Being the cybersecurity partner of choice, protecting our digital way of life.
Your Career
As a Principal Consultant in Unit 42 you will have the opportunity to work across a number of proactive cyber security domains including Cloud Security, Security Operations, Cyber Risk Management and Artificial Intelligence in cyber security.
Your Impact
- Principal SOC Advisory
- 6+ years of consulting experience in SOC, security engineering, SIEM administration, and incident management and demonstrated success with serving large, multinational organisations in designing and implementing an organisation’s security operations program, organisational structures, and capabilities
- Possess a deep technical knowledge in Security Incident and Event Management (SIEM) platforms, Security Orchestration and Response (SOAR) technologies, Endpoint Protection and Response/Next Gen Protection and Response (EDR/XDR) tools, Next GenFirewalls, Threat Intelligence and Hunting platforms
- Defensive Security Skills (desired)
- Experience in security operations design, engineering and/or analysis and investigations, ideally in complex environments, with security event correlations across a variety of sources i.e. cloud, network, endpoint, logs
- Ability to perform detailed assessments, identify areas for improvement and make recommendations to transform an organisation's cyber security operations and capabilities to better protect, detect and rapidly respond to modern threats.
- Demonstrated experience in improving an organisations security operations capabilities such as improvements in asset visibility, threat detection capabilities, automation techniques, case management, enablement of compliance and regulatory requirements
- Experience in conducting threat hunting and/or compromise assessments to identify active or dormant indicators of compromise (IoCs) or evidence of unknown threats within an organisations digital environment
- Relevant industry certifications including GIAC Defensible Security Architect (GDSA), GIAC Intrusion Analyst (GCIA), GIAC Continuous Monitoring (GMON), CISSP
- Understanding of cyber risk frameworks or industry standards such as 800-53, ISO 27001/2, PCI, CIS 18, CMMC
- Principal Cloud Security
- 6+ years of experience performing cloud security advisement and risk assessments based upon industry-accepted standards
- Hands-on experience with a cloud hosting provider (AWS, Azure, GCP, etc)
- Experience with a Cloud Application Security Broker - MCAS, Netskope
- Possess a deep technical knowledge in CASBs, Cloud Platforms and the dependencies around such an environment (WAF, SSO, Cloud Threats, API Security, Cloud Security Posture Management)
- Former experience with cloud migrations (cloud to cloud, or on-prem to cloud)
- Knowledge of command-line interfaces or scripting tools in cloud environments is a plus
- Cloud Security skills (desired)
- Secure software development practices, including SecDevOps
- Sound knowledge of applicable frameworks & standards, including OWASP, MITRE ATT@CK & D3FEND, CIS, NIST CSF, CSA CCM & ISO 27107
- Relevant industry certifications including CSCP
- Understanding of cyber risk frameworks or industry standards such as 800-53, ISO 27001/2, PCI, CIS 18, CMMC
- Principal Cyber Risk Management
- Experience in performing cyber security threat & risk assessments to support the development of cyber security strategies and roadmaps
- Technical proficiency in a wide range of cyber risk management services, including cyber threat, risk and control assessments, secure software development practices, penetration testing, vulnerability assessments, among others
- Sound knowledge of applicable laws, compliance regulations, and industry standards as it relates to privacy, security, and compliance
- Sound knowledge of applicable frameworks, including MITRE ATT@CK & D3FEND, CIS, NIST CSF, CSA CCM
- Strong communication and presentation skills
- Cyber Risk Management skills (desired)
- Experience in threat modelling & application security risk assessments, secure software development practices, including SecDevOps
- FAIR Open certified & experience in applying FAIR for cyber risk quantification
- Relevant industry certifications including CISSP, CISM, CISA
- Understanding of cyber risk frameworks or industry standards such as 800-53, ISO 27001/2, PCI, CIS 18, CMMC
Your Experience
- 6+ years of experience performing cyber security consulting in at least two of the three domains above, with SME experience in one of the domains
- Experience managing a team of consultants
- Demonstrates a track record in strengthening existing and developing new client relationships
- Ability to strive in a startup environment
- Ability to perform travel requirements as needed to meet business demands
- Identified ability to grow into a valuable contributor to the practice and, specifically -
- have an external presence via public speaking, conferences, and/or publications
- have credibility, executive presence, and gravitas
- be able to have a meaningful and rapid delivery contribution
- have the potential and capacity to understand all aspects of the business and an excellent understanding of PANW products
- be collaborative and able to build relationships internally, externally, and across all PANW functions, including the sales team
- Bachelor’s Degree in Information Security, Computer Science, Digital Forensics, Cyber Security OR equivalent years of professional experience or equivalent military experience to meet job requirements and expectations
All your information will be kept confidential according to EEO guidelines.