144K - $190K/yr
Customers rely on our four services, AWS Shield, AWS WAF, AWS Network Firewall, and AWS Firewall Manager, to protect application availability across their organization so they can focus on growing ...
... firewall management, and removable device control. We're a distributed workplace that leverages team productivity tools like Slack, Zoom, and Jira for day-to-day communication. Travel for face-to ...
... firewall management, and removable device control. We're a distributed workplace that leverages team productivity tools like Slack, Zoom, and Jira for day-to-day communication. Travel for face-to ...
AWS Perimeter Protection has created unique technology and innovative services such as AWS Shield, AWS WAF, AWS Firewall Manager and Network Firewall to monitor and defend some of the largest ...
AWS Perimeter Protection has created unique technology and innovative services such as AWS Shield, AWS WAF, AWS Firewall Manager and Network Firewall to monitor and defend some of the largest ...
... Firewall Manager and Network Firewall to monitor and defend some of the largest distributed networks in the world, but it is still only Day 1. At AWS, you'll have the opportunity to raise the bar ...
... Firewall Manager and Network Firewall to monitor and defend some of the largest distributed networks in the world, but it is still only Day 1. At AWS, you'll have the opportunity to raise the bar ...
... Firewall Manager and Network Firewall to monitor and defend some of the largest distributed networks in the world, but it is still only Day 1. At AWS, you'll have the opportunity to raise the bar ...
... Firewall Manager and Network Firewall to monitor and defend some of the largest distributed networks in the world, but it is still only Day 1. At AWS, you'll have the opportunity to raise the bar ...
AWS Perimeter Protection has created unique technology and innovative services such as AWS Shield, AWS WAF, AWS Firewall Manager and Network Firewall to monitor and defend some of the largest ...
AWS Perimeter Protection has created unique technology and innovative services such as AWS Shield, AWS WAF, AWS Firewall Manager and Network Firewall to monitor and defend some of the largest ...
... WAF, AWS Firewall Manager, and Network Firewall Our mission is to make it simple for customers to protect their applications and networks from threats at any scale. We operate with a startup ...
... WAF, AWS Firewall Manager, and Network Firewall Our mission is to make it simple for customers to protect their applications and networks from threats at any scale. We operate with a startup ...
... WAF, AWS Firewall Manager, and Network Firewall Our mission is to make it simple for customers to protect their applications and networks from threats at any scale. We operate with a startup ...
... WAF, AWS Firewall Manager, and Network Firewall Our mission is to make it simple for customers to protect their applications and networks from threats at any scale. We operate with a startup ...
Cloud security SME
Bellevue, WA · On-site
$74 - $98.25/hr
Risk Management & Compliance: Align firewall and IaC security policies with industry standards (NIST, CIS, ISO 27001). Support internal and external audits by providing documentation and evidence of ...
Quick apply
Cloud security SME
Bellevue, WA · On-site
$74 - $98.25/hr
Risk Management & Compliance: Align firewall and IaC security policies with industry standards (NIST, CIS, ISO 27001). Support internal and external audits by providing documentation and evidence of ...
Cloud Network Security Engineer
Bellevue, WA · On-site
$117K - $161K/yr
Risk Management & Compliance: Align firewall and IaC security policies with industry standards (NIST, CIS, ISO 27001). Support internal and external audits by providing documentation and evidence of ...
Quick apply
Cloud Network Security Engineer
Bellevue, WA · On-site
$117K - $161K/yr
Risk Management & Compliance: Align firewall and IaC security policies with industry standards (NIST, CIS, ISO 27001). Support internal and external audits by providing documentation and evidence of ...
Technical Support Engineer II - Hybrid
Federal Way, WA · Hybrid
$30 - $35/hr
Troubleshoot and deploy SonicWall firewalls. * Manage networking switches and access points. (Datto Experience PLUS!) * Support Microsoft 365, Intune, Azure, Datto BCDR, SaaS Backup, and other modern ...
Technical Support Engineer II - Hybrid
Federal Way, WA · Hybrid
$30 - $35/hr
Troubleshoot and deploy SonicWall firewalls. * Manage networking switches and access points. (Datto Experience PLUS!) * Support Microsoft 365, Intune, Azure, Datto BCDR, SaaS Backup, and other modern ...
