We are looking for a highly skilled Palo Alto Cortex XSOAR Engineer to join our cybersecurity team and play a key role in designing, implementing, and optimizing SOAR solutions for Security Operations.
Key Responsibilities:
- Design, plan, install, implement, and support Cortex XSOAR (Single & Multi-Tenant) architectures.
- Develop, customize, and optimize SOAR playbooks, automation workflows, and incident response processes.
- Build and maintain custom scripts and integrations using Python, REST APIs, and containers.
- Enable SOAR integrations with various security technologies, systems, and tools using direct or middleware-based approaches.
- Design and implement automated workflows for Incident Response, Threat Intelligence, and Threat Hunting.
- Lead POCs and deliver successful SOAR demonstrations aligned with customer expectations.
- Design and implement rapid detection, containment, mitigation, and response strategies for cybersecurity incidents.
- Collaborate with SOC Incident Responders to optimize SOAR operations and workflows.
- Translate customer use cases into automated playbooks and end-to-end SOAR solutions.
- Develop and maintain documentation for processes, procedures, workflows, SLAs, KPIs, and OLAs.
- Continuously enhance and update playbooks based on evolving threat landscapes and customer security controls.
- Conduct threat research and stay up to date with the latest malware trends, attack techniques (TTPs), and threat intelligence.
Technical Skills & Expertise:
Palo Alto Cortex XSOAR (Demisto) / SOAR Platforms
- Architecture design (Standalone & Multi-Tenant)
- Administration, consulting, installation, and implementation across enterprise environments
- DFIR playbook development and 100% automation workflows
- