Senior Technical Consultant - Network Security Operations
Job in
Chicago, Cook County, Illinois, 60290, USA
Listing for:
Medium
Full Time
position
Listed on 2026-07-13
Job specializations:
Salary/Wage Range or Industry Benchmark: 180000 - 210000 USD Yearly
USD
180000.00
210000.00
YEAR
Job Description & How to Apply Below
AHEAD builds platforms for digital business. By weaving together advances in cloud infrastructure, automation and analytics, and software delivery, we help enterprises deliver on the promise of digital transformation.
At AHEAD, we prioritize creating a culture of belonging, where all perspectives and voices are represented, valued, respected, and heard. We create spaces to empower everyone to speak up, make change, and drive the culture at AHEAD.
We are an equal opportunity employer, and do not discriminate based on an individual's race, national origin, color, gender, gender identity, gender expression, sexual orientation, religion, age, disability, marital status, or any other protected characteristic under applicable law, whether actual or perceived.
We embrace all candidates who will contribute to the diversification and enrichment of ideas and perspectives at AHEAD.
The Senior Technical Consultant is a cybersecurity professional with knowledge around the Extra Hop Reveal(x) 360 Platform to support Enterprise Clients. Responsible for the technical execution of Extra Hop deployments with complex configurations and mentoring junior team members. As a Senior Technical Consultant, you will be a key player in implementing deployments from sensor placement through detection tuning, build the dashboards and integrations that turn wire data into decisions, and serve as the technical advisor too.
Responsibilities
Design and deploy Extra Hop sensor architectures across physical, virtual, and cloud environments, including sensor placement strategy for TAPs, SPAN ports, and VPC traffic mirroring in AWS and AzureConfigure and design packet stores for retention, query performance, and compliance requirements, including sizing decisions for high-throughput environmentsCreate custom detections and bundles tailored to client environments, moving beyond out-of-box detections to address specific threats and false‑positive patternsDevelop custom dashboards in Reveal(x) using metrics, devices, and applications views, translating wire data into views that map to client SOC workflows and executive reporting needsBuild and maintain REST API integrations between Extra Hop and SIEM, SOAR, ticketing, and CMDB platforms, including custom triggers and open data stream configurationsConduct network visibility assessments for prospective and existing clients, identifying blind spots in east‑west traffic, encrypted traffic decryption coverage, and segmentation gapsCollaborate with clients to optimize and fine‑tune their deployment and provide guidance to assist with the optimization of the platformAct as a technical resource for troubleshooting and resolving complex Extra Hop related issues during and post‑implementationContribute to project documentation, ensuring clarity and completeness of Solution Designs and As‑Built configurationsMentor junior AHEAD consultants, sharing your Extra Hop knowledge and fostering their technical developmentQualifications
6+ years of hands‑on experience with Extra Hop Reveal(x) or Reveal(x) 360 in production environments or similar NDR solutionsExperience deploying and administering Extra Hop Reveal(x) Enterprise or Reveal(x) 360Demonstrated experience deploying and tuning Extra Hop sensors, record stores, and packet stores, including sizing, retention configuration, and performance troubleshootingStrong grasp of wire data analysis: L2-L7 protocol behavior (TCP/IP, DNS, HTTP, etc), TLS/SSL decryptionExperience building custom detections, bundles, and dashboards beyond default configurationsProficient in JavaScript and Python scripting for automation, customization, and workflow optimizationWorking knowledge of at least one major SIEM (Splunk, XSIAM, Crowdstrike or equivalent) and experience integrating Extra Hop as a data sourceExperienced in proactive threat hunting and incident investigations using the MITRE ATT&CK framework, Cyber Kill Chain, NIST Cybersecurity Framework (CSF), and CIS Critical Security Controls to identify adversary TTPs and strengthen detection and response capabilitiesExperience with cloud traffic mirroring (AWS VPC Traffic Mirroring, Azure vTAP, or GCP Packet…
Position Requirements
10+ Years
work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here: