Principal Consultant, Incident Response

3 weeks ago


Singapur, Singapore Palo Alto Networks Full time
Job Description

Your Career

As a Principal Consultant in Unit 42 the individual will be responsible for managing incident response engagements with our largest clients and in our most complex engagements. They will become the go-to expert for clients during high-priority incident response, remediation, and recovery phases, providing both strategic guidance and technical oversight, while also focusing on product integration. The role requires in-depth cybersecurity expertise to enable serving as an incident commander throughout the incident response lifecycle.  

While actively involved in incident response service delivery, this person also works with peers and the executive team to enhance Unit 42’s incident response practice, including developing and improving the technical and operating methodologies employed during incident response engagements. 

We are seeking an individual who is dedicated to delivering highly technical consulting services to an exceptional standard, thrives in a fast paced team environment, and advocates for innovative approaches to deliver the best outcomes for our cross-sector clients. 

Your Impact

  • Lead the team delivering high-profile, high-stakes enterprise level incident response engagements 
  • Provide hands-on, expert-level incident response services to clients and deliver findings to CxO and/or Board of Directors
  • Partner with the Unit 42 Directors, executive team and service line leaders to develop and execute strategy for the Unit 42 Digital Forensics & Incident Response (DFIR) practice, as well as continuously advance the maturity of our services
  • Drive innovation in Unit 42’s reactive offerings, by leading the consulting team and collaborating with cross-functional teams to bring new capabilities and services to market that leverage Palo Alto Networks products
  • Ensure the consistency and quality of our services and highest level of customer service
  • Integrate threat intelligence into our services by deepening the feedback loop with Unit 42 Threat Intelligence team and telemetry
  • Recruit and onboard world class Incident Response talent to support our growth goals
  • Support the professional growth and development of our consultants through training and technical enablement
  • Foster and maintain a culture that attracts and retains smart, kind team members dedicated to executing with excellence
  • Identify and execute strategies for service development, enablement, and process that result in the pull through of Palo Alto Networks products
  • Cultivate and maintain relationships with key clientele to increase awareness of Unit 42’s’ capabilities and provide on-demand expertise for client needs
  • Amplify Unit 42s’ presence and credibility in the marketplace through thought leadership, including via speaking engagements, articles, whitepapers, and media exposure

Qualifications

Your Experience

  • 7+ years of hands-on professional experience in incident response, with 3+ years experience in client-facing consulting roles
  • Demonstrated prior experience and success in leading multi-site, large scale incident response engagements, including scoping work, managing incident response engagements end-to-end and providing guidance on tactical and longer term remediation recommendations
  • Experience in managing, leading and motivating consultants at all levels
  • Experience as a team leader including overseeing other senior, and mid-level analyst/consultant teams
  • Ability to travel as needed to meet business demands
  • Able to split your time across commercial support, client delivery, team coaching, and technical expertise and skills maintenance activities
  • Strong presentation, communication, and presentation skills with verifiable industry experience communicating at CxO and/or Board of Directors level
  • Expert level of knowledge of applicable laws, compliance regulations, and industry standards as it relates to privacy, security, and compliance 
  • Deep technical experience  and operational understanding of major operating systems (Microsoft Windows, Linux, or Mac) and/or proficiency in host based forensics, network forensics and cloud incident response
  • Endpoint Detection and Response (EDR), threat hunting, log analysis,and triage forensics
  • Collection and analysis of host and cloud based forensic data at scale
  • Client services mindset and top-notch client management skills
  • Experienced-based understanding of clients’ needs and desired outcomes in incident response investigations
  • Demonstrated writing ability, including technical reports, business communication, and thought leadership pieces
  • Operates with a hands-on approach to service delivery with a bias towards collaboration and teamwork
  • Track record of championing innovation and improvement initiatives for your area of expertise, identifying emerging trends and technologies and developing leading  solutions to address client needs
  • Be a valuable contributor to the practice and, specifically
    • develop an external presence via public speaking, conferences, and/or publications
    • have credibility, executive presence, and gravitas
    • be able to have a meaningful and rapid delivery contribution
    • have the potential and capacity to understand all aspects of the business and an excellent understanding of PANW products
    • be collaborative and able to build relationships internally, externally, and across all PANW functions, including the sales team
  • Bachelor’s Degree in Information Security, Computer Science, Digital Forensics, Cyber Security, or equivalent years of professional experience or equivalent relevant experience or equivalent military experience to meet job requirements and expectations
  • Professional industry certifications such as
    • GIAC Certified Forensic Analyst (GCFA), GIAC Certified Forensic Examiner (GCFE), GIAC Incident Handler (GCIH)

