? Manage/Troubleshoot next gen firewall, web application firewall (WAF), and web proxy
? Install firmware patches and upgrades, and ensure tool suites are up to date on security vulnerability patches
? Perform tuning and optimization tasks to include appliance rule review and log aggregation/visibility
? Create/maintain standard operating procedures and documentation
? Provide technical and strategic support to boundary systems and services
? Provide support to internal command entities, cybersecurity service customers, and cyber mission partners Certifications
Must possess active DoD 8570 baseline certifications that meets
IAT II requirements. Possess or obtain CSSP Incident Responder and CSSP Infrastructure Support within 6 months of hire date. Link to approved certifications:
https://public.cyber.mil/wid/dod8140/dod-approved-8570-baseline-certifications/ Preferred knowledge and experience with the following:
? Network architecture and design (security stack, VLANs, IP, Subnetting, Ports and protocols, Zero Trust)
? Experience with border security devices (Palo Alto firewall, Web Proxy, F5 WAF)
? Securing virtualization/cloud infrastructure concepts, technologies, and services
? Auditing (e.g., system accounts, security logs, system, and network anomalies)
? Cybersecurity Metrics – capture, documentation, and reporting
? NIST and DoD security policies including Ports, Protocols, and Services Management (PPSM)
? Building and configuring systems to be Information Assurance Vulnerability Management (IAVM) and Security Technical Implementation Guide (STIG) compliant
? Encryption standards
? Automated ticket tracking systems