2/21/2023

speaker
Clay Bilby
Head of Investor Relations

Clay Bilby, Good day, everyone, and welcome to Palo Alto Network's fiscal second quarter 2023 earnings conference call. I am Clay Bilby, head of Palo Alto Networks Investor Relations. Please note that this call is being recorded today, Tuesday, February 21st, 2023 at 1.30pm Pacific Time. With me on today's call are Nikesh Arora, our Chairman and Chief Executive Officer, and Deepak Galecha, our Chief Financial Officer. Our Chief Product Officer, Lee Claridge, will join us in the Q&A session following the prepared remarks. You can find the press release and information to supplement today's discussion on our website at investors.paloaltonetworks.com. While there, please click on the link for events and presentations where you will find the investor presentation and supplemental information. During the course of today's call, we will make forward-looking statements and projections regarding the company's business operations and financial performance. These statements made today are subject to risks and uncertainties. We assume no obligation to update them. Please review the press release and our recent SEC filings to see these risks and uncertainties. We will also refer to non-GAAP financial measures. These measures should not be considered a substitute for financial measures prepared in accordance with GAAP. The most directly comparable GAAP financial metrics and reconciliations are in the press release and the appendix of the investor presentation. All results and comparisons are on a fiscal year-over-year basis unless specifically noted otherwise. We would also like to note that management is scheduled to participate in the Morgan Stanley TMT Conference and JMP Securities Technology Conference in March. I will now turn the call over to Nikesh.

