1

Cortex Xdr Jobs in Arizona (NOW HIRING)

Cortex Xdr information

See Arizona salary details

$68.5K

$113.7K

$152.8K

How much do cortex xdr jobs pay per year?

As of Jun 10, 2026, the average yearly pay for cortex xdr in Arizona is $113,697.00, according to ZipRecruiter salary data. Most workers in this role earn between $96,000.00 and $131,400.00 per year, depending on experience, location, and employer.

What is a Cortex XDR job?

A Cortex XDR job typically involves working with Palo Alto Networks' Cortex XDR platform to detect, investigate, and respond to cybersecurity threats. Professionals in this role analyze security events, manage endpoint protection, and configure security policies to prevent breaches. They may also work with automation tools, threat intelligence, and forensic analysis to enhance an organization's security posture. Strong knowledge of SIEM, EDR, and incident response methodologies is often required.

What are the key skills and qualifications needed to thrive in the Cortex Xdr position, and why are they important?

To excel as a Cortex XDR Specialist, you need a deep understanding of cybersecurity principles, threat detection, and incident response, often backed by a degree in information security or computer science. Familiarity with Palo Alto Networks Cortex XDR platform, SIEM tools, and certifications such as CISSP or PCNSE are highly valued. Strong analytical thinking, attention to detail, and effective communication skills are essential for interpreting data and collaborating with IT teams. These competencies ensure prompt identification and remediation of security threats, maintaining the organization's cyber resilience.

What does a typical workday look like for someone in a Cortex XDR Specialist role?

A typical day for a Cortex XDR Specialist involves proactively monitoring security alerts, investigating suspicious activities, and responding to potential incidents using the Cortex XDR platform. Collaboration is frequent, as you’ll work closely with incident response teams, IT staff, and sometimes end users to gather insights and implement mitigation strategies. You may also spend time tuning security policies, preparing threat reports, or participating in tabletop exercises to ensure ongoing readiness. The role is dynamic and requires a balance of technical investigation and clear communication to help protect the organization’s digital assets.

What are the most commonly searched types of Cortex Xdr jobs in Arizona? The most popular types of Cortex Xdr jobs in Arizona are:
What job categories do people searching Cortex Xdr jobs in Arizona look for? The top searched job categories for Cortex Xdr jobs in Arizona are:
What cities in Arizona are hiring for Cortex Xdr jobs? Cities in Arizona with the most Cortex Xdr job openings:
Senior DSPM Engineer - Cybersecurity / Information Security

Senior DSPM Engineer - Cybersecurity / Information Security

Navtech, Inc.

