Infrastructure Engineer III- Firewall & Cloud Security
As an Infrastructure Engineer III at JPMorgan Chase within the Infrastructure Platforms team, you utilize strong knowledge of software, applications, and technical processes within the infrastructure engineering discipline. Apply your technical knowledge and problem-solving methodologies across multiple applications of moderate scope.
Job responsibilities
- Applies technical knowledge and problem-solving methodologies to projects of moderate scope, with a focus on improving data and systems running at scale, and ensures end to end monitoring of applications
- Install, configure, maintain, and decommission Checkpoint, Fortinet, Palo Alto, and cloud firewall solutions in enterprise environments
- Plan and execute firewall upgrades, patching, migrations, new implementations, and ongoing maintenance activities
- Administer hardware appliances and virtual firewalls across hybrid public cloud environments using centralized management servers
- Implement and enforce security policies, ensuring firewall rules and configurations align with defined security standards
- Analyze firewall and network traffic to troubleshoot issues and identify connectivity drops along the network path
- Troubleshoot and resolve routing and connectivity issues, including BGP/OSPF and VPN-related problems
- Develop scripts/automation to streamline repetitive tasks and automate firewall deployments and operational workflows
- Monitor network activity, support incident response and investigations, participate in audits/risk assessments, maintain documentation, mentor junior engineers, and support off-hours/weekend and 24x7 on-call rotation
- Uses enterprise-authorized AI capabilities within the work environment to accelerate monitoring and capacity analysis and documentation, validating outputs and handling operational data according to sensitivity and security requirements.
- Applies reuse-first, AI-assisted approaches to identify recurring capacity risks and improve remediation workflows, ensuring changes are validated and aligned to resiliency and security expectations.
- Formal training or certification on infrastructure engineering concepts and 3+ years applied experience
- 7+ years of hands-on firewall engineering experience on at least one major platform (Checkpoint, Fortinet, Palo Alto, and/or cloud firewalls)
- Working experience across firewall deployment, configuration, maintenance, and decommissioning in large enterprise networks
- Demonstrated expertise in firewall upgrades, updates, migrations, and new implementations
- Strong knowledge of enterprise security and advanced networking concepts, including routing, switching, and load balancing
- Working knowledge of routing protocols such as BGP and OSPF
- Proven ability to analyze firewall traffic and troubleshoot complex network connectivity issues end-to-end
- Scripting/automation experience using Python, Ansible, Terraform, or similar cloud automation tools
- Proficiency with Linux operating systems and command-line troubleshooting
- Demonstrated experience using enterprise-authorized AI capabilities within the work environment to support infrastructure engineering workflows with strong validation habits and awareness of data sensitivity.
- Ability to review and validate AI-assisted recommendations before implementation, escalating when uncertain and ensuring outcomes align to resiliency, security, and auditability expectations.
- Automate firewall compliance validation, drift detection, and reporting
- Integrate firewall change workflows with CI/CD pipelines and enterprise change-management processes
- Lead security audits, risk assessments, and remediation efforts for network security controls
- Design hybrid cloud network security architectures, segmentation, and policy models
- Develop reusable infrastructure-as-code modules for firewall provisioning and standardized deployments
- Mentor junior engineers and improve operational documentation/runbooks