In Cisco world we have CSM (Security Manager, not the load balancer) which among other things allows you to manage multiple devices/versions and supports "shared policy" as it's known there.
Check if that works for you, talk to your SE for details.
Let's see if other folks can chime in.