Home
/
Bussiness Operations
/
Principal Consultant, Cloud DFIR, Reactive Services (Unit 42)
Principal Consultant, Cloud DFIR, Reactive Services (Unit 42)-June 2024
New York
Jun 18, 2025
ABOUT PALO ALTO NETWORKS
Palo Alto Networks provides robust, innovative protection against cyberattacks.
10,000+ employees
Technology
VIEW COMPANY PROFILE >>
About Principal Consultant, Cloud DFIR, Reactive Services (Unit 42)

  Company Description Our Mission

  At Palo Alto Networks® everything starts and ends with our mission:

  Being the cybersecurity partner of choice, protecting our digital way of life.

  Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are done, and we’re looking for innovators who are as committed to shaping the future of cybersecurity as we are.

  Our Approach to Work

  We lead with flexibility and choice in all of our people programs. We have disrupted the traditional view that all employees have the same needs and wants. We offer personalization and offer our employees the opportunity to choose what works best for them as often as possible - from your wellbeing support to your growth and development, and beyond!

  At Palo Alto Networks, we believe in the power of collaboration and value in-person interactions. This is why our employees generally work from the office three days per week, leaving two days for choice and flexibility to work where you feel most effective. This setup fosters casual conversations, problem-solving, and trusted relationships. While details may evolve, our goal is to create an environment where innovation thrives, with office-based teams coming together three days a week to collaborate and thrive, together!

  Job Description Your Career

  This role is client-facing and requires the Principal Consultant to lead and produce deliverables based on reactive services client engagements.  The Principal Consultant will work directly with multiple customers and key stakeholders (Admins, C-Suite, etc) to drive the security priorities of the Cloud Platforms (Azure, AWS, GCP) and Cloud Related Applications/Services (CASB).

  Your Impact

  Perform reactive incident response functions in public cloud environments, primarily Amazon Web Services (AWS), Microsoft Azure, Google Cloud Platform (GCP), and AliCloudExamine compute, storage, network, IAM, Kubernetes, serverless, and other log sources to identify evidence of malicious activityInvestigate data breaches leveraging traditional forensic tools, cloud-specific tools, and custom Unit 42 techniques to determine the source of compromises and malicious activity that occurred in client environmentsManage incident response engagements to scope work, guide clients through forensic investigations, contain security incidents, and provide guidance on longer term remediation recommendationsAbility to perform travel requirements as need to meet business demands (on average 20%)Mentorship of team members in incident response and forensics best practices Qualifications Your Experience

  6+ years of incident response or digital forensics consulting experience with a passion for cyber security3+ years in a cloud environment as an administrator, security operator, or consultant- DevOps experience welcomeHands-on experience with architecting, building, operating, investigating, and troubleshooting large and complex cloud environmentsUnderstand and demonstrate best practices for architecting and operating in a cloud environmentExperience with large-scale application administration and debugging, Cloud Security Posture Management (CSPM) solutions, or automation via scripting or cloud-native approachesStrong leadership skills including experience managing a team or individualsExperience with leading complicated engagements including scoping, interfacing with the client, and have executed on a technical front Proficient with host-based forensics and data breach responseExperienced with EnCase, FTK, X-Ways, SIFT, Splunk, Redline, Volatility, WireShark, TCPDump, and open source forensic toolsIdentified ability to grow into a valuable contributor to the practice and, specifically -have an external presence via public speaking, conferences, and/or publicationshave credibility, executive presence, and gravitasbe able to have a meaningful and rapid delivery contributionhave the potential and capacity to understand all aspects of the business and an excellent understanding of PANW productsbe collaborative and able to build relationships internally, externally, and across all PANW functions, including the sales teamIncident response consulting experience requiredAbility to perform travel requirements as needed to meet business demands (on average 20%)Bachelor’s Degree in Information Security, Computer Science, Digital Forensics, Cyber Security or related field or equivalent military experience required Additional Information The Team

  Unit 42 Consulting is Palo Alto Network's security advisory team.  Our vision is to create a more secure digital world by providing the highest quality incident response, risk management, and digital forensic services to clients of all sizes. Our team is composed of recognized experts and incident responders with deep technical expertise and experience in investigations, data breach response, digital forensics, and information security. With a highly successful track record of delivering mission-critical cybersecurity solutions, we are experienced in working quickly to provide an effective incident response, attack readiness, and remediation plans with a focus on providing long-term support to improve our clients’ security posture. 

