Senior MSIAM SOC Engineer (Unit 42)

Palo Alto Networks

Charlotte, USonsite$126k-$205k/yrPosted Jul 1, 2026
Posting intelligenceActively listedReposted 4×, possible evergreen/ghost posting

Skills

python

About the role

Charlotte, North Carolina, United States Product Engineering Ref ID: JR-018998

Our Mission

At Palo Alto Networks®, we’re united by a shared mission - to protect our digital way of life. We thrive at the intersection of innovation and impact, solving real-world problems with cutting-edge technology and bold thinking. Here, everyone has a voice, and every idea counts. If you’re ready to do the most meaningful work of your career alongside people who are just as passionate as you are, you’re in the right place.

Who We Are

In order to be the cybersecurity partner of choice, we must trailblaze the path and shape the future of our industry. This is something our employees work at each day and is defined by our values: Disruption, Collaboration, Execution, Integrity, and Inclusion. We weave AI into the fabric of everything we do and use it to augment the impact every individual can have. If you are passionate about solving real-world problems and ideating beside the best and the brightest, we invite you to join us!

This role is remote, but distance is no barrier to impact. Our hybrid teams collaborate across geographies to solve big problems, stay close to our customers, and grow together. You will be part of a culture that values trust, accountability, and shared success where your work truly matters.

Job Summary

Key Responsibilities

Drive the continuous refinement of correlation rules, ensuring all deployed detection logic meets strict standards for performance, accuracy, and operational relevance.

Translate Unit 42 threat intelligence research and emerging adversary TTPs into actionable, robust detection logic.

Champion proactive automation, engineering sophisticated playbooks to resolve emerging security challenges and optimize operational workflows ahead of demand.

Architect the end-to-end security lifecycle within Cortex XSIAM, seamlessly connecting data ingestion, high-fidelity detection engineering, and sophisticated response automation.

Qualifications

5+ years of hands-on experience in a Senior SOC, Detection Engineering, or Security Architecture role utilizing SIEMs, firewalls, EDR, sandboxes, and SOAR platforms.

Proven mastery of the Detection Engineering lifecycle, including experience with rule testing frameworks, soft-deployment strategies, and continuous tuning.

Demonstrated experience reviewing and QA-ing detection logic written by others, with the ability to provide constructive optimization feedback.

Proactive engineering mindset with a track record of designing complex automation playbooks (Cortex XSOAR or similar) based on anticipated threat vectors, not just reactive requests.

Strong background in incident response, threat hunting, and translating threat intelligence into actionable defense mechanisms.

Software development experience, with a strong proficiency in Python for security automation.

Exceptional consultative and communication skills, with the confidence to guide enterprise customers through complex architectural and workflow decisions.

Preferred Qualifications

Previous experience with Cortex XSIAM.

Compensation Disclosure

The compensation offered for this position will depend on qualifications, experience, and work location. For candidates who receive an offer at the posted level, the starting base salary (for non-sales roles) or base salary + commission target (for sales/com-missioned roles) is expected to be the annual range listed below. The offered compensation may also include restricted stock units and a bonus.

$126,000.00 - $204,500.00/yr

Our Commitment

We’re trailblazers that dream big, take risks, and challenge cybersecurity’s status quo. It’s simple: we can’t accomplish our mission without diverse teams innovating, together.

We are committed to providing reasonable accommodations for all qualified individuals with a disability. If you require assistance or accommodation due to a disability or special need, please contact us at accommodations@paloaltonetworks.com.

Is role eligible for Immigration Sponsorship? No. Please note that we will not sponsor applicants for work visas for this position.

Compensation

This SOC Analyst role pays $126k-$205k/yr. Within typical range for soc analyst roles in United States.

Questions about this role

Click "Apply with AI Applyd" above. We auto-fill the application from your resume and answer screening questions in seconds. No copy and paste, no juggling tabs.

Compensation for SOC Analyst roles in United States varies widely by seniority, employer size, and remote vs onsite arrangement. Check the salary range on this listing when published, or browse our SOC Analyst hub for United States medians across recent openings.

Most applications complete in under 90 seconds. You can track the status in your dashboard and watch the screenshot proof land the moment the application submits.

AI Applyd supports Greenhouse, Lever, Ashby, Workday, iCIMS, SmartRecruiters, Personio, Teamtailor and other major ATS platforms. If we can submit through the platform, we do.

Want AI Applyd to auto-apply to roles like this?

We tailor your resume per posting, fill the forms, and track replies for you.