Cyber - Palo Alto SecOps - Senior Consultant

Deloitte T.T.L.
Pittsburgh, PA, United States
3 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Working hours
Regular working hours

Tech stack

Amazon Web Services ARM Architecture Microsoft Azure Border Gateway Protocol Cloud Computing Security Cyber Security Data Normalization Identity and Access Management Intrusion Detection and Prevention Network Segmentation Security Information and Event Management Scripting
+4 more
Information Technology Palo Alto Networks Cyber Warfare Splunk

Job description

Experteer Overview In this role you will help clients strengthen cyber resilience by designing and deploying Next-Generation SOC platforms and automation capabilities. You will work on integrating data sources, building detection rules, and orchestrating response workflows to reduce risk. You’ll collaborate with cross-functional teams to elevate security operations and present findings to client stakeholders. This opportunity lets you shape modern SOC capabilities for a range of industries within Deloitte’s Cyber Defense & Resilience practice. Compensation / Benefits * Lead design and deployment of Next-Generation SOC platforms (Cortex XSIAM) and related SIEM/SOAR components * Integrate log and telemetry sources to improve data quality and operational visibility * Develop and optimize automated incident containment and remediation workflows * Advise clients on threat detection use cases, automation strategies, and SOC capabilities * Collaborate with cross-functional teams to enhance solutions and incorporate threat intelligence * Present findings and recommendations to client stakeholders Tasks * Bachelor’s degree in Computer Science, Cybersecurity, or technical field * 4+ years in cloud, network, or identity security; 3+ years with AWS, GCP, or Azure and native security tools * 3+ years of Security Operations experience with Cortex XSIAM, Cortex XDR, Splunk, or comparable SIEM * 3+ years in SOC roles including detection engineering, automation/playbook development, log/source management, data normalization * 3+ years with EDR platforms (Microsoft Defender, Cortex XDR, CrowdStrike) and governance, risk, or compliance work using established frameworks * Ability to travel ~50% * Limited immigration sponsorship may be available * Preferred: experience with Palo Alto Networks solutions, Scripting in SIEM/SOAR, BGP/ECMP/network segmentation knowledge, consulting experience, advanced cybersecurity certifications Key requirements * discretionary annual incentive program * reasonable accommodations for disability

Requirements

solutions and incorporate threat intelligence * Present findings and recommendations to client stakeholders Tasks * Bachelor’s degree in Computer Science, Cybersecurity, or technical field * 4+ years in cloud, network, or identity security; 3+ years with AWS, GCP, or Azure and native security tools * 3+ years of Security Operations experience with Cortex XSIAM, Cortex XDR, Splunk, or comparable SIEM * 3+ years in SOC roles including detection engineering, automation/playbook development, log/source management, data normalization * 3+ years with EDR platforms (Microsoft Defender, Cortex XDR, CrowdStrike) and governance, risk, or compliance work using established frameworks * Ability to travel ~50% * Limited immigration sponsorship may be available * Preferred: experience with Palo Alto Networks solutions, Scripting in SIEM/SOAR, BGP/ECMP/network segmentation knowledge, consulting experience, advanced cybersecurity certifications Key requirements * discretionary annual incentive program * a aaaaaaaD_ accommodations for disability

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on us.experteer.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

1:53 min

Evaluating traditional scripting languages for modern development tasks

Jens Knipper Jens Knipper · Europe 2026 Virtual

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

Videos

See all

Related articles

See all