Principal Consultant – SOC Transformation and XSIAM Deployment
Palo Alto Networks · Illinois, United States · 1 mo ago
RemoteRemoteCustomer Service$163k–$225k/yrFull-time
Job Summary
As a Principal Consultant for SOC Transformation & XSIAM Deployment, you will be a seasoned leader at the forefront of our most strategic customer engagements. You will leverage a blend of consultative presence, technical mastery, and executive influence to guide customers through complex SOC transformations. Your primary role is to drive these large-scale programs, ensuring successful execution from log migration to sophisticated detection strategies, delivering measurable security outcomes.
Key Responsibilities
- Serve as the lead strategic advisor and subject matter expert for customers undertaking a full-scale SOC modernization with XSIAM.
- Lead multi-national SOC transformation programs, consolidating fragmented detection and response processes into a unified, AI-driven platform.
- Direct enterprise-scale XSIAM deployments, guiding customers from initial strategy through to full operationalization.
- Devise and oversee comprehensive log ingestion strategies to ensure high-quality data fuels the XSIAM platform.
- Architect and implement sophisticated detection strategies and correlation rules to fortify customer defenses against advanced threats.
- Fine-tune and optimize log sources and correlation rules to maximize system performance and detection efficacy.
- Identify opportunities to enhance analyst alert handling and response through automation, collaborating with teams to implement solutions.
- Build and mentor high-performing professional services teams, fostering a culture of collaboration and accountability.
Qualifications
- A proven track record in modernizing Security Operations Centers (SOCs) to achieve automation, AI-driven detection, and measurable improvements in MTTD/MTTREx
- Exceptional executive presence, with strong verbal and written communication skills to engage with stakeholders from the SOC analyst to the CISO
- Experience acting as a trusted advisor to senior security leaders, with the ability to diagnose challenges and deliver strategic recommendations
- 10+ years of hands-on experience in deploying and integrating SIEM/security analytics solutions within large enterprise environments
- 8+ years of experience with Security Operations Center (SOC) tooling, processes, and workflows
- Hands-on technical mastery across SIEM, SOAR, EDR, cloud security, and threat intelligence
- Ability to conceive, architect, and develop effective correlation and detection rules
- Must be able to travel up to 30%
Preferred Qualifications
- Industry-recognized certifications such as CISSP, GIAC, etc.
- Familiarity with a range of SIEM technologies, such as Splunk and IBM QRadar.