Manager, MSIAM SOC Engineering

🔥 18 minutes ago

🏄 California – Remote

infoinfo

💵 $175.4k - $283.8k / year

⏰ Full Time

🟡 Mid-level

🟠 Senior

🛡️ Security Operations

🦅 H1B Visa Sponsor

infoinfo

👻 Ghost score 0%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Palo Alto Networks

Palo Alto Networks

10,000+ employees

🔒 Cybersecurity

🏢 Enterprise

💰 $1M Seed Round - Morta Security on 2013-02

Cybersecurity • Enterprise

Palo Alto Networks is a global cybersecurity company that provides AI-driven platforms, products, and services to protect networks, cloud workloads, endpoints, and applications. Its portfolio includes next-generation firewalls, SASE and Prisma Cloud (CNAPP) offerings, the Cortex security operations suite (XDR, XSOAR, XSIAM), and Unit 42 threat intelligence and incident response services. Palo Alto Networks helps enterprises secure AI deployments, automate SOC workflows, and prevent, detect, and respond to sophisticated threats across hybrid and multi-cloud environments.

📋 Description

• Lead, mentor, and manage a team of SOC and Detection Engineers • Drive career development, team retention, and operational excellence • Provide hands-on technical leadership by evaluating architectures, writing Python code, and designing complex automation playbooks • Research emerging threats, platform capabilities, and security frameworks • Identify, scope, and prioritize content packs, integrations, and automation initiatives • Own end-to-end detection and playbook development workflows • Maintain accountability for KPIs including SLA adherence, detection quality, deployment speed, and customer satisfaction • Partner with Unit 42 research teams and Cortex Engineering to translate threat research into production-ready XSIAM capabilities and platform improvements • Enforce standards for staging, testing, soft implementation, and continuous tuning • Serve as a senior technical escalation point for high-priority client engagements and architecture reviews

🎯 Requirements

• 3+ years of experience directly managing security engineering or SOC teams in an enterprise or managed services environment • 5+ years of experience across Detection Engineering, SIEM, SOAR, and EDR/XDR platforms • Strong hands-on coding proficiency, including Python • Practical experience with Detection-as-Code (DaC) • Experience with CI/CD pipelines for playbook deployment • Experience with rigorous software development lifecycles within a SOC • Profound understanding of APT attack lifecycles, including initial access, lateral movement, data exfiltration, and persistence mechanisms • Ability to design advanced correlation logic and automated workflows • Track record of driving engineering execution against defined SLAs and quality metrics • Exceptional collaborative and stakeholder communication skills • Preferred: experience leveraging AI, LLMs, or Machine Learning in SecOps • Preferred: Incident Response or Threat Hunting experience • Preferred: Cortex XSIAM or Cortex XSOAR experience • Preferred: MITRE ATT&CK experience • Must be able to work without immigration sponsorship; the employer will not sponsor work visas

🏖️ Benefits

• Restricted stock units may be included • Bonus may be included • Employee benefits are offered (specific benefits not listed) • Reasonable accommodations for qualified individuals with a disability or special need

Apply Now

Similar Jobs

🔥 57 minutes ago

Rapid7

1001 - 5000

🔒 Cybersecurity

Security Operations Analyst II investigating threats and strengthening Rapid7’s cybersecurity products and services. Conducting incident response, threat hunting, forensic analysis, and detection improvements.

🔥 3 hours ago

BeyondTrust

1001 - 5000

🔒 Cybersecurity

Sr SOC Analyst defending BeyondTrust’s privileged-access cybersecurity SaaS infrastructure. Monitoring threats, leading incident response, and advancing AI-augmented detection operations.

🕒 4 days ago

UltraViolet Cyber

201 - 500

💼 Consulting

📦 Logistics

🔒 Cybersecurity

Senior SOC Analyst monitoring, investigating, and responding to threats for UltraViolet Cyber’s unified cybersecurity operations platform. Developing detections, documenting incidents, and mentoring junior analysts.

🕒 5 days ago

Teamficient

11 - 50

📦 Logistics

📣 Marketing

✈️ Travel

SOC Analyst monitoring enterprise security alerts and investigating incidents for TeamFicient’s IT services cybersecurity team. Supporting SIEM-based detection, incident response, and threat protection.

🕒 6 days ago

1Password

501 - 1000

🔒 Cybersecurity

☁️ SaaS

⚡ Productivity

Security incident response manager leading responders and scaling AI-assisted security operations. Protecting 1Password’s password-management and unified access platform.