Base on you immediate parameters, current concurrent users and 6 months expected growth, the NSA 2400 seems to fit your requirement.
However, it will also depends or your company IT investment direction as well, if you are planning an upgrade after the 6 month period where the concurrent connections may hit more than 32K, then that may be sufficient.
As for deep packet inspection, well it's really subjective, as it will depend on what is the trade off on the performance hit on your application. If it is not performance sensitive, than it would be sufficient, even when it hit higher traffic volume.
Note that spending on security will really depend on what you need it for and how much you are able to spent on it.
Having a firewall is always better than none, as long as the firewall is configured correctly and within your network requirement, any firewall would do, until start to look into more in depth needs, like better VPN performance, high performance IDS/Deep Packet Inspection, etc. Then you will really need to look into which brand and model will fit your needs.