speaker
Nikesh Arora
Chairman and CEO

Thank you, Clay. Good afternoon. Thank you, everyone, for joining us today for our earnings call. I'm pleased to report that we had another strong quarter with a balance of top-line growth significant expansion in non-GAAP operating margin and strong free cash flow. Billings and revenue each grew 26% year-over-year. Our RPO grew 39% as we continued to sign large multi-year deals with our customers. We also delivered an acceleration in our operating leverage in Q2 as we focused on driving profitable growth. Our non-GAAP operating income grew 55% year-over-year, supported by a non-GAAP operating margin which exceeded 22% for the quarter. up over 440 basis points year-over-year. This translated to another quarter of profitability on a GAAP basis. We have now been GAAP profitable on a cumulative basis over the last four quarters. In addition, our strong free cash flow generation this quarter also puts us on track to outperform prior guidance. I know many of you are wondering about the macro environment, so I want to start with an update there. There is clearly a tougher macro emerging out there as the Fed continues on its crusade to tame inflation. The changing macro is clearly making business leaders more cautious. Some of our customers are seeing signs of a slight slowdown, while others are less impacted. I, however, feel that we're not done yet, and while not expecting shocks, I do think we will see more cautious activity over the next few quarters. Clearly, caution is abundant, driving more scrutiny, making customers demand more value from their partners. We've seen some projects get delayed or de-scoped, none canceled, while most continue on track. We've always maintained that we expect cybersecurity to be resilient, and we continue to see evidence of that. On the large deal front, this behavior is definitely widespread. For us, this has meant we need to get ahead of this and work closely with our CIO and CISO partners. Not just that, it's creating more conversations around payment terms, discounts, and scopes to deal with purchasing teams, something we've been working with our customers on as well. I'm delighted that based on our field teams getting ahead of this problem early this quarter, we did not see any major deals slip from the quarter. Our deal cadence and quality was consistent with the same quarter last year. On an equally positive note, this environment drives the need for consolidation, not just to generate clear security outcomes, but also to reduce the security vendor sprawl that has been prevalent in our customers' infrastructure and the need for a long-term security strategy based on total cost of ownership and value. We feel fortunate that with our portfolio, we are best positioned to deliver this to our customers. Within our own business, two things have happened. One, we have become more focused on efficiency from early this year. For example, our headcount growth this year is likely to be lower than any of the last three years. At the same time, we do not anticipate slowing down the pace of our development or business outcomes. Deepak and his team have been rigorously inspecting our cost structures across our portfolio to ensure we are set up to deliver consistent gross margins in all areas. This has been one of the major drivers of our improved operating margin, and we hope to continue to improve as we scale. Secondly, as anticipated, supply chain challenges and product have abated significantly versus six months ago. While this is evident in our product gross margins and our overall profitability, there are some lingering impacts which we expect will further abate through the end of this year. Let's also take a moment to discuss hardware growth. Over the last 12 months, a lot of factors have impacted hardware growth, including supply constraints, uneven demand given supply chain impacts and backlog. Additionally, we have noticed our customers continue to be more focused on their cloud, network and security operations transformations and are willing to sweat their hardware assets longer. Underlying all this, we still believe that the industry hardware growth rate is in the low to mid single digits. As all these extraneous factors mitigate over the next few months, we will see the long-term growth gravitate back to those levels. So what does this mean for the second half of this year and beyond? Somewhat counter to the market, we're raising guidance both on top-line metrics and profitability. Of course, this requires the current demand to sustain and for us to maintain a continued focus on execution. We have a unique opportunity in this environment to strengthen our position in the market. Hence, we are investing with an eye towards disciplined growth and positioning ourselves with a partner of choice for customers looking to consolidate. You'll hear more about this from Deepak, but we're raising billings and next-generation security AR guidance on the backs of strength in our software-based and cloud-delivered capabilities. In our hardware pipeline, we're seeing specific transactions that are on track for Q4, which has caused us to shift some forecasted