Desired but not essential

  • Operational Technology (OT) incident response experience
  • Ability to assist in a broad range of cyber security consulting engagements such as digital forensics and incident response (DFIR), security operations (SOC) assessments, table top exercises (TTX), and/or compromise assessments
  • Professional industry certifications such as
    • GIAC Defensible Security Architect (GDSA), GIAC Intrusion Analyst (GCIA), GIAC Continuous Monitoring (GMON)
    • Offensive Security Certified Expert (OSCE), Offensive Security Certified Professional (OSCP), CREST Registered Tester (CREST CRT), GIAC Penetration Tester (GPEN)
    • CISSP, CISM
  • Understanding of cyber risk frameworks or industry standards such NIST CSF and 800-53, ISO 27001/2, PCI, CIS Top 20, CMMC
  • Public speaking experience at prestigious industry events
  • (In addition to exceptional English communications skills) business level proficiency in one or more languages spoken across JAPAC


Additional Information

The Team

Unit 42 Consulting is Palo Alto Network's security advisory team.  Our vision is to create a more secure digital world by providing the highest quality incident response, risk management, and digital forensic services to clients of all sizes. Our team is composed of recognized experts and incident responders with deep technical expertise and experience in investigations, data breach response, digital forensics, and information security. With a highly successful track record of delivering mission-critical cybersecurity solutions, we are experienced in working quickly to provide an effective incident response, attack readiness, and remediation plans with a focus on providing long-term support to improve our clients’ security posture. 

Our Commitment

We’re problem solvers that take risks and challenge cybersecurity’s status quo. It’s simple: we can’t accomplish our mission without diverse teams innovating, together.

We are committed to providing reasonable accommodations for all qualified individuals with a disability. If you require assistance or accommodation due to a disability or special need, please contact us at  accommodations@paloaltonetworks.com.

Palo Alto Networks is an equal opportunity employer. We celebrate diversity in our workplace, and all qualified applicants will receive consideration for employment without regard to age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or other legally protected characteristics.

All your information will be kept confidential according to EEO guidelines.



  • Singapur, Singapore LRQA Full time

    Role: Working as a Cyber Incident Response Consultant within our Defensive Security Services (DSS) team, you will deliver incident response engagements and professional services to existing and new/emergency customers. You will encounter a wide range of compromises, network environments and security technologies. You will be working closely with...


  • Singapur, Singapore PSA International Full time

    As a member of #TeamPSA, you will be part of a diverse and global team at the forefront of creating cargo solutions to enable more agile, resilient and sustainable supply chains. Experience first-hand and drive supply chain transformation from Singapore and through PSA’s global network of ports, logistics and supply chain solutions. Alongside, we can...


  • Singapur, Singapore SAP Full time

    We help the world run better Our company culture is focused on helping our employees enable innovation by building breakthroughs together. How? We focus every day on building the foundation for tomorrow and creating a workplace that embraces differences, values flexibility, and is aligned to our purpose-driven and future-focused work. We offer a highly...


  • Singapur, Singapore CAPCO Full time

    Consultant / Senior Consultant / Principal Consultant - Data at Capco Singapore Capco, a Wipro company, is a global technology and management consultancy specializing in driving digital transformation in the financial services industry. With a growing client portfolio comprising of over global organizations, Capco operates at the intersection of...


  • Singapur, Singapore SS&C Technologies Holdings Full time

    Job Description SS&C Eze (Eze) is seeking a Principal Engagement Consultant to join the Client Services team in its Singapore office. We are looking for a candidate who has a proven track record in financial technology or a related discipline and can provide excellent service to our clients in the investment industry. Successful candidates will be highly...

  • Principal Consultant

    7 months ago


    Singapur, Singapore Oracle Full time

    Oracle is strongly committed to the global financial services industry. In order assist financial institutions, Oracle has brought together the industry's best application and technology ecosystem for evolutionary transformation, providing customers with the largest footprint of functional 's transformation strategy for financial services industry is driven...

  • Principal Consultant

    4 months ago


    Singapur, Singapore Media.Monks Full time

    Media Monk’s APAC Consulting Practice houses a new breed of strategic consultants who help clients leverage technology, data and digital capabilities to shape their future growth. Our consultants work across all industries and provide deep expertise across Digital Transformation, Digital Media, Data & Digital Platforms, AI at Scale,and Change. Our...


