2 месяца назад
Cortex XSIAM Security Engineer (Cybersecurity)
10 000 - 12 500$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Cortex XSIAM Security Engineer (Cybersecurity): Deploying and operationalizing Palo Alto Networks Cortex XSIAM for federal and enterprise clients with an accent on SIEM/XDR consolidation and SOC modernization. Focus on designing automation playbooks, tuning detection models using XQL, and integrating diverse security telemetry.
Location: Must be located in the DC Metro Area (Hybrid)
Salary: $120,000 - $150,000 per year
Company
A security consulting firm specializing in AI-driven Security Operations and SOC modernization for federal and commercial clients.
What you will do
- Lead end-to-end deployment of Cortex XSIAM, including data source onboarding, log ingestion, and normalization.
- Integrate XSIAM with firewalls, endpoints, cloud platforms, identity providers, and ticketing systems.
- Build and tune correlation rules and ML-based detection models leveraging XQL to improve detection fidelity.
- Design and maintain SOAR automation playbooks to automate triage, enrichment, and remediation workflows.
- Serve as an escalation point for complex incident investigations using causality chains and attack-story visualizations.
- Act as a technical advisor to clients on SOC modernization strategy and provide knowledge transfer sessions.
Requirements
- 3+ years of hands-on experience with Palo Alto Networks Cortex XDR or Cortex XSIAM.
- Experience deploying or administering SIEM platforms such as Splunk, Microsoft Sentinel, or IBM QRadar.
- Proficiency with XQL or comparable query languages for threat hunting and log analysis.
- Active Secret clearance (minimum); TS/SCI preferred.
- Must be located in the DC Metro Area.
- Bachelor's degree in Cybersecurity, Computer Science, or equivalent professional experience.
Nice to have
- Palo Alto Networks Certified Security Automation Engineer (PCSAE) or Cortex XSIAM certification.
- Experience with NIST SP 800-53, RMF, DISA STIGs, and CDM program requirements.
- Familiarity with Zero Trust Architecture (NIST SP 800-207, CISA ZT Maturity Model).
- Exposure to Python or JavaScript for custom integration development.
- CISSP, CEH, or CompTIA Security+ certification.
Culture & Benefits
- Comprehensive insurance package including health, dental, and vision.
- 401(k) retirement plan.
- Paid time off.
- Flexible work-from-home options available within the hybrid structure.
- Collaborative environment focused on innovation, inclusion, and mutual respect.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
5 дней назад
Cybersecurity Analyst I (Cybersecurity)
80 000 - 90 000$
3 дня назад
Associate SOC Analyst (Cybersecurity)
85 000 - 90 000$
8 дней назад
Threat Hunter (Cybersecurity)
3 дня назад
IT Security Operations Manager
90 000 - 100 000$
4 дня назад
Security Engineer
2 дня назад