EngineerJobs.io
← Back to all jobs

Job Description

This on-site role is a Senior Consultant position on Deloitte's Cyber Enterprise Security team, focused on modernizing network security with Palo Alto Networks technologies across on-premises and cloud environments to deliver zero-trust architectures. The position is based in Houston, TX and offers a salary range of USD 105,400 to 207,800 per year.

Responsibilities

  • Design, deploy, and manage Palo Alto Networks Next-Generation Firewalls (NGFW) across on-premises and cloud environments, including AWS, Azure, and Google Cloud Platform (GCP).
  • Implement and optimize Prisma Access capabilities, including GlobalProtect, Prisma Agent, and Prisma Browser, to support secure internet access and remote access use cases.
  • Administer Panorama and Strata Cloud Manager to support centralized policy management, device configuration, visibility, and operational consistency across enterprise environments.
  • Configure and tune security capabilities including Threat Prevention, IPS/IDS, Anti-Spyware, Antivirus, WildFire, DNS Security, and SSL/TLS decryption policies.
  • Develop client solution designs and recommendations, integrating Palo Alto platforms with security information and event management/security orchestration, automation, and response (SIEM/SOAR) and identity provider tools, and supporting automation through Terraform, Ansible, or Python.

Requirements

  • BA/BS degree in a technical field (e.g., Computer Science, Cyber Security, Information Technology, or equivalent work experience).
  • PCNSE (Palo Alto Networks Certified Network Security Engineer) certification.
  • 5+ years of progressively responsible experience in network security engineering, with demonstrated depth in Palo Alto Networks technologies and increasing levels of technical ownership and leadership over time.
  • 5+ years of hands-on experience designing, deploying, and managing Palo Alto Networks Next-Generation Firewalls (NGFW) in both on-premises and cloud environments (AWS, Azure, and/or GCP).
  • 3+ years of experience designing, deploying, and managing Prisma Access, including configuration of GlobalProtect, Prisma Agent, and Prisma Browser for Internet and secure remote access use cases.
  • 3+ years of experience designing, deploying, and managing Panorama centralized management, and Strata Cloud Manager.
  • 3+ years of experience configuring and tuning Palo Alto Threat Prevention features, including IPS/IDS, Anti-Spyware, Antivirus, WildFire, and DNS Security.
  • 3+ years of experience implementing and troubleshooting SSL/TLS Decryption policies, including forward proxy and inbound inspection, certificate management, and decryption exclusion handling.
  • 3+ years of hands-on experience defining, managing, and reviewing security policies, including rule base optimization, policy lifecycle management, and periodic access reviews.
  • 3+ years of experience with one or more major cloud service providers (AWS, GCP, Azure) and their native security toolsets, including deployment of VM-Series firewalls within cloud-native architectures.
  • Ability to travel up to 50%, on average, based on the work performed and client engagements.
  • Limited immigration sponsorship may be available.

Technologies

  • Palo Alto Networks Next-Generation Firewalls (NGFW)
  • Prisma Access, GlobalProtect, Prisma Agent, Prisma Browser
  • Panorama, Strata Cloud Manager
  • Threat Prevention, IPS/IDS, Anti-Spyware, Antivirus, WildFire, DNS Security
  • SSL/TLS decryption policies, forward proxy, inbound inspection
  • Terraform, Ansible, Python
  • AWS, Microsoft Azure, Google Cloud Platform (GCP)
  • VM-Series
  • Splunk, Microsoft Sentinel, Palo Alto XSOAR

Benefits

  • Discretionary annual incentive program

Similar Jobs