Principal Consultant, Remediation Services (Unit 42) - Remote

Washington, DC, United States

Applications have closed

Palo Alto Networks

Implement Zero Trust, Secure your Network, Cloud workloads, Hybrid Workforce, Leverage Threat Intelligence & Security Consulting. Cybersecurity Services & Education for CISO’s, Head of Infrastructure, Network Security Engineers, Cloud...

View company page

Company Description

Our Mission

At Palo Alto Networks® everything starts and ends with our mission:

Being the cybersecurity partner of choice, protecting our digital way of life.

We have the vision of a world where each day is safer and more secure than the one before. These aren’t easy goals to accomplish – but we’re not here for easy. We’re here for better. We are a company built on the foundation of challenging and disrupting the way things are done, and we’re looking for innovators who are as committed to shaping the future of cybersecurity as we are.

We’re changing the nature of work. Palo Alto Networks is evolving to meet the needs of our employees now and in the future through FLEXWORK, our approach to how we work. From benefits to learning, location to leadership, we’ve rethought and recreated every aspect of the employee experience at Palo Alto Networks.  And because it FLEXes around each individual employee based on their individual choices, employees are empowered to push boundaries and help us all evolve, together.

Job Description

Your Career

Unit 42’s Principal Consultant, Remediation Services is a senior consulting role where you will lead and execute technically supporting Unit 42 customers. Our Remediation team helps our clients build an effective security operations program, hyperfocused on minimizing organizational risk. Similarly, our goal is to help our clients recover from devastating security incidents on their worst days, while being fully prepared for what’s next in today’s ever-evolving security landscape.

You will partner strategically and tactically with our Incident Response consultants, Cyber Threat Intelligence professionals, MDR, and Product teams leveraging the deep knowledge gained supporting our 85,000+ clients.

Your Impact

  • Lead and manage Incident Response remediation engagements for Unit 42 clients - Travel may be up to 70% and may include short notice travel
  • Ability to work in concert with an Incident Response Lead to address risks that are being identified during the course of an active investigation
  • Creation of detailed remediation workflows in preparation for coordinated remediation events
  • Develop recommendations and roadmaps of customer cybersecurity controls (e.g., NIST CSF, CIS, HIPAA, PCI DSS, GDPR) in support of coordinated remediation events
  • Rebuild servers and workstations in an automated manor utilizing infrastructure as code tooling such as Terraform, Jenkins, Packer, Ansible, etc. or AWS CodeBuild
  • Architect network topologies, infrastructure hardening, and configuration modifications informed by modern security threats and attacker techniques
  • Creation of verbose reporting and presentations for both technical and leadership stakeholders 
  • Communicate remediation strategies and workflows to Unit 42 clients, including IT staff, senior leadership, and both internal and external counsel

Qualifications

Your Experience 

  • 6+ years of prior management experience with technical teams including network engineering, system administration, and virtualization at an enterprise scale
  • Deep expertise in identity management, single sign-on (SSO), and authentication protocols
  • Thorough understanding of enterprise security controls in Microsoft Active Directory (AD) and Azure AD environments – including scalable architectures, risk reduction strategies, and rebuilding AD
  • Strong expertise with cloud computing concepts with a focus on securing cloud infrastructure including hybrid cloud environments 
  • Expertise using security controls/frameworks to harden both Windows and Linux systems and cloud-based environments
  • Expertise in networking and related segmentation and isolation strategies
  • Management and integration of network and host-based firewall configurations
  • Possess a strong understanding of strategic logging for network devices, Windows and Linux hosts, and cloud-based environments
  • Excellent written and verbal communication skills with a variety of audiences and stakeholders 
  • Preservation of data in support of Unit 42’s forensic investigative workflows

Additional Qualifications

  • Ability to respond quickly, willingness to work on ad hoc assignments, work independently or leading teams as needed
  • Ability to develop unique and creative solutions to complex, technical problems
  • Ability to manage clients, lead meetings, and manage multiple project teams concurrently
  • Ability to quickly build and maintain rapport with new and existing clients 
  • Ability to allocate staff to various projects quickly and efficiently
  • Experience with OSX is highly desired

Additional Information

The Team

Unit 42 Consulting is Palo Alto Network's security advisory team.  Our vision is to create a more secure digital world by providing the highest quality incident response, risk management, and digital forensic services to clients of all sizes. Our team is composed of recognized experts and incident responders with deep technical expertise and experience in investigations, data breach response, digital forensics, and information security. With a highly successful track record of delivering mission-critical cybersecurity solutions, we are experienced in working quickly to provide effective incident response, attack readiness, and remediation plans with a focus on providing long-term support to improve our client's security posture. 

Our Commitment

We’re trailblazers that dream big, take risks, and challenge cybersecurity’s status quo. It’s simple: we can’t accomplish our mission without diverse teams innovating, together.

We are committed to providing reasonable accommodations for all qualified individuals with a disability. If you require assistance or accommodation due to a disability or special need, please contact us at accommodations@paloaltonetworks.com.

Palo Alto Networks is an equal opportunity employer. We celebrate diversity in our workplace, and all qualified applicants will receive consideration for employment without regard to age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or other legally protected characteristics.

All your information will be kept confidential according to EEO guidelines.

The compensation offered for this position will depend on qualifications, experience, and work location. For candidates who receive an offer, the starting salary (includes on-target earnings = base + on target incentives for sales roles) is expected to be between $151,400/yr to $208,100/yr. The offered compensation may also include restricted stock units and a bonus. A description of our employee benefits may be found here.

Covid-19 Vaccination Information for Palo Alto Networks Jobs

  • Vaccine requirements and disclosure obligations vary by country.
  • Unless applicable law requires otherwise, you must be vaccinated for COVID or qualify for a reasonable accommodation if:
    • The job requires accessing a company worksite
    • The job requires in-person customer contact and the customer has implemented such requirements
    • You choose to access a Palo Alto Networks worksite
  • If you have questions about the vaccine requirements of this particular position based on your location or job requirements, please inquire with the recruiter.

Tags: Active Directory Ansible AWS Azure Cloud Firewalls Forensics GDPR HIPAA Incident response Linux NIST PCI DSS Risk management SSO Terraform Threat intelligence Windows

Perks/benefits: Career development Medical leave Salary bonus Signing bonus Team events

Regions: Remote/Anywhere North America
Country: United States
Job stats:  5  0  0
Category: Consulting Jobs

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.