Cybersecurity, Privacy and Forensics - Palo Alto Networks XSIAM Engineer

PwC
Denver, CO, United States
5 days ago
Apply on www.builtincolorado.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Compensation
$77,000.0 - $202,000.0
Working hours
Regular working hours

Tech stack

Artificial Intelligence ARM Architecture Cloud Computing Security Cyber Security Information Systems Data Integrity Digital Assets Cryptographic Protocols Intrusion Detection Systems Python (Programming Language) Network Security Network Forensics
+12 more
Security Information and Event Management Trusted Systems Software Vulnerability Management Scripting Malware Information Technology Cybercrime Palo Alto Networks Performance Monitor Restful APIs Prisma Cloud Platform Splunk

Job description

Engineer and optimize Palo Alto Networks XSIAM security operations capabilities by tuning alerts, validating rules, monitoring performance, investigating incidents, automating workflows, onboarding data sources, and integrating security tools. The role supports threat intelligence, vulnerability management, cloud and network security, forensics, intrusion detection, secure systems, documentation, and client-facing cybersecurity consulting while maintaining current knowledge of Palo Alto Networks technologies and emerging threats. The summary above was generated by AI The Opportunity As a SecOps Engineer specializing in Palo Alto Networks XSIAM or Google technologies, you will play a pivotal role in identifying and analyzing potential threats to an organization’s security, managing vulnerabilities, and safeguarding sensitive information. Within our Cybersecurity practice, you will focus on protecting organizations from cyber threats through advanced technologies and strategies, enabling the resilience of digital infrastructure. As a Senior Associate, you will leverage your skills to build meaningful client connections and navigate complex situations. You will anticipate the needs of your teams and clients, delivering quality solutions while embracing ambiguity. This role involves using critical thinking to break down complex concepts and developing a deeper understanding of the business context. You will uphold professional and technical standards, fostering personal growth and enhancing your strengths. In this role at PwC, you will be at the forefront of threat intelligence and vulnerability management, using a broad range of tools and methodologies to generate new ideas and solve problems. Your work will contribute to the overall strategy, helping to protect organizations from cyber threats and confirming the security of digital assets. Responsibilities

  • Collaborate with security operations teams to tune and troubleshoot alerts and automate workflows using XSIAM’s automation capabilities.
  • Conduct rule validation, performance monitoring, and incident investigations leveraging XSIAM’s advanced analytics and automation features.
  • Provide recommendations for enhancing SOC efficiency through platform customization and automation.
  • Assist with onboarding new data sources and security tools integration for enriched threat visibility.
  • Stay current with Palo Alto Networks product updates, best practices, and emerging cybersecurity trends.
  • Support documentation of platform configurations, engineering processes, incident handling procedures, and automation workflows.
  • Identifying and analyzing potential threats to organizational security using advanced cybersecurity tools and techniques
  • Managing vulnerabilities to prevent cyber attacks and safeguard sensitive information
  • Developing secure systems and providing proactive solutions to enhance digital infrastructure resilience
  • Conducting research and utilizing threat intelligence to inform security strategies and recommendations
  • Implementing cloud security measures and encryption protocols to protect data integrity
  • Utilizing network forensics and intrusion detection systems to monitor and respond to security incidents
  • Collaborating with teams to build meaningful client connections and deliver quality cybersecurity solutions
  • Navigating complex situations to deepen technical skills and grow personal brand
  • Upholding professional and technical standards in alignment with firm guidelines and independence requirements
  • Embracing change and using critical thinking to solve problems and generate new ideas What You Must Have

  • At least a Bachelor’s degree
  • At least 3 years of experience What Sets You Apart

  • Preference for at least one of the following fields of study: Accounting, Business Administration/Management, Computer Science/Information Systems, Cybersecurity, Engineering, Project/Technology Management
  • Demonstrating proficiency in cloud security and network security platforms
  • Utilizing analytical thinking to interpret complex cybersecurity data
  • Conducting research in cyber threat intelligence and vulnerability management
  • Embracing change and adapting to evolving cybersecurity landscapes
  • Developing skills in malware analysis and intrusion detection systems
  • Building meaningful client connections in cybersecurity consulting environments
  • Palo Alto Networks XSIAM certification or related Palo Alto Networks security certifications (PCNSE, etc.).

Requirements

Experience in SOC environments Knowledge of cloud security and hybrid environments.

  • Familiarity with other Palo Alto Networks products (Cortex XDR, Prisma Cloud) is a plus.
  • Experience with other SIEM and SOAR tools is a plus (Splunk, Sentinel, etc.)
  • Proficiency in scripting or automation tools (e.g., Python, REST APIs) is a plus

Benefits & conditions

The salary range for this position is: $77,000 - $202,000. Actual compensation within the range will be dependent upon the individual’s skills, experience, qualifications and location, and applicable employment laws. All hired individuals are eligible for an annual discretionary bonus. PwC offers a wide range of benefits, including medical, dental, vision, 401k, holiday pay, vacation, personal and family sick leave, and more. To view our benefits at a glance, please visit the following link: https://pwc.to/benefits-at-a-glance

About the company

As PwC is an equal opportunity employer, all qualified applicants will receive consideration for employment at PwC without regard to race; color; religion; national origin; sex (including pregnancy, sexual orientation, and gender identity); age; disability; genetic information (including family medical history); veteran, marital, or citizenship status; or, any other status protected by law. PwC does not intend to hire experienced or entry level job seekers who will need, now or in the future, PwC sponsorship through the H-1B lottery, except as set forth within the following policy: https://pwc.to/H-1B-Lottery-Policy. Learn more about how we work: https://pwc.to/how-we-work For only those qualified applicants that are impacted by the Los Angeles County Fair Chance Ordinance for Employers, the Los Angeles’ Fair Chance Initiative for Hiring Ordinance, the San Francisco Fair Chance Ordinance, San Diego County Fair Chance Ordinance, and the California Fair Chance Act, where applicable, arrest or conviction records will be considered for Employment in accordance with these laws. At PwC, we recognize that conviction records may have a direct, adverse, and negative relationship to responsibilities such as accessing sensitive company or customer information, handling proprietary assets, or collaborating closely with team members. We evaluate these factors thoughtfully to establish a secure and trusted workplace for all.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.builtincolorado.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

6:01 min

Handling container constraints and fileless malware

Dimitrij Klesev +1 · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

1:53 min

Evaluating traditional scripting languages for modern development tasks

Jens Knipper Jens Knipper · Europe 2026 Virtual

Videos

See all

Related articles

See all