Cyber Palo Alto Networks Security Engineer/ Senior Consultant, Strategy, Growth, and Transformation

Deloitte T.T.L.
Minneapolis, MN, United States
3 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Working hours
Regular working hours

Tech stack

Microsoft Access Amazon Web Services Spyware Antivirus Softwares Microsoft Azure Cloud Computing Cyber Security Domain Name System Security Extensions Intrusion Detection and Prevention Intrusion Detection Systems Python (Programming Language) Network Security
+10 more
Ping (Networking Utility) Azure Active Directory Ansible Zero Trust Network Access Security Information and Event Management Google Cloud Okta Multi-Cloud Palo Alto Networks Terraform

Job description

Experteer Overview As a Senior Consultant, you help modernize client network security by delivering cloud-delivered zero trust architectures. You’ll work on Palo Alto Networks technologies across on-premises and multi-cloud environments, shaping secure transformations for enterprise clients. Your role blends design, deployment, and optimization with integration into SIEM/SOAR and automation tooling. You’ll collaborate with cross-functional teams to drive secure, scalable outcomes and influence security strategy for complex environments. This role offers impact at scale within Deloitte’s Cyber enterprise security practice. Compensation / Benefits * Design, deploy, and manage Palo Alto NGFW across on-premises and cloud (AWS, Azure, GCP) * Implement and optimize Prisma Access capabilities (GlobalProtect, Prisma Agent, Prisma Browser) * Administer Panorama and Strata Cloud Manager for centralized policy management and visibility * Configure and tune Threat Prevention, IPS/IDS, Anti-Spyware, Antivirus, WildFire, DNS Security, and SSL/TLS decryption policies * Develop client solution designs integrating Palo Alto platforms with SIEM/SOAR and identity tools; support automation via Terraform, Ansible, or Python Tasks * BA/BS in a technical field * PCNSE certification * 5+ years in network security engineering with Palo Alto tech depth * 5+ years deploying NGFW in on-prem and cloud (AWS, Azure, GCP) * 3+ years Prisma Access design/deployment (GlobalProtect, Prisma Agent, Prisma Browser) * 3+ years Panorama and Strata Cloud Manager experience * 3+ years configuring Threat Prevention features (IPS/IDS, Anti-Spyware, Antivirus, WildFire, DNS Security) * 3+ years SSL/TLS decryption policy implementation * 3+ years security policy design and lifecycle management * 3+ years cloud provider security toolsets and VM-Series in cloud * Ability to travel up to 50% * Preferred: advanced cybersecurity certs; automation tooling experience; SIEM/SOAR integration * Familiarity with identity providers (Okta, Azure AD, Ping Identity) and SASE/Zero Trust concepts Key requirements * discretionary annual incentive program * reasonable accommodations * global career opportunities * professional development * mentorship * diverse and inclusive culture

Requirements

_ Antivirus, WildFire, DNS Security, and SSL/TLS decryption policies * Develop client solution designs integrating Palo Alto platforms with SIEM/SOAR and identity tools; support automation via Terraform, Ansible, or Python Tasks * BA/BS in a technical field * PCNSE certification * 5+ years in network security engineering with Palo Alto tech depth * 5+ years deploying NGFW in on-prem and cloud (AWS, Azure, GCP) * 3+ years Prisma Access design/deployment (GlobalProtect, Prisma Agent, Prisma Browser) * 3+ years Panorama and Strata Cloud Manager experience * 3+ years configuring Threat Prevention features (IPS/IDS, Anti-Spyware, Antivirus, WildFire, DNS Security) * 3+ years SSL/TLS decryption policy implementation * 3+ years security policy design and lifecycle management * 3+ years cloud provider security toolsets and VM-Series in cloud * Ability to travel up to 50% * Preferred: advanced cybersecurity certs; automation tooling experience; SIEM/SOAR integration * Familiarity with identity providers (Okta, Azure AD, Ping Identity) and SASE/Zero Trust concepts Key requirements * discretionary annual incentive program * reasonable accommodations * global career opportunities * professional development * mentorship * diverse and inclusive culture

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on us.experteer.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

1:42 min

Automating Skupper deployments using Ansible

Alex Soto Alex Soto · World Congress 2024

4:37 min

Architecting single sign-on flows across multiple application domains

Gift Egwuenu · World Congress 2023

3:19 min

Executing complex workflows using Ansible Automation Platform

Goetz Rieger Goetz Rieger · World Congress 2025

1:34 min

Pivoting careers into specialized platform engineering roles

Xavier Portilla Edo · LIVE

Videos

See all

Related articles

See all