Principal Consultant – SOC Transformation and XSIAM Deployment

2 weeks ago


Seattle, United States Palo Alto Networks Full time

Principal Consultant – SOC Transformation and XSIAM DeploymentOur Mission: At Palo Alto Networks everything starts and ends with our mission: Being the cybersecurity partner of choice, protecting our digital way of life.Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are done, and we’re looking for innovators who are as committed to shaping the future of cybersecurity as we are.This role is remote, but distance is no barrier to impact. Our hybrid teams collaborate across geographies to solve big problems, stay close to our customers, and grow together. You will be part of a culture that values trust, accountability, and shared success where your work truly matters.Job Description: As a Principal Consultant for SOC Transformation & XSIAM Deployment, you will be a seasoned leader at the forefront of our most strategic customer engagements. You will leverage a rare blend of consultative presence, deep technical mastery, and executive influence to guide our customers through complex SOC transformations.Your primary role is to drive these large-scale programs, ensuring the successful execution of foundational elements like seamless log migration and the development of sophisticated detection strategies, to deliver measurable security outcomes in highly dynamic enterprise environments.Your Impact:Serve as the lead strategic advisor and subject matter expert for customers undertaking a full-scale SOC modernization with XSIAM.Lead multi-national SOC transformation programs, consolidating fragmented detection and response processes into a unified, AI-driven platform.Direct enterprise-scale XSIAM deployments, guiding customers from initial strategy to full operationalization.Devise and oversee comprehensive log ingestion strategies to ensure high-quality data fuels the XSIAM platform.Architect and implement sophisticated detection strategies and correlation rules to fortify customer defenses against advanced threats.Fine-tune and optimize log sources and correlation rules to maximize system performance and detection efficacy.Identify opportunities to enhance analyst alert handling and response through automation.Transform ambiguity into structured action plans, driving accountability at every level of a customer engagement.Build and mentor high-performing professional services teams that blend consulting, engineering, and change management expertise.Partner with Product and R&D teams to incorporate field insights into roadmap priorities.Qualifications:Your Experience:A proven track record in modernizing Security Operations Centers (SOCs) to achieve automation, AI-driven detection, and measurable improvements in MTTD/MTTR.Exceptional executive presence, with strong verbal and written communication skills to engage with stakeholders from the SOC analyst to the CISO.Experience acting as a trusted advisor to senior security leaders, with the ability to diagnose challenges and deliver strategic recommendations.10+ years of hands-on experience in deploying and integrating SIEM/security analytics solutions within large enterprise environments.8+ years of experience with Security Operations Center (SOC) tooling, processes, and workflows.Hands-on technical mastery across SIEM, SOAR, EDR, cloud security, and threat intelligence.Ability to conceive, architect, and develop effective correlation and detection rules.Familiarity with a range of SIEM technologies, such as Splunk and IBM QRadar, is a plus.Strong expertise in Regular Expressions (Regex).Relevant bachelor's degree or industry-recognized qualifications (CISSP, GIAC, etc.), is a plus.Must be able to travel up to 30%.Palo Alto Networks is an equal opportunity employer. We celebrate diversity in our workplace, and all qualified applicants will receive consideration for employment without regard to age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or other legally protected characteristics. #J-18808-Ljbffr



  • Seattle, WA, United States Palo Alto Networks Full time

    Principal Consultant SOC Transformation and XSIAM Deployment Our Mission: At Palo Alto Networks everything starts and ends with our mission: Being the cybersecurity partner of choice, protecting our digital way of life. Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging...


  • Seattle, United States Palo Alto Networks Full time

    Overview Our Mission At Palo Alto Networks everything starts and ends with our mission: Being the cybersecurity partner of choice, protecting our digital way of life. Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are done, and were...


  • Seattle, WA, United States Palo Alto Networks Full time

    Overview Our Mission At Palo Alto Networks everything starts and ends with our mission: Being the cybersecurity partner of choice, protecting our digital way of life. Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are done, and were...


  • Seattle, United States Palo Alto Networks Full time

    A leading cybersecurity firm is seeking a Principal Consultant for SOC Transformation & XSIAM Deployment. This remote role focuses on modernizing customer Security Operations Centers (SOCs) through automation and advanced detection strategies. The ideal candidate will have over 10 years of experience in SIEM/security analytics, strong executive presence, and...


  • Seattle, WA, United States Palo Alto Networks Full time

    A leading cybersecurity firm is seeking a Principal Consultant for SOC Transformation & XSIAM Deployment. This remote role focuses on modernizing customer Security Operations Centers (SOCs) through automation and advanced detection strategies. The ideal candidate will have over 10 years of experience in SIEM/security analytics, strong executive presence, and...


  • Seattle, United States Impinj Full time

    A leading RFID technology firm in Seattle seeks a Principal SoC Architect to lead the design of advanced Reader ICs. The successful candidate will have over 15 years in SoC architecture, proven leadership in IC development, and expertise in digital design and verification. This role offers a competitive salary range of $179,700 - $269,600 and comprehensive...


  • Seattle, United States Amazon Full time

    A leading cloud services provider in Seattle is seeking a Principal Advisory Consultant to influence enterprise cloud technology adoption. The role involves identifying patterns across customers and leading technical initiatives to drive business outcomes with AWS. Candidates should have over 8 years of experience in cloud architecture and strong...


  • Seattle, United States Yeo & Yeo HR Advisory Solutions Full time

    Are you a problem-solver looking for a strategic consulting role that blends leadership, technology, and relationship-building in the maritime sector? If so, read on! About Us If it’s high-stakes, high-security, or highly complex—Oxalis is built for it. We’re a consulting and technology partner for the organizations that keep the world running:...


  • Seattle, United States Impinj Full time

    Impinj is a leading RAIN RFID provider and Internet of Things pioneer. We’re inventing ways to connect every thing to the Internet —including retail apparel, retail general merchandise, healthcare items, automobile parts, airline baggage, food and much more. With more than 100 billion items connected to date, and multiple Fortune 500 enterprises around...


  • Seattle, WA, United States Impinj Full time

    Impinj is a leading RAIN RFID provider and Internet of Things pioneer. We're inventing ways to connect every thing to the Internet - including retail apparel, retail general merchandise, healthcare items, automobile parts, airline baggage, food and much more. With more than 100 billion items connected to date, and multiple Fortune 500 enterprises around the...