Firewall Management information
See Seattle, WA salary details
$11.49 - $18.65
7% of jobs
$18.65 - $25.81
1% of jobs
$25.81 - $32.98
0% of jobs
$32.98 - $40.14
3% of jobs
$40.14 - $47.30
4% of jobs
$52.84 is the 25th percentile. Wages below this are outliers.
$47.30 - $54.46
12% of jobs
$54.46 - $61.63
5% of jobs
The median wage is $64.42 / hr.
$61.63 - $68.79
44% of jobs
$68.79 - $75.95
12% of jobs
$75.95 - $83.11
11% of jobs
$83.11 - $90.28
1% of jobs
$11
$61
$90
How much do firewall management jobs pay per hour?
What is the difference between Firewall Management vs Network Security Analyst?
| Aspect | Firewall Management | Network Security Analyst |
|---|---|---|
| Certifications | CompTIA Security+, Cisco CCNA Security, CISSP | CompTIA Security+, CISSP, GIAC Security Certifications |
| Work Environment | Focus on configuring and maintaining firewalls within network infrastructure | Monitor, analyze, and respond to security threats across networks |
| Employer Usage | IT departments, cybersecurity teams, network administrators | Security teams, cybersecurity firms, IT departments |
Firewall Management primarily involves configuring, maintaining, and updating firewalls to control network traffic. In contrast, a Network Security Analyst monitors and analyzes network activity to identify and respond to security threats. While both roles require similar certifications and work within cybersecurity environments, Firewall Management is more focused on firewall policies, whereas Network Security Analysts handle broader threat detection and incident response.
What is firewall management?
How to become a firewall management expert?
What are the key skills and qualifications needed to thrive in firewall management, and why are they important?
What are some common challenges faced by professionals in firewall management, and how can they be addressed?

$66.50 - $87/hr
Full-time
Re-posted 14 days ago
Deloitte rating
8.2
Based on 92 frontline employees who took The Breakroom Quiz
45th of 150 rated financial services
Job description
Cisco Network Security Engineer/ Senior Consultant, Strategy, Growth, and Transformation
Deloitte's Cyber business is passionate about making an impact with lasting change. Delivering our industry leading services requires fresh thinking and a creative approach. We collaborate with teams from across our organization in order to bring the full breadth of Deloitte, its commercial and public sector expertise, to best support our clients.
Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions and managed services that simplify complexity, we enable our clients to operate with resilience, grow with confidence, and proactively manage to secure success.
Recruiting for this role ends on 12/31/2026.
Work you'll do
As a Senior Consultant, Strategy, Growth, and Transformation on the Cyber team, you will be responsible for...
- Designing, deploying, and managing Cisco Firepower Threat Defense (FTD) and Firepower Management Center (FMC) solutions across enterprise environments, including physical, virtual, and cloud-delivered deployments
- Implementing and supporting Cisco Identity Services Engine (ISE) capabilities, including 802.1X network access control, device profiling, guest lifecycle management, TrustSec segmentation, and integration with enterprise identity stores
- Configuring and tuning advanced Cisco security features, including intrusion prevention system (IPS), malware protection, URL filtering, Domain Name System (DNS)-based security, Security Intelligence, and Secure Sockets Layer/Transport Layer Security (SSL/TLS) decryption policies
- Deploying and integrating Cisco Secure Firewall solutions in cloud environments, including Amazon Web Services (AWS), Microsoft Azure, and Google Cloud Platform (GCP), while supporting centralized policy management and secure connectivity across hybrid infrastructures
- Developing client-facing security architectures, integrating Cisco platforms with security information and event management (SIEM) tools and automation solutions, and delivering recommendations that align technical requirements, compliance needs, and business objectives
A successful candidate would possess these skills:
- Ability to design, assess, and troubleshoot enterprise network security environments using Cisco security technologies
- Ability to implement and manage Cisco Firepower Threat Defense (FTD), Firepower Management Center (FMC), and Identity Services Engine (ISE) solutions
- Ability to support 802.1X network access control, profiling, guest access, TrustSec segmentation, and policy enforcement requirements
- Ability to analyze and tune firewall, intrusion prevention system (IPS), Secure Sockets Layer/Transport Layer Security (SSL/TLS) decryption, and threat prevention controls
- Ability to support secure network and firewall deployments across on-premises, campus, data center, and cloud environments
- Ability to produce technical assessments, target-state architectures, implementation roadmaps, and executive-ready deliverables
- Ability to lead projects or workstreams
- Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
- Ability to provide clear guidance to others
The team
Our Enterprise Security offering embeds security in all aspects of digital transformation by securing a client's technical backbone while enabling secure digital transformation. Includes security architecture, secure development and deployment, end-to-end cyber cloud capabilities, application security, and security for emerging technologies and connected products.
