Palo Alto Networks

Senior Consultant, DFIR, Reactive Services

Palo Alto Networks

full-time

Posted on:

Location Type: Remote

Location: CaliforniaUnited States

Visit company website

Explore more

AI Apply
Apply

Salary

💰 $128,000 - $176,000 per year

Job Level

About the role

  • This role is client-facing and requires the Senior Consultant to help lead and produce deliverables based on reactive services client engagements.
  • The Senior Consultant will work directly with multiple customers and key stakeholders (Admins, C-Suite, etc) to lead incident response incidents and guide clients through the engagement from start to finish.
  • Perform reactive incident response functions including but not limited to: host-based analysis functions through investigating Windows, Linux, and Mac OS X systems to identify Indicators of Compromise (IOCs).
  • Examine firewall, web, database, and other log sources to identify evidence and artifacts of malicious and compromised activity.
  • Investigate data breaches leveraging forensics tools including Encase, FTK, X-Ways, SIFT, Splunk, and custom Unit 42 investigation tools to determine source of compromises and malicious activity that occurred in client environments.
  • Lead incident response engagements to guide clients through forensic investigations, contain security incidents, and provide guidance on longer term remediation recommendations.
  • Mentorship of Incident Response Consultants in incident response and forensics best practices.
  • Ability to perform light travel requirements as needed to meet business demands (on average 20%).

Requirements

  • 4+ years of incident response or digital forensics experience with a passion for cyber security
  • Proficient with host-based forensics and data breach response
  • Experienced with EnCase, FTK, X-Ways, SIFT, Splunk, Volatility, WireShark, TCPDump, and open source forensic tools
  • Identified ability to grow into a valuable contributor to the practice and, specifically: have an external presence via public speaking, conferences, and/or publications; have credibility, executive presence, and gravitas; be able to have a meaningful and rapid delivery contribution; have the potential and capacity to understand all aspects of the business and an excellent understanding of PANW products; be collaborative and able to build relationships internally, externally, and across all PANW functions, including the sales team.
  • Incident Response Consulting preferred
  • Bachelor’s Degree in Information Security, Computer Science, Digital Forensics, Cyber Security or related field
Benefits
  • A description of our employee benefits may be found here
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills & Tools
incident responsedigital forensicshost-based forensicsdata breach responseforensic investigationmalicious activity analysisIndicators of Compromise (IOCs)remediation recommendationscyber security
Soft Skills
client-facingmentorshipcollaborationpublic speakingrelationship buildingexecutive presencecredibilitygravitational presencerapid delivery contribution