Industry: All
Term: Contract
Province: BC
Category: Information Technology
Experience: 5 - 10 Years
On behalf of our Healthcare Client, Affinity is seeking a skilled Firewall Administrator to manage and enhance our network security infrastructure across on-premises and cloud environments. This role is critical to ensuring secure connectivity, compliance, and operational resilience through the implementation and maintenance of advanced firewall and security controls.
Responsibilities:
The scope of services will include, but is not limited to, the following:
• Implement and modify firewall, proxy, VPN, Web Application Firewall (WAF), and IDS/IPS rules in accordance with project requirements and organizational security policies.
• Work with customers, internal teams, and vendors to troubleshoot project-related firewall, VPN, proxy, WAF, and IDS/IPS issues across on-premises and cloud environments.
• Configure and support cloud-native firewall and security controls, including Azure Network Security Groups (NSGs), Azure Application Security Groups (ASGs), and AWS security groups.
• Assist with secure connectivity requirements between on-premises data centres and cloud environments (Azure and AWS)
• Update and maintain project and operational documentation, ensuring all changes are accurately recorded in line with governance and compliance requirements.
• Progress production change requests as required for firewall, zoning, VPN, and security group activities.
• Provide knowledge transfer and collaboration with security and network operations teams to ensure continuity of support.
Qualifications:
• Strong understanding of networking and firewalling principles, including segmentation, rule design, and security zoning
• Hands-on operational knowledge of Fortinet, Palo Alto, and Cisco firewalls (experience with F5 LTM or other load balancers considered an asset)
• Experience configuring and supporting VPNs (site-to-site, remote access, and cloud-integrated)
• Experience configuring and supporting Web Application Firewalls (WAFs) in both on-premises and cloud environments.
• Working knowledge of Azure (NSG/ASG) and AWS firewall/security controls, including hybrid on-prem to cloud environments
• Experience with VMware NSX Distributed Firewall (DFW) including micro-segmentation, east-west traffic control, and policy-based security design and implementation.
• Familiarity with certificate management (PKI) as it applies to firewall/VPN authentication and SSL inspection.
• Demonstrated ability to support on-prem to cloud migrations, including translating firewall/VPN/WAF rules to cloud equivalents.
• Exceptional analytical and problem-solving skills with strong attention to detail
• Self-directed, highly motivated, and results-oriented
• Strong communication, customer interaction, and organizational skills
• Ability to work on multiple concurrent projects and multi-task effectively.
• Team player with well-developed interpersonal skills
• Strong written and verbal communication skills
• Proficient with Microsoft Office and common productivity tools
• Industry certifications such as CCNA, NSE (Fortinet), PCNSE (Palo Alto), or equivalent are preferred.
Affinity Earn:
Know someone who’s great for this, or any of our open roles? Earn up to $4,000/year for each successful referral through Affinity Earn. You can also earn up to $50,000 for helping us find new clients. Learn about our referral program at https://affinity-group.ca/earn/ or browse our jobs & follow us at https://www.linkedin.com/company/affinity-staffing/jobs/
About Affinity:
Affinity Group is a technology and business consulting and services company. We believe in creating long term relationships between clients and consultants that foster a mutually beneficial partnership. Affinity is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. All employment is decided on the basis of qualifications, merit and business need.
For more information on Affinity, please visit www.affinity-group.ca
Job Number: 12720
#LI-Remote