Principal Professional Services Consultant – SASE & Prisma Access
Palo Alto Networks
- Location
- Office - India - Bangalore Bagmane Tech Park
- Work model
- On-Site
- Level
- Principal
- H-1B history
- 168 approvals (FY2023)
- Posted
- Aug 20, 2026
Skills
About this role
Our Mission
At Palo Alto Networks®, we’re united by a shared mission—to protect our digital way of life. We thrive at the intersection of innovation and impact, solving real-world problems with cutting-edge technology and bold thinking. Here, everyone has a voice, and every idea counts. If you’re ready to do the most meaningful work of your career alongside people who are just as passionate as you are, you’re in the right place.
Who We Are
In order to be the cybersecurity partner of choice, we must trailblaze the path and shape the future of our industry. This is something our employees work at each day and is defined by our values: Disruption, Collaboration, Execution, Integrity, and Inclusion. We weave AI into the fabric of everything we do and use it to augment the impact every individual can have. If you are passionate about solving real-world problems and ideating beside the best and the brightest, we invite you to join us! We believe collaboration thrives in person. That’s why most of our teams work from the office full time, with flexibility when it’s needed. This model supports real-time problem-solving, stronger relationships, and the kind of precision that drives great outcomes.
Job Summary
Key Responsibilities Architecture & Strategic Consulting Lead the high-level and low-level design (HLD/LLD) of large-scale, global SASE architectures using Palo Alto Networks Prisma Access/ SASE Platform Serve as the primary technical authority and trusted advisor for enterprise clients, guiding C-level executives and network architects through Zero Trust Network Access (ZTNA) transformations. Conduct comprehensive capability assessments, scoping workshops, and whiteboard sessions to align business requirements with secure, scalable technical solutions. Design robust traffic steering, routing, and high-availability frameworks for complex hybrid-cloud and multi-cloud environments. Implementation & Deployment Leadership Oversee and execute the end-to-end deployment of Prisma Access, including Cloud Secure Web Gateway (SWG), Cloud Access Security Broker (CASB), and Firewall as a Service (FWaaS). Integrate SASE solutions with enterprise Identity Providers (IdP) such as Okta, Azure AD, or Ping Identity using SAML/SSO for seamless user authentication. Manage complex migrations from legacy VPNs and on-premises proxy solutions to cloud-native Prisma Access environments. Technical Escalation & Team Mentorship Act as the highest point of technical escalation for complex troubleshooting involving routing (BGP, OSPF), IPsec/SSL VPN tunnels, and performance degradation. Mentor and provide technical guidance to senior and junior consultants, fostering a culture of continuous learning and technical excellence. Develop, standardize, and maintain deployment templates, best practice documentation, and automation scripts to streamline future service deliveries. Architecture & Strategic Consulting Lead the high-level and low-level design (HLD/LLD) of large-scale, global SASE architectures using Palo Alto Networks Prisma Access/ SASE Platform Serve as the primary technical authority and trusted advisor for enterprise clients, guiding C-level executives and network architects through Zero Trust Network Access (ZTNA) transformations. Conduct comprehensive capability assessments, scoping workshops, and whiteboard sessions to align business requirements with secure, scalable technical solutions. Design robust traffic steering, routing, and high-availability frameworks for complex hybrid-cloud and multi-cloud environments. Implementation & Deployment Leadership Oversee and execute the end-to-end deployment of Prisma Access, including Cloud Secure Web Gateway (SWG), Cloud Access Security Broker (CASB), and Firewall as a Service (FWaaS). Integrate SASE solutions with enterprise Identity Providers (IdP) such as Okta, Azure AD, or Ping Identity using SAML/SSO for seamless user authentication. Manage complex migrations from legacy VPNs and