CBTS Logo

CBTS

Network Engineer IV - Palo Alto Prisma

Posted 4 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in United States
97K-132K Annually
Senior level
Remote
Hiring Remotely in United States
97K-132K Annually
Senior level
The Network Engineer IV is responsible for 24x7 support and optimization of enterprise Prisma SASE solutions, managing complex customer environments and incidents, leading technical responses, and collaborating across teams.
The summary above was generated by AI

CBTS serves enterprise and midmarket clients in all industries across the United States and Canada. CBTS combines deep technical expertise with a full suite of flexible technology solutions--including Application Modernization, Managed Hybrid Cloud, Cybersecurity, Unified Communications, and Infrastructure solutions. From developing and deploying modern applications and the secure, scalable platforms on which they run, to managing, monitoring, and optimizing their operations, CBTS delivers comprehensive technology solutions for its clients' transformative business initiatives. For more information, please visit www.cbts.com.

The Network Engineer IV – Palo Alto Prisma is a senior technical engineer and Prisma subject‑matter expert responsible for the 24×7 operational support and optimization of enterprise Prisma SASE solutions, including Prisma SD‑WAN and Prisma Access, within a Managed Services (MS) and Network‑as‑a‑Service (NaaS) environment.

This role serves as a Tier‑3 escalation engineer, supporting complex customer environments across hybrid, cloud, and global networks, while maintaining strong multi‑vendor networking fundamentals and supporting adjacent SASE and SD‑WAN platforms as required.

The engineer directly influences customer satisfaction, service quality, and incident resolution outcomes, and collaborates closely with Managed Services Security, Managed Services Network, Engineering, Presales Architecture, Product, and Service Management teams.


Key Responsibilities

24×7 Operations & Tier‑3 Escalation

  • Participate in a 24×7 on‑call rotation as a Tier‑3 escalation engineer for Prisma SASE.
  • Troubleshoot and resolve complex issues across:
    • Prisma SD‑WAN control and data planes
    • Prisma Access (Remote Networks, Mobile Users, Service Connections)
    • GlobalProtect, IPsec, and cloud‑delivered firewalling
  • Lead high‑severity incident response, customer communications, and root cause analysis (RCA).
  • Act as a technical escalation point during major outages.


Prisma SASE Engineering & Lifecycle Management

  • Lead support efforts of Palo Alto Prisma SASE architectures, including:
    • Prisma SD‑WAN branch and hub designs
    • Prisma Access for ZTNA, SWG, and FWaaS
  • Own the full service lifecycle:
    • Customer onboarding
    • Change management
    • Platform upgrades and migrations
    • Decommissioning
  • Validate and enforce:
    • Security policies
    • Routing and segmentation strategies
    • High availability and resiliency standards


Routing, SD‑WAN & Cloud Networking

  • Support advanced routing implementations:
    • BGP (required) including policy control, filtering, and failover
    • OSPF
  • Enable and support hybrid and cloud connectivity:
    • AWS (VPC, Transit Gateway)
    • Azure (vNET, vWAN, ExpressRoute)
    • Google Cloud Platform (VPC)
  • Ensure optimized traffic steering, SLA adherence, performance, and application visibility.


Security & Zero Trust Networking

  • Support:
    • Zero Trust Network Access (ZTNA)
    • Secure Web Gateway (SWG)
    • Cloud‑delivered firewall policies (FWaaS)
  • Integrate Prisma Access with:
    • Identity providers (SAML, MFA)
    • Remote and mobile user access models
  • Partner with security teams to align network enforcement with enterprise security posture.


Automation, Tooling & Operational Maturity

  • Contribute to automation and standardization using:
    • APIs, Python, Ansible, or Terraform (preferred)
  • Improve observability through:
    • Prisma dashboards
    • Monitoring platforms (e.g., LogicMonitor, SNMP, API‑based telemetry)
  • Develop and maintain:
    • SOPs and operational runbooks
    • Troubleshooting and escalation guides
    • Service readiness documentation for new Prisma releases
  • Mentor Tier‑1 and Tier‑2 engineers.
  • Collaborate with Architecture, Product, and Service Management teams to evolve the Prisma SASE managed offering.


