Palo Alto Security Engineer, NGFW and SASE
Zappsec Technologies Inc.
About the role
Zappsec designs and operates network security platforms enterprise clients. This role owns the Palo Alto Networks side of that work.
You will configure Panorama, write and tune firewall policy, and migrate existing rule bases onto Palo Alto platforms in AWS and Azure. You will also build and support SASE services through Prisma Access and GlobalProtect.
This is a hands-on engineering role. You will be in the consoles and the CLI daily. You will not manage vendors or coordinate other people's work.
What you will do
Panorama configuration and platform management
- Build and maintain Panorama templates, template stacks, and device groups across client estates.
- Structure pre-rules and post-rules so inheritance behaves predictably as device groups grow.
- Run commit and push workflows, including partial commits and config audits before change windows.
- Manage log collectors, log forwarding profiles, and retention design.
- Schedule and validate dynamic content updates for applications, threats,
and WildFire.
- Plan and execute PAN-OS upgrades across HA pairs, with tested rollback for every step.
- Onboard recent firewalls into Panorama and bring them under central policy control.
Firewall policy engineering
- Write, tune, and document security policy, NAT policy, and decryption policy.
- Convert legacy port-based rules to App-ID rules using Policy Optimizer.
- Identify and remove shadowed, redundant, expired, and unused rules.
- Apply security profile groups covering antivirus, anti-spyware, vulnerability protection, URL filtering, WildFire, file blocking, and DNS Security.
- Maintain address objects, service objects, tags, dynamic address groups, and external dynamic lists against a naming standard.
- Configure User-ID and bind policy to identity groups rather than IP ranges.
- Configure SSL forward proxy and inbound inspection, including certificate handling and decryption exclusions.
📌 Palo Alto Security Engineer (India)
🏢 Zappsec
📍 India