  • Singapur, Singapore IQVIA Full time

    As a Principal at IQVIA, you will be responsible for working directly with clients to provide value added input, to develop business opportunities that will lead to additional starbursts and to deliver projects built around strategic issues. Your paramount duty lies in ensuring an elevated level of client satisfaction. You typically operate within a...

  • Incident Manager

    2 months ago


    Singapur, Singapore The Edge Partnership Full time

    Key responsibilities Drive quick resolution of incidents and coordinate with L2/L3 support teams. Escalate cases to prevent SLA breaches and delays. Participate in regular incident review meetings and generate periodic service reports for stakeholders. Analyse incident trends and monitor Incident Management KPIs. Conduct post-incident reviews to...


  • Singapur, Singapore Black & Veatch Full time

    Job Summary #LI-remote and #LI-CY1 Black & Veatch is seeking a Principal Consultant level professional to join our team of Global Advisory consultants, technology specialists, and energy industry subject matter experts. The Principal Consultant will drive the development and execution of business strategy to support the growing the...

  • Senior Principal- FSI

    8 months ago


    Singapur, Singapore Infosys Singapore & Australia Full time

    Infosys Consulting is the worldwide management and IT consultancy unit of the Infosys Group (NYSE: INFY), global advisor to leading companies for strategy, process engineering and technology-enabled transformation programs. We partner with clients to design and implement customized solutions to address their complex business challenges, and to help them in...

  • Information Technology

    3 months ago


    Singapur, Singapore Singapore Airlines Full time

    Job DescriptionYou will be a member of the Group Information Security Team responsible for responding to threats and incidents to the corporate networks, systems (on-prem and cloud), and digital assets. Key Responsibilities Perform security monitoring and incident response activities across the scoot networks, leveraging a variety of tools and techniques....


  • Singapur, Singapore People Profilers Vietnam Full time

    Job Ref:L9885984Position: SAP Senior Consultant/ Principal/ Manager - SAP SDLocation: Singapore (PR/Citizens only) Responsibilities: Take responsibility for the process, functional and technical design in SAP projects for Sales and Distribution module.Conduct top-down workshops to advise and direct our clients on S/4HANA feasibility.Drive end-to-end project...


  • Singapur, Singapore ST Engineering Full time

    Title: Assistant Principal Engineer (DSC/SN) Job ID: Location: ST Engineering Jurong East Bui, SG Description: ST Engineering  is a global technology, defence and engineering group with offices across Asia, Europe, the Middle East and the U.S., serving customers in more than countries. The Group uses technology and innovation to solve...

  • Principal Consultant

    8 months ago


    Singapur, Singapore ERM Full time

    We are seeking a highly motivated and experienced Principal Consultant specializing in Sustainable Operations to join our dynamic team. The ideal candidate will have a deep understanding of EHS management systems, water and waste management, and possess strong data and digital capabilities to develop and implement sustainable strategies for our clients. ...


  • Singapur, Singapore IQVIA Full time

    As an Associate Principal at IQVIA, you will be responsible for managing or leading multiple consulting projects and ensuring on-time and on-budget delivery for clients in life sciences or related industries by: Managing project teams, including both internal and external resources in the design, development and delivery of client solutions. Leading...


  • Singapur, Singapore TikTok Full time

    About the team The Incident Management team aims to ensure the safety of our users on the platform by responding to varying levels of escalations. As an Incident Manager based in Singapore, you will be on the front line reviewing and managing our response to high priority global content safety related escalations ranging from natural disasters to...


  • Singapur, Singapore TikTok Full time

    About the team The Incident Management (IM) organisation aims to ensure the safety of our users on the platform by responding to varying levels of escalations. The Incident Analyst (IA) team which is a sub-pillar team under IM takes on a two-pronged approach to ensure the platform is safe for consumption by not only reacting to emergent situations but also...


  • Singapur, Singapore IHiS Full time

    Position OverviewThis is an important role for Service Delivery team. The Assistant Manager for Service Management will plan, manage and deliver operations with ITSM methodology, primarily focusing on Incident & problem management. In addition, he/she needs to support other Service Management processes such as Service Request and Change Management.Role &...

  • Senior Principal

    7 months ago


    Singapur, Singapore Infosys Singapore & Australia Full time

    Senior Principal – SAPCompany overview & value propositionInfosys Consulting is a global consulting & transformation firm and a wholly owned subsidiary of Infosys Ltd. Infosys has grown from pioneering the global delivery model to emerging as one of the most respected companies in the world.The Infosys Consulting business works with clients to develop and...