1

Cortex Xdr Jobs (NOW HIRING)

This contractor will be primarily focused on Cortex XSIAM and Cortex XDR engineering, administration, detection content, automation and operational support while also providing important secondary ...

The primary focus lies on Palo Alto Cortex XSIAM and Cortex XDR platform engineering, administration, and automation, with secondary support for Cribl data modeling and security log pipeline design.

Security Architect

$66.50 - $86/hr

Experience operating Cortex XSIAM/XDR in large-scale, multi-tenant enterprise environments. * Hands-on experience with Cribl administration, log pipeline optimization, and supporting Tier 1-Tier 3 ...

next page

Showing results 1-20

Cortex Xdr information

See salary details

$73.5K

$122K

$164K

How much do cortex xdr jobs pay per year?

As of Jul 25, 2026, the average yearly pay for cortex xdr in the United States is $122,008.00, according to ZipRecruiter salary data. Most workers in this role earn between $103,000.00 and $141,000.00 per year, depending on experience, location, and employer.

What is a Cortex XDR job?

A Cortex XDR job typically involves working with Palo Alto Networks' Cortex XDR platform to detect, investigate, and respond to cybersecurity threats. Professionals in this role analyze security events, manage endpoint protection, and configure security policies to prevent breaches. They may also work with automation tools, threat intelligence, and forensic analysis to enhance an organization's security posture. Strong knowledge of SIEM, EDR, and incident response methodologies is often required.

What are the key skills and qualifications needed to thrive in the Cortex Xdr position, and why are they important?

To excel as a Cortex XDR Specialist, you need a deep understanding of cybersecurity principles, threat detection, and incident response, often backed by a degree in information security or computer science. Familiarity with Palo Alto Networks Cortex XDR platform, SIEM tools, and certifications such as CISSP or PCNSE are highly valued. Strong analytical thinking, attention to detail, and effective communication skills are essential for interpreting data and collaborating with IT teams. These competencies ensure prompt identification and remediation of security threats, maintaining the organization's cyber resilience.

What does a typical workday look like for someone in a Cortex XDR Specialist role?

A typical day for a Cortex XDR Specialist involves proactively monitoring security alerts, investigating suspicious activities, and responding to potential incidents using the Cortex XDR platform. Collaboration is frequent, as you’ll work closely with incident response teams, IT staff, and sometimes end users to gather insights and implement mitigation strategies. You may also spend time tuning security policies, preparing threat reports, or participating in tabletop exercises to ensure ongoing readiness. The role is dynamic and requires a balance of technical investigation and clear communication to help protect the organization’s digital assets.

What cities are hiring for Cortex Xdr jobs? Cities with the most Cortex Xdr job openings:
What are the most commonly searched types of Cortex Xdr jobs? The most popular types of Cortex Xdr jobs are:
What states have the most Cortex Xdr jobs? States with the most job openings for Cortex Xdr jobs include:
What job categories do people searching Cortex Xdr jobs look for? The top searched job categories for Cortex Xdr jobs are:
Infographic showing various Cortex Xdr job openings in the United States as of July 2026, with employment types broken down into 80% Full Time, and 20% Contract. Highlights an 80% In-person, and 20% Remote job distribution, with an average salary of $122,008 per year, or $58.7 per hour.
Cortex XSIAM & XDR Engineer / SIEM Architect

Cortex XSIAM & XDR Engineer / SIEM Architect

HTC Global Services

Columbia, SC • On-site

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

This job post has expired today. Applications are no longer accepted.


