Search by job, company or skills

2P Perfect Presentation

Security Orchestration and Automation Response

This job is no longer accepting applications

new job description bg glownew job description bg glownew job description bg svg
  • Posted a month ago

Job Description

We are looking for a highly skilled Palo Alto Cortex XSOAR Engineer to join our cybersecurity team and play a key role in designing, implementing, and optimizing SOAR solutions for Security Operations.

Key Responsibilities:

  • Design, plan, install, implement, and support Cortex XSOAR (Single & Multi-Tenant) architectures.
  • Develop, customize, and optimize SOAR playbooks, automation workflows, and incident response processes.
  • Build and maintain custom scripts and integrations using Python, REST APIs, and containers.
  • Enable SOAR integrations with various security technologies, systems, and tools using direct or middleware-based approaches.
  • Design and implement automated workflows for Incident Response, Threat Intelligence, and Threat Hunting.
  • Lead POCs and deliver successful SOAR demonstrations aligned with customer expectations.
  • Design and implement rapid detection, containment, mitigation, and response strategies for cybersecurity incidents.
  • Collaborate with SOC Incident Responders to optimize SOAR operations and workflows.
  • Translate customer use cases into automated playbooks and end-to-end SOAR solutions.
  • Develop and maintain documentation for processes, procedures, workflows, SLAs, KPIs, and OLAs.
  • Continuously enhance and update playbooks based on evolving threat landscapes and customer security controls.
  • Conduct threat research and stay up to date with the latest malware trends, attack techniques (TTPs), and threat intelligence.

Technical Skills & Expertise:

Palo Alto Cortex XSOAR (Demisto) / SOAR Platforms

  • Architecture design (Standalone & Multi-Tenant)
  • Administration, consulting, installation, and implementation across enterprise environments
  • DFIR playbook development and 100% automation workflows
  • Incident Management, KPIs, SLAs, and SOC collaboration
  • Integration and custom integration with security tools and third-party systems
  • Custom scripting using Python, REST APIs, and Docker
  • Security Operations optimization and Threat Intelligence
  • Playbook as a Service (PaaS)

Required Experience & Qualifications:

  • Strong hands-on experience with Palo Alto Cortex XSOAR.
  • Proven experience in Security Operations, Incident Response, and Automation.
  • Deep understanding of cybersecurity threats, malware trends, and attack methodologies.
  • Strong analytical, problem-solving, and documentation skills.

More Info

Job Type:
Industry:
Function:
Employment Type:

Job ID: 141710287