revenue from Q3 to Q4 while maintaining our annual guidance. With all I've said about efficiency and better operations and the impact, we're now guiding to 21.5% to 22% operating margin for fiscal year 2023. Additionally, we're also increasing our cash flow guidance. Consolidation continues to be a key theme with our customers. Of course, customers are not willing to compromise on quality and cybersecurity. Given our market leadership in 13 categories, we are fortunate to be engaged in many such conversations. Those conversations are driving business, and many customers are on a long-term transformation path with us. The number of deals we closed over $1 million grew nearly 20% year-over-year, and the value of these transactions grew nearly 60%. Similarly, the number of greater than $5 million deals grew 84%, and the number of greater than $10 million deals grew over 140%. We saw deal values in these cohorts grow significantly. This continued momentum is critical to us being able to drive platform consolidation. Time and again, we see early millionaire customers become an onboarding ramp to help us drive more cybersecurity value to our customers. Almost all of our $10 million deals involve multiple platforms or an underlying transformation that is driving vendor consolidation. Let's take a look at some of the ways we are driving consolidation. First, With Zero Trust Transformations, we're helping customers standardize their appliances and software firewalls with a broad line of security subscriptions. A Life Sciences customer signed an eight-figure deal to standardize their operations using our next-generation firewalls, VMs, and security subscriptions. In other cases, we're helping customers adopt SASE and software firewalls and consolidate their security stack across our consistent set of offerings driven by hybrid work in securing SaaS apps. A financial services firm recently signed an eight-figure deal with us because they wanted to transform their network and reduce both operational challenges and cost of ownership. They chose us over pure place active competitors because of the breadth of our offering and our comprehensive zero-trust network. Secondly, we're cloud transformations. We're using our Prisma Cloud and Prisma Access capabilities to help customers adopt hyperscale cloud and software as a service. Another financial services firm with a mandate to run over 90% of their apps in the cloud, signed a high eight-figure deal to standardize in both Prisma Access and Prisma Cloud. Lastly, in SOAR transformations, we're using our Cortex platform with XIM to help customers transform their security operations center and retool around high-fidelity data sources, AI, and automation. A retail company started a relationship with us around Unit 42 incident response with an expanse trial and small XDR deployment. They expanded the relationship with a high seven-figure deal to standardize on XDR and XSOAR. These strategic customer relationships and transformations would not have been possible without us building a new security industry paradigm, a paradigm around constant innovation. Our success is driven by investments in innovation and is increasingly clear to us that there is a flywheel at play here. This starts with R&D investment, where we have the largest budget of all dedicated cybersecurity companies, approximately $1 billion in non-GAAP spending on a trailing four-quarter basis. This is two to five times as much as our pure play peers. Our scale also allows us to spread this budget across a larger revenue base and the shared needs of our three platforms. Our R&D investments then translate into a record number of product releases. Our first off major release is number 35, up 59% from the first half of last year. So the key releases in the first half included our flagship Pan OS $11 Nova, our third advanced subscription, advanced Wildfire, our new AI-based SOC platform, XIM, and new modules and updates in Prisma Cloud. This constant innovation is causing industry analysts to take notice. We recently received recognition for leadership in the cloud-native application protection platform category, or CNAP, bringing our total number of active leadership recognitions to 13, which compares to 9 a year ago. All these leadership positions have helped us grow our NGS ARR at 63%. We still believe there is a large untapped time for many of these services, given the robust adoption of advanced software services that we have launched, which are all cloud-delivered, And us being in the early part of the SASE Cloud Genii lifecycle, we feel confident in our future ability to drive in GSARR. Let's take a deeper look at some of the highlights. I'll start with my personal favorite, our network security business. We launched our first SASE capability, Prisma Access, at the end of fiscal year 2019. In the first year, we booked less than $100 million in business. Over our last six quarters, we booked about $1 billion, with our largest deal last quarter being a TCV deal for $40 million for SASE. We now have over 4,000 customers and are growing AR approximately 50%. In Q2, we saw a healthy number of large competitive wins in SASE, and SASE