Being the cybersecurity partner of choice, protecting our digital way of life.
Your Career
As a Senior Technical Support Engineer specializing in Cortex Xpanse (ASM ) , you will play a critical role in managing all internal and external internet-connected assets for potential attack vectors and exposures, and ensuring our clients' security infrastructures are robust and responsive.
Your Impact
- Provide advanced technical support for cybersecurity automation tools, including SIEM, SOAR, and EDR solutions
- Diagnose and resolve complex technical issues related to the integration of SIEM solutions with other security tools and data sources
- Analyze and respond to security threats from various sources such as Firewalls, IDS/IPS, Antivirus, and EDR systems
- Develop and maintain scripts using Python, PowerShell, and Linux CLI commands to automate security processes and enhance system integrations
- Collaborate with cross-functional teams to troubleshoot integration issues and improve the overall security architecture
Your Experience
- BE/B.Tech engineering, equivalent technical degree or equivalent military experience required
- Minimum of 3+ years of experience in technical support or a similar role, with exposure on CyberSecurity Technologies, Automation and Architecture such as SIEM, SOAR, Threat Detection and Attack Surface management
- Proficiency in scripting languages (Python, PowerShell, Linux CLI)
- Strong understanding of network protocols, firewalls, and security architectures
- In Depth understanding of Active Response and Attack Surface Management
- Understanding data models, APIs, and user interfaces for user-facing features
- Brute-Force attack, Vulnerability Management Across the Cyber Attack Surface
- Overview and better working knowledge of EDR, MDM, CMDB, Cloud Assets, Vulnerability Assessment Systems and Ordr Discovery Engine
- Excellent problem-solving skills, with the ability to diagnose and resolve complex technical issue
- Exceptional communication skills, both written and verbal, with a customer-centric approach
- Ability to work independently and as part of a team in a fast-paced, dynamic environment
- Experience in incident response and threat detection using SIEM tools.
- Ability to troubleshoot integration issues between SIEM and other security tools.
Nice-to-Have
- Experience with design, build and optimize data models and queries for speed and scale, using data storage technologies like MySQL and BigQuery
- Design and build business logic and API endpoints using Python and Flask
- Building user interfaces using Angular and React
- Experience with dynamic playbooks and automated workflows in SOAR
- Understanding of attack visualization and automated alert management
- Security certifications (CISSP, CISM, CompTIA Security+, CEH)
You’ll be involved in implementing new products, transitioning from old products to new, and will fix integrations and critical issues as they are raised – in fact, you’ll seek them out to ensure our clients are safely supported. We fix and identify technical problems, with a pointed focus of providing the best customer support in the industry.
All your information will be kept confidential according to EEO guidelines.
Covid-19 Vaccination Information for Palo Alto Networks Jobs
- Vaccine requirements and disclosure obligations vary by country.
- Unless applicable law requires otherwise, you must be vaccinated for COVID or qualify for a reasonable accommodation if:
- The job requires accessing a company worksite
- The job requires in-person customer contact and the customer has implemented such requirements
- You choose to access a Palo Alto Networks worksite
- If you have questions about the vaccine requirements of this particular position based on your location or job requirements, please inquire with the recruiter.