Directing traffic to Internet interface

Hi guys, hope you’re all well. I hope someone can help me out with this one.

I’ve been tasked with routing internal/external traffic through two new Checkpoint firewalls in the DC. Firewalls are running R80.40.

Internally, users connect using Pulse Secure client, Once connected they are directed to one of 3 firewalls:

ASPAN - Application traffic
GRT - Internet traffic
MTI - Management traffic

I’ve attached a diagram which hopefully clarifies the setup. The 2 x Pulse appliances are in the middle of the diagram (containing SSL). The Checkpoints are at the bottom.

I have a list of public IPs which I need to ensure route via the GRT firewall. Would these routes need to be added on the Pulse device?

Thanks in advance