has one of our strongest pipelines looking 12 months out. Beyond the top line traction, we're also seeing improving economics in the business. Two years ago, we showed you how the five-year revenue from a SASE customer compares to an appliance customer. At that time, SASE was about two times higher. Since then, we've added additional value to SASE. We launched autonomous digital experience management in FY22, followed by AIOps and SaaS security posture management this year. AI has the power to transform SASE. Our integrated security services are now all powered by AI to detect and prevent even zero-day attacks. And we'll soon be introducing additional AI-driven capability to transform the user experience when using the platform. We now expect our five-year revenue from a SASE customer to be more than two and a half times that of an appliance customer. We've also seen some improvements in our SASE gross margins over this period as we have scaled and become more efficient. If you go to the other side of our network security portfolio, our software firewall business is going strong. This includes the broadest deployment options for customers, including VM series and CM series, which can run in their data centers or be purchased in the cloud marketplaces, and the first-to-market integrated cloud next-generation firewall offerings for hyperscale clouds. We have the highest market share of any company in this market. We believe it's more than three times of our any closest competitor. The current macro environment is causing more customers to watch their CapEx budget. This shift, along with the fact that customers are transforming the data centers moving to the cloud, is leading more of them to adopt software firewalls. In Q2, the number of deals over $1 million for our software firewalls nearly doubled. And six of our top eight deals in Q2 included software firewalls in our offerings. Moving on to our cloud security business, we continue to make steady progress with Prisma Cloud. Platform enhancements are important to our growth. We released a new API risk profiling capability to enhance our web application security module. This capability helps security teams assess their API attack surface quickly based on more than 200 risk factors, including misconfigurations, exposure to sensitive data, and access privileges. This helps teams prioritize the most significant risks and take preventive measures to address them. We also continue to shift left and focus on security workloads as they are developed, solving our customers' application security challenges. To that end, we closed the acquisition of CIDR and have brought their team under common leadership with our Cloud Code Security team to help bring CIDR's CICD security capability to our platform. After releasing Cloud Code Security a year ago, over 15% of our customer base has adopted these capabilities. Our Cloud Code Security customers in Q2 grew 30% over Q1. A new secret management module launched in December scans code repos used by developers for hard-coded secrets like passwords and API keys to make sure this information is not exposed and used as a vector of attack. We continue to see these new capabilities and enhancements drive an increase in customer module adoption. For example, our customers with two or more modules grew over 40% and customers with four or more modules more than doubled. Credit consumption of Prisma Cloud increased 48% year-over-year. This growth is being driven by new customer additions, customers increasing their cloud footprints, and customers consuming additional modules. While there has been discussion of moderation in cloud consumption in the market, we believe the relatively early stage of cloud security adoption has and will continue to shelter us from this headwind. Before I move on to Cortex and talk about continuing signs of optimism I see in that category, I feel compelled to take a detour towards AI. Clearly, AI has been on everyone's mind given the continued conversation in the tech industry. Most of you know the story of my arrival at Palo Alto Networks. I talked about fragmentation and the need for a solution there, which we have talked a lot about. I also talked about automation and AI. We counted. I used the word AI more times in my first six months at Palo Alto Networks than platform or consolidation. The challenge, as you all know, is that AI has been a data problem and continues to be so. Unlike consumer AI, where we can talk about sonnets and chat GPTs, creative capabilities, and the revolution that is going to drive in search or advertising, its ability to summarize data and continue to amuse and inform us, the demands from AI in enterprise are far more exacting, and so are the returns. In enterprise, AI needs to be clean. It has to have comprehensive data. And in security, especially, it needs to be real-time. So not only do you need to have the best data to create great security outcomes, you also need to be positioned in line to block threats. Let me make a case why with petabytes of data from trillions of events, billions of sessions, hundreds of millions of URLs, and tens of millions of flies flowing through our