CrawlJobs Logo

Prisma Access Engineer

boozallen.com Logo

Booz Allen Hamilton

Location Icon

Location:
United States , Fort Meade

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

99000.00 - 225000.00 USD / Year

Job Description:

Work with clients and peers to build and maintain a high performing, cloud-based zero-trust network access (ZTNA) capability based on Palo Alto’s Prisma Access solution. Develop highly scalable and resilient solutions to meet our client’s strategic goals and operational needs, including implementation of user- and device-based conditional network access, network micro-segmentation, and organizational-specific network access policy analysis. Leverage expertise in network security, routing, and switching by developing the next generation of cloud-based, zero trust network access solutions.

Job Responsibility:

  • Work with clients and peers to build and maintain a high performing, cloud-based zero-trust network access (ZTNA) capability based on Palo Alto’s Prisma Access solution
  • Develop highly scalable and resilient solutions to meet our client’s strategic goals and operational needs, including implementation of user- and device-based conditional network access, network micro-segmentation, and organizational-specific network access policy analysis
  • Leverage expertise in network security, routing, and switching by developing the next generation of cloud-based, zero trust network access solutions

Requirements:

  • 4+ years of experience with Enterprise Architecture development
  • 2+ years of experience administering Palo Alto Firewalls
  • 2+ years of experience supporting DoD enterprise architecture
  • 2+ years of experience fielding customer requirements and turning them into IT solutions
  • Experience with designing, deploying, and advanced support of multi-protocol IP backbone and access networks
  • Knowledge of cryptography protocols and standards, including TLS, mTLS, hashing algorithms, and Public Key Infrastructure (PKI)
  • Knowledge of federal compliance standards, including NIST 800-53, FIPS, DoD STIG, and FedRAMP
  • Ability to engage with DoD stakeholders to support enterprise architecture development
  • Secret clearance
  • HS diploma or GED

Nice to have:

  • Experience with Palo Alto Prisma access
  • Experience with Palo Alto GlobalProtect
  • Experience using Office 365 applications and Teams collaboration
  • Experience interacting with tools through RDP, web-based UI, SSH, and CLI
  • Experience with McAfee, Tenable, and other security products
  • Experience with major cloud service providers such as Azure and AWS
  • Knowledge of Linux or UNIX environments, including navigating and troubleshooting basic OS issues
  • Knowledge of networking protocols
  • Bachelor’s degree in Computer Science or Engineering
  • DoD 8750 IAT Level II Certification
What we offer:
  • health, life, disability, financial, and retirement benefits
  • paid leave
  • professional development
  • tuition assistance
  • work-life programs
  • dependent care
  • recognition awards program

Additional Information:

Job Posted:
January 30, 2026

Work Type:
Remote work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Prisma Access Engineer

New

Customer Success Engineer - Prisma Access

As a Customer Success Engineer (CSE) at Palo Alto Networks, you will play a stra...
Location
Location
United States , Texas
Salary
Salary:
86000.00 - 139500.00 USD / Year
paloaltonetworks.it Logo
Palo Alto Networks Italia
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of industry hands-on experience with deep expertise in network security, cloud infrastructure, and related technologies
  • Advanced knowledge of SASE, SD-WAN, NGFW, ADEM and sophisticated routing protocols such as BGP
  • Proven track record in driving product adoption, leading complex feature implementations, and delivering advanced training programs
  • Ability to translate technical requirements into actionable plans, guiding customers through advanced use cases
  • Demonstrated ability to build and maintain strong relationships with key stakeholders, including executive-level contacts
  • High-level consultative skills, capable of influencing decisions and driving customer success strategies
  • Advanced understanding of TCP/IP, SSL, IPSec, PKI, and advanced troubleshooting tools like tcpdump & Wireshark
  • Work experience should include 4+ years of hands-on designing, deploying, and managing large enterprise networks in real time
  • Detail understanding of NoC (Network Operations Center) and SoC (Security Operations Center) day-to-day operational requirements in building and maintaining a secure network
  • Detailed working knowledge of network infrastructure and security, TCP/IP, BGP, NGFW, SSL/IPSec VPNs
Job Responsibility
Job Responsibility
  • Provide advanced product-level expertise, leading complex deployments and resolving intricate technical challenges
  • Serve as the go-to expert for SASE products, guiding customers through sophisticated integrations and customizations
  • Proactively communicate new features and best practices, ensuring customers are leveraging the full capabilities of Palo Alto Networks solutions
  • Lead efforts to drive product adoption, conducting in-depth training sessions, and workshops tailored to customer needs
  • Assess and address gaps in deployment and best practices, translating them into strategic action plans for improvement
  • Ensure customers achieve operational excellence by fully adopting and optimizing new features
  • Act as a strategic advisor, influencing key stakeholders at various levels, including C-suite executives
  • Manage complex customer engagements, collaborating with account teams to develop and execute high-touch delivery strategies
  • Lead customer escalations, coordinating with internal teams and resources to ensure timely and effective resolution
What we offer
What we offer
  • restricted stock units
  • bonus
  • Fulltime
Read More
Arrow Right

