Principal Consultant – SOC Transformation and XSIAM Deployment
Listed on 2026-01-17
-
IT/Tech
Cybersecurity, IT Consultant
Company Description
Our Mission
At Palo Alto Networks® everything starts and ends with our mission:
Becoming the cybersecurity partner of choice, protecting our digital way of life.
Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are done, and we’re looking for innovators who are as committed to shaping the future of cybersecurity as we are.
This role is remote, but distance is no barrier to impact. Our hybrid teams collaborate across geographies to solve big problems, stay close to our customers, and grow together. You will be part of a culture that values trust, accountability, and shared success where your work truly matters.
Job DescriptionJob Summary
As a Principal Consultant for SOC Transformation & XSIAM Deployment, you will be a seasoned leader at the forefront of our most strategic customer engagements. You will leverage a blend of consultative presence, technical mastery, and executive influence to guide customers through complex SOC transformations. Your primary role is to drive these large‑scale programs, ensuring successful execution from log migration to sophisticated detection strategies, delivering measurable security outcomes.
Key Responsibilities- Serve as the lead strategic advisor and subject matter expert for customers undertaking a full‑scale SOC modernization with XSIAM.
- Lead multi‑national SOC transformation programs, consolidating fragmented detection and response processes into a unified, AI‑driven platform.
- Direct enterprise‑scale XSIAM deployments, guiding customers from initial strategy through to full operationalization.
- Devise and oversee comprehensive log ingestion strategies to ensure high‑quality data fuels the XSIAM platform.
- Architect and implement sophisticated detection strategies and correlation rules to fortify customer defenses against advanced threats.
- Fine‑tune and optimize log sources and correlation rules to maximize system performance and detection efficacy.
- Identify opportunities to enhance analyst alert handling and response through automation, collaborating with teams to implement solutions.
- Build and mentor high‑performing professional services teams, fostering a culture of collaboration and accountability.
Required Qualifications
- A proven track record in modernizing Security Operations Centers (SOCs) to achieve automation, AI‑driven detection, and measurable improvements in MTTD/MTTR
- Exceptional executive presence, with strong verbal and written communication skills to engage with stakeholders from the SOC analyst to the CISO
- Experience acting as a trusted advisor to senior security leaders, with the ability to diagnose challenges and deliver strategic recommendations
- 10+ years of hands‑on experience in deploying and integrating SIEM/security analytics solutions within large enterprise environments
- 8+ years of experience with Security Operations Center (SOC) tooling, processes, and workflows
- Hands‑on technical mastery across SIEM, SOAR, EDR, cloud security, and threat intelligence
- Ability to conceive, architect, and develop effective correlation and detection rules
- Must be able to travel up to 30%
- Industry‑recognized certifications such as CISSP, GIAC, etc.
- Familiarity with a range of SIEM technologies, such as Splunk and IBM QRadar.
Our professional services team is critical to our success and mission. As part of this team, you enable customer success by providing support to clients post‑sale. Our dedication to our customers doesn’t stop once they sign – it evolves.
As threats and technology evolve, we stay in step to accomplish our mission. You’ll be involved in implementing new products, transitioning from old products to new, and will fix integrations and critical issues as they are raised. But you won’t wait for them to be raised, you’ll seek them out, too. We fix and identify technical problems, with a pointed focus of providing the best customer support in the industry.
CompensationDisclosure
The compensation offered for this position will depend on…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).