product across cloud, network, and endpoints daily, we are best positioned to deliver security outcomes using AI machine learning. Palo Alto Network's next-generation firewalls broke through the firewall industry in the early days because of our ability to then deliver next-generation security. These services were driven by our expansive data collection capabilities, EL, or enhanced application logs. We have since applied that capability across our entire network security stack. We estimate that this network security data is just under half the valuable security data that is needed for any AI-driven outcome. There are over 60,000 customers where we can help them use this data. As we conceived Cortex, we built XDR to ensure we collected the best endpoint data across the industry. We acquired and deployed the largest security automation footprint of XOR, but we're not stopping there. We then acquired and integrated Xpans, which looked at vulnerability data from a different and unique perspective. These formed the fundamental building blocks for XIAM. With our leadership position in automation, analytics, and attack surface management, again, we're driving an AI-based SOC transformation. With over 4,500 Cortex customers, we were able to bring what we believe is the next largest set of critical security data that is useful for AI. We applied the same thought and rigor as we built Prisma Cloud, integrating data from all hyperscalers, integrating shift-left data from developers. Slowly and steadily, the Prisma Cloud integration is being built on a stronger foundation of security data. Cloud is becoming an increasingly important contributor to AI, and our 2,000 customers will benefit from it. We have delivered unique AI-based outcomes, including blocking unknown yet malicious websites, command and control domains and files at scale. Also, we have shown in our own security operations center that we can reduce the mean time to detection to seconds and the mean time to respond to minutes. These are all outcomes that cannot be achieved without the data we have and the machine learning expertise we apply. Let's take a look into how we believe this has made us more excited and encouraged us around XIM. In Q2, as part of the Cortex and XIOM platform, we released important new capabilities, including SaaS-enabled XSOAR, delivering a cloud-based interface and expands active attack surface management, allowing our customers to remediate issues discovered using XIOM. We launched XIOM and GA at the end of Q1. So far, we've closed approximately $30 million in business and have a growing pipeline of customers that are looking to transform security operations of the new platform. I think XIM is going to pave the way for us to drive AI-driven security transformations and outcomes. We will continue to work hard with our early customers to drive evolution and success in XIM. I'm extremely positive, perhaps, and cautiously optimistic about XIM. Its early relevance, product market fit, and with the concurrent discussion around AI, it makes me hopeful that this could be the fastest ramp of any security product. We see our first milestone to get into $100 million in bookings faster than Cortex, SASE, or Prisma Cloud in our portfolio. Before I turn the floor over to Deepak, I want to pull all this together and talk about where we're focused as we enter the second half of our fiscal year and beyond. We see a clear roadmap ahead of us. We intend to put our head down and execute. Right now, We're in the process of transforming our business to software-based and cloud deliver offerings. Our revenue, which is increasingly driven by our next-generation security capabilities, is becoming more recurring in nature, and we have an opportunity to own a greater share of our customer cybersecurity budget. This should allow us to sustain high revenue growth for longer. Over the last couple of years, we set in motion a plan to expand our operating margins, including driving scale in our faster-growing businesses. Over the last six months, we've listened to investors who have encouraged us to focus on profitable growth and accelerate incremental leverage in our business. And we made good progress in Q2. We're now well positioned for the second half of the year. We are appreciably raising our margin target for FY23, up 200 basis points from our prior guidance and 250 basis points from our initial FY23 guidance. We believe we can continue to build on this into fiscal year 2024 and beyond, putting us three years ahead of our profitability targets we offered at our last analyst day in September 2021. As Deepak will describe, we believe the combination of sustaining higher top-line growth and focus on efficiency sets out well to build on this base of higher profitability and grow EPS ahead of revenue. I want to emphasize that achieving GAAP profitability is an important milestone for our company. In support of this, we're actively focused on managing our stock-based compensation to continue bringing this down as a percent of our revenue. With that, I'll turn the floor over to Deepak to take you through our details of results and guidance, and then we'll take questions.

