Enable job alerts via email!

Staff SOC Security Engineer

Palo Alto Networks

Santa Clara (CA)

On-site

USD 123,000 - 200,000

Full time

2 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Palo Alto Networks seeks a Staff SOC Security Engineer to join their Security Operations team. In this pivotal role, you will analyze security incidents, lead response activities, and continuously enhance security processes. Ideal candidates should have over four years of experience in security operations and a strong understanding of current security trends.

Qualifications

  • Minimum 4+ years in a Security Operations role.
  • Familiar with network and endpoint security principles.
  • Experience in Incident Response and cloud defense.

Responsibilities

  • Monitor and analyze alerts to confirm security incidents.
  • Lead incident response activities and perform analysis.
  • Conduct proactive threat hunting.

Skills

Analytical skills
Problem solving
Communication skills

Education

Bachelor's degree in information/cyber security, IT, or equivalent military experience

Tools

SIEM

Job description

Job Description

Your Career .

As Staff SOC Security Engineer, you will join a team of analysts and engineers who protect the enterprise that aims to protect the world from cyberattacks. In this role, you will quickly become an expert in Palo Alto Networks security products; primarily XDR, XSIAM, Next Generation Firewalls and Prisma Cloud. You will also provide feedback to the engineering teams to continually improve our world leading security products.

Many SOCs are drowning in false positive alerts, but Palo Alto Networks SOC changed the game and re-invented how Security Operations should function. Our vigilant focus on automation, prevention and high-fidelity alerts enables our analysts to be more proactive. You will not spend your day sifting through alerts. Instead, your day will be split evenly between (1) analyzing and responding to high fidelity alerts (2) proactive threat hunting and (3) contributing to a variety of different projects aligned to your personal interests.

Continuous learning is also key to our Security Operations team’s philosophy. We offer many channels for learning to ensure our teammates are up to speed with the latest TTPs.

Your Impact

  • Monitor and analyze alerts to confirm security incidents
  • Perform analysis of true positive alerts to determine root cause and impact
  • Own and lead individual incident response activities by analyzing security alerts and coordinating responses - Perform in-depth event review and analysis where appropriate - Analyze events, research the potential cause, and recommend a course of action
  • Hunt for indications of compromise across multiple technology platforms
  • Continuously improve our alerting use cases and the threat hunting program
  • Collaborate with SOC Automation team to automate tedious, boring activities
  • Contribute to proof-of-concept assessments of new security products
  • Generate reports detailing security incidents for security leaders and the business
  • Show off your excellent communication skills in post mortem reviews of incident response activities, to facilitate continuous improvement
  • Research security trends with the goal of improving our own processes and tools

Qualifications:
Qualifications

  • Minimum 4+ years working in a Security Operations role
  • Familiarity with the principles of network and endpoint security, current threat and attack trends, and have a working knowledge of security principles such as defense in depth
  • Familiarity with performing security Incident Response activities in complex organizations, with familiarity in at least one of the following three core areas
  • Endpoint Detection and Response (EDR) or Endpoint Forensics
  • Network Log Analysis
  • Public Cloud Defense (AWS, GCP etc)
  • Threat hunting experience
  • Hands-on working knowledge of a SIEM
  • Excellent analytical and problem solving skills
  • Strong communication skills, both spoken and written
  • Strong familiarity with technologies commonly seen in Enterprises. (i.e. AD, Kubernetes, VMs etc)
  • Bachelor's degree from four-year college or university or equivalent training, education, and experience in information / cyber security, computer systems, IT, etc. or equivalent military experience required

Additional Information

The Team

Palo Alto Networks Information Security team is part of the Global Security Operations team and supports threat detection and incident response in our internal environments. The scope of the Security Operations team spans both the Enterprise and Product environments.

Compensation Disclosure

The compensation offered for this position will depend on qualifications, experience, and work location. For candidates who receive an offer at the posted level, the starting base salary (for non-sales roles) or base salary + commission target (for sales/commissioned roles) is expected to be between $123000 - $200000yr. The offered compensation may also include restricted stock units and a bonus. A description of our employee benefits may be found here.

#LC1

Our Commitment

We’re problem solvers that take risks and challenge cybersecurity’s status quo. It’s simple: we can’t accomplish our mission without diverse teams innovating, together.

We are committed to providing reasonable accommodations for all qualified individuals with a disability. If you require assistance or accommodation due to a disability or special need, please contact us at accommodations@paloaltonetworks.com.

Palo Alto Networks is an equal opportunity employer. We celebrate diversity in our workplace, and all qualified applicants will receive consideration for employment without regard to age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or other legally protected characteristics.

All your information will be kept confidential according to EEO guidelines.

Is role eligible for Immigration Sponsorship? No. Please note that we will not sponsor applicants for work visas for this position.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Staff Product Security Engineer

Databricks Inc.

Remote

USD 178,000 - 274,000

Yesterday
Be an early applicant

Staff Security Engineer

Davita Inc.

Farmers Branch

Remote

USD 120,000 - 152,000

5 days ago
Be an early applicant

Staff Security Engineer

Davita Inc.

Dallas

Remote

USD 120,000 - 152,000

5 days ago
Be an early applicant

[Hiring] Staff Security Engineer @CloudQuery

CloudQuery

Remote

USD 120,000 - 160,000

6 days ago
Be an early applicant

Staff Product Security Engineer

Databricks

Remote

USD 178,000 - 274,000

7 days ago
Be an early applicant

Associate Application Security Engineer

Veeva Systems

Remote

USD 90,000 - 130,000

5 days ago
Be an early applicant

Staff Cloud security Engineer

Teladoc Health, Inc.

Remote

USD 160,000 - 180,000

9 days ago

[Hiring] Staff Security Engineer @Inovalon

Inovalon

Remote

USD 128,000 - 175,000

13 days ago

Staff Cloud Security Engineer

ZipRecruiter

Palo Alto

On-site

USD 190,000 - 220,000

2 days ago
Be an early applicant