Cyber - Palo Alto SecOps - Senior Consultant

Deloitte T.T.L.
Houston, TX, United States
3 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Working hours
Regular working hours

Tech stack

Amazon Web Services ARM Architecture Microsoft Azure Cyber Security Data Integration Data Normalization Identity and Access Management Intrusion Detection and Prevention Security Information and Event Management Google Cloud Information Technology Splunk

Job description

Experteer Overview In this role, you help design and deploy Next-Generation SOC capabilities to strengthen clients’ cyber resilience. You will work on Cortex XSIAM and related SIEM/SOAR workflows, integrating data sources and optimizing automated responses. You’ll advise on detection use cases, threat intelligence, and SOC maturity while collaborating with cross-functional teams. This position offers the chance to shape security operations for diverse clients and advance resilience in dynamic environments. Compensation / Benefits * Lead design and deployment of Next-Generation SOC platforms (Cortex XSIAM), advanced detection rules, SIEM ingestion, and SOAR playbooks * Integrate log and telemetry sources for data quality and operational visibility * Develop and optimize automated response workflows for containment and remediation * Advise clients on threat detection use cases, automation strategies, and SOC capabilities * Collaborate with cross-functional teams to enhance solutions, incorporate threat intelligence, and present findings to clients Tasks * Bachelor’s degree in Computer Science, Cybersecurity, or a related technical field * 4+ years in cloud, network, or identity security (with AWS, GCP, Azure) * 3+ years with Security Operations tools/platforms (Cortex XSIAM, Cortex XDR, Splunk, or similar SIEM) * 3+ years in SOC roles: detection engineering, automation/playbook development, log/source management, data normalization/ingestion * 3+ years with endpoint detection and response (EDR) platforms (Microsoft Defender, Cortex XDR, CrowdStrike); governance/security certifications (e.g., PCNSE, CCCSA) * Willingness and ability to travel ~50% * Limited immigration sponsorship may be available Key requirements * discretionary annual incentive program * reasonable accommodations for disabilities * global career development opportunities * mentoring and leadership development * diverse and inclusive culture * flexible work arrangements (as described)

Requirements

Benefits threat intelligence, and present findings to clients Tasks * Bachelor’s degree in Computer Science, Cybersecurity, or a related technical field * 4+ years in cloud, network, or identity security (with AWS, GCP, Azure) * 3+ years with Security Operations tools/platforms (Cortex XSIAM, Cortex XDR, Splunk, or similar SIEM) * 3+ years in SOC roles: detection engineering, automation/playbook development, log/source management, data normalization/ingestion * 3+ years with endpoint detection and response (EDR) platforms (Microsoft Defender, Cortex XDR, CrowdStrike); governance/security certifications (e.g., PCNSE, CCCSA) * Willingness and ability to travel ~50% * Limited immigration sponsorship may be available Key requirements * discretionary annual incentive program * reasonable accommodations for disabilities * global career development opportunities * mentoring and leadership development * diverse and inclusive culture * flexible work arrangements (as described)

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on us.experteer.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

6:10 min

Unlocking free learning credits via Google Cloud Innovators

Asrar Asrar · World Congress 2024

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

4:42 min

Container hosting options available on Google Cloud Platform

Federico Fregosi · World Congress 2022

Videos

See all

Related articles

See all