speaker
Deepak Galecha
Chief Financial Officer

Thank you, Nikesh, and good afternoon, everyone. For Q2, revenue of $1.66 billion grew 26%. Product revenue grew 15%, while total service revenue grew 29%, with subscription revenue growing 32% and support revenue growing 25%. Moving on to geographies, we saw revenue growth across all theaters, with the Americas growing 22%, EMEA up 35%, and JPAC growing 32%. The strength of our next-generation security capabilities continues to drive our results, with NGS ARR of $2.3 billion growing 63%. Strength was broad-based across all three of our platforms, network security, cloud security, and security operations. We delivered total billings of $2.03 billion, up 26%, and above the high end of our guidance range. Total deferred revenue in Q2 was $7.6 billion, an increase of 39%. Remaining performance obligation, or RPO, was $8.8 billion, increasing 39%, with current RPO representing about half of our RPO, similar to recent quarters. Our non-GAAP earnings per share was significantly ahead of our guidance, and this metric, as well as our trailing 12-month adjusted free cash flow, accelerated. Non-GAAP EPS of $1.05 grew 81% year-over-year, while trailing 12-month adjusted free cash flow of $2.7 billion grew 76% year-over-year. Moving on to the rest of the financial highlights. Non-GAAP gross margin of 75.5% was up 150 basis points year-over-year, driven mainly by an increase in our software mix. On a quarter-over-quarter basis, we saw less pressure from incremental costs related to the supply chain. We've made significant progress in driving leverage. This is something that we articulated at our analyst day in September 2021 and kicked off in fiscal year 22. And we have accelerated this in fiscal year 23 with a focus on profitable growth as evidenced by our Q2 performance. Our operating margin of 22.8% increased 440 basis points year over year. This result was driven by improving gross margins and a slower level of headcount additions. We expect to see ongoing improvements in our operational efficiency and as a result, we are raising our fiscal year 23 operating margin guidance. Non-GAAP net income for the second quarter grew 79% to $332 million or $1.05 per diluted share. Our non-GAAP effective tax rate was 22%. Delivering fiscal year GAAP profitability is another milestone in our balance of driving growth and profitability. For the quarter, GAAP net income was $84 million or 28 cents per basic share and 25 cents per diluted share. This was our third consecutive quarter of GAAP profitability, and as Nikesh noted, we have now been profitable on a cumulative basis for the last four quarters. We believe we now meet the criteria for inclusion in the S&P 500. Turning now to the balance sheet and cash flow statement. We ended Q2 with cash equivalents and investments of $6.2 billion. Our average duration Our new contracts increased slightly year over year, driven by deals with strategic customers. It remains at approximately three years where it has been historically. Q2 cash flow from operations was $695 million, with total adjusted free cash flow of $685 million this quarter. Our strong free cash flow in Q2 was driven by increased operating profitability, higher interest income, and improvement in billing's linearity due to improving supply chain conditions. During Q2, we repurchased approximately 1.8 million shares at the open market at an average price of approximately $139 per share for a total consideration of $250 million. As a reminder, our share repurchase program is opportunistic, and we are committed to this method of returning cash to shareholders over the medium term. Stock-based compensation ticked up 20 basis points as a percent of revenues sequentially. related to the issuance of our annual grants and the impact from the CIDR acquisition. On a year-over-year basis, stock basis compensation was down 350 basis points as a percent of revenue. Before I get to guidance, I wanted to cover my thoughts on operating margin. We have continued to drive improvements in the profitability for our fastest growing businesses as they have gained scale. Also, over the last six months, we have developed and executed detailed plans to accelerate our operating leverage. This includes raising the bar around the return on investment we expect, as well as remaining prudent in our hiring. We've also spent a lot of time looking at our peer group and studying benchmark data. As we look towards the second half of the year and into fiscal year 24, we believe we can continue to execute against our plans and drive higher operating margins. We expect that this will translate into us growing our EPS faster than our revenue growth rate. Now moving on to guidance. We're offering guidance for Q3 and also Q4 to make this explicit and then offering updated annual guidance. You'll see we're maintaining our annual revenue guidance and giving explicit guidance for Q3 to Q4 based on what we see in our pipeline for product revenue. For the third quarter of 2023, we expect billings to be in the range of $2.20 to $2.25 billion, an increase of 22% to 25%. We expect revenue to be in the range of 1.695 to 1.725 billion dollars, an increase of 22 to 24 percent. We expect non-GAAP EPS to be in the range of 90 cents to 94 cents, an increase of 50 to 57 percent. For the fourth quarter of the year, we expect billings to be in the range of 3.12 to 3.17 billion dollars, an increase of 16 to 18 percent. We expect revenue to be in the range of 1.937 to 1.967 billion dollars, an increase of 25% to 27%. We expect non-GAAP EPS to be in the range of $1.18 to $1.22 per share, an increase of 48% to 53%. For the fiscal year, we expect billings to be in the range of $9.1 to $9.2 billion, an increase of 22% to 23%. We expect NGS ARR to be in the range of $2.75 to $2.8 billion, an increase of 45% to 48%. We expect revenue to be in the range of $6.85 to $6.91 billion, an increase of 25 to 26%. We continue to expect product revenue growth in the range of 10% for the full fiscal year. For fiscal year 23, we're expecting our operating margins to be in the range of 21.5 to 22%. And we expect our non-GAAP EPS to be in the range of 3.97 to 4.03, an increase of 57 to 60%. We expect our adjusted free cash flow margin to be between 36.5% to 37.5%, and we expect to be GAAP profitable each quarter and for the fiscal year 2023. Additionally, please consider the following modeling points. We expect our non-GAAP tax rate to remain at 22% for Q3 and fiscal year 2023, subject to the outcome of future tax legislations. For Q3 and Q4, we expect net interest and other income of $45 to $49 million. We expect Q3 diluted shares outstanding of 321 to 327 million shares. We expect Q4 diluted shares outstanding of 326 to 332 million. We expect fiscal year 23 diluted shares outstanding of 320 to 326 million. We expect Q3 diluted capital expenditures of $35 to $40 million, with full-year capital expenditures of $165 to $170 million. With that, I will turn the call back over to Clay for the Q&A part of the call.

Disclaimer

This conference call transcript was computer generated and almost certianly contains errors. This transcript is provided for information purposes only.EarningsCall, LLC makes no representation about the accuracy of the aforementioned transcript, and you are cautioned not to place undue reliance on the information provided by the transcript.

-

-

Investor presentation