Cyber - Palo Alto SecOps - Senior Consultant

Deloitte T.T.L.
Jericho, NY, United States
3 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Working hours
Regular working hours

Tech stack

Amazon Web Services ARM Architecture Microsoft Azure Cyber Security Identity and Access Management Intrusion Detection and Prevention Security Information and Event Management Data Processing Google Cloud Data Ingestion Cyber Warfare Splunk

Job description

Experteer Overview In this role you support Deloitte’s Cyber Defense & Resilience practice by helping clients operate Next-Generation SOC capabilities, including Cortex XSIAM. You design, deploy, and optimize SOC platforms, integrate diverse data sources, and automate incident response. You will advise on threat detection use cases and collaborate with cross-functional teams to strengthen client security posture. This is a client-facing, impact-driven consulting role at scale within a leading cybersecurity practice. Compensation / Benefits * Lead design and deployment of Next-Generation SOC platforms (Cortex XSIAM), SIEM ingestion, and SOAR playbooks * Integrate log and telemetry sources to improve data quality and visibility * Develop and optimize automated response workflows for containment and remediation * Advise clients on threat detection use cases, automation strategies, and SOC capabilities * Collaborate with cross-functional teams to enhance solutions and present findings to stakeholders Tasks * Bachelor’s degree in a technical field * 4+ years in cloud, network, or identity security including 3+ years with AWS, GCP, Azure * 3+ years with Security Operations tools and platforms (Cortex XSIAM, Cortex XDR, Splunk, or similar SIEM) * 3+ years in SOC operations including detection engineering, automation, data ingestion, and data manipulation * 3+ years of endpoint detection and response (EDR) with Defender, Cortex XDR, or CrowdStrike; governance/security frameworks experience * Ability to travel ~50% * Limited immigration sponsorship may be available Key requirements * discretionary annual incentive program

Requirements

_ stakeholders Tasks * Bachelor’s degree in a technical field * 4+ years in cloud, network, or identity security including 3+ years with AWS, GCP, Azure * 3+ years with Security Operations tools and platforms (Cortex XSIAM, Cortex XDR, Splunk, or similar SIEM) * 3+ years in SOC operations including detection engineering, automation, data ingestion, and data manipulation * 3+ years of endpoint detection and response (EDR) with Defender, Cortex XDR, or CrowdStrike; governance/security frameworks experience * Ability to travel ~50% * Limited immigration sponsorship may be available Key requirements * discretionary annual incentive program

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on us.experteer.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

6:10 min

Unlocking free learning credits via Google Cloud Innovators

Asrar Asrar · World Congress 2024

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

4:42 min

Container hosting options available on Google Cloud Platform

Federico Fregosi · World Congress 2022

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

Videos

See all

Related articles

See all