Overview
Skills
Job Details
Cybersecurity Automation SOAR Engineer
Duration: 2+ months
100% remote/Dallas, TX
Rate: 78-93/hr
Skills (EXPERT/ADVANCED/NONE)
Cybersecurity automation SOAR Engineer
Someone with strong XSOAR hands-on experience.
Foundational Cybersecurity knowledge
AWS security experience
Questions (must reply YES to ALL):
Are you Holder?
Do you have XSOAR expertise?
Description:
At least 5+ years of experience in the IT industry with strong technical knowledge on AWS Infrastructure & security services (EC2, ELB, Guardduty, Config, Inspector, Security Hub, RDS, Route53, S3, vpc, vpn, tgw, cloudwatch, cloudtrail, eventbridge, etc.)
Strong security automation experience and ability to convert security use cases to automation scripts especially covering large set of AWS specific use cases.
Strong proficiency in XSOAR platform, including playbook development, automation scripting (Python preferred), and integration management.
Strong working experience in XSOAR product with the ability to design, implement, and maintain the Palo Alto XSOAR platform.
Ability to build new or modify existing Playbooks, develop custom playbooks, automations, and integrations with various security tools and technologies.
Ability to configure and manage Threat Intelligence Management (TIM) features in XSOAR
Identify opportunities to automate repetitive security tasks and processes using XSOAR.
Ability to develop/document playbooks to automate security controls and processes for AWS.
Collaborate with Security Operations Center (SOC) teams to streamline incident response workflows.
Palo Certified Security Automation Engineer (PCSAE) preferred
Good understanding of security controls related to regulatory requirements, such as NIST, PCI, ISO 27001, HIPAA compliance etc
Experience working on FedRamp compliant projects is a plus.