Introduction A career in IBM Consulting is built on long-term client relationships and close collaboration worldwide. You’ll work with leading companies across industries, helping them shape their hybrid cloud and AI journeys. With support from our strategic partners, robust IBM technology, and Red Hat, you’ll have the tools to drive meaningful change and accelerate client impact.
At IBM Consulting, curiosity fuels success. You’ll be encouraged to challenge the norm, explore new ideas, and create cutting-edge solutions that deliver real results. Our culture of growth and empathy focuses on your long-term career development while valuing your unique skills and experiences.
Your Role And Responsibilities Handson experience of SOC operations leveraging Palo Alto security stack including Palo Alto Cortex XSIAM, Cortex XSOAR, and Cortex XDR
Drive end-to-end security monitoring, detection, and response strategy using XSIAM’s unified data and analytics capabilities
Oversee incident lifecycle management for critical and high-severity incidents ensuring timely containment and resolution
Design and implement detection use cases, correlation rules, and analytics aligned with MITRE ATT&CK;
Lead automation initiatives by building and optimizing playbooks in XSOAR to reduce manual effort and improve MTTR
Manage and optimize XDR policies for endpoint protection, behavioral detection, and threat prevention
Provide strategic direction for log ingestion, data onboarding, and normalization within XSIAM
Conduct advanced threat hunting leveraging XDR telemetry, causality chains, and behavioral analytics
Act as escalation point for L2/L3 analysts and guide complex investigations and RCA
Drive continuous improvement of SOC maturity, detection coverage, and response capabilities
Collaborate with network, cloud, and IR teams to ensure integrated security operations across environments
Monitor and report SOC KPIs such as MTTD, MTTR, alert fidelity, and automation efficiency
Ensure compliance with security frameworks and audit requirements
Lead stakeholder communication including executive reporting, incident briefings, and risk updates
Mentor and develop SOC team members, ensuring skill enhancement on Palo Alto platforms
Stay updated with latest threat landscape, Palo Alto feature enhancements, and industry best practices Preferred Education Master's Degree Required Technical And Professional Expertise Hands-on experience with SIEM/XDR platforms ,Palo Alto Cortex XSIAM
Basic scripting skills (Python, PowerShell, or Bash) for automation and enrichment
Strong analytical thinking and problem-solving capability Preferred Technical And Professional Experience Experience in purple teaming, attack simulation, or detection validation
Understanding of compliance frameworks (ISO 27001, NIST, CIS)
Experience in API integrations and advanced automation use cases
Ability to create dashboards, reports, and SOC metrics (MTTD, MTTR, SLA tracking)
📌 Security Consultant - SOC (XSIAM) (Mumbai)
🏢 IBM
📍 Mumbai