Network and Cloud Infrastructure Engineer

Two (2) years of experience working with/for state agencies. Looking for local o...
Location
Location
United States , Sacramento
Salary
Salary:
Not provided
enormousenterprise.com Logo
Enormous Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Two (2) years of experience working with/for state agencies
  • Five (5) years of working experience in: Network Designing, deploying and advanced support of multi-protocol IP backbone and access networks (running OSPF, SD-WAN, Fiber ring, Site-to-Site VPN, Layer 3 Switching, Remote access VPN, Prisma)
  • VMWare 8.5 and NSX
  • Planning network integration and migrations
  • Design and implement layer 1, 2 and 3 network solutions
  • Deploying and operating HPE Aruba switches and wireless controllers
  • Circuit deployment standards and proper implementation procedures for business needs
  • Two (2) years of technical experience in configuration and support of the HPE Aruba ClearPass Policy Manager
  • Two (2) years of technical experience in using Azure cloud technologies for development and maintenance of the network infrastructure and VMWare NSX
  • Three (3) years of work experience in: Troubleshooting and resolving complex routing and switching problems in an IP-based carrier network
Read More
Arrow Right

Network and Security Architect - SASE

We are seeking a highly skilled and experienced Network and Security Architect w...
Location
Location
Poland , Łódź
Salary
Salary:
Not provided
https://www.bosch.pl/ Logo
Robert Bosch Sp. z o.o.
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years of progressive experience in network and security architecture, with a strong focus on cloud security
  • 5+ years of hands-on experience designing, deploying, and managing large-scale ZTNA and SASE solutions in enterprise environments
  • Deep understanding and practical experience with leading SASE vendor platforms (e.g., Zscaler, Palo Alto Networks Prisma Access, Fortinet FortiSASE, Netskope, etc.)
  • Proven expertise in Zero Trust principles and their practical implementation across various layers (identity, device, application, data)
  • Strong knowledge of networking protocols (TCP/IP, BGP, OSPF, DNS, HTTP/S), VPN technologies (IPsec, SSL VPN), and network security concepts (firewalls, IDS/IPS, WAF)
  • Experience with cloud platforms (Azure, AWS, GCP) and their security services
  • Proficiency in identity and access management (IAM) concepts and technologies (SAML, OAuth, OpenID Connect, MFA)
  • Excellent analytical, problem-solving, and decision-making skills
  • Strong communication, presentation, and interpersonal skills with the ability to influence and persuade stakeholders at all levels
  • Ability to work independently and as part of a global, cross-functional team
Job Responsibility
Job Responsibility
  • Lead the design, development, and evolution of Bosch's global ZTNA and SASE architecture, ensuring alignment with industry best practices, regulatory requirements, and Bosch's security policies
  • Define architectural patterns, standards, and blueprints for ZTNA and SASE components, including Secure Web Gateway (SWG), Cloud Access Security Broker (CASB), Firewall-as-a-Service (FWaaS), Zero Trust Network Access (ZTNA), Data Loss Prevention (DLP), and advanced threat protection
  • Evaluate and recommend new technologies, vendors, and solutions within the ZTNA/SASE ecosystem to enhance Bosch's security capabilities and optimize performance
  • Develop and maintain the architectural roadmap for ZTNA and SASE, forecasting future needs and anticipating technological shifts
  • Oversee the end-to-end deployment of ZTNA and SASE solutions, including planning, design, implementation, testing, and go-live
  • Collaborate with network engineering, security operations, application development, and business units to ensure seamless integration of ZTNA/SASE with existing IT infrastructure and applications
  • Define integration strategies for identity providers (e.g., Azure AD), endpoint security solutions, and other security tools
  • Provide expert guidance and technical leadership to implementation teams and external vendors
  • Translate high-level security requirements into detailed ZTNA and SASE policies, rules, and configurations
  • Develop and enforce security standards and guidelines for secure access, data protection, and threat prevention within the SASE framework
What we offer
What we offer
  • Competitive salary + annual bonus
  • Hybrid work with flexible working hours
  • Referral Bonus Program
  • Copyright costs for IT employees
  • Complex environment of working, professional support and possibility to share knowledge and best practices
  • Ongoing development opportunities in a multinational environment
  • Broad access to professional trainings (incl. language courses), conferences and webinars
  • Private medical care and life insurance
  • Cafeteria System with multiple benefits (incl. MultiSport, shopping vouchers, cinema tickets, etc.)
  • Prepaid Lunch Card
  • Fulltime
Read More
Arrow Right

