Logo
Palo Alto Networks

Staff SOC Security Engineer

Palo Alto Networks, Santa Clara, California, us, 95053


Job Description

Your Career

Palo Alto Networks Information Security team is looking for a SOC Security Engineer to join the Global Security Operations team and support threat detection and incident response in our internal environments. The scope of the Security Operations team spans both the Enterprise and Product environments.

You will join a team of analysts and engineers who protect the enterprise that aims to protect the world from cyberattacks. In this role, you will quickly become an expert in Palo Alto Networks security products; primarily XDR, XSIAM, Next Generation Firewalls and Prisma Cloud. You will also provide feedback to the engineering teams to continually improve our world leading security products.

Many SOCs are drowning in false positive alerts, but Palo Alto Networks SOC changed the game and re-invented how Security Operations should function. Our vigilant focus on automation, prevention and high-fidelity alerts enables our analysts to be more proactive. You will not spend your day sifting through alerts. Instead, your day will be split evenly between (1) analyzing and responding to high fidelity alerts (2) proactive threat hunting and (3) contributing to a variety of different projects aligned to your personal interests.

Continuous learning is also key to our Security Operations team’s philosophy. We offer many channels for learning to ensure our teammates are up to speed with the latest TTPs.

Your Impact

Monitor and analyze alerts to confirm security incidents

Perform analysis of true positive alerts to determine root cause and impact

Own and lead individual incident response activities by analyzing security alerts and coordinating responses. Perform in-depth event review and analysis where appropriate. Analyze events, research the potential cause, and recommend a course of action.

Hunt for indications of compromise across multiple technology platforms

Continuously improve our alerting use cases and the threat hunting program

Collaborate with SOC Automation team to automate tedious, boring activities

Contribute to proof-of-concept assessments of new security products

Generate reports detailing security incidents for security leaders and the business

Show off your excellent communication skills in post mortem reviews of incident response activities, to facilitate continuous improvement

Research security trends with the goal of improving our own processes and tools

Qualifications:

Minimum 4+ years working in a Security Operations role

Familiarity with the principles of network and endpoint security, current threat and attack trends, and have a working knowledge of security principles such as defense in depth.

Familiarity with performing security Incident Response activities in complex organizations, with familiarity in at least one of the following three core areas:

Endpoint Detection and Response (EDR) or Endpoint Forensics

Network Log Analysis

Public Cloud Defense (AWS, GCP etc)

Threat hunting experience

Hands-on working knowledge of a SIEM

Excellent analytical and problem solving skills

Strong communication skills, both spoken and written

Strong familiarity with technologies commonly seen in Enterprises. (i.e. AD, Kubernetes, VMs etc)

Bachelor's degree from four-year college or university or equivalent training, education, and experience in information / cyber security, computer systems, IT, etc. or equivalent military experience required

Education

Bachelor's degree from four-year college or university; or equivalent training, education, and experience in information / cyber security, computer systems, IT, etc.

The Team

Serious mission, fun culture; We’re not your ordinary Information Security team. We’re a diverse group of security professionals that embraces challenging the status quo in order to protect Palo Alto Networks and our customers. They say it’s the people you work with that make you want to go to work and it’s true here; we love our work.

Think about it: Driving innovation on the Information Security team of the fastest-growing high-tech cybersecurity company is a once in a lifetime opportunity. You’ll be joined by the brightest minds in technology, and our global teams are on the front line of defense against cyberattacks.

We’re joined by one mission – but driven by the impact of that mission and what it means to protect our way of life in the digital age. Join a dynamic and fast-paced team that feels excitement at the prospect of a challenge and feels a thrill every time we beat the bad guys.

We hope to meet you soon!

Our Commitment

We’re trailblazers that dream big, take risks, and challenge cybersecurity’s status quo. It’s simple: we can’t accomplish our mission without diverse teams innovating, together. To learn more about our culture and dedication to inclusion and innovation, visit our

careers page .

Palo Alto Networks is an equal opportunity employer. We celebrate diversity in our workplace, and all qualified applicants will receive consideration for employment without regard to age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or other legally protected characteristics.

Additionally, we are committed to providing reasonable accommodations for all qualified individuals with a disability. If you require assistance or an accommodation due to a disability or special need, please contact us at accommodations@paloaltonetworks.com.

“The compensation offered for this position will depend on qualifications, experience, and work location. For candidates who receive an offer at the posted level, the starting base salary (for non-sales roles) or base salary + commission target (for sales/commissioned roles) is expected to be between $145,500/yr to $235,400/yr. The offered compensation may also include restricted stock units and a bonus. A description of our employee benefits may be found

here .

#J-18808-Ljbffr