2

Full Time Cortex Xdr Jobs in Boston, MA (NOW HIRING)

Full Time Cortex Xdr information

See Boston, MA salary details

$79.8K

$132.5K

$178.2K

How much do full time cortex xdr jobs pay per year?

As of Sep 2, 2026, the average yearly pay for full time cortex xdr in Boston, MA is $132,549.00, according to ZipRecruiter salary data. Most workers in this role earn between $111,900.00 and $153,200.00 per year, depending on experience, location, and employer.

What is a full time Cortex XDR specialist?

A Full Time Cortex XDR specialist is a cybersecurity professional who manages and operates Palo Alto Networks' Cortex XDR platform on a full-time basis. Cortex XDR is an extended detection and response (XDR) solution that integrates data from endpoints, networks, and cloud environments to detect and respond to cyber threats. Specialists in this role are responsible for monitoring security alerts, investigating incidents, tuning detection rules, and ensuring the overall security posture of an organization. They also collaborate with IT and security teams to respond to threats quickly and efficiently.

What are the key skills and qualifications needed to thrive as a Cortex XDR security analyst?

To thrive as a Cortex XDR Security Analyst, a strong background in cybersecurity, threat detection, and incident response is essential, often supported by a degree in information security or related certifications like CompTIA Security+ or CISSP. Familiarity with Palo Alto Networks Cortex XDR platform, SIEM systems, and scripting languages such as Python is typically required. Analytical thinking, effective communication, and problem-solving skills help analysts investigate alerts and coordinate with teams. These abilities are crucial for quickly identifying, responding to, and mitigating security threats in complex enterprise environments.

What are some common challenges faced by professionals working full time with Cortex XDR, and how can they be addressed?

One common challenge for professionals working full time with Cortex XDR is staying up-to-date with the rapid evolution of cybersecurity threats and adapting detection rules accordingly. Additionally, effectively triaging and responding to the high volume of alerts can be demanding, necessitating strong analytical and prioritization skills. Collaboration with IT and security teams is essential to investigate incidents thoroughly and implement necessary remediations. Regular training, leveraging automation features, and participating in knowledge-sharing sessions with colleagues are practical ways to overcome these challenges and excel in this role.

What is the difference between Full Time Cortex Xdr vs Full Time Endpoint Security Specialist?

AspectFull Time Cortex XdrFull Time Endpoint Security Specialist
CertificationsRelevant security certifications (e.g., CySA+, CISSP)Security certifications often required (e.g., CompTIA Security+)
Work EnvironmentSecurity operations centers, cybersecurity teamsIT departments, cybersecurity teams
Industry UsageUsed across various industries for threat detectionPrimarily in IT and cybersecurity sectors
Job FocusThreat detection, response, and security analytics using Cortex XDR platformManaging and securing endpoints, malware prevention, and incident response

While both roles focus on cybersecurity, a Full Time Cortex Xdr specialist primarily works with the Cortex XDR platform for threat detection and response, whereas a Full Time Endpoint Security Specialist concentrates on securing endpoints and managing endpoint protection tools. The roles often overlap but differ in their core focus and tools used.

What job categories do people searching Full Time Cortex Xdr jobs in Boston, MA look for?

The top searched job categories for Full Time Cortex Xdr jobs in Boston, MA are:

What cities near Boston, MA are hiring for Full Time Cortex Xdr jobs?

Cities near Boston, MA with the most Full Time Cortex Xdr job openings:

Full-time

Posted 10 days ago


Job description

The Executive Office of Technology Services and Security (EOTSS) is the lead enterprise technology organization for the Commonwealth of Massachusetts. Charged with driving the ongoing alignment of business and technology across the Commonwealth's Executive Branch, EOTSS oversees and manages the enterprise technology, digital infrastructure and services, as well as the Commonwealth Security Operations Center and an enterprise Standard Operating Environment that includes an information security and risk management framework for over 125 state agencies and over 43,000 state employees. We directly serve our constituents by providing digital services and tools that enable taxpayers, drivers, businesses, visitors, families and other citizens to do business with the Commonwealth in a way that makes every interaction with government easier, faster, and more secure.  

Our Mission: We provide technology leadership across the Commonwealth to enhance the quality of public service and foster positive community outcomes. 

