> Markdown version of [/jobs/ext/2013877-cyber-palo-alto-secops-senior-consultant](https://www.wearedevelopers.com/jobs/ext/2013877-cyber-palo-alto-secops-senior-consultant). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber - Palo Alto SecOps - Senior Consultant - **Company:** Deloitte T.T.L. - **Location:** Chicago, IL, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Amazon Web Services, ARM Architecture, Microsoft Azure, Cyber Security, Intrusion Detection and Prevention, Security Information and Event Management, Data Ingestion, Palo Alto Networks, Cyber Warfare, Splunk - **Published:** August 10, 2026 - **Apply:** https://us.experteer.com/career/view-jobs/cyber-palo-alto-secops-senior-consultant-chicago-il-usa-58882059 ## About the Role 60290, and SOC capabilities * Collaborate with cross-functional teams to enhance solutions, incorporate threat intelligence, and present findings to client stakeholders Tasks * Bachelor's degree in a technical field * 4+ years in cloud, network, or identity security with AWS, GCP, and/or Azure experience * 3+ years using Security Operations tools/platforms (Cortex XSIAM, Cortex XDR, Splunk or similar SIEM) * 3+ years of SOC experience in detection engineering, automation/playbook development, data ingestion and normalization * 3+ years of experience with EDR platforms (Microsoft Defender, Cortex XDR, CrowdStrike) and governance/ compliance work * Certification such as Palo Alto Networks PCNSE, CCPA or equivalent cybersecurity certification * Ability to travel ~50% and willingness for client-based assignments * Limited immigration sponsorship may be available Key requirements * ## Description Experteer Overview In this role you will help clients strengthen cyber resilience by deploying and optimizing Next-Generation SOC capabilities, including Cortex XSIAM, within a client-focused Cyber Defense & Resilience practice. You will integrate data sources, build automated response workflows, and advise on threat detection use cases and SOC capabilities. You'll work with cross-functional teams to incorporate threat intelligence and present findings to stakeholders. This is a hands-on consultant role with a focus on impact, quality, and delivery excellence. Compensation / Benefits * Lead design and deployment of Next-Generation SOC platforms (e.g., Cortex XSIAM) and develop advanced detection rules, SIEM ingestion, and SOAR playbooks * Integrate log and telemetry sources to improve data quality, normalization, and visibility * Develop and optimize automated response workflows for incident containment and remediation * Advise clients on threat detection use cases, automation strategies, and SOC capabilities * Collaborate with cross-functional teams to enhance solutions, incorporate threat intelligence, and present findings to client stakeholders Tasks * Bachelor's degree in a technical field * 4+ years in cloud, network, or identity security with AWS, GCP, and/or Azure experience * 3+ years using Security Operations tools/platforms (Cortex XSIAM, Cortex XDR, Splunk or similar SIEM) * 3+ years of SOC experience in detection engineering, automation/playbook development, data ingestion and normalization * 3+ years of experience with EDR platforms (Microsoft Defender, Cortex XDR, CrowdStrike) and governance/ compliance work * Certification such as Palo Alto Networks PCNSE, CCPA or equivalent cybersecurity certification * Ability to travel ~50% and willingness for client-based assignments * Limited immigration sponsorship may be available Key requirements * ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)