Phoenix, AZ • On-site

$103K - $140K/yr

Contractor

Posted 26 days ago


Job description

Hi,
My name is Sam, and I am a Staffing Specialist at Venstar Technology Inc. I have an open opportunity that you may be a good fit for. If this sounds like something you would be interested in, please get in touch with me as soon as possible at sam@venstartech.comwith your most recent resume, your ideal time and number for communication, and the expected pay rate for C2C/1099/W2.
Job Description:
Role: Senior DSPM Engineer (Individual Contributor)
Function: Cybersecurity / Information Security
Reports To: Leader, Data Security Posture Management (DSPM)
Location: Hybrid - (Phoenix, AZ)
Employment Type: Long-term Independent Contractor who can work on W2/1099
Role Overview
We are hiring a hands-on Senior DSPM Engineer to deliver the technical execution of our Data Security Posture Management program. Reporting to the DSPM Leader, this is an individual contributor role focused on deploying, configuring, integrating, tuning, and operating the DSPM toolchain-primarily Palo Alto Networks Cortex (Cortex XSIAM, Cortex Cloud, and Dig Security DSPM) and 1touch.io-to discover sensitive data, classify it, detect risk, and drive remediation across cloud, SaaS, and on-premises environments. You will live in the consoles every day: writing classifiers and policies, building integrations, triaging findings, automating workflows, and partnering with cloud, data, and SecOps teams to close issues at the source.
Key Responsibilities
  • Deploy, configure, and operate Palo Alto Networks Cortex (Cortex XSIAM, Cortex XDR, and Cortex Cloud) end-to-end-connectors, data ingestion, parsers, content packs, correlation rules, and dashboards.
  • Implement and run Dig Security (Palo Alto Cortex DSPM) for cloud data discovery, classification, Data Detection & Response (DDR), and posture remediation across AWS, Azure, and GCP.
  • Implement and operate 1touch.io for sensitive data discovery, classification, lineage, and identity-to-data mapping across structured, unstructured, semi-structured, and mainframe data sources.
  • Build and tune custom classifiers, policies, and detection rules to identify PII, PHI, PCI, financial data, secrets, and regulated content with low false-positive rates.
  • Onboard new cloud accounts, data stores (S3, RDS, Redshift, Blob, SQL, Cosmos, BigQuery, Snowflake, Databricks, etc.), SaaS apps, and on-prem sources into the DSPM platforms.
  • Triage DSPM findings (shadow data, public exposure, over-permissive access, sensitive-data movement, anomalies) and drive remediation with cloud, data, and application owners.
  • Build integrations and automations between Cortex, Dig, 1touch.io, SIEM/SOAR, ticketing (Jira/ServiceNow), and chat (Slack/Teams) using APIs, webhooks, and scripting (Python).
  • Author and maintain Cortex XSIAM XQL queries, XSOAR/XSIAM playbooks, and detection content tied to data-centric use cases (insider risk, ransomware, exfiltration, and misconfiguration).
  • Perform routine health checks, version upgrades, agent/sensor management, and capacity tuning of all DSPM platforms.
  • Document architectures, runbooks, standard operating procedures, and onboarding guides; act as the technical SME during audits, customer reviews, and incident response.
  • Partner with the DSPM Leader to translate the program roadmap into shippable technical deliverables and measurable risk reduction.

Required Qualifications & Skills
Must-Have Technical Experience
  • 5+ years in cybersecurity / cloud security / data security engineering, with the majority of recent time spent in hands-on technical delivery (not pure advisory or management).
  • Strong, hands-on production experience with Palo Alto Networks Cortex-at minimum two of: Cortex XSIAM, Cortex XDR, Cortex XSOAR, Cortex Cloud-including content development and integration work.
  • Hands-on experience implementing and operating Dig Security (Palo Alto Cortex DSPM) for cloud data discovery, classification, and DDR.
  • Hands-on experience implementing and operating 1touch.io for sensitive data discovery, classification, and data lineage / identity mapping.
  • Solid working knowledge of cloud data services across AWS, Azure, and GCP, plus IAM concepts (roles, policies, and identity federation) as they relate to data access.
  • Strong understanding of data classification, DLP concepts, and applicable regulations (GDPR, CCPA/CPRA, HIPAA, PCI DSS).

Education & General Requirements:
  • Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or equivalent practical experience.
  • Strong written and verbal communication; able to explain technical findings to engineers and to non-technical stakeholders.
  • Self-directed, detail-oriented, and comfortable owning technical workstreams from design through operations.

Core Competencies:
  • Practitioner mindset - happiest in the console, in the API, and in the data.
  • Bias for automation; you'd rather codify a fix than repeat a click.
  • Strong ownership: you see findings through to closure, not just detection.
  • Comfortable working closely with a leader and translating program goals into hands-on engineering work.

Thanks for your valuable time!!!
Sam Taylor
Venstar Technology Inc., Talent Acquisition Manager
Phone: +1 224-296-3545 | Email: sam@venstartech.com
Office Address: 1901 North Roselle Rd, Ste. #800 Schaumburg, IL 60195
Website: www.venstartech.com
Disclaimer: We respect your Online Privacy. This e-mail message, including any attachments, is for the sole use of the intended recipient(s) and may contain confidential and privileged information. Any unauthorized review, use, disclosure, or distribution is prohibited. If you are not the intended recipient, please contact the sender by reply email and destroy all copies of the original message. If you are not interested in receiving our emails, please reply with a "REMOVE" in the subject line and mention all the email addresses to be removed and any email addresses that might divert the emails to you. We are sorry for the inconvenience.

Navtech logo

About Navtech

Sourced by ZipRecruiter

Industry

Civil engineering construction

Company size

11 - 50 Employees

Headquarters location

New Bloomfield, PA, US

Year founded

1996