Staff ETAC Engineer Tooling Development - SASE

In this role within the Product Support team in Global Customer Support (GCS), y...
Location
Location
India , Bengaluru
Salary
Salary:
Not provided
paloaltonetworks.it Logo
Palo Alto Networks Italia
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • B.S./M.S. degree in Computer Science or Engineering
  • Minimum 8-10 years experience working in a Technical Support, SRE/DevOps, Consulting, or Supportability Engineering related role
  • Strong experience working with CI/CD and Agile software development methodologies
  • Experience creating or writing requirements for automation tooling to make troubleshooting easier
  • Good knowledge of networking, firewalling, SD-WAN, and cybersecurity concepts
  • Good written and verbal communication skills
  • Experience with executing tasks thinking about the big picture and scale
  • Previous experience collaborating with highly cross-functional teams and being capable of driving actions and explain / distill complexity with ease
  • Understanding of load balancing technologies and HTTP forwarding with Nginx, HaProxy, and load balancers provided by AWS, Azure, and Google Cloud.
  • Familiarity with virtualization technologies including VMware, KVM, OpenStack, AWS, Google Cloud and Azure.
Job Responsibility
Job Responsibility
  • Lead technical discussions with cross-functional teams, fostering an environment of transparency that ultimately leads to better products. Develop advanced troubleshooting focused tools and scripts to help solve complex customer issues and improve product supportability
  • Help drive and enable ML/AI related projects
  • Own critical and executive level issues partnering primarily with Customer Support and Engineering to provide expertise in identifying and resolving customer issues, which entails working with the TAC case owner and Engineering on a replication or verification and communicating updates
  • Lead in Identifying problems and taking actions to fix them across support and product life cycles
  • Develop and deliver expert level training materials for TAC support, Engineering, and Professional Services teams
  • As GCS Supportability lead, integrate into PLC with Product Management and Engineering teams to provide supportability, observability, and debugging requirements for all new features and enhancements to the Prisma Access platform, features, and new integrations.
  • Identify opportunities and create prototype tools for support efficiencies with built-in tools, diagnostics, telemetry
  • Drive resolution of key supportability issues with Engineering and Product Management
  • Use AI to bring in more efficiencies in your role, and demonstrate the usage through prototyping and vibe-coding
  • Drive process and product improvements based on outputs from lesson learned
Read More
Arrow Right

