Our Mission
Being the cybersecurity partner of choice, protecting our digital way of life. Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are done, and we’re looking for innovators who are as committed to shaping the future of cybersecurity as we are.
WhoWe Are
This role is remote, but distance is no barrier to impact. Our hybrid teams collaborate across geographies to solve big problems, stay close to our customers, and grow together. You will be part of a culture that values trust, accountability, and shared success where your work truly matters.
Job DescriptionAs a Principal Consultant in Unit 42 you will work across proactive cyber security domains including Cloud Security, Security Operations, Cyber Risk Management and Artificial Intelligence in cyber security. We seek an individual passionate about cyber security, with a demonstrated track record of continuous learning, and who embraces data, technology and innovative approaches to deliver the best consulting outcomes for clients navigating today’s cyber threat landscape.
YourImpact
- Principal SOC Advisory
- 6+ years of consulting experience in SOC, security engineering, SIEM administration, and incident management with a demonstrated success in designing and implementing security operations programs for large, multinational organisations.
- Deep technical knowledge in SIEM, SOAR, EDR/XDR, next‑generation firewalls, threat intelligence and hunting platforms.
- Defensive Security Skills (desired)
- Experience in security operations design, engineering and analysis, including investigations across cloud, network, endpoint, and log sources.
- Ability to perform detailed assessments, identify improvement areas and recommend transformations to enhance an organisation’s cyber security operations.
- Experience improving security operations capabilities such as asset visibility, threat detection, automation, case management, compliance enablement, and regulatory requirements.
- Conducted threat hunting and/or compromise assessments to identify indicators of compromise.
- Relevant industry certifications: GIAC Defensible Security Architect (GDSA), GIAC Intrusion Analyst (GCIA), GIAC Continuous Monitoring (GMON), CISSP.
- Understanding of frameworks: NIST 800‑53, ISO 27001/2, PCI, CIS 18, CMMC.
- Principal Cloud Security
- 6+ years of cloud security advisement and risk assessment experience based on industry standards.
- Hands‑on experience with AWS, Azure, GCP, etc.
- Experience with a Cloud Application Security Broker – MCAS, Netskope.
- Deep knowledge of CASBs, cloud platforms, WAF, SSO, cloud threats, API security, CSPM.
- Experience with cloud migrations (cloud-to-cloud or on‑prem-to-cloud).
- Knowledge of CLI or scripting tools in cloud environments is a plus.
- Cloud Security skills (desired)
- Secure software development practices, including Sec Dev Ops .
- Knowledge of frameworks: OWASP, MITRE ATT&CK & D3
FEND, CIS, NIST CSF, CSA CCM, ISO 27107. - Relevant certifications: CSCP.
- Understanding of frameworks: NIST 800‑53, ISO 27001/2, PCI, CIS 18, CMMC.
- Principal Cyber Risk Management
- Experience in cyber security threat & risk assessments to support strategy and roadmap development.
- Proficiency in cyber risk services: threat, risk, and control assessments, secure software development, penetration testing, vulnerability assessments.
- Knowledge of laws, compliance regulations, and industry standards related to privacy, security, and compliance.
- Experience with MITRE ATT&CK & D3
FEND, CIS, NIST CSF, CSA CCM. - Strong communication and presentation skills.
- Cyber Risk Management skills (desired)
- Experience in threat modelling & application security risk assessments, secure software development including Sec Dev Ops .
- FAIR Open certified & experience applying FAIR for risk quantification.
- Relevant certifications: CISSP, CISM, CISA.
- Understanding of frameworks: NIST 800‑53, ISO 27001/2, PCI, CIS 18, CMMC.
- 7+ years of cyber security consulting experience in at least two of the three domains above, with SME experience in one.
- Experience managing a team of consultants.
- Track record of…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).