Principal Consultant, AI Assessments, Proactive Services (Unit 42) - Remote
ExternalPrepare for this interview
EliteAI-generated questions, company research, and talking points tailored to this role
About the role
In order to be the cybersecurity partner of choice, we must trailblaze the path and shape the future of our industry. This is something our employees work at each day and is defined by our values: Disruption, Collaboration, Execution, Integrity, and Inclusion. We weave AI into the fabric of everything we do and use it to augment the impact every individual can have. If you are passionate about solving real-world problems and ideating beside the best and the brightest, we invite you to join us! This role is remote, but distance is no barrier to impact. Our hybrid teams collaborate across geographies to solve big problems, stay close to our customers, and grow together. You will be part of a culture that values trust, accountability, and shared success where your work truly matters. Job Summary Job Summary This client-facing role requires the Principal Consultant to lead and produce deliverables for cyber risk management (CRM) engagements. You will work directly with multiple customers and key stakeholders, from administrators to the C-suite, to define and drive security priorities for their security operations center (SOC) and broader information security teams, acting as a trusted advisor to help them achieve and maintain a strong cybersecurity posture.
Responsibilities
- Conduct comprehensive security assessments of AI systems and tools using frameworks such as:
- MITRE ATLAS for adversarial tactics and techniques.
- OWASP Top 10 for LLMs to identify vulnerabilities in AI/ML models.
- NIST AI Risk Management Framework (AI RMF) for risk analysis and mitigation.
- Analyze model architectures, training data pipelines, and deployment environments to identify potential security gaps and vulnerabilities.
- Provide expert guidance on securing AI systems, including:
- Adversarial ML defenses.
- Data poisoning prevention.
- Privacy-preserving AI techniques (e.g., differential privacy).
- Evaluate compliance with regulatory requirements and standards (e.g., GDPR, HIPAA, or emerging AI-specific regulations).
- Stay up-to-date on the evolving threat landscape in AI and contribute to the development of innovative security solutions.Assisting Unit 42 Consulting Leadership in the development of Risk Management, Compliance, and Security standards within professional services
- Maintaining industry knowledge of and experience with cybersecurity best practices within theGovernance, Risk and Compliance (GRC) field to provide recommendations to proactively improve our client's security posture and maturity
- Maintaining an understanding of Artificial Intelligence (AI) platforms and security best practices as well as threat to foundational, base, and other AI models and tools
- Managing the team, monitoring progress, tracking budget, mitigating risks, and ensuring key stakeholders are kept informed about progress and expected outcomes while defining potential impacts and creating an effective mitigation strategy for multiple projects at a given time
- Identifying security risks and vulnerabilities while eliminating cybersecurity threats via stakeholder interviews, documentation review, and deep-dive testing and control validation
- Effectively communicating with external stakeholders in a professional manner
- Scoping new opportunities with prospective clients, including drafting statements of work and proposals
- Meeting travel requirements as needed to meet business demands (on average ~30%)
Requirements
- Required Qualifications
- Bachelor's Degree in Information Security, Computer Science, Digital Forensics, Cyber Security or equivalent years of professional experience to meet job requirements and expectations
- 6-9+ years of experience performing information security and risk assessments based upon industry-accepted standards.
- Experience with GRC tools, technology, and implementation
- Experience with security assessments/audits, drafting findings and recommendations, and prioritizing recommendations via quantitative risk scoring
- Experience with securing AI systems within cloud environments (e.g., AWS, Azure, Google Cloud).
- Experience with the lifecycle management of AI/ML models, including development, deployment, monitoring, and maintenance.
- Form
Additional Information
Our Mission At Palo Alto Networks®, we're united by a shared mission-to protect our digital way of life. We thrive at the intersection of innovation and impact, solving real-world problems with cutting-edge technology and bold thinking. Here, everyone has a voice, and every idea counts. If you're ready to do the most meaningful work of your career alongside people who are just as passionate as you are, you're in the right place.
Your Match
How well this role fits your profile.
Company Intel
What employees say
Worked at Palo Alto Networks? Share your experience