Principal Consultant, AI, Proactive Services (Unit 42) Remote

extra holidays
Work set-up: 
Full Remote
Contract: 
Experience: 
Senior (5-10 years)
Work from: 

Offer summary

Qualifications:

Bachelor’s degree in Cyber Security, Computer Science, or related field., 6-9+ years of experience in information security and risk assessments., Experience managing consulting teams and performing security audits., Knowledge of securing AI systems in cloud environments like AWS, Azure, or Google Cloud..

Key responsibilities:

  • Lead security assessments of AI systems and tools using industry frameworks.
  • Provide expert guidance on AI security, including adversarial defenses and privacy techniques.
  • Collaborate with clients' technical and leadership teams to understand security requirements.
  • Stay updated on AI threats and contribute to developing security solutions.

Palo Alto Networks logo
Palo Alto Networks Large http://www.paloaltonetworks.com
10001 Employees
See all jobs

Job description

Company Description

Our Mission

At Palo Alto Networks® everything starts and ends with our mission:

Being the cybersecurity partner of choice, protecting our digital way of life.
Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are done, and we’re looking for innovators who are as committed to shaping the future of cybersecurity as we are.

Who We Are

We take our mission of protecting the digital way of life seriously. We are relentless in protecting our customers and we believe that the unique ideas of every member of our team contributes to our collective success. Our values were crowdsourced by employees and are brought to life through each of us everyday from disruptive innovation and collaboration, to execution. From showing up for each other with integrity to creating an environment where we all feel included.

As a member of our team, you will be shaping the future of cybersecurity. We work fast, value ongoing learning, and we respect each employee as a unique individual. Knowing we all have different needs, our development and personal wellbeing programs are designed to give you choice in how you are supported. This includes our FLEXBenefits wellbeing spending account with over 1,000 eligible items selected by employees, our mental and financial health resources, and our personalized learning opportunities just to name a few!

Job Description

Your Career

The Principal Consultant, Artificial Intelligence (AI) for Proactive Services is focused on leading engagements on our AI team across a comprehensive portfolio of clients. The individual will assess security risk in the development and use of AI models and tools across multiple frameworks and act as a technical key team member in client engagements. They will be the client’s advocate for cybersecurity risk management and provide expert recommendations to enhance their AI security posture.

Your Impact

  • Conduct comprehensive security assessments of AI systems and tools using frameworks such as:

    • MITRE ATLAS for adversarial tactics and techniques.

    • OWASP Top 10 for LLMs to identify vulnerabilities in AIML models.

    • NIST AI Risk Management Framework (AI RMF) for risk analysis and mitigation.

      • Develop and execute assessment plans tailored to foundational models, base models, and SaaSbased AI tools.

      • Analyze model architectures, training data pipelines, and deployment environments to identify potential security gaps and vulnerabilities.

      • Provide expert guidance on securing AI systems, including:

        • Adversarial ML defenses.

        • Data poisoning prevention.

        • Privacypreserving AI techniques (e.g., differential privacy).

          • Evaluate compliance with regulatory requirements and standards (e.g., GDPR, HIPAA, or emerging AIspecific regulations).

          • Collaborate with the client’s crossfunctional teams, conducting stakeholder interviews, interactive workshops, and meetings with technical teams (data scientists, developers, DevOps engineers) and leadership teams to ensure a thorough understanding of system architecture, security requirements, and business objectives for the assessment.

          • Stay uptodate on the evolving threat landscape in AI and contribute to the development of innovative security solutions.Assisting Unit 42 Consulting Leadership in the development of Risk Management, Compliance, and Security standards within professional services

          • Maintaining industry knowledge of and experience with cybersecurity best practices within theGovernance, Risk and Compliance (GRC) field to provide recommendations to proactively improve our client’s security posture and maturity

          • Maintaining an understanding of the comprehensive threat intelligence landscape, key threat actors, MITRE ATT&CK TTPs, threat intelligence platforms, zeroday and other vulnerabilities, and other threatled cybersecurity intelligence information

          • Maintaining an understanding of Artificial Intelligence (AI) platforms and security best practices as well as threat to foundational, base, and other AI models and tools

          • Leading or supporting cybersecurity risk assessments, audits, program and policy maturation and development, incident response tabletop exercises, configuration reviews, breach readiness reviews, and expert witness cases in accordance with industry best practices, regulations, standards, and company policies and procedures

          • Maintaining the ability to work across multiple frameworks and regulatory standards including, but not limited to, NIST, CIS 18, ISO, GDPR, CCPA, SOX, and HIPAA

          • Managing the team, monitoring progress, tracking budget, mitigating risks, and ensuring key stakeholders are kept informed about progress and expected outcomes while defining potential impacts and creating an effective mitigation strategy for multiple projects at a given time

          • Identifying security risks and vulnerabilities while eliminating cybersecurity threats via stakeholder interviews, documentation review, and deepdive testing and control validation

          • Evaluating client controls for compliance with legal, regulatory, privacy, policy, standards and security requirements

          • Effectively documenting and communicating audit, assessment, or compliance results, findings, and recommendations to stakeholders

          • Effectively communicating with external stakeholders in a professional manner

          • Scoping new opportunities with prospective clients, including drafting statements of work and proposals

          • Meeting travel requirements as needed to meet business demands (on average ~30%)

Required profile

Experience

Level of experience: Senior (5-10 years)
Spoken language(s):
English
Check out the description to know which languages are mandatory.

Other Skills

  • Team Management
  • Time Management
  • Teamwork
  • Communication
  • Problem Solving

Consultant Related jobs