Palo Alto Networks Principal Consultant, Remediation Services (Unit 42) - Remote in New York, New York
At Palo Alto Networks®, everything starts and ends with our mission: Being the cybersecurity partner of choice, protecting our digital way of life. We have the vision of a world where each day is safer and more secure than the one before. These aren’t easy goals to accomplish – but we’re not here for easy. We’re here for better. We are a company built on the foundation of challenging and disrupting the way things are done, and we’re looking for innovators who are as committed to shaping the future of cybersecurity as we are.
We’re changing the nature of work. Palo Alto Networks is evolving to meet the needs of our employees now and in the future through FLEXWORK, our approach to how we work. From benefits to learning, location to leadership, we’ve rethought and recreated every aspect of the employee experience at Palo Alto Networks. And because it FLEXes around each individual employee based on their individual choices, employees are empowered to push boundaries and help us all evolve, together.
Your Career as a Principal Remediation Consultant:
Unit 42’s Principal Consultant, Remediation Services is a senior consulting role where you will lead and execute technically supporting Unit 42 customers. Our Remediation team helps our clients build an effective security operations program, hyperfocused on minimizing organizational risk. Similarly, our goal is to help our clients recover from devastating security incidents on their worst days, while being fully prepared for what’s next in today’s ever-evolving security landscape.
You will partner strategically and tactically with our Incident Response consultants, Cyber Threat Intelligence professionals, MDR, and Product teams leveraging the deep knowledge gained supporting our 85,000+ clients.
Your Impact as a Principal Remediation Consultant:
Lead and manage Incident Response remediation engagements for Unit 42 clients. Travel may be up to 70% and may include short notice travel.
Ability to work in concert with an Incident Response Lead to address risks that are being identified during the course of an active investigation
Creation of detailed remediation workflows in preparation for coordinated remediation events
Develop recommendations and roadmaps of customer cybersecurity controls (e.g., NIST CSF, CIS, HIPAA, PCI DSS, GDPR) in support of coordinated remediation events
Rebuild servers and workstations in an automated manor utilizing infrastructure as code tooling such as Terraform, Jenkins, Packer, Ansible, etc. or AWS CodeBuild
Architect network topologies, infrastructure hardening, and configuration modifications informed by modern security threats and attacker techniques
Creation of verbose reporting and presentations for both technical and leadership stakeholders
Communicate remediation strategies and workflows to Unit 42 clients, including IT staff, senior leadership, and both internal and external counsel
6+ years of prior management experience with technical teams including network engineering, system administration, and virtualization at an enterprise scale
Deep expertise in identity management, single sign-on (SSO), and authentication protocols
Thorough understanding of enterprise security controls in Microsoft Active Directory (AD) and Azure AD environments – including scalable architectures, risk reduction strategies, and rebuilding AD
Strong expertise with cloud computing concepts with a focus on securing cloud infrastructure including hybrid cloud environments
Expertise using security controls/frameworks to harden both Windows and Linux systems and cloud-based environments
Expertise in networking and related segmentation and isolation strategies
Management and integration of network and host-based firewall configurations
Possess a strong understanding of strategic logging for network devices, Windows and Linux hosts, and cloud-based environments
Excellent written and verbal communication skills with a variety of audiences and stakeholders
Preservation of data in support of Unit 42’s forensic investigative workflows
*Additional Qualifications: *
Ability to respond quickly, willingness to work on ad hoc assignments, work independently or leading teams as needed
Ability to develop unique and creative solutions to complex, technical problems
Ability to manage clients, lead meetings, and manage multiple project teams concurrently
Ability to quickly build and maintain rapport with new and existing clients
Ability to allocate staff to various projects quickly and efficiently
Experience with OSX is highly desired
Unit 42 Consulting is Palo Alto Network's security advisory team. Our vision is to create a more secure digital world by providing the highest quality incident response, risk management, and digital forensic services to clients of all sizes. Our team is composed of recognized experts and incident responders with deep technical expertise and experience in investigations, data breach response, digital forensics, and information security. With a highly successful track record of delivering mission-critical cybersecurity solutions, we are experienced in working quickly to provide effective incident response, attack readiness, and remediation plans with a focus on providing long-term support to improve our client's security posture.
We’re trailblazers that dream big, take risks, and challenge cybersecurity’s status quo. It’s simple: we can’t accomplish our mission without diverse teams innovating, together. We are committed to providing reasonable accommodations for all qualified individuals with a disability. If you require assistance or accommodation due to a disability or special need, please contact us at email@example.com.
Palo Alto Networks is an equal opportunity employer. We celebrate diversity in our workplace, and all qualified applicants will receive consideration for employment without regard to age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or other legally protected characteristics.
All your information will be kept confidential according to EEO guidelines.
Covid-19 Vaccination Information for Palo Alto Networks Jobs
Vaccine requirements and disclosure obligations vary by country.
Unless applicable law requires otherwise, you must be vaccinated for COVID or qualify for a reasonable accommodation if:
The job requires accessing a company worksite
The job requires in-person customer contact and the customer has implemented such requirements
You choose to access a Palo Alto Networks worksite
If you have questions about the vaccine requirements of this particular position based on your location or job requirements, please inquire with the recruiter.