2

Remote Cortex Xdr Jobs in Raleigh, NC (NOW HIRING)

Remote Cortex Xdr information

See Raleigh, NC salary details

$78.7K

$136.4K

$191.5K

How much do remote cortex xdr jobs pay per year?

As of Jul 30, 2026, the average yearly pay for remote cortex xdr in Raleigh, NC is $136,409.00, according to ZipRecruiter salary data. Most workers in this role earn between $116,200.00 and $153,600.00 per year, depending on experience, location, and employer.

Can you make $200,000 in cyber security?

Remote Cortex XDR roles and other cybersecurity positions can offer salaries approaching or exceeding $200,000, especially with experience, advanced certifications, and specialized skills in threat detection and incident response. High-level roles such as security architects or senior analysts tend to have higher compensation, often influenced by industry, location, and company size.

What are the key skills and qualifications needed to thrive as a Remote Cortex XDR Specialist, and why are they important?

To thrive as a Remote Cortex XDR Specialist, you need strong cybersecurity expertise, experience with endpoint detection and response (EDR) tools, and relevant certifications like CompTIA Security+ or CISSP. Proficiency with the Palo Alto Cortex XDR platform, SIEM systems, and scripting languages such as Python or PowerShell is typically required. Analytical thinking, attention to detail, and effective communication skills help specialists investigate threats and coordinate with teams. These competencies are vital for timely threat detection, incident response, and maintaining robust security for distributed environments.

What are some typical challenges faced by remote Cortex XDR analysts, and how can they be addressed?

Remote Cortex XDR analysts often face challenges such as maintaining effective communication with on-site teams, staying updated on evolving threats, and managing alerts across distributed environments. To address these, it's important to establish clear communication channels with security and IT teams, participate in regular briefings, and leverage automation features within Cortex XDR to reduce alert fatigue. Continuous learning and collaboration through virtual meetings and threat intelligence sharing can also help analysts stay ahead of new security risks.

Can you make $500,000 a year in cyber security?

Earning $500,000 annually in cybersecurity is possible for senior roles such as security architects or chief information security officers, especially with extensive experience, advanced certifications, and leadership responsibilities. Roles like Remote Cortex XDR specialists typically have lower salary ranges, but combining skills, certifications, and experience can lead to higher compensation in the field.

Does Palo Alto allow remote work?

Remote Cortex XDR roles are available at Palo Alto Networks, and the company offers flexible work arrangements, including remote work options for certain positions. Eligibility for remote work depends on the specific role, team needs, and location policies, and candidates should review the job listing for details. Skills in cybersecurity, cloud environments, and remote collaboration tools are often required.

What is a Remote Cortex XDR specialist?

A Remote Cortex XDR specialist is a cybersecurity professional who manages, monitors, and responds to threats using Palo Alto Networks' Cortex XDR platform from a remote location. Cortex XDR is an extended detection and response solution that integrates data from various sources to detect and address security incidents. Remote specialists use this tool to investigate alerts, perform threat hunting, and coordinate incident response without being physically present in an organization's office. Their expertise helps organizations strengthen their security posture while allowing for flexible, remote work arrangements.

What is the difference between Remote Cortex Xdr vs Remote Security Analyst?

AspectRemote Cortex XdrRemote Security Analyst
CertificationsRelevant cybersecurity certifications (e.g., CompTIA Security+, CEH)Similar certifications often required
Work EnvironmentSecurity platform management, threat detection, incident responseMonitoring security alerts, analyzing threats, reporting
Industry UsageUsed by cybersecurity teams for endpoint detection and responseEmployed across various industries for security monitoring

Remote Cortex Xdr specialists focus on managing and utilizing the Cortex XDR platform for threat detection and response, while Remote Security Analysts monitor security alerts and analyze threats across systems. Both roles require cybersecurity certifications and work in similar environments, but their core responsibilities differ: one manages security tools, the other analyzes security data.

Is cybersecurity a dying field?

Cybersecurity roles such as Remote Cortex XDR specialists are in high demand due to increasing cyber threats and the need for advanced threat detection tools like Cortex XDR. The field is expected to grow as organizations prioritize security, requiring skills in threat analysis, incident response, and familiarity with security platforms. Continuous learning and certifications are important for staying current in this evolving industry.
What are the most commonly searched types of Cortex Xdr jobs in Raleigh, NC? The most popular types of Cortex Xdr jobs in Raleigh, NC are:
What job categories do people searching Remote Cortex Xdr jobs in Raleigh, NC look for? The top searched job categories for Remote Cortex Xdr jobs in Raleigh, NC are:
What cities near Raleigh, NC are hiring for Remote Cortex Xdr jobs? Cities near Raleigh, NC with the most Remote Cortex Xdr job openings:

Senior SOC Engineer - Remote / Telecommute

CYNET SYSTEMS

Cary, NC • Remote

$47 - $52/hr

Contractor

Medical, Dental, Vision, Life, Retirement

Posted 6 days ago


Job description

Job Overview:

Pay Range: $47hr - $52hr

Requirement/Must Have:

