Principal Enterprise Network Security Architect

Palo Alto Networks - Santa Clara, CA

Hiring: Principal Enterprise Network Security Architect Company: Palo Alto Networks Location: Santa Clara, CA Job Posted Time: 2026-09-16 14:34:59 Employment Type: Full-time / Hybrid Target Skills & Keywords : AWS, Ansible, Azure, CI/CD, GCP, LLM, Large Language Model, Regulatory Compliance, TCP/IP, Terraform, VPN, Zero Trust About the job Experience: •12+ years of progressive experience in large enterprise networking and network security engineering, with a demonstrable track record of leadership in large-scale environments. Required Skills: •Own the architectural blueprint and governance for our global network security footprint, ensuring scalability across hybrid environments. •Define, develop, and enforce enterprise-wide security policies, including segmentation, access control, and traffic inspection, serving as a subject matter expert. •Strategically drive integration of security into all layers of network design, proactively collaborating with security, infrastructure, and IT teams to ensure alignment. •Proactively identify vulnerabilities and lead complex remediation efforts across on-prem and cloud environments, simplifying complex problems to establish best practices. •Leverage Palo Alto Networks products and third-party platforms to enhance network visibility, protection, and threat intelligence. •Champion and implement advanced network security automation using scripting, CI/CD pipelines, and infrastructure-as-code best practices, setting the technical direction. •Serve as the ultimate escalation authority during critical security events, designing long-term architectural remediations to ensure the same issue never happens twice. •Provide technical mentorship to senior engineers, contribute significantly to our architectural standards, and foster a strong security-first culture. Qualifications: •Bachelors degree with 12+ years of progressive experience in large enterprise networking and network security engineering, with a demonstrable track record of leadership in large-scale environments. •Deep expertise in Zero Trust architecture, advanced network segmentation, and Proven experience designing and securing massive, global hybrid-cloud infrastructures (AWS, Azure, or GCP paired with on-prem). •Extensive hands-on experience architecting and implementing security automation and infrastructure-as-code frameworks Advanced capability in writing infrastructure-as-code (Terraform, Ansible) and building CI/CD pipelines. This is an automation-first environment. •In-depth knowledge of AI and Large Language Model (LLM) architectures, including AI application components, data flows, APIs, and model integration. Ability to design and secure AI-enabled solutions by addressing identity and access management, data privacy, prompt injection, model security, API protection, governance, and regulatory compliance •Exceptional expertise in firewall technologies, VPN, IDS/IPS, NAC, and advanced micro segmentation strategies. •Mastery of routing, switching, and TCP/IP protocols; significant experience with Arista, Juniper, or equivalent enterprise-grade network hardware. •Must be local to SF bay area or willing to relocate on their own •A deep and proven background with Palo Alto Networks products and platforms (e.g., NGFW, Panorama, Prisma Access). •Superior troubleshooting and analytical skills to diagnose and resolve the most complex security issues. •Exceptional communication and technical leadership skills with a proven ability to drive cross-functional collaboration and influence strategic decisions. Compensation: •$154,000 - $249,500 / year •Flexible work environment (work from home / hybrid options) •The offered compensation may also include restricted stock units and a bonus Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!