Principal Consultant - Threat Intelligence (Unit 42)
Sydney, Australia
Palo Alto Networks
Implement Zero Trust, Secure your Network, Cloud workloads, Hybrid Workforce, Leverage Threat Intelligence & Security Consulting. Cybersecurity Services & Education for CISO’s, Head of Infrastructure, Network Security Engineers, Cloud...Company Description
Our Mission
At Palo Alto Networks® everything starts and ends with our mission:
Being the cybersecurity partner of choice, protecting our digital way of life.
Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are done, and we’re looking for innovators who are as committed to shaping the future of cybersecurity as we are.
Who We Are
We take our mission of protecting the digital way of life seriously. We are relentless in protecting our customers and we believe that the unique ideas of every member of our team contributes to our collective success. Our values were crowdsourced by employees and are brought to life through each of us everyday - from disruptive innovation and collaboration, to execution. From showing up for each other with integrity to creating an environment where we all feel included.
As a member of our team, you will be shaping the future of cybersecurity. We work fast, value ongoing learning, and we respect each employee as a unique individual. Knowing we all have different needs, our development and personal wellbeing programs are designed to give you choice in how you are supported. This includes our FLEXBenefits wellbeing spending account with over 1,000 eligible items selected by employees, our mental and financial health resources, and our personalized learning opportunities - just to name a few!
Job Description
Your Career
Principal Consultant, Threat Intelligence Services is a senior-level consulting position within Unit 42 Proactive Services team. The individual will work alongside the Consulting Director of Threat Intelligence Services JAPAC in providing threat intelligence insights to clients and in support of wider engagements such as incident response, red teaming, table top exercises, and risk assessments, among others.
The Principal Consultant will be one of the early joiners in the team, and as such should have a hands-on mentality, ability to work on complex engagements independently, and flexibility to be involved in various work streams depending on their skills and business needs. You will be a clear self-starter who understands how to complete high-level tasking and uses your knowledge and skills to meet goals and deadlines. While the individual will liaise with Unit 42’s Threat Intelligence researchers, the majority of their time will be spent in client engagements.
Your Impact
- Assist Unit 42 Consulting Director of Threat Intelligence Consulting Services in developing and delivering a threat-informed service offering to international clients
- Act as a subject matter expert on cyber threat intelligence for clients and internal teams
- Plan, research, and write analytical reports including client-specific threat assessments and event-based briefings
- Deliver threat intelligence maturity assessments and threat intelligence capability building services, including recommendations to improve client’s threat intelligence practices
- OSINT and deep dark web monitoring for victim-centric intelligence
- Interface with the wider Unit 42 Security Consulting and Palo Alto Networks product teams to identify mitigating actions to TTPs exploited by threat actors
- Amplify Unit 42s’ presence and credibility in the marketplace through thought leadership, including via speaking engagements, and blog articles on threat intelligence topics
Qualifications
Your Experience
- 7+ years of demonstrated experience in a threat intelligence team, ideally in a consulting capacity but in-house experience is also a plus
- Excellent English written and verbal communications skills
- Experience in producing tailored threat reports on a strategic and tactical level for consumers ranging from senior management to technical analysts
- Deep understanding of cybercriminal and state-sponsored groups, their TTPs and high level mitigations
- Understanding of how threat intelligence is made actionable within client organisations including incident response, detection engineering, red teaming, threat hunting and/or risk management
- Strong familiarity with the Mitre ATT&CK framework
- Passionate about cyber threat intelligence and its tradecraft, attention to details.
- Nice to have
- While we do not expect you to tick all the boxes, a successful candidate will have a combination of some of the following
- Experience in intelligence led-red team exercises like CORIE, CBEST, TIBER, iCAST
- Knowledge of threat actors hunting tools and techniques (e.g. VT, Passive DNS)
- Experience in incident response, digital forensics, threat hunting, or red teaming
- Experience in risk management consulting advising clients on appropriate security controls
- Experience in building organizational incident preparedness including tabletop exercises, incident response planning or crisis management
- Additional language skills to interface with regional clients (ideally Japanese)
- Proficiency in Python or other scripting languages to automate tasks
- Cybersecurity industry certifications such as CRTIA, CCTIM, GCTI are a plus but not essential
Additional Information
The Team
Unit 42 Consulting is Palo Alto Network's security advisory team. Our vision is to create a more secure digital world by providing the highest quality incident response, risk management, and digital forensic services to clients of all sizes. Our team is composed of recognized experts and incident responders with deep technical expertise and experience in investigations, data breach response, digital forensics, and information security. With a highly successful track record of delivering mission-critical cybersecurity solutions, we are experienced in working quickly to provide an effective incident response, attack readiness, and remediation plans with a focus on providing long-term support to improve our clients’ security posture.
Our Commitment
We’re problem solvers that take risks and challenge cybersecurity’s status quo. It’s simple: we can’t accomplish our mission without diverse teams innovating, together.
We are committed to providing reasonable accommodations for all qualified individuals with a disability. If you require assistance or accommodation due to a disability or special need, please contact us at accommodations@paloaltonetworks.com.
Palo Alto Networks is an equal opportunity employer. We celebrate diversity in our workplace, and all qualified applicants will receive consideration for employment without regard to age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or other legally protected characteristics.
All your information will be kept confidential according to EEO guidelines.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: CORIE DNS Forensics GCTI Incident response MITRE ATT&CK Monitoring OSINT Python Red team Risk assessment Risk management Scripting Threat intelligence TTPs
Perks/benefits: Career development Medical leave
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.