Qualifications
Required Qualifications
- BA/BS degree in a technical field (e.g., Computer Science, Cyber Security, Information Technology, or equivalent work experience)
- CCNP Security or CCIE Security certification required
- 5+ years of experience in network security engineering with Cisco security technologies
- 5+ years of experience designing, deploying, and managing Cisco Firepower Threat Defense (FTD) and Firepower Management Center (FMC) in enterprise environments, including physical appliances, virtual instances, and cloud-delivered Firewall Management Center (cdFMC)
- 5+ years of experience designing and implementing Cisco Identity Services Engine (ISE), including distributed node architectures, high availability configurations, patch management, and upgrade planning
- 3+ years of experience with Cisco Identity Services Engine (ISE) 802.1X Network Access Control (NAC), guest lifecycle management, profiling policies, TrustSec segmentation, and Cisco Firepower capabilities including intrusion prevention system (IPS), malware protection, Uniform Resource Locator (URL) filtering, Domain Name System (DNS)-based security, Secure Sockets Layer/Transport Layer Security (SSL/TLS) decryption, and cloud firewall deployments in Amazon Web Services (AWS), Microsoft Azure, or Google Cloud Platform (GCP)
- Ability to travel up to 50%, on average, based on the work you do and the clients and industries/sectors you serve.
- Limited immigration sponsorship may be available.
Preferred Qualifications
- Additional cybersecurity certifications such as Certified Information Systems Security Professional (CISSP), GIAC Security Essentials (GSEC), or GIAC Certified Enterprise Defender (GCED)
- Experience with Cisco Secure Access, Cisco Umbrella, Cisco Secure Client, or Duo Security in Zero Trust architectures
- Experience with Cisco Extended Detection and Response (XDR), Cisco SecureX, or integration of Firepower and Identity Services Engine (ISE) telemetry for threat detection, investigation, and response
- Experience using Representational State Transfer application programming interfaces (REST APIs), Ansible, Terraform, or Python for policy provisioning, compliance checks, configuration drift detection, or network security automation
- Experience with Cisco Catalyst Center and Cisco Identity Services Engine (ISE) integration for Software-Defined Access (SD-Access) deployments and segmentation policy enforcement
- Experience delivering network security, network access control, segmentation, or Zero Trust engagements in consulting environments
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $105,400 to $207,800.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
Cisco Network Security Engineer/ Senior Consultant, Strategy, Growth, and Transformation
Deloitte's Cyber business is passionate about making an impact with lasting change. Delivering our industry leading services requires fresh thinking and a creative approach. We collaborate with teams from across our organization in order to bring the full breadth of Deloitte, its commercial and public sector expertise, to best support our clients.
Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions and managed services that simplify complexity, we enable our clients to operate with resilience, grow with confidence, and proactively manage to secure success.
Recruiting for this role ends on 12/31/2026.
Work you'll do
As a Senior Consultant, Strategy, Growth, and Transformation on the Cyber team, you will be responsible for...
