Enable job alerts via email!

Principal Consultant – SOC Transformation and XSIAM Deployment

Palo Alto Networks

Seattle (WA)

Remote

USD 163,000 - 189,000

Full time

Today
Be an early applicant

Job summary

A leading cybersecurity firm is seeking a Principal Consultant for SOC Transformation & XSIAM Deployment. This remote role focuses on modernizing customer Security Operations Centers (SOCs) through automation and advanced detection strategies. The ideal candidate will have over 10 years of experience in SIEM/security analytics, strong executive presence, and the ability to work with cross-functional teams. A competitive salary package of $163,000 - $189,000/YR is offered, based on qualifications.

Benefits

Restricted stock units
Bonuses
Employee benefits

Qualifications

  • Proven track record in modernizing Security Operations Centers (SOCs) for automation and AI detection.
  • 10+ years of hands-on experience in deploying and integrating SIEM/security analytics solutions.
  • 8+ years of experience with SOC tooling, processes, and workflows.

Responsibilities

  • Serve as lead strategic advisor for SOC modernization with XSIAM.
  • Lead multi-national SOC transformation programs.
  • Architect detection strategies and correlation rules.

Skills

Executive presence
Communication skills
Technical mastery
Automation and AI experience
Detection strategies

Education

Relevant bachelor's degree or industry-recognized qualifications (CISSP, GIAC, etc.)

Tools

SIEM technologies (Splunk, IBM QRadar)
Security Operations Center (SOC) tooling
Security analytics solutions
Job description
Overview

Our Mission

At Palo Alto Networks everything starts and ends with our mission:

Being the cybersecurity partner of choice, protecting our digital way of life.

Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are done, and we’re looking for innovators who are as committed to shaping the future of cybersecurity as we are.

Who We Are

This role is remote, but distance is no barrier to impact. Our hybrid teams collaborate across geographies to solve big problems, stay close to our customers, and grow together. You will be part of a culture that values trust, accountability, and shared success where your work truly matters.

Your Career As a Principal Consultant for SOC Transformation & XSIAM Deployment, you will be a seasoned leader at the forefront of our most strategic customer engagements. You will leverage a rare blend of consultative presence, deep technical mastery, and executive influence to guide our customers through complex SOC transformations. Your primary role is to drive these large-scale programs, ensuring the successful execution of foundational elements like seamless log migration and the development of sophisticated detection strategies, to deliver measurable security outcomes in highly dynamic enterprise environments.

Your Impact
  • Serve as the lead strategic advisor and subject matter expert for customers undertaking a full-scale SOC modernization with XSIAM.
  • Lead multi-national SOC transformation programs, consolidating fragmented detection and response processes into a unified, AI-driven platform.
  • Direct enterprise-scale XSIAM deployments, guiding customers from initial strategy to full operationalization.
  • Devise and oversee comprehensive log ingestion strategies to ensure high-quality data fuels the XSIAM platform.
  • Architect and implement sophisticated detection strategies and correlation rules to fortify customer defenses against advanced threats.
  • Fine-tune and optimize log sources and correlation rules to maximize system performance and detection efficacy.
  • Identify opportunities to enhance analyst alert handling and response through automation.
  • Transform ambiguity into structured action plans, driving accountability at every level of a customer engagement.
  • Build and mentor high-performing professional services teams that blend consulting, engineering, and change management expertise.
  • Partner with Product and R&D teams to incorporate field insights into roadmap priorities.
Your Experience
  • A proven track record in modernizing Security Operations Centers (SOCs) to achieve automation, AI-driven detection, and measurable improvements in MTTD/MTTR.
  • Exceptional executive presence, with strong verbal and written communication skills to engage with stakeholders from the SOC analyst to the CISO.
  • Experience acting as a trusted advisor to senior security leaders, with the ability to diagnose challenges and deliver strategic recommendations.
  • 10+ years of hands-on experience in deploying and integrating SIEM/security analytics solutions within large enterprise environments.
  • 8+ years of experience with Security Operations Center (SOC) tooling, processes, and workflows.
  • Hands-on technical mastery across SIEM, SOAR, EDR, cloud security, and threat intelligence.
  • Ability to conceive, architect, and develop effective correlation and detection rules.
  • Familiarity with a range of SIEM technologies, such as Splunk and IBM QRadar, is a plus.
  • Strong expertise in Regular Expressions (Regex).
  • Relevant bachelor's degree or industry-recognized qualifications (CISSP, GIAC, etc.), is a plus.
  • Must be able to travel up to 30%.
The Team

Our professional services team is critical to our success and mission. As part of this team, you enable customer success by providing support to clients post-sale. Our dedication to our customers doesn’t stop once they sign – it evolves.

As threats and technology evolve, we stay in step to accomplish our mission. You’ll be involved in implementing new products, transitioning from old products to new, and will fix integrations and critical issues as they are raised. But you won’t wait for them to be raised, you’ll seek them out, too. We fix and identify technical problems, with a pointed focus of providing the best customer support in the industry.

Compensation Disclosure

The compensation offered for this position will depend on qualifications, experience, and work location. For candidates who receive an offer at the posted level, the starting base salary (for non-sales roles) or base salary + commission target (for sales/commissioned roles) is expected to be between $163,000 - $189,000/YR. The offered compensation may also include restricted stock units and a bonus. A description of our employee benefits may be found here: http://benefits.paloaltonetworks.com/

Our Commitment

We’re problem solvers that take risks and challenge cybersecurity’s status quo. It’s simple: we can’t accomplish our mission without diverse teams innovating, together.

We are committed to providing reasonable accommodations for all qualified individuals with a disability. If you require assistance or accommodation due to a disability or special need, please contact us at accommodations@paloaltonetworks.com.

Immigration Sponsorship

Is role eligible for Immigration Sponsorship? No. Please note that we will not sponsor applicants for work visas for this position.

All your information will be kept confidential according to EEO guidelines.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.