Manager, Network Architecture and Engineering

Manager, Network Architecture and Engineering is a global technology resource, s...
Location
Location
United States , Racine
Salary
Salary:
Not provided
scjohnson.com Logo
SC Johnson
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in related field
  • Minimum of 5+ years of progressive experience in the Network, Cloud, Security Architecture/Design and Engineering domain in an global environment
  • Technology certification (Cisco, Palo Alto, Microsoft)
  • 5+yrs of Cisco routing & switching experience
  • 5+yrs of Firewall experience
  • Advanced engineering level skills in: Routing, switching and wireless technologies
  • Security protocols and paradigms, including IAM, segmentation, ZTNA, etc.
  • Data Center infrastructure solutions: Cisco (R&S), F5 (LTM, APM, ASM), Palo Alto (NGFW + IDS/IPS functions), Firemon, Infoblox (DDI), Cisco ISE, Campus LAN, and WLAN solutions, also implemented on Cisco products, network segmentation and access control in remote offices
  • Expert level experience, including solutions analysis, design, deployment, and operationalization in: Firewalls and related perimeter security appliances
  • Software Defined WAN (SD-WAN) solutions
Job Responsibility
Job Responsibility
  • Developing optimal solution architectures, designing, implementing and transitioning services supporting the SC Johnson global network environment, ensuring maximum uptime and security for the overall business
  • Oversee assigned projects with execution in the network and security domain, cross-functional groups of SCJ Architects/Engineers, and coordinates with Managed Network and Security Service Operations (MNS and MSS) with hands-on intervention providing escalation support in an engineering capacity
  • Mastery of firewall and perimeter network security appliances, including Palo Alto, Cisco, Fortinet, and other vendor solutions
  • Assist in owning the overall network services portfolio (WAN, LAN, WLAN, etc.) to ensure optimum service uptime for the Business, including governing principles for network and security design and deployment
  • Participate and collaborate in Management of assigned projects requiring a network resource and delivering per planned and agreed to dates including the analysis of technical needs, requirements, and the state of the network infrastructure design, integration, and operations
  • Contribute to the Strategic Network Project Portfolio and ensuring necessary hardware, software, and related tools are provided for successful delivery of the Network Technology Roadmap
  • Act, contribute and collaborate as a liaison to the Global Information Security team regarding the global network security posture, policies, and procedures, as applied to solutions, products, and designs in the infrastructure domain
  • Continuously update and improve skills and networking knowledge through training, self-study and genuine curiosity
  • Ensure the network just works, and automated monitoring, detection, and response when it doesn’t
What we offer
What we offer
  • Remote work available once a week for eligible employees
  • Role is eligible for domestic relocation
  • Total compensation packages are at or above industry levels
  • Packages may include bonuses, long-term incentives, matching 401(k) contributions and profit sharing based on company profitability, job level and years of service
  • Subsidized health care plans
  • Maternity/paternity/adoption leave
  • Flexible work arrangements
  • Vacation purchase options
  • Recreation and fitness centers
  • Childcare
  • Fulltime
Read More
Arrow Right

Senior Network Engineer

As a Senior Network Engineer, your core purpose is to keep ICEYE’s global networ...
Location
Location
Finland , Espoo
Salary
Salary:
Not provided
iceye.com Logo
ICEYE
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Enterprise Networking: Advanced knowledge of routing and switching (BGP, OSPF, EIGRP) and network operating systems (JUNOS, Cisco IOS)
  • Firewall Management: Deep hands-on experience with next-generation firewalls, especially Palo Alto, and strong understanding of network security and access control models
  • Network Automation: Ability to use scripting (Python, Perl) to automate network tasks and monitoring
  • Cloud and SASE Networking: Experience with cloud networking (AWS, Azure) and Secure Access Service Edge (SASE) solutions such as Palo Alto Prisma Access
  • Performance Monitoring: Skilled in using diagnostic and monitoring tools (e.g., SolarWinds) to ensure optimal network health and reliability
  • Intellectual Firepower: Rapidly comprehends, structures and synthesizes complex information, draws accurate conclusions, and communicates them with clarity
  • Passion & Work Ethic: Brings sustained motivation, resilience, and high personal standards to every challenge
  • Ownership & Action: Assumes full accountability for outcomes, acting decisively, and ensuring commitments are delivered
  • Team Player: Works collaboratively across teams, contributing to shared success, and engaging in constructive debate
  • Integrity & Growth Mindset: Operates with transparency and humility, learns from setbacks, and actively seeks opportunities to grow
Job Responsibility
Job Responsibility
  • Global Network Reliability: Ensuring ICEYE’s global network—connecting satellites, ground stations, and offices—runs securely and without interruption
  • Infrastructure Design and Delivery: Designing and implementing robust network architectures that support business expansion, new sites, and mission-critical operations
  • Operational Maintenance and Optimization: Maintaining, patching, and improving the existing network infrastructure to enhance performance, resilience, and scalability
  • Incident Response and Troubleshooting: Rapidly identifying, diagnosing, and resolving complex network issues across wired, wireless, and cloud environments to minimize downtime
  • Documentation and Process Improvement: Creating and maintaining clear network documentation, standards, and processes that enable consistent operation and knowledge sharing
What we offer
What we offer
  • Occupational healthcare, occupational, and accident insurance
  • A yearly benefit budget to spend as you wish (i.e. on sport, transport, bike benefit, wellness, lunch, etc.)
  • Phone subscription with iPhone of choice
  • Relocation support (i.e. flight tickets, accommodation, relocation agency support)
  • Time for self-development, research, training, conferences, or certification schemes
  • Inspiring and collaborating offices and silent workspaces enable you to focus
  • Fulltime
Read More
Arrow Right
New