- Designing, deploying, and managing Cisco Firepower Threat Defense (FTD) and Firepower Management Center (FMC) solutions across enterprise environments, including physical, virtual, and cloud-delivered deployments
- Implementing and supporting Cisco Identity Services Engine (ISE) capabilities, including 802.1X network access control, device profiling, guest lifecycle management, TrustSec segmentation, and integration with enterprise identity stores
- Configuring and tuning advanced Cisco security features, including intrusion prevention system (IPS), malware protection, URL filtering, Domain Name System (DNS)-based security, Security Intelligence, and Secure Sockets Layer/Transport Layer Security (SSL/TLS) decryption policies
- Deploying and integrating Cisco Secure Firewall solutions in cloud environments, including Amazon Web Services (AWS), Microsoft Azure, and Google Cloud Platform (GCP), while supporting centralized policy management and secure connectivity across hybrid infrastructures
- Developing client-facing security architectures, integrating Cisco platforms with security information and event management (SIEM) tools and automation solutions, and delivering recommendations that align technical requirements, compliance needs, and business objectives
A successful candidate would possess these skills:
- Ability to design, assess, and troubleshoot enterprise network security environments using Cisco security technologies
- Ability to implement and manage Cisco Firepower Threat Defense (FTD), Firepower Management Center (FMC), and Identity Services Engine (ISE) solutions
- Ability to support 802.1X network access control, profiling, guest access, TrustSec segmentation, and policy enforcement requirements
- Ability to analyze and tune firewall, intrusion prevention system (IPS), Secure Sockets Layer/Transport Layer Security (SSL/TLS) decryption, and threat prevention controls
- Ability to support secure network and firewall deployments across on-premises, campus, data center, and cloud environments
- Ability to produce technical assessments, target-state architectures, implementation roadmaps, and executive-ready deliverables
- Ability to lead projects or workstreams
- Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
- Ability to provide clear guidance to others
The team
Our Enterprise Security offering embeds security in all aspects of digital transformation by securing a client's technical backbone while enabling secure digital transformation. Includes security architecture, secure development and deployment, end-to-end cyber cloud capabilities, application security, and security for emerging technologies and connected products.
Qualifications
Required Qualifications
- BA/BS degree in a technical field (e.g., Computer Science, Cyber Security, Information Technology, or equivalent work experience)
- CCNP Security or CCIE Security certification required
- 5+ years of experience in network security engineering with Cisco security technologies
- 5+ years of experience designing, deploying, and managing Cisco Firepower Threat Defense (FTD) and Firepower Management Center (FMC) in enterprise environments, including physical appliances, virtual instances, and cloud-delivered Firewall Management Center (cdFMC)
- 5+ years of experience designing and implementing Cisco Identity Services Engine (ISE), including distributed node architectures, high availability configurations, patch management, and upgrade planning
- 3+ years of experience with Cisco Identity Services Engine (ISE) 802.1X Network Access Control (NAC), guest lifecycle management, profiling policies, TrustSec segmentation, and Cisco Firepower capabilities including intrusion prevention system (IPS), malware protection, Uniform Resource Locator (URL) filtering, Domain Name System (DNS)-based security, Secure Sockets Layer/Transport Layer Security (SSL/TLS) decryption, and cloud firewall deployments in Amazon Web Services (AWS), Microsoft Azure, or Google Cloud Platform (GCP)
- Ability to travel up to 50%, on average, based on the work you do and the clients and industries/sectors you serve.
- Limited immigration sponsorship may be available.
Preferred Qualifications
- Additional cybersecurity certifications such as Certified Information Systems Security Professional (CISSP), GIAC Security Essentials (GSEC), or GIAC Certified Enterprise Defender (GCED)
- Experience with Cisco Secure Access, Cisco Umbrella, Cisco Secure Client, or Duo Security in Zero Trust architectures
- Experience with Cisco Extended Detection and Response (XDR), Cisco SecureX, or integration of Firepower and Identity Services Engine (ISE) telemetry for threat detection, investigation, and response
- Experience using Representational State Transfer application programming interfaces (REST APIs), Ansible, Terraform, or Python for policy provisioning, compliance checks, configuration drift detection, or network security automation
- Experience with Cisco Catalyst Center and Cisco Identity Services Engine (ISE) integration for Software-Defined Access (SD-Access) deployments and segmentation policy enforcement
- Experience delivering network security, network access control, segmentation, or Zero Trust engagements in consulting environments
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position ...