> Markdown version of [/jobs/ext/3045250-palo-alto-networks-professional-services-consultant](https://www.wearedevelopers.com/jobs/ext/3045250-palo-alto-networks-professional-services-consultant). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Palo Alto Networks Professional Services Consultant - **Company:** CELESTIAL INNOVATIONS GROUP, LLC - **Location:** United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Xacta, Kubernetes Security, Microsoft Access, Application Programming Interfaces (APIs), Amazon Web Services, Microsoft Azure, Border Gateway Protocol, Cloud Computing, Cloud Computing Security, Continuous Integration, Intrusion Detection and Prevention, Virtual Private Networks (VPN), Network Security, Open Shortest Path First (OSPF), Ansible, Zero Trust Network Access, SAP Sales and Distribution, User-Centered Design, Wide Area Networks, Google Cloud, SC Clearance, Infrastructure Automation Frameworks, Palo Alto Networks, RSA Archer Platform, Terraform, Open Network Automation Platform, Prisma Cloud Platform - **Published:** September 24, 2026 - **Apply:** https://www.thejobnetwork.com/job/b40891b3-b5df-43ab-b9c7-e0542b9f2784/solutions-consultant-palo-alto-networks ## About the Role * Active (or ability to achieve) PCNSE (Palo Alto Certified Network Security Engineer) certification. * Active (or ability to achieve) PCCSE (Palo Alto Certified Cloud Security Engineer) certification. * Active Palo Alto Networks Prisma Access Specialization. * 5+ years of hands-on experience designing and implementing enterprise network security solutions with Palo Alto Networks technologies. * Deep expertise in Panorama centralized management, policy orchestration, and log management. * Proficiency in Prisma Access architecture including GlobalProtect, service connections, remote network onboarding, and security policy enforcement. * Strong working knowledge of cloud security principles across AWS, Microsoft Azure, and/or Google Cloud Platform. * Demonstrated experience working within federal environments and familiarity with NIST SP 800-53, FedRAMP, FISMA, CMMC, and DoD STIG requirements. * Excellent communication skills with the ability to convey complex technical concepts to both technical teams and executive-level stakeholders. * Must be eligible to obtain and maintain a Public Trust or Secret clearance; existing clearance preferred. Preferred Qualifications * Active DoD Secret or TS/SCI clearance. * Experience with Xacta, eMASS, or other GRC platforms supporting ATO processes. * Professional certifications in cloud platforms: AWS Solutions Architect, Azure Security Engineer, or Google Professional Cloud Security Engineer. * Familiarity with CDM (Continuous Diagnostics and Mitigation) program requirements. * Experience with network automation and infrastructure-as-code tools such as Terraform, Ansible, or Palo Alto Panorama APIs. * Prior experience in a VAR, systems integrator, or managed security services provider (MSSP) environment. Technical Competencies * Network Security + PA-Series NGFW (hardware & VM) + Panorama policy & device management + GlobalProtect VPN & ZTNA + Threat Prevention, WildFire, URL Filtering + BGP, OSPF, SD-WAN routing * Cloud & SASE + Prisma Access (SASE) architecture & deployment + Prisma Cloud CSPM / CWP / CIEM + AWS, Azure, GCP security services + Container & Kubernetes security + CI/CD pipeline security integration ## Description Position Overview Celestial Innovations Group (CIG) is seeking an experienced Palo Alto Networks Professional Services Consultant to support our growing federal and government client portfolio. In this role, you will serve as a trusted security advisor and hands-on technical lead, designing and implementing cutting-edge network and cloud security solutions for civilian, defense, and intelligence community agencies. You will work closely with CIG's delivery team and government stakeholders to ensure that security architectures meet the stringent requirements of federal compliance frameworks including FedRAMP, FISMA, NIST SP 800-53, and CMMC., * Strengthen and grow the CIG Palo Alto Networks services organization, acting as a technical lead and mentor to fellow engineers. * Lead end-to-end design, deployment, and configuration of Palo Alto Networks solutions (NGFW, Panorama, Prisma Access, Prisma Cloud) within secure government environments. * Architect Zero Trust Network Access (ZTNA) frameworks aligned with federal mandates (OMB M-22-09, EO 14028) using Prisma Access and SD-WAN. * Configure and tune next-generation firewall (NGFW) policies, App-ID, User-ID, and Threat Prevention profiles to enforce least-privilege access and protect critical assets. * Implement Prisma Cloud to provide cloud security posture management (CSPM), cloud workload protection (CWP), and compliance monitoring against NIST, CIS, and DoD STIGs. * Conduct security assessments, gap analyses, and architecture reviews, delivering actionable findings and remediation roadmaps to stakeholders. * Develop and maintain security documentation including system security plans (SSPs), standard operating procedures (SOPs), and Authority to Operate (ATO) support artifacts. * Provide mentorship and knowledge transfer to client IT and security teams, building internal capability and ensuring long-term solution sustainability. * Collaborate with CIG's business development and account management teams to identify expansion opportunities, support proposal development, and contribute to solution scoping and estimation. * Engage with Palo Alto Networks federal sales and engineering teams to coordinate pre-sales support, licensing, and product roadmap alignment. * Stay current with the Palo Alto Networks portfolio, emerging threat landscape, and industry best practices, contributing to CIG's internal knowledge base and capability development. ## Related Videos - [Dev & Test in the Cloud? Deploy your cloud environments with Ansible & Terraform](https://www.wearedevelopers.com/videos/1607-dev-test-in-the-cloud-deploy-your-cloud-environments-with-ansible-terraform) - [Infrastructure as Code: The Developer's Secret Weapon](https://www.wearedevelopers.com/videos/1221-infrastructure-as-code-the-developer-s-secret-weapon) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Terraform for Developers](https://www.wearedevelopers.com/videos/3-terraform-for-developers) - [Embracing the Hybrid Cloud: Unlocking Success with Ansible](https://www.wearedevelopers.com/videos/932-embracing-the-hybrid-cloud-unlocking-success-with-ansible) - [Eclipse Che for Infrastructure Automation](https://www.wearedevelopers.com/videos/1611-eclipse-che-for-infrastructure-automation) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Everything a Developer Needs to Know About MCP with Neo4j](https://www.wearedevelopers.com/magazine/604-everything-a-developer-needs-to-know-about-mcp-with-neo4j) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence](https://www.wearedevelopers.com/magazine/736-best-us-ai-conferences-for-ctos-in-2026-build-vs-buy-vendor-evaluation-and-peer-intelligence) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers)