Principal Consultant

Palo Alto Networks Logo

Palo Alto Networks

📍Remote - Japan

Summary

Join Palo Alto Networks as a Principal Consultant in Unit 42 and contribute to proactive cybersecurity domains like Cloud Security, Security Operations, Cyber Risk Management, and Artificial Intelligence. This role requires a passion for cybersecurity, a demonstrated track record of continuous learning, and technical expertise to deliver impactful consulting outcomes for clients. You will be responsible for designing and implementing security operations programs, performing cloud security assessments, and conducting cyber risk management activities. The ideal candidate will have 6+ years of experience in at least two of these domains, with expertise in one, and a proven ability to manage teams and build client relationships. Palo Alto Networks offers a supportive environment with flexible benefits, personalized learning opportunities, and a commitment to diversity and inclusion.

Requirements

  • We are seeking an individual who is passionate about cyber security, curious with a demonstrated track record of continuous learning, and has the technical acumen to embrace data, technological and innovative approaches to deliver the best consulting outcomes for clients, as they work to address the challenges associated with today’s cyber threat landscape
  • 6+ years of consulting experience in SOC, security engineering, SIEM administration, and incident management and demonstrated success with serving large, multinational organisations in designing and implementing an organisation’s security operations program, organisational structures, and capabilities
  • Possess a deep technical knowledge in Security Incident and Event Management (SIEM) platforms, Security Orchestration and Response (SOAR) technologies, Endpoint Protection and Response/Next Gen Protection and Response (EDR/XDR) tools, Next GenFirewalls, Threat Intelligence and Hunting platforms
  • Demonstrated experience in improving an organisations security operations capabilities such as improvements in asset visibility, threat detection capabilities, automation techniques, case management, enablement of compliance and regulatory requirements
  • Experience in conducting threat hunting and/or compromise assessments to identify active or dormant indicators of compromise (IoCs) or evidence of unknown threats within an organisations digital environment
  • Relevant industry certifications including GIAC Defensible Security Architect (GDSA), GIAC Intrusion Analyst (GCIA), GIAC Continuous Monitoring (GMON), CISSP
  • Understanding of cyber risk frameworks or industry standards such as 800-53, ISO 27001/2, PCI, CIS 18, CMMC
  • 6+ years of experience performing cloud security advisement and risk assessments based upon industry-accepted standards
  • Hands-on experience with a cloud hosting provider (AWS, Azure, GCP, etc)
  • Experience with a Cloud Application Security Broker - MCAS, Netskope
  • Possess a deep technical knowledge in CASBs, Cloud Platforms and the dependencies around such an environment (WAF, SSO, Cloud Threats, API Security, Cloud Security Posture Management)
  • Former experience with cloud migrations (cloud to cloud, or on-prem to cloud)
  • Understanding of cyber risk frameworks or industry standards such as 800-53, ISO 27001/2, PCI, CIS 18, CMMC
  • Technical proficiency in a wide range of cyber risk management services, including cyber threat, risk and control assessments, secure software development practices, penetration testing, vulnerability assessments, among others
  • Sound knowledge of applicable laws, compliance regulations, and industry standards as it relates to privacy, security, and compliance
  • Sound knowledge of applicable frameworks, including MITRE ATT@CK & D3FEND, CIS, NIST CSF, CSA CCM
  • Strong communication and presentation skills
  • Understanding of cyber risk frameworks or industry standards such as 800-53, ISO 27001/2, PCI, CIS 18, CMMC
  • 6+ years of experience performing cyber security consulting in at least two of the three domains above, with SME experience in one of the domains
  • Experience managing a team of consultants
  • Demonstrates a track record in strengthening existing and developing new client relationships
  • Ability to strive in a startup environment
  • Ability to perform travel requirements as needed to meet business demands
  • Identified ability to grow into a valuable contributor to the practice and, specifically
  • Have an external presence via public speaking, conferences, and/or publications
  • Have credibility, executive presence, and gravitas
  • Be able to have a meaningful and rapid delivery contribution
  • Have the potential and capacity to understand all aspects of the business and an excellent understanding of PANW products
  • Be collaborative and able to build relationships internally, externally, and across all PANW functions, including the sales team
  • Bachelor’s Degree in Information Security, Computer Science, Digital Forensics, Cyber Security OR equivalent years of professional experience or equivalent military experience to meet job requirements and expectations

Responsibilities

  • As a Principal Consultant in Unit 42 you will have the opportunity to work across a number of proactive cyber security domains including Cloud Security, Security Operations, Cyber Risk Management and Artificial Intelligence in cyber security
  • Ability to perform detailed assessments, identify areas for improvement and make recommendations to transform an organisation's cyber security operations and capabilities to better protect, detect and rapidly respond to modern threats
  • Experience in performing cyber security threat & risk assessments to support the development of cyber security strategies and roadmaps

Preferred Qualifications

  • Experience in security operations design, engineering and/or analysis and investigations, ideally in complex environments, with security event correlations across a variety of sources i.e. cloud, network, endpoint, logs
  • Knowledge of command-line interfaces or scripting tools in cloud environments is a plus
  • Secure software development practices, including SecDevOps
  • Sound knowledge of applicable frameworks & standards, including OWASP, MITRE ATT@CK & D3FEND, CIS, NIST CSF, CSA CCM & ISO 27107
  • Relevant industry certifications including CSCP
  • Experience in threat modelling & application security risk assessments, secure software development practices, including SecDevOps
  • FAIR Open certified & experience in applying FAIR for cyber risk quantification
  • Relevant industry certifications including CISSP, CISM, CISA

Benefits

  • Knowing we all have different needs, our development and personal wellbeing programs are designed to give you choice in how you are supported
  • This includes our FLEXBenefits wellbeing spending account with over 1,000 eligible items selected by employees, our mental and financial health resources, and our personalized learning opportunities - just to name a few!

Share this job:

Disclaimer: Please check that the job is real before you apply. Applying might take you to another website that we don't own. Please be aware that any actions taken during the application process are solely your responsibility, and we bear no responsibility for any outcomes.