remote

Palo Alto Networks is hiring a Technical Director, DFIR (Unit 42)

About the Role

Palo Alto Networks is looking for a Technical Director, DFIR to join Unit 42, our security advisory team. In this senior consulting role, you will serve as a client advocate, providing expert-level strategic and technical leadership on cybersecurity and data breach response across diverse industries and geographies.

What You'll Do

  • Provide expert-level guidance on cybersecurity and data breach response to Unit 42 clients.
  • Act as the client’s advocate for cybersecurity and provide strategic and technical leadership.
  • Maintain hyper-current knowledge of extant vulnerabilities and the threat landscape.
  • Lead complicated engagements including scoping, interfacing with the client, and executing on a technical front.
  • Work efficiently on the command line and create automation for Incident Response scenarios.
  • Grow into a valuable contributor to the practice with an external presence via public speaking, conferences, and/or publications.
  • Build relationships internally, externally, and across all PANW functions, including the sales team.

What We're Looking For

  • 10+ years of incident response or digital forensics consulting experience.
  • Experience with forensic processes and procedures (chain of custody, computer acquisition techniques, memory acquisition techniques).
  • Experience using forensics tools such as EnCase, FTK, SleuthKit, Volatility, etc.
  • Analysis experience and operational understanding of one or more major operating systems (Microsoft Windows, Linux, or Mac).
  • Knowledge of common malware persistence mechanisms and experience identifying and triaging malware.
  • Strong leadership skills including experience managing a team or individuals.
  • Proficient in enterprise-wide, mass data acquisition and analysis on the host and network level.
  • Incident response consulting experience required.
  • Bachelor’s Degree in Information Security, Computer Science, Digital Forensics, Cyber Security or related field or equivalent military experience required.

Nice to Have

  • Have credibility, executive presence, and gravitas.
  • Have the potential and capacity to understand all aspects of the business and an excellent understanding of PANW products.
  • Collaborative and able to build relationships.

Technical Stack

  • EnCase
  • FTK
  • SleuthKit
  • Volatility

Team & Environment

You will be part of Unit 42 Consulting, Palo Alto Network's security advisory team.

Work Mode

This is a remote position based in Israel.

Palo Alto Networks is an equal opportunity employer. We celebrate diversity in our workplace, and all qualified applicants will receive consideration for employment without regard to age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or other legally protected characteristics.

Required Skills
EnCaseFTKSleuthKitVolatilityDigital ForensicsIncident ResponseDFIRLeadershipThreat IntelligenceMalware AnalysisNetwork ForensicsCloud SecurityPythonScriptingCommunication
Starting a business in Thailand?

Company registration done right

Foreign ownership rules, licenses, tax registration — Thai business setup has many moving parts. SVBL guides you through every step with full legal compliance.

Company registration & structure
Foreign ownership solutions
License & tax registration
BOI promotion eligibility
Start your business
100% foreign ownership possible
About company
Palo Alto Networks

Palo Alto Networks is a cybersecurity company whose mission is to be the cybersecurity partner of choice, protecting our digital way of life. Unit 42 Consulting is Palo Alto Network's security advisory team providing incident response, risk management, and digital forensic services.

Visit website
Job Details
Category management
Posted 3 months ago