Required Technical Skills

Prisma SASE (Core Focus)

  • Hands‑on expertise with:
    • Prisma SD‑WAN
    • Prisma Access
  • Strong understanding of:
    • Cloud‑delivered security architectures
    • SD‑WAN overlays, underlays, and service insertion models
    • Traffic steering and policy enforcement


Networking Fundamentals

  • Advanced WAN and routing expertise:
    • BGP (required)
    • OSPF
  • Strong knowledge of:
    • High availability and redundancy design
    • QoS and application‑aware routing
    • NAT and firewall concepts
    • TCP/IP and dynamic routing protocols


Multi‑Vendor Networking Awareness

Experience with one or more of the following (Prisma remains the primary focus):

  • Fortinet Secure SD‑WAN / FortiSASE
  • Cisco SD‑WAN, Meraki
  • VMware VeloCloud
  • Juniper Mist / SSR
  • Ability to translate architectures and concepts across vendors


Qualifications & Experience

  • 10+ years of hands‑on network engineering experience.
  • Strong experience with configuration and support of:
    • Routers, switches, firewalls, hubs, and WAN infrastructure
  • Experience with hardware and software firewalls:
    • Palo Alto, Fortinet, Check Point
  • Prior experience in network design or sales engineering is a plus.
  • Proficiency with:
    • Network monitoring and performance analysis tools
    • Visio for detailed network diagrams
  • Familiarity with:
    • Wireless technologies and site surveys
    • Security intelligence sources (e.g., CERT, BugTraq)
  • Palo Alto Networks Certified SD-WAN Engineer required.
  • Palo Alto Networks Certified Security Service Edge Engineer required.
  • Palo Alto Prisma Certified Cloud Security Engineer (PCCSE) highly recommended.
  • Cisco certifications (CCNP or CCIE) highly recommended


Education

  • Bachelor’s degree in a related field, or equivalent practical experience.

Supervisory Responsibilities

  • None.

#LI-PK1 #LI-REMOTE #LI_NETWORKENGINEER

Due to U.S. Government requirements applicable to foreign-owned telecommunications providers, non-US citizens may be required to submit to an extensive government agency background check which will necessitate disclosure of sensitive Personally Identifiable Information.

Top Skills

Ansible
APIs
AWS
Azure
Google Cloud Platform
Prisma Access
Prisma Sd-Wan
Python
Terraform

Similar Jobs

An Hour Ago
In-Office or Remote
Boston, MA, USA
Mid level
Mid level
Artificial Intelligence • Fintech • Information Technology • Logistics • Payments • Business Intelligence • Generative AI
The Proposal Leader manages the lifecycle of RFX bids, coordinates proposal teams, and ensures compliance and quality in submissions while leveraging technology to improve processes.
Top Skills: Google Gemini AiLoopio
An Hour Ago
Remote or Hybrid
Austin, TX, USA
Junior
Junior
Information Technology • Productivity • Software • Infrastructure as a Service (IaaS)
As a Regional Marketing Coordinator, you will manage field events, coordinate logistics, and collaborate with sales and marketing teams on strategies to drive demand generation efforts.
Top Skills: AsanaMicrosoft SuitePardotSalesforceZoom
An Hour Ago
Remote or Hybrid
Austin, TX, USA
Junior
Junior
Information Technology • Productivity • Software • Infrastructure as a Service (IaaS)
The Regional Marketing Coordinator will execute field events, manage logistics, collaborate with teams, and optimize communication for effective demand generation.
Top Skills: AsanaMicrosoft SuitePardotSalesforceZoom

What you need to know about the NYC Tech Scene

As the undisputed financial capital of the world, New York City is an epicenter of startup funding activity. The city has a thriving fintech scene and is a major player in verticals ranging from AI to biotech, cybersecurity and digital media. It also has universities like NYU, Columbia and Cornell Tech attracting students and researchers from across the globe, providing the ecosystem with a constant influx of world-class talent. And its East Coast location and three international airports make it a perfect spot for European companies establishing a foothold in the United States.

Key Facts About NYC Tech

  • Number of Tech Workers: 549,200; 6% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Capgemini, Bloomberg, IBM, Spotify
  • Key Industries: Artificial intelligence, Fintech
  • Funding Landscape: $25.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Greycroft, Thrive Capital, Union Square Ventures, FirstMark Capital, Tiger Global Management, Tribeca Venture Partners, Insight Partners, Two Sigma Ventures
  • Research Centers and Universities: Columbia University, New York University, Fordham University, CUNY, AI Now Institute, Flatiron Institute, C.N. Yang Institute for Theoretical Physics, NASA Space Radiation Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account