Cyber - Palo Alto SecOps - Senior Consultant

Deloitte T.T.L.
Wichita, KS, United States
3 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Working hours
Regular working hours

Tech stack

Amazon Web Services ARM Architecture Microsoft Azure CompTIA Security+ Cyber Security Intrusion Detection and Prevention Security Information and Event Management Data Ingestion Information Technology Data Analytics Splunk

Job description

Experteer Overview In this role you help clients strengthen cyber resilience by designing and deploying Next-Generation SOC capabilities (including Cortex XSIAM). You work with cross-functional teams to integrate data sources, optimize automated response, and advise on threat detection strategies. You will shape security operations for cloud and on-prem environments and contribute to client-facing findings and recommendations. This is a hands-on consulting role focused on delivering scalable, data-driven security solutions. Compensation / Benefits * Lead design and deployment of Next-Generation SOC platforms (Cortex XSIAM), SIEM ingestion, and SOAR playbooks * Integrate log and telemetry sources to optimize data quality, normalization, and visibility * Develop and optimize automated response workflows for incident containment and remediation * Advise clients on threat detection use cases, automation strategies, and SOC platform capabilities * Collaborate with cross-functional teams to enhance solutions, incorporate threat intelligence, and present findings to clients Tasks * Bachelor’s degree in Computer Science, Cybersecurity, or a technical field * 4+ years in cloud, network, or identity security with 3+ years AWS/GCP/Azure experience * 3+ years with Security Operations tools/platforms (Cortex XSIAM, Cortex XDR, Splunk, or similar SIEM) * 3+ years SOC experience in detection engineering, automation/playbook development, log/source management, data ingestion and manipulation * 3+ years with endpoint detection and response (EDR) platforms (Microsoft Defender, Cortex XDR, CrowdStrike) and governance/security frameworks; relevant cybersecurity certifications (e.g., PCNSE, CISSP, CEH, CCSP) * Ability to travel ~50% and willingness to work with clients; limited immigration sponsorship may be available Key requirements * discretionary annual incentive program * reasonable accommodations * travel opportunities * professional development support

Requirements

enhance solutions, incorporate threat intelligence, and present findings to clients Tasks * Bachelor’s degree in Computer Science, Cybersecurity, or a technical field * 4+ years in cloud, network, or identity security with 3+ years AWS/GCP/Azure experience * 3+ years with Security Operations tools/platforms (Cortex XSIAM, Cortex XDR, Splunk, or similar SIEM) * 3+ years SOC experience in detection engineering, automation/playbook development, log/source management, data ingestion and manipulation * 3+ years with endpoint detection and response (EDR) platforms (Microsoft Defender, Cortex XDR, CrowdStrike) and governance/security frameworks; relevant cybersecurity certifications (e.g., PCNSE, CISSP, CEH, CCSP) * Ability to travel ~50% and willingness to work with clients; limited immigration sponsorship may be available Key requirements * discretionary annual incentive program * reasonable accommodations * travel opportunities * professional development support

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on us.experteer.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:06 min

Ingesting streaming data securely with managed hubs

Eldert Grootenboer +1 · World Congress 2023

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

1:49 min

One-way data ingestion for IoT devices

Timothy Marland · World Congress 2023

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all