  • Bachelor’s degree in Computer Science, Information Security, Cybersecurity, Engineering, or equivalent practical experience; Master’s preferred.
  • 7–10+ years of hands-on experience in SOC/Cyber Defense operations, with at least 3–4 years at L2/L3, incident response, or threat hunting depth.
  • Expertise across the incident lifecycle: detection, triage, investigation, containment, eradication, recovery, and post-incident review.
  • Deep proficiency in SIEM technologies (e.g., Splunk, Microsoft Sentinel), EDR/XDR platforms (e.g., CrowdStrike, Microsoft Defender), and forensic tools (e.g., Volatility, KAPE, Autopsy).
  • Advanced knowledge of Windows and Linux internals, identity security (AD, Entra ID), cloud security (Azure, AWS, GCP), and network security telemetry.
  • Experience designing and executing threat hunts mapped to MITRE ATT&CK and related frameworks.
  • Strong scripting and data querying skills (Python, PowerShell, KQL, SPL, Bash).
  • Familiarity with security standards such as NIST 800-61, NIST CSF, ISO 27001, PCI-DSS, and HIPAA.
  • Excellent written and verbal communication skills for executive briefings, documentation, and customer engagement.
  • Availability for on-call rotation and ability to lead response during major incidents across time zones.

Responsibilities:

  • Lead deep-dive investigations of escalated security incidents, reconstructing attack chains and correlating multi-source telemetry.
  • Execute forensic triage of hosts, memory, disks, and logs, preserving evidence and providing comprehensive analysis for legal or regulatory needs.
  • Design and conduct hypothesis-driven and intelligence-led threat hunts using frameworks such as MITRE ATT&CK.
  • Act as incident commander for high-severity events, coordinating containment, eradication, and recovery efforts with internal teams.
  • Develop and tune SIEM/EDR/XDR detections, authoring advanced use cases that improve detection efficacy and reduce false positives.
  • Define, review, and validate SOAR (Security Orchestration, Automation, and Response) playbooks and automation workflows.
  • Integrate threat intelligence into SOC operations, contextualizing incidents and managing the IOC lifecycle.
  • Produce detailed root-cause analysis and lessons-learned reports, driving continuous improvement in detection and response processes.
  • Audit L1/L2 analyst work, provide targeted coaching, and uphold quality assurance standards across the SOC.
  • Mentor junior analysts, deliver knowledge transfer sessions, and contribute to internal training and capability building.
  • Represent the SOC in governance and post-incident review forums, presenting incident trends and improvement actions.
  • Participate in adversary emulation and purple-team exercises, translating findings into actionable detection and response enhancements.

Nice to Have:

  • Preferred certifications: GIAC (GCIA, GCIH, GCFA, GCFE, GNFA, GCTI, GDAT), Microsoft SC-200 / SC-100, Splunk Certified Analyst, CrowdStrike CCFA/CCFR/CCFH, Offensive Security (OSCP/OSDA), CISSP, CISM, CCSP, EC-Council CHFI/CTIA, cloud security certifications (AZ-500, AWS Security Specialty, GCP Professional).
  • Experience with SOAR platforms (Cortex XSOAR or equivalent), ITSM tools (ServiceNow SecOps), and advanced threat intelligence platforms.
  • Exposure to purple teaming, adversary emulation, and regulatory-driven incident response.

Benefits
 
Our Benefits Include:
  • Medical, Dental, and Vision Insurance
  • 401(k) Retirement Plan
  • Health Savings Account (HSA)
  • Disability Insurance (Short-Term and Long-Term)
  • Life and AD&D Insurance
  • Paid Sick Leave (where required by applicable state or local law)
  • Supplemental Insurance Plans
  • Identity Theft Protection
  • Pet Insurance
  • Employee Wellness Programs
  • Employee Assistance Program (EAP)
  • Career Growth and Professional Development Opportunities
Disclaimer: Benefits eligibility, accrual rates, and usage limits may vary based on employment status, length of service, and work location. Paid Sick Leave is provided in strict accordance with applicable state and municipal mandates. Cynet Systems Inc. reserves the right to modify, amend, or terminate any benefit plans at any time in accordance with applicable laws.

About Cynet Systems

Founded in 2010 and headquartered in the Washington, DC metro area, Cynet Systems Inc. is a leading technology staffing and workforce solutions company serving Fortune 500 companies, government agencies, and enterprise organizations across the United States and Canada. We deliver agile, scalable talent solutions across IT, engineering, life sciences, clinical, and professional staffing, powered by a high-performing recruitment engine operating across North America and Asia.
As a nationally and locally certified Minority Business Enterprise (MBE), Cynet Systems is committed to helping organizations build high-performing teams while empowering professionals to grow rewarding careers. Our organization is certified to ISO 9001, ISO 14001, ISO 27001, and SOC 2 Type II standards, reflecting our commitment to quality, security, operational excellence, and customer success.

Cynet Systems logo

About Cynet Systems

Sourced by ZipRecruiter

Cynet Systems Inc is a staffing and recruiting corporation nestled in Ashburn, VA, USA. Established in 2010, the company operates within the Information Technology and Services sector, specializing in providing effective workforce solutions to different business needs, including IT consulting, direct hire, and contract staffing services. Through the years, Cynet Systems has built an impressive portfolio, going beyond borders and expanding its operations internationally in Canada and India. Rooted in its core values of teamwork, leadership, and commitment, Cynet Systems helps businesses unlock their full potential by providing versatile and competent professionals that perfectly align with their needs. Fueled by their unwavering mission to deliver top-tier talent to businesses worldwide, Cynet Systems garnered various recognitions including SIA's fastest-growing staffing firms and Best Place to Work in Virginia for 2019.

Industry

It services

Company size

501 - 1,000 Employees

Headquarters location

Sterling, VA, US

Year founded

2010

Social media