This position will be a member of a Security Operations Center's Cyber Detection and Response Team.  The EOTSS SOC Cyber Detection and Response Analyst I is primarily responsible for incident triage, detection, response, and remediation activities that occur within the TSS SOC. Analysts in Security Operations work with Security Engineers, Managed Security Service Providers (NuHarbor) and SOC Managers to give situational awareness via detection, containment, and remediation of IT threats. SOC Analysts cooperate with other team members to detect and respond to information security incidents, develop, and follow security events such as alerts, and engage in security investigations.

The primary work location for this role will be at 200 Arlington Street Chelsea, Massachusetts 02150. The work schedule for this position is Monday through Friday, 9AM to 5PM EST. This position would be expected to follow a hybrid model of reporting to work that combines in-office workdays and work from home days as needed.

Duties and Responsibilities:

  • Managing day-to-day security monitoring, and IR activities, including but not limited to SIEM monitoring, Endpoint Detection and Response using Palo Alto's Cortex XDR, notifying agencies of potential malicious activities, managing, and/or maintaining security incident response practices

  •  Assist in detection and incident response functions including, but not limited to, Security Incident Reporting tickets, customer and constituent notification, tracking, and reporting.  Conduct and/or participate in agency, state, regional, and/or national cyber security incident simulation exercises

  • Monitor, report, and respond to anomalous Internet, Extranet, and/or Intranet activity related information provided through internal operations and/or credible external third-party threat intelligence organizations. Work with EOTSS customer organizations and EDR vendor to test software revision, EDR client file updating, and/or EDR related status reporting

  • Assist in the development and delivery of cybersecurity education and awareness initiatives on behalf of state government.

  • Review third party alerts to maintain overall situational awareness of security issues affecting Commonwealth agencies, EOTSS customer organizations, and/or MS-ISAC members.

  • Conduct research into new threats that may affect Commonwealth agencies, EOTSS customer organizations, and/or local entities.

  • Provide and promote security awareness. Assist in phishing campaigns for all users across the Commonwealth while furthering overall security awareness programs.

  •  Support the preparations of security reports to management on security system activities and performance utilizing enterprise security tools (Tenable, DHS, Expanse, etc.)

  • Support troubleshooting security related problems.

  • Other duties and responsibilities as assigned.

Preferred Knowledge, Skills, and Abilities:

Technical Skills:

  • Knowledge of SIEM (Security Information and Event Management) Splunk Preferred
  • TCP/IP, VLANs, computer networking, routing, and switching
  • IDS/IPS, penetration and vulnerability testing
  • Windows and Linux operating systems
  • Network protocols and packet analysis tools
  • EDR Tools Palo Alto Cortex preferred
  • Cloud computing (AWS/AZURE/GCP)

  • Understanding of Proofpoint and other email security tools.

Non-technical Skills:

  • Critical thinking and problem-solving abilities.
  • Capability to communicate and listen to needs from organizational stakeholders.

Education and Certifications:

    Bachelor's Degree in computer science, Information Systems, Business Administration or other related field, or equivalent work experience.

    Security certifications desired but not required.

First consideration will be given to those applicants that apply within the first 14 days.

Minimum Entrance Requirements: 

Applicants must have (A) at least one (1) year of full-time or equivalent part-time experience in the field of information technology security, or (B) any equivalent combination of the required experience and the substitutions below.

Substitutions: 

I. An Associate's degree in a related field may substitute for the required experience. 

Comprehensive Benefits

When you embark on a career with the Commonwealth, you are offered an outstanding suite of employee benefits that add to the overall value of your compensation package. We take pride in providing a work experience that supports you, your loved ones, and your future.

Want the specifics? Explore our Employee Benefits and Rewards!

An Equal Opportunity / Affirmative Action Employer.  Females, minorities, veterans, and persons with disabilities are strongly encouraged to apply.

The Commonwealth is an Equal Opportunity Employer and does not discriminate on the basis of race, religion, color, sex, gender identity or expression, sexual orientation, age, disability, national origin, veteran status, or any other basis covered by appropriate law.  Research suggests that qualified women, Black, Indigenous, and Persons of Color (BIPOC) may self-select out of opportunities if they don't meet 100% of the job requirements.  We encourage individuals who believe they have the skills necessary to thrive to apply for this role.