Location: Remote Clearance: Public Trust Employment Type: Full-time Salary:180k-190k Company Description Big Impact Tech (BIT) is a Small Business providing IT and business management consulting to federal and commercial clients.
We deliver mission-focused solutions in data, cloud, cybersecurity, and program management.
Role Overview The TIC 3.0 Developer will focus on architecting, implementing, and maintaining secure, compliant network environments in AWS with an emphasis on Trusted Internet Connections (TIC) 3.0 principles.
This role involves hands-on deployment and management of Palo Alto VM-Series firewalls, infrastructure as code (IaC), hybrid connectivity, and Zero Trust/TIC-aligned security controls, often functioning independently to support federal client requirements.
ResponsibilitiesArchitect and manage complex AWS network environments to meet TIC 3.0 and federal security standards.Deploy and manage Palo Alto VM-Series firewalls in AWS, including configuration of GlobalProtect, Panorama, and security policy orchestration.Use Terraform or CloudFormation to deploy major networking components via Infrastructure as Code (IaC), ensuring repeatable, documented, and auditable environments.Configure, troubleshoot, and maintain hybrid connectivity solutions, including AWS Direct Connect, Site-to-Site VPNs, and SD-WAN integrations.Design and implement Transit Gateway architecture and VPC Peering in multi-account AWS environments.Apply Zero Trust principles and TIC 3.0 requirements within AWS and Palo Alto ecosystems to enhance application and network security.Serve as the primary (or sole) Network Architect/Engineer responsible for discovery, documentation, design, and execution of network security solutions with minimal supervision.Collaborate with stakeholders to ensure secure, compliant network designs that support mission-critical federal applications.
Qualifications5+ years of experience architecting and managing complex AWS network environments3+ years of experience deploying and managing Palo Alto VM-Series firewalls within a public cloud environment (AWS), including with Global Protect, Panorama, and security policy orchestration2+ years of experience with Terraform or CloudFormation, including using IaC to deploy major networking components to ensure repeatable, documented environmentsExperience with Hybrid Connectivity and WAN, including configuring and troubleshooting AWS Direct Connect, Site-to-Site VPNs, and SD-WAN integrations to maintain hybrid-cloud connectivityKnowledge of Transit Gateway architecture and VPC Peering in multi-account environmentsKnowledge of implementing Zero Trust or TIC 3 principles within an AWS or Palo Alto ecosystemAbility to function as the sole Network Architect or Engineer to be responsible for discovery, documentation, and execution with minimal supervisionAbility to obtain and maintain a Public Trust or Suitability/Fitness determination based on client requirementsHS diploma or GED Nice to HaveAWS Certified Advanced Networking – Specialty CertificationPalo Alto Networks Certified Network Security Engineer (PCNSE) Certification