Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Saddleback Solutions

Senior XSIAM Consultant/Engineer

Saddleback Solutions

. Lead kickoff and planning phases for XSIAM deployments, defining scope, objectives, timelines, and resource requirements .

Posted 9/20/2026contractRemote • NetherlandsSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in deploying and optimizing Palo Alto Networks Cortex XSIAM, with a strong focus on cybersecurity operations, threat detection, and incident response. Proficient in data source integration, security frameworks, and leading SOC transformation initiatives.

Highest-signal resume keywords
Palo Alto Networks Cortex XSIAM DeploymentCybersecurity Operations Center (SOC) LeadershipData Source Integration and ParsingSecurity Frameworks (MITRE ATT&CK, NIST)Scripting Languages (Python)

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
CybersecurityThreat DetectionIncident ResponseData Model CreationCorrelation Rules DevelopmentAttack Surface ManagementAlert AutomationConfiguration ManagementMulti-Tenant DeploymentsSecurity Telemetry Ingestion
Soft Skills
Analytical SkillsProblem-SolvingInterpersonal SkillsOrganizational SkillsProject Management
Tools & Technologies
SIEM PlatformsSOAR TechnologiesEndpoint Security SolutionsAWSAzureGCPContainerization Technologies
Certifications & Qualifications
PCNSEPCSAECISSPCISMGCIHGCFA
Industry Keywords
CybersecuritySecurity OperationsThreat IntelligenceDigital Attack-Surface VisibilityClient Environments

Tech Stack

Tools & technologies
AWSAzureCloudCyber SecurityGoogle Cloud PlatformPython

About the role

Key responsibilities & impact
  • Lead kickoff and planning phases for XSIAM deployments, defining scope, objectives, timelines, and resource requirements
  • Conduct architectural discovery sessions covering client environments, security requirements, and integration points
  • Oversee and participate in Cortex XSIAM infrastructure deployments, including complex multi-tenant deployments with child tenants
  • Guide and support data source onboarding for security telemetry ingestion into XSIAM
  • Tune endpoints to optimize data quality and reduce noise
  • Develop and implement correlation rules for advanced threat detection and alert generation
  • Configure Attack Surface Management capabilities to provide digital attack-surface visibility
  • Design, develop, and refine data models and parsers
  • Identify alert automation and playbook opportunities and contribute to implementation as needed
  • Implement threat intelligence management best practices and integrate threat intelligence sources
  • Define requirements for and contribute to custom widgets and reports
  • Lead and contribute to SOC transformation initiatives using XSIAM
  • Produce documentation including architectural designs, configuration guides, and operational runbooks

Requirements

What you’ll need
  • Bachelor's degree in Computer Science, Information Security, or a related field
  • Minimum of 8 years of experience in cybersecurity, with a strong focus on Security Operations Centers (SOC), incident response, and threat detection
  • Proven experience leading and delivering complex cybersecurity extended expertise engagements
  • Demonstrable expertise deploying, configuring, and optimizing Palo Alto Networks Cortex XSIAM
  • Extensive experience with SIEM platforms, SOAR technologies, and endpoint security solutions
  • Hands-on experience with data source integration, parsing, and data model creation
  • Proficiency in scripting languages such as Python for automation and data manipulation is a plus
  • Deep understanding of security frameworks such as MITRE ATT&CK and NIST
  • Expertise in network security, endpoint security, cloud security, and threat intelligence
  • Strong analytical and problem-solving skills with ability to troubleshoot complex technical issues
  • Familiarity with AWS, Azure, GCP, and containerization technologies is highly desirable
  • Exceptional written, verbal, and presentation skills
  • Strong interpersonal skills and ability to build client rapport and trust
  • Excellent organizational and project management abilities
  • Ability to work independently and as part of a distributed team
  • Proactive, results-oriented mindset with commitment to client success
  • Preferred certifications: PCNSE, PCSAE, CISSP, CISM, GCIH, or GCFA

Benefits

Comp & perks
  • Free training for all consultants
  • Opportunity for qualified consultants to run workshops or bootcamps between projects or full time
  • Support from Saddleback Solutions throughout engagements