  Our Commitment

  We’re trailblazers that dream big, take risks, and challenge cybersecurity’s status quo. It’s simple: we can’t accomplish our mission without diverse teams innovating, together.

  We are committed to providing reasonable accommodations for all qualified individuals with a disability. If you require assistance or accommodation due to a disability or special need, please contact us at [email protected].

  Palo Alto Networks is an equal opportunity employer. We celebrate diversity in our workplace, and all qualified applicants will receive consideration for employment without regard to age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or other legally protected characteristics.

  All your information will be kept confidential according to EEO guidelines.

  The compensation offered for this position will depend on qualifications, experience, and work location. For candidates who receive an offer at the posted level, the starting base salary (for non-sales roles) or base salary + commission target (for sales/commissioned roles) is expected to be between $151,400/yr to $208,100/yr. The offered compensation may also include restricted stock units and a bonus. A description of our employee benefits may be found here.

Comments
Welcome to zdrecruit comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Show More Comments
SIMILAR JOBS
Cyber Threat Management Analyst
Overview: Thomson Reuters is looking to add a Threat Detection Analyst to add to our cyber defense capacities. Working with Threat Intelligence and Incident Response teams to develop and deploy secur
Business Analyst - Retirement
Job Title: Business Analyst - Retirement Job location: Durham, NC Duration: Full time Job Description: Capgemini is seeking for a skilled and meticulous Business Analyst to join our team and play a k
Operations Analyst Senior - PNC Investments
Position Overview At PNC, our people are our greatest differentiator and competitive advantage in the markets we serve. We are all united in delivering the best experience for our customers. We work
Workforce Management Specialist H/F
Become a Part of the NIKE, Inc. Team NIKE, Inc. does more than outfit the world's best athletes. It is a place to explore potential, obliterate boundaries and push out the edges of what can be. The c
Analista de Atendimento ao Cliente - Business Operations - São Paulo/SP
Provides customer service support to customers utilizing effective relationship management skills. Please refer to the job description for additional details. Key Responsibilities: • Order Management
First Line Manager / Area Manager Logistic (m|w|d)
Komm zur Arbeit und sei bereit, schnell zu agieren, deine Fähigkeiten zu erweitern und die vielen Möglichkeiten zu nutzen. Unsere Distributionszentren sind weltweit der Schlüssel, um TJ Maxx, Marshal
Business System Analyst (o9 Planning)
Company Description At Intuitive, we are united behind our mission: we believe that minimally invasive care is life-enhancing care. Through ingenuity and intelligent technology, we expand the potenti
Lead Consultant - Oracle Supply Chain Planning SCP/ASCP, (m/f/d)
Role - Lead Consultant Technology - Oracle EBS R12 SCM modules in Supply Chain Planning, Procurement, Inventory, Distribution domains Location - Munich, Germany Job Description Today, the corporate l
Intern, Analyst Performance Measurement
At CN, everydaybrings new and exciting challenges. You can expect an interesting environmentwhere you're part of making sure ourbusiness is running optimally and safely-helping keep the economy on tr
Specialist Trade Compliance Risk Management EMEA
Position: Specialist Trade Compliance Risk Management EMEA Job Description: Principal Accountabilities • This position ensures compliance with applicable regional, local, and U.S. export and import c
Copyright 2023-2025 - www.zdrecruit.com All Rights Reserved