远程工作雷达

高级MSIAM SOC工程师 (Unit 42)

Sr. MSIAM SOC Engineer (Unit 42)

开发工程职能支持限定地区(需当地身份)
公司Palo Alto Networks
薪资未公开
工作地点Australia
地域资格限定地区(需当地身份)
时区要求日间重叠约 9 小时,基本正常作息
用工类型Full Time
发布时间今天
数据来源Himalayas
前往 Himalayas 查看并投递 →
注意地域限制:该职位明确限定在 Australia 招聘。如果你是位于中国大陆的求职者,通常需要当地工作身份才能投递,或需与雇主确认是否接受独立合同(Contractor)形式合作。

我们的使命
在Palo Alto Networks®,我们因共同的使命而团结——保护我们的数字生活方式。我们在创新与影响的交汇点蓬勃发展,用尖端技术和大胆的思维解决现实问题。在这里,每个人都有发言权,每个想法都至关重要。如果你准备好与同样充满热情的人一起,开展职业生涯中最有意义的工作,那么你来对地方了。
我们是谁
为了成为客户首选的网络安全合作伙伴,我们必须开拓道路,塑造行业的未来。这是我们的员工每天都在努力实现的目标,由我们的价值观定义:颠覆、协作、执行、诚信和包容。我们将人工智能融入我们所做的每件事中,并利用它来增强每个人所能产生的影响。如果你热衷于解决现实问题,并与最优秀的人一起构思创意,我们邀请你加入我们!
这个职位是远程办公,但距离不会阻碍影响力。我们的混合团队跨地域协作,解决大问题,贴近客户,并共同成长。你将加入一个重视信任、责任和共同成功的文化,你的工作真正有意义。
职位概述
你的职业发展
作为Palo Alto Networks Unit 42的高级SOC工程师,你将推动为全球客户提供定制检测规则和自动化剧本的创建、验证和优化。你将作为值得信赖的顾问,与客户紧密合作,利用Cortex XSIAM和Unit 42的专业知识最大化其安全态势。这是一个高级、高度分析性的职位,需要深入了解检测生命周期、主动自动化和威胁情报。
你的影响

  • 负责定制检测和响应自动化的全生命周期,通过严格的开发、测试、预发布和软实施工程流程,将它们部署为高保真度的Cortex XSIAM相关规则和剧本。
  • 推动相关规则的持续改进,确保所有已部署的检测逻辑符合性能、准确性和操作相关性的严格标准。
  • 将Unit 42的威胁情报研究和新兴对手战术、技巧和程序(TTPs)转化为可操作的、稳健的检测逻辑。
  • 倡导主动自动化,设计复杂的剧本以解决新兴的安全挑战,并在需求出现之前优化操作流程。
  • 构建端到端的安全解决方案
查看英文原文

Our Mission
At Palo Alto Networks®, we’re united by a shared mission—to protect our digital way of life. We thrive at the intersection of innovation and impact, solving real-world problems with cutting-edge technology and bold thinking. Here, everyone has a voice, and every idea counts. If you’re ready to do the most meaningful work of your career alongside people who are just as passionate as you are, you’re in the right place.
Who We Are
In order to be the cybersecurity partner of choice, we must trailblaze the path and shape the future of our industry. This is something our employees work at each day and is defined by our values: Disruption, Collaboration, Execution, Integrity, and Inclusion. We weave AI into the fabric of everything we do and use it to augment the impact every individual can have. If you are passionate about solving real-world problems and ideating beside the best and the brightest, we invite you to join us!
This role is remote, but distance is no barrier to impact. Our hybrid teams collaborate across geographies to solve big problems, stay close to our customers, and grow together. You will be part of a culture that values trust, accountability, and shared success where your work truly matters.Job Summary
Your Career
As a Senior SOC Engineer within Unit 42 at Palo Alto Networks, you will drive the creation, validation, and optimization of custom detection rules and automated playbooks across our global customer base. You will act as a trusted advisor, working closely with clients to maximize their security posture using Cortex XSIAM and Unit 42 expertise. This is a senior, highly analytical role requiring a deep understanding of detection lifecycles, proactive automation, and threat intelligence.
Your Impact

  • Own the full lifecycle of custom detections and response automations, deploying them as high-fidelity Cortex XSIAM correlation rules and playbooks through a rigorous engineering process of development, testing, staging, and soft implementation.
  • Drive the continuous refinement of correlation rules, ensuring all deployed detection logic meets strict standards for performance, accuracy, and operational relevance.
  • Translate Unit 42 threat intelligence research and emerging adversary TTPs into actionable, robust detection logic.
  • Champion proactive automation, engineering sophisticated playbooks to resolve emerging security challenges and optimize operational workflows ahead of demand.
  • Architect the end-to-end security lifecycle within Cortex XSIAM, seamlessly connecting data ingestion, high-fidelity detection engineering, and sophisticated response automation.

Qualifications
Your Experience

  • 5+ years of hands-on experience in a Senior SOC, Detection Engineering, or Security Architecture role utilizing SIEMs, firewalls, EDR, sandboxes, and SOAR platforms.
  • Proven mastery of the Detection Engineering lifecycle, including experience with rule testing frameworks, soft-deployment strategies, and continuous tuning.
  • Demonstrated experience reviewing and QA-ing detection logic written by others, with the ability to provide constructive optimization feedback.
  • Proactive engineering mindset with a track record of designing complex automation playbooks (Cortex XSOAR or similar) based on anticipated threat vectors, not just reactive requests.
  • Strong background in incident response, threat hunting, and translating threat intelligence into actionable defense mechanisms.
  • Software development experience, with a strong proficiency in Python for security automation.
  • Exceptional consultative and communication skills, with the confidence to guide enterprise customers through complex architectural and workflow decisions.

Nice to have:
· Previous experience with Cortex XSIAM.

Our Commitment
We’re trailblazers that dream big, take risks, and challenge cybersecurity’s status quo. It’s simple: we can’t accomplish our mission without diverse teams innovating, together.
We are committed to providing reasonable accommodations for all qualified individuals with a disability. If you require assistance or accommodation due to a disability or special need, please contact us at .
Palo Alto Networks is an equal opportunity employer. We celebrate diversity in our workplace, and all qualified applicants will receive consideration for employment without regard to age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or other legally protected characteristics.
All your information will be kept confidential according to EEO guidelines.
Is role eligible for Immigration Sponsorship? No. Please note that we will not sponsor applicants for work visas for this position.Originally posted on Himalayas

本页面信息整理自 Himalayas,版权归原发布方所有。职位可能随时关闭,投递请以原始页面为准。 本站只做信息聚合展示,不参与招聘流程,也不向求职者收取任何费用。

该公司其他在招职位

大型客户经理 - 私营部门

Palo Alto NetworksIrelandFull Time今天
市场运营职能支持限定地区(需当地身份)日间重叠约 2 小时,需偶尔早起或晚睡

大客户经理 - 研究

Palo Alto NetworksGermanyFull Time今天
市场运营职能支持限定地区(需当地身份)日间重叠约 2 小时,需偶尔早起或晚睡

← 返回全部职位