Configuring and tuning security capabilities including Threat Prevention, intrusion prevention system/intrusion detection system (IPS/IDS), Anti-Spyware, Antivirus, WildFire, Domain Name System (DNS) Security, and Secure Sockets Layer/Transport Layer Security (SSL/TLS) decryption policies. Experience integrating Palo Alto Firewalls and Prisma with SIEM/SOAR platforms (e.g., Splunk, Microsoft Sentinel, Palo Alto XSOAR) via log streaming, API connectors, or syslog for threat detection and incident response workflows.