Senior Technical Consultant (XSIAM)-Network Delivery

United States

AHEAD

AHEAD accelerates the impact of technology on clients by engineering customized data, developer, and infrastructure platforms that improve IT operations.

View all jobs at AHEAD

Apply now Apply later

AHEAD builds platforms for digital business. By weaving together advances in cloud infrastructure, automation and analytics, and software delivery, we help enterprises deliver on the promise of digital transformation.
At AHEAD, we prioritize creating a culture of belonging, where all perspectives and voices are represented, valued, respected, and heard. We create spaces to empower everyone to speak up, make change, and drive the culture at AHEAD. 
We are an equal opportunity employer, and do not discriminate based on an individual's race, national origin, color, gender, gender identity, gender expression, sexual orientation, religion, age, disability, marital status, or any other protected characteristic under applicable law, whether actual or perceived. 
We embrace all candidates that will contribute to the diversification and enrichment of ideas and perspectives at AHEAD. 
The Senior Technical Consultant is a skilled cybersecurity professional with strong expertise in at least one core XSIAM technology domain and a good working knowledge of others. They will be responsible for the technical execution of XSIAM deployments, handling complex configurations, and mentoring junior team members.As a Senior Consultant focused on Palo Alto Networks XSIAM, you'll be a key player in implementing next-generation security operations for our diverse client base, helping them to detect, respond, and automate more effectively.

Responsibilities

  • Take a hands-on role in the end-to-end delivery of Palo Alto Networks XSIAM solutions, including deployment, configuration, and customization to meet specific client requirements.
  • Develop and implement custom XSIAM content, such as tailored correlation rules, data models for unique log sources, and automation playbooks that streamline client SOC workflows.
  • Integrate a variety of data sources into XSIAM, ensuring comprehensive visibility across endpoint, network, cloud, and identity layers.
  • Configure and fine-tune XSIAM functionalities, including TIM for threat intelligence enrichment and ASM for external visibility.
  • Collaborate with clients to optimize their XSIAM deployment, provide guidance on alert tuning, and assist in operationalizing the platform.
  • Act as a technical resource for troubleshooting and resolving complex XSIAM-related issues during and post-implementation.
  • Contribute to project documentation, ensuring clarity and completeness of Solution Designs and As-Built configurations.
  • Mentor junior AHEAD consultants, sharing your XSIAM knowledge and fostering their technical development.

Qualifications

  • 5-8 years of dedicated experience in cybersecurity, with a strong practical background in SIEM, SOAR, EDR/XDR, or SOC operations.
  • 3-5 years of demonstrated threat intelligence and Incident response experience
  • A minimum of 2 years of direct experience implementing and configuring Palo Alto Networks XSIAM or similar advanced SecOps platforms.
  • Demonstrated expertise in at least one of the following:
  • o   SIEM administration, including log collection, parsing, and normalization (XDM).
  • o   SOAR development, including creating playbooks and leveraging scripting (Python preferred).
  • o   EDR/XDR deployment and management, particularly with Cortex and CrowdStrike
  • Proficiency with XQL for data analysis and rule creation.
  • Solid understanding of network security concepts, cloud environments (AWS, Azure, GCP), and identity management.
  • Strong analytical and troubleshooting capabilities.
  • Effective communication skills, with the ability to engage with clients and team members.
  • Palo Alto Networks certifications (e.g., PCNSE) or other relevant industry certifications are a plus.
Why AHEAD:
Through our daily work and internal groups like Moving Women AHEAD and RISE AHEAD, we value and benefit from diversity of people, ideas, experience, and everything in between.
We fuel growth by stacking our office with top-notch technologies in a multi-million-dollar lab, by encouraging cross department training and development, sponsoring certifications and credentials for continued learning.
USA Employment Benefits include: - Medical, Dental, and Vision Insurance - 401(k) - Paid company holidays - Paid time off - Paid parental and caregiver leave - Plus more! See benefits https://www.aheadbenefits.com/ for additional details. 
The compensation range indicated in this posting reflects the On-Target Earnings (“OTE”) for this role, which includes a base salary and any applicable target bonus amount. This OTE range may vary based on the candidate’s relevant experience, qualifications, and geographic location.
Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  1  0  0

Tags: Analytics ASM Automation AWS Azure Cloud CrowdStrike EDR GCP Incident response Network security Python Scripting SecOps SIEM SOAR SOC Threat intelligence XDR

Perks/benefits: Career development Health care Insurance Medical leave Parental leave

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.