Principal Enterprise Network Security Architect

Palo Alto Networks
United States
6 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Microsoft Access Application Programming Interfaces (APIs) Artificial Intelligence Amazon Web Services Microsoft Azure Computer Networks Continuous Integration High-Level Architecture Intrusion Detection Systems Virtual Private Networks (VPN) Network Security Network Planning and Design
+14 more
Routing Network Segmentation Ansible Zero Trust Network Access TCP/IP Google Cloud Software Troubleshooting Cyber Threat Analysis Juniper Palo Alto Networks Data Analytics Machine Learning Operations Terraform Security Orchestration, Automation & Response

Job description

Experteer Overview In this role, you will own and govern the global network security architecture, shaping secure, scalable hybrid environments. You’ll align security across IT and infrastructure teams to embed security into network design and policy. You drive remediation of vulnerabilities and advance automation using IaC and CI/CD. You will mentor engineers and uphold a security-first culture while leveraging AI-driven insights. This is a high-impact opportunity to strengthen our threat posture at scale. Compensation / Benefits * Own the architectural blueprint and governance for the global network security footprint across hybrid environments * Define, develop, and enforce enterprise-wide security policies (segmentation, access control, traffic inspection) as a SME * Integrate security across network design with security, infrastructure, and IT teams * Identify vulnerabilities and lead remediation across on-prem and cloud environments using best practices * Leverage Palo Alto Networks products and third-party platforms for visibility, protection, and threat intel * Champion network security automation using scripting, CI/CD pipelines, and infrastructure-as-code * Serve as escalation authority during security events and design long-term architectural remediations * Provide technical mentorship and contribute to architectural standards and security-first culture Tasks * 12+ years of progressive enterprise networking and network security engineering experience with leadership in large-scale environments * Deep expertise in Zero Trust, advanced network segmentation, and designing securing global hybrid-cloud infrastructures (AWS, Azure, GCP with on-prem) * Hands-on experience with security automation and infrastructure-as-code (Terraform, Ansible); automation-first environment * Experience using AI/ML tools to simplify operations and enable auto-healing * Strong understanding of AI and Large Language Model architectures and secure AI-enabled solutions (identity, data privacy, prompt injection, API protection) * Expertise in firewall technologies, VPN, IDS/IPS, NAC, and micro-segmentation * Mastery of routing, switching, TCP/IP; experience with Arista, Juniper, or equivalent hardware * Must be local to SF bay area * Preferred: experience with Palo Alto products (NGFW, Panorama, Prisma Access) * Strong troubleshooting and cross-functional collaboration skills Key requirements *

Requirements

design products and third-party platforms for visibility, protection, and threat intel * Champion network security automation using scripting, CI/CD pipelines, and infrastructure-as-code * Serve as escalation authority during security events and design long-term architectural remediations * Provide technical mentorship and contribute to architectural standards and security-first culture Tasks * 12+ years of progressive enterprise networking and network security engineering experience with leadership in large-scale environments * Deep expertise in Zero Trust, advanced network segmentation, and designing securing global hybrid-cloud infrastructures (AWS, Azure, GCP with on-prem) * Hands-on experience with security automation and infrastructure-as-code (Terraform, Ansible); automation-first environment * Experience using AI/ML tools to simplify operations and enable auto-healing * Strong understanding of AI and Large Language Model architectures and secure AI-enabled solutions (identity, data a aaaaaE_ prompt injection, API protection) * Expertise in firewall technologies, VPN, IDS/IPS, NAC, and micro-segmentation * Mastery of routing, switching, TCP/IP; experience with Arista, Juniper, or equivalent hardware * Must be local to SF bay area * Preferred: experience with Palo Alto products (NGFW, Panorama, Prisma Access) * Strong troubleshooting and cross-functional collaboration skills Key requirements *

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on us.experteer.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

1:42 min

Automating Skupper deployments using Ansible

Alex Soto Alex Soto · WWC 2024

1:34 min

Pivoting careers into specialized platform engineering roles

Xavier Portilla Edo · LIVE

3:50 min

Queues in TCP stacks and continuous network connections

Clemens Vasters Clemens Vasters · WWC 2022

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:19 min

Executing complex workflows using Ansible Automation Platform

Goetz Rieger Goetz Rieger · WWC 2025

Videos

See all

Related articles

See all