> Markdown version of [/jobs/ext/2011272-cyber-palo-alto-secops-senior-consultant](https://www.wearedevelopers.com/jobs/ext/2011272-cyber-palo-alto-secops-senior-consultant). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber - Palo Alto SecOps - Senior Consultant - **Company:** Deloitte T.T.L. - **Location:** Seattle, WA, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Amazon Web Services, ARM Architecture, Microsoft Azure, Cyber Security, Data Normalization, Identity and Access Management, Security Information and Event Management, Data Ingestion, Information Technology, Palo Alto Networks, Cyber Warfare, Splunk - **Published:** August 10, 2026 - **Apply:** https://us.experteer.com/career/view-jobs/cyber-palo-alto-secops-senior-consultant-seattle-wa-usa-58882034 ## About the Role You containment and remediation * Advise clients on threat detection use cases, automation strategies, and SOC capabilities * Collaborate with cross-functional teams to enhance solutions, incorporate threat intelligence, and present findings to client stakeholders Tasks * Bachelor in Computer Science or related technical field * 4+ years in cloud, network, or identity security including 3+ years with AWS, GCP, or Azure and native security tools * 3+ years with SOC tools/platforms such as Cortex XSIAM, Cortex XDR, Splunk or similar SIEM * 3+ years in SOC detection engineering, automation/playbook development, data ingestion and data normalization * 3+ years with endpoint detection and response (EDR) platforms (e.g., Microsoft Defender, Cortex XDR, CrowdStrike) and governance, risk, or compliance work using established frameworks * Palo Alto Networks PCNSE, CCSP, CEH or CISSP-like certifications (preferred) * Ability to travel ~50% and potential limited immigration sponsorship Key aaaaaaaaaai _ * ## Description Experteer Overview In this role you will help clients strengthen cyber resilience by leading Next-Generation SOC initiatives within Deloitte's Cyber Defense & Resilience team. You will design and deploy advanced SOC capabilities (including Cortex XSIAM) and optimize SIEM/SOAR workflows to improve threat visibility and response. You'll integrate diverse log sources, refine data quality, and advise on detection use cases and automation strategies. You collaborate with cross-functional teams to tailor solutions to client needs and communicate findings to stakeholders. This is a high-impact consulting position at a firm that prioritizes innovation, client outcomes, and professional growth. Compensation / Benefits * Design and deploy Next-Generation SOC platforms (Cortex XSIAM) with advanced detection rules, SIEM ingestion, and SOAR playbooks * Integrate log and telemetry sources for data normalization and operational visibility * Develop and optimize automated response workflows for incident containment and remediation * Advise clients on threat detection use cases, automation strategies, and SOC capabilities * Collaborate with cross-functional teams to enhance solutions, incorporate threat intelligence, and present findings to client stakeholders Tasks * Bachelor in Computer Science or related technical field * 4+ years in cloud, network, or identity security including 3+ years with AWS, GCP, or Azure and native security tools * 3+ years with SOC tools/platforms such as Cortex XSIAM, Cortex XDR, Splunk or similar SIEM * 3+ years in SOC detection engineering, automation/playbook development, data ingestion and data normalization * 3+ years with endpoint detection and response (EDR) platforms (e.g., Microsoft Defender, Cortex XDR, CrowdStrike) and governance, risk, or compliance work using established frameworks * Palo Alto Networks PCNSE, CCSP, CEH or CISSP-like certifications (preferred) * Ability to travel ~50% and potential limited immigration sponsorship Key requirements * ## Related Videos - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this)