
Senior Staff Cloud Security Engineer
Palo Alto Networks16 days ago
Bengaluru, IndiaStaff+
Responsibilities
- Provide advanced operations and engineering support for critical application and security infrastructure on-premises and in the cloud.
- Assess and review IT and production cloud infrastructure, appliances, services, security posture, and access policies.
- Design and implement Zero Trust network architecture, including network and identity segmentation.
- Develop SOAR automation and integrate security workflows with infrastructure tools.
- Develop and maintain infrastructure security baselines for virtual machines, containers, and network devices using CIS Benchmarks, NIST, and internal standards.
- Prioritize and respond to critical vulnerabilities and data exposures using risk mitigation strategies.
- Support incident response, containment, forensic investigation, root cause analysis, and post-incident documentation.
- Perform firewall rule and policy reviews aligned with access requirements, Zero Trust, and least-privilege principles.
- Manage certificate lifecycles, PKI, TLS, mutual authentication, operating-system hardening, configuration management, and secure access controls.
- Contribute to governance, risk, and compliance activities, including audits, third-party risk assessments, and evidence collection for SOC 2, ISO 27001, and FedRAMP.
Requirements
- 8–10 years of hands-on experience with network and infrastructure security technologies.
- 5+ years of experience with firewall technologies, including Palo Alto Networks Next-Generation Firewalls and security rule evaluation.
- 5+ years of experience managing and securing AWS, Google Cloud Platform, and Microsoft Azure environments and multi-cloud architectures.
- Experience designing, building, and maintaining scalable cloud infrastructure and secure cloud-native applications using infrastructure-as-code principles.
- Strong knowledge of IP networking, including routing, switching, VPNs, DNS, NAT, load balancing, and wireless networking.
- Experience securing virtualized and hybrid workloads with platforms such as VMware.
- Experience with REST APIs, Python or Go automation scripting, and security workflow integration.
- Experience with certificate management, PKI, TLS, mutual authentication, OS security hardening, Linux, Windows Server, patching, logging, and CIS/NIST baselines.
- Experience managing Microsoft Active Directory, Group Policy, LDAP integrations, RBAC, and identity federation for hybrid cloud architectures.
- Strong troubleshooting, independent-work, communication, and cross-functional collaboration skills.
- CISSP and AWS or GCP certifications are preferred; PCNSE certification is a plus.
Benefits
- Most teams work from the office full time, with flexibility when needed.
- The company provides reasonable accommodations for qualified individuals with disabilities or special needs.
- The position is not eligible for immigration sponsorship.
About Palo Alto Networks
Palo Alto Networks builds cybersecurity products for enterprises and governments, including next-generation firewalls, cloud security (Prisma Cloud/Prisma Access), and SOC tools (Cortex). It sells subscriptions and appliances with cloud-delivered threat intelligence, securing networks, endpoints, and applications across data centers and public clouds. Founded in 2005 and headquartered in Santa Clara, California, the company is publicly traded on the NYSE under the ticker PANW.