Network Systems Engineer

iCapital is seeking a highly skilled and motivated Network Systems Engineer to l...
Location
Location
United States , Greenwich; New York
Salary
Salary:
120000.00 - 150000.00 USD / Year
icapital.com Logo
iCapital Network
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Expertise in Cisco Meraki, Palo Alto Prisma, Fortinet, and Genesys platforms
  • Strong knowledge of LAN/WAN, SD-WAN, VPN, wireless networks, and network security appliances
  • Hands-on experience with network monitoring, troubleshooting, and performance optimization
  • Proficiency in network protocols (TCP/IP, BGP, OSPF, VLANs, QoS, SIP, RTP, VoIP)
  • Familiarity with cloud networking (AWS, Azure), virtualization, and unified communications (Zoom, Teams)
  • Experience with network documentation tools (IPAM, Visio) and change control processes
Job Responsibility
Job Responsibility
  • Manage iCapital’s SaaS phone platforms, including Genesys, Vonage, Teams, and Zoom
  • Design and administer the Meraki portal, including all switches and wireless access points (WAPs)
  • Design and manage Palo Alto Prisma and firewalls across all iCapital sites (Palo Alto, Fortinet)
  • Configure and maintain all required VPNs for iCapital’s infrastructure
  • Perform firmware upgrades and patching for all network equipment
  • Maintain and update comprehensive network documentation, including IP and ISP information
  • Document and manage IP address management (IPAM) and network diagrams (Visio)
  • Provide escalation support to the Service Desk team for network/system-related requests
  • Handle or triage assigned projects and tasks related to the Corporate IT team
  • Represent the Corporate IT team in cross-department network infrastructure meetings
What we offer
What we offer
  • Equity for all full-time employees
  • Annual performance bonus
  • Employer matched retirement plan
  • Generously subsidized healthcare with 100% employer paid dental, vision, telemedicine, and virtual mental health counseling
  • Parental leave
  • Unlimited paid time off (PTO)
  • Fulltime
Read More
Arrow Right
New

Cloud Security Lead

Join us at the forefront of AI and cloud-native security as we work to secure on...
Location
Location
United States , Foster City
Salary
Salary:
220000.00 - 325000.00 USD / Year
replit.com Logo
Replit
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 7+ years of experience in cloud engineering, with 3+ years in a senior or lead role
  • Hands-on experience with CSPM tools (Wiz, Lacework, Prisma, Orca, SCC, etc.)
  • Deep expertise in GCP security (IAM, VPC, KMS, GKE, Cloud Logging)
  • Experience securing and governing SaaS platforms and identity integrations
  • Operational experience with infrastructure vulnerability management across cloud and container environments
  • Working knowledge of AWS and/or Azure security services and configurations
  • Experience with container and Kubernetes security across GKE, EKS, or AKS
  • Strong IaC security experience with Terraform, Pulumi, or similar tooling
  • Familiarity with compliance standards (SOC 2, ISO 27001, PCI DSS)
Job Responsibility
Job Responsibility
  • Lead configuration hardening across GCP, with additional oversight of workloads and integrations running in AWS and Azure
  • Own and optimize CSPM platforms across multi-cloud environments—establishing configuration baselines, guardrails, and remediation workflows
  • Secure critical SaaS platforms, ensuring proper configurations, access controls, and engineering integrations
  • Lead infrastructure vulnerability management across multi-cloud systems, containers, registries, and platform services
  • Enhance security across containerized and Kubernetes (GKE/EKS/AKS) workloads, including runtime protections, network policies, and workload identity
  • Assess secure logging configurations across cloud/SaaS providers, ensuring audit logs, retention, and routing meet monitoring and architecture needs
  • Partner with engineering teams to make services secure by default, embedding security into development workflows, CI/CD pipelines, and cloud-native deployments
  • Collaborate with Security Monitoring, Compliance/GRC, Architecture, DevOps, Platform Engineering, and ML Infrastructure
  • Participate in communicating security advisories, best practices, and updates to Replit’s customers
  • Support incident investigations as a cloud security subject-matter expert
What we offer
What we offer
  • Competitive Salary & Equity
  • 401(k) Program with a 4% match
  • Health, Dental, Vision and Life Insurance
  • Short Term and Long Term Disability
  • Paid Parental, Medical, Caregiver Leave
  • Commuter Benefits
  • Monthly Wellness Stipend
  • Autonomous Work Environment
  • In Office Set-Up Reimbursement
  • Flexible Time Off (FTO) + Holidays
  • Fulltime
Read More
Arrow Right