Expoint - all jobs in one place

המקום בו המומחים והחברות הטובות ביותר נפגשים

Limitless High-tech career opportunities - Expoint

Palo Alto Principal Consultant Cloud DFIR Reactive Services Unit - 
United States, California 
687393784

06.03.2025

Being the cybersecurity partner of choice, protecting our digital way of life.

Your Career

This role is client-facing and requires the Principal Consultant to lead and produce deliverables based on reactive services client engagements. The Principal Consultant will work directly with multiple customers and key stakeholders (Admins, C-Suite, etc) to drive the security priorities of the Cloud Platforms (Azure, AWS, GCP) and Cloud Related Applications/Services (CASB).

Your Impact

  • Perform reactive incident response functions in public cloud environments, primarily Amazon Web Services (AWS), Microsoft Azure, Google Cloud Platform (GCP), and AliCloud

  • Examine compute, storage, IAM, network traffic, serverless, and other log sources to identify evidence of malicious activity

  • Investigate data breaches leveraging traditional forensic tools, cloud-specific tools, and custom Unit 42 techniques to determine the source of compromises and malicious activity that occurred in client environments

  • Manage incident response engagements to scope work, guide clients through forensic investigations, contain security incidents, and provide guidance on longer term remediation recommendations

  • Ability to perform travel requirements as needed to meet business demands (on average 20%)

  • Mentorship of team members in incident response and forensics best practices

Your Experience

  • 6+ years of incident response or digital forensics consulting experience with a passion for cyber security

  • 3+ years in a cloud environment as an administrator, security operator, or consultant- DevOps experience welcome

  • Hands-on experience with architecting, building, operating, investigating, and troubleshooting large and complex cloud environments

  • Understand and demonstrate best practices for architecting and operating in a cloud environment

  • Experience with large-scale application administration and debugging, Cloud Security Posture Management (CSPM) solutions, or automation via scripting or cloud-native approaches

  • Strong leadership skills including experience managing a team or individuals

  • Experience with leading complicated engagements including scoping, interfacing with the client, and have executed on a technical front

Compensation Disclosure

The compensation offered for this position will depend on qualifications, experience, and work location. For candidates who receive an offer at the posted level, the starting base salary (for non-sales roles) or base salary + commission target (for sales/commissioned roles) is expected to be between $0 - $0/YR. The offered compensation may also include restricted stock units and a bonus. A description of our employee benefits may be found .

All your information will be kept confidential according to EEO guidelines.