> Markdown version of [/jobs/ext/2013810-cyber-palo-alto-secops-senior-consultant](https://www.wearedevelopers.com/jobs/ext/2013810-cyber-palo-alto-secops-senior-consultant). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber - Palo Alto SecOps - Senior Consultant - **Company:** Deloitte T.T.L. - **Location:** Colorado Springs, CO, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Amazon Web Services, ARM Architecture, Microsoft Azure, Cloud Computing, Cyber Security, Data Normalization, Identity and Access Management, Intrusion Detection and Prevention, Security Information and Event Management, Google Cloud, Information Technology, Splunk - **Published:** August 10, 2026 - **Apply:** https://us.experteer.com/career/view-jobs/cyber-palo-alto-secops-senior-consultant-colorado-springs-co-usa-58882049 ## About the Role for solutions, incorporate threat intelligence, and present findings to stakeholders Tasks * Bachelor's degree in Computer Science, Cybersecurity, or another technical field * 4+ years of experience in cloud, network, or identity security (with 3+ years on AWS, GCP, Azure) including native security tools * 3+ years of Security Operations experience with Cortex XSIAM, Cortex XDR, Splunk or similar SIEM * 3+ years of SOC experience in detection engineering, automation/playbook development, log source management, data normalization/ingestion * 3+ years of EDR experience (Defender, Cortex XDR, CrowdStrike) and governance/security/compliance work; relevant certifications (e.g., PCNSE, CCSP, CISSP, CEH) * Ability to travel ~50% * Limited immigration sponsorship may be available Key requirements * discretionary annual incentive program * reasonable accommodations for recruiting process ## Description Experteer Overview In this role, you help design and deploy Next-Generation SOC capabilities to strengthen clients' cyber resilience. You will work with cross-functional teams to integrate data sources and optimize automated response workflows, focusing on Cortex XSIAM and related SIEM/SOAR technologies. You advise on threat detection approaches and SOC improvements, delivering tangible security outcomes for client operations. This opportunity offers hands-on impact in a dynamic consulting environment with exposure to leading security platforms. Compensation / Benefits * Lead design and deployment of Next-Generation SOC platforms (Cortex XSIAM), including SIEM ingestion and SOAR playbooks * Integrate log and telemetry sources to improve data quality and visibility * Develop and optimize automated response workflows for incident containment and remediation * Advise clients on threat detection use cases and automation strategies for SOC platforms * Collaborate cross-functionally to enhance solutions, incorporate threat intelligence, and present findings to stakeholders Tasks * Bachelor's degree in Computer Science, Cybersecurity, or another technical field * 4+ years of experience in cloud, network, or identity security (with 3+ years on AWS, GCP, Azure) including native security tools * 3+ years of Security Operations experience with Cortex XSIAM, Cortex XDR, Splunk or similar SIEM * 3+ years of SOC experience in detection engineering, automation/playbook development, log source management, data normalization/ingestion * 3+ years of EDR experience (Defender, Cortex XDR, CrowdStrike) and governance/security/compliance work; relevant certifications (e.g., PCNSE, CCSP, CISSP, CEH) * Ability to travel ~50% * Limited immigration sponsorship may be available Key requirements * discretionary annual incentive program * reasonable accommodations for recruiting process ## Related Videos - [The Cloud is Calling: Answer with In-Demand Skills](https://www.wearedevelopers.com/videos/945-the-cloud-is-calling-answer-with-in-demand-skills) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Cloud Run- the rise of serverless and containerization](https://www.wearedevelopers.com/videos/106-cloud-run-the-rise-of-serverless-and-containerization) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs)