Principal Professional Services Engineer
This role is remote, but distance is no barrier to impact. Our hybrid teams collaborate across geographies to solve big problems, stay close to our customers, and grow together. You will be part of a culture that values trust, accountability, and shared success where your work truly matters.
As a Principal Consultant for SOC Transformation & XSIAM Deployment, you will be a seasoned leader at the forefront of our most strategic customer engagements. You will leverage a rare blend of consultative presence, deep technical mastery, and executive influence to guide our customers through complex Security Operations Center (SOC) transformations. Your primary role is to drive these large-scale programs, ensuring the successful execution of foundational elements like seamless log migration and the development of sophisticated detection strategies, to deliver measurable security outcomes in highly dynamic enterprise environments.
Your impact includes:
- Serve as the lead strategic advisor and subject matter expert for customers undertaking a full-scale SOC modernization with XSIAM.
- Lead multi-national SOC transformation programs, consolidating fragmented detection and response processes into a unified, AI-driven platform.
- Direct enterprise-scale XSIAM deployments, guiding customers from initial strategy to full operationalization.
- Devise and oversee comprehensive log ingestion strategies to ensure high-quality data fuels the XSIAM platform.
- Architect and implement sophisticated detection strategies and correlation rules to fortify customer defenses against advanced threats.
- Fine-tune and optimize log sources and correlation rules to maximize system performance and detection efficacy.
- Identify opportunities to enhance analyst alert handling and response through automation.
- Transform ambiguity into structured action plans, driving accountability at every level of a customer engagement.
- Build and mentor high-performing professional services teams that blend consulting, engineering, and change management expertise.
- Partner with Product and R&D teams to incorporate field insights into roadmap priorities.
Your experience includes:
- Demonstrated experience running a Security Operations Center (SOC), with a proven track record of modernizing operations through automation, AI-driven threat detection, and measurable improvements in Mean Time to Detect (MTTD) and Mean Time to Respond (MTTR).
- Exceptional executive presence, with strong verbal and written communication skills to engage with stakeholders from the SOC analyst to the CISO.
- Experience acting as a trusted advisor to senior security leaders, with the ability to diagnose challenges and deliver strategic recommendations.
- 10+ years of hands-on experience in deploying and integrating SIEM/security analytics solutions within large enterprise environments.
- 8+ years of experience with Security Operations Center (SOC) tooling, processes, and workflows.
- Hands-on technical mastery across SIEM, SOAR, EDR, cloud security, and threat intelligence.
- Ability to conceive, architect, and develop effective correlation and detection rules.
- Familiarity with a range of SIEM technologies, such as Splunk and IBM QRadar, is a plus.
- Strong expertise in Regular Expressions (Regex).
- Relevant bachelor's degree or industry-recognized qualifications (CISSP, GIAC, etc.), is a plus.
We are committed to providing reasonable accommodations for all qualified individuals with a disability. If you require assistance or accommodation due to a disability or special need, please contact us at accommodations@paloaltonetworks.com.
Palo Alto Networks is an equal opportunity employer. We celebrate diversity in our workplace, and all qualified applicants will receive consideration for employment without regard to age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or other legally protected characteristics.
All your information will be kept confidential according to EEO guidelines.