Cyber - Palo Alto SecOps - Senior Consultant

Deloitte T.T.L.
Los Angeles, CA, United States
3 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Working hours
Regular working hours

Tech stack

Amazon Web Services ARM Architecture Microsoft Azure Cloud Computing Cyber Security Identity and Access Management Intrusion Detection and Prevention Security Information and Event Management Data Ingestion Information Technology Palo Alto Networks Cyber Warfare
+1 more
Splunk

Job description

Experteer Overview As a Palo Alto SecOps, Senior Consultant in Deloitte’s Cyber Defense & Resilience team, you help clients mature next-generation SOC capabilities using Cortex XSIAM and related SIEM/SOAR tooling. You design and deploy SOC platforms, integrate data sources, and automate incident response while advising on threat detection and automation strategies. You collaborate with cross-functional teams to enhance solutions and present findings to stakeholders. This role offers impactful work at scale shaping security operations for client resilience. Compensation / Benefits * Lead design and deployment of Next-Generation SOC platforms (Cortex XSIAM) and related detection rules, SIEM ingestion, and SOAR playbooks * Integrate log and telemetry sources for data quality, normalization and visibility * Develop and optimize automated response workflows for containment and remediation * Advise clients on threat detection use cases, automation strategies, and SOC platform capabilities * Collaborate with cross-functional teams to enhance solutions, incorporate threat intelligence, and communicate findings to stakeholders Tasks * Bachelor’s degree in Computer Science, Cybersecurity, or a technical field * 4+ years of experience in cloud, network, or identity security (AWS/GCP/Azure) * 3+ years working with security operations tools/platforms (Cortex XSIAM, Cortex XDR, Splunk, or similar SIEM) * 3+ years of SOC experience in detection engineering, automation and playbook development, data ingestion/normalization * 3+ years of experience with EDR platforms (Microsoft Defender, Cortex XDR, CrowdStrike) and governance, risk, or compliance work using established frameworks * Palo Alto Networks PCNSE, Certified Cybersecurity Associate, or equivalent cybersecurity certification * Ability to travel ~50% and eligibility for immigration sponsorship (may be limited) Key requirements * Discretionary annual incentive program * Disability accommodations available * Travel requirements may apply

Requirements

_ Collaborate with cross-functional teams to enhance solutions, incorporate threat intelligence, and communicate findings to stakeholders Tasks * Bachelor’s degree in Computer Science, Cybersecurity, or a technical field * 4+ years of experience in cloud, network, or identity security (AWS/GCP/Azure) * 3+ years working with security operations tools/platforms (Cortex XSIAM, Cortex XDR, Splunk, or similar SIEM) * 3+ years of SOC experience in detection engineering, automation and playbook development, data ingestion/normalization * 3+ years of experience with EDR platforms (Microsoft Defender, Cortex XDR, CrowdStrike) and governance, risk, or compliance work using established frameworks * Palo Alto Networks PCNSE, Certified Cybersecurity Associate, or equivalent cybersecurity certification * Ability to travel ~50% and eligibility for immigration sponsorship (may be limited) Key requirements * Discretionary annual incentive program * Disability accommodations available * Travel requirements may apply

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on us.experteer.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

Videos

See all

Related articles

See all