Job description

Job Title: Senior SIEM Engineer (Palo Alto Cortex XSIAM/XDR)
Overview / Summary
The SIEM Engineer will support the Department of Administration's Division of Information Security by designing, implementing, maintaining, and optimizing Palo Alto Cortex XSIAM and Cortex XDR in a large-scale, multi-tenant security environment. This role works closely with a large enterprise security team and a 24x7 Security Operations Center (SOC) to enhance SIEM, XDR, detection, response, and log management capabilities supporting multiple state agencies.
Key Responsibilities
  • Plan, design, deploy, administer, and support Palo Alto Cortex XSIAM and Cortex XDR platforms.
  • Configure, optimize, troubleshoot, and maintain enterprise SIEM and XDR capabilities.
  • Support multi-tenant agency onboarding, tenant-specific configurations, role-based access controls, data segregation, dashboards, and reporting.
  • Develop and tune detections, correlation rules, analytics, threat-hunting queries, watchlists, suppression logic, and false-positive reduction.
  • Assist with Cribl data modeling, log pipeline design, routing, parsing, normalization, enrichment, filtering, replay, and ingestion.
  • Support onboarding and health monitoring of cloud, endpoint, network, identity, SaaS, and custom application telemetry.
  • Optimize log volume, retention, performance, and cost while maintaining security and compliance requirements.
  • Develop, test, deploy, and maintain automated response workflows and playbooks for enrichment, triage, containment, escalation, notifications, case management, and incident response.
  • Create and maintain runbooks, standard operating procedures, escalation matrices, troubleshooting guides, architecture diagrams, data-flow documentation, use-case catalogs, and analyst knowledge articles.
  • Support Tier 1 through Tier 3 SOC analysts through platform troubleshooting, detection tuning, threat hunting, technical escalation, knowledge transfer, and shift handoffs.
  • Monitor and report on ingestion health, platform availability, alert volumes, detection coverage, false positives, service levels, mean time to detect, mean time to respond, and tenant-specific operational metrics.
  • Ensure high availability, resilience, backup, recovery, lifecycle management, and controlled change processes for SIEM, XDR, and supporting log pipeline services.
  • Collaborate with security architects, engineers, analysts, and agency stakeholders to align solutions with business goals, industry-standard frameworks, regulatory requirements, and organizational risk tolerance.
  • Participate in a monthly on-call rotation supporting the 24x7 SOC.

Required Qualifications
  • Hands-on experience with Palo Alto Cortex XSIAM and Cortex XDR design, implementation, administration, and operational support.
  • Experience engineering and supporting SIEM capabilities for multi-tenant environments and 24x7 Security Operations Center operations.
  • Experience developing and tuning detections, correlation rules, analytics, threat-hunting queries, dashboards, reporting, and alert suppression logic.
  • Strong experience creating and managing complex playbooks.
  • Experience with Cribl data modeling, log pipeline design, parsing, normalization, enrichment, routing, and ingestion.
  • Experience developing automation, integrations, playbooks, and response workflows using scripting languages such as Python and Bash.
  • Experience onboarding and troubleshooting telemetry from cloud, endpoint, network, identity, SaaS, Linux, Windows, and custom application sources.
  • Strong understanding of enterprise security architecture, incident response, networking, access control, secure system design, and industry-standard cybersecurity frameworks.
  • Bachelor's degree in Information Technology, Information Security, or a related field; eight years of relevant work experience may be substituted in lieu of education.
  • Five years of experience supporting large IT environments and/or system deployments.
  • Must successfully pass:
    • Full credit check
    • Criminal background check
    • 7-year background check and credit history check
    • Driving record (MVR)
    • 10-panel drug screen
    • E-Verify
    • SLED check
  • Must obtain and maintain annual CJIS certification.

What Makes HTC A Great Place To Build Your Future
HTC Global Services wants you to join our team. Come build new things with us and advance your career. At HTC Global, you'll collaborate with experts, work alongside clients, and be part of high-performing teams driving success together. You'll have long-term opportunities to grow your career and develop skills in the latest emerging technologies.
At HTC Global Services, our employees have access to a comprehensive benefits package. Benefits can include Group Health (Medical, Dental, and Vision), Paid Time Off, Paid Holidays, 401(k) matching, Group Life and Disability insurance, Professional Development opportunities, Wellness programs, and a variety of other perks.
Our success as a company is built on inclusion and diversity. HTC Global Services is committed to providing a workplace free from discrimination and harassment, where every employee is treated with dignity and respect. We celebrate differences and believe that diverse cultures, perspectives, and skills drive innovation and success. HTC is an Equal Opportunity Employer and a proud National Minority Supplier. We seek to empower each individual, fostering an environment where everyone feels valued, included, and respected.
#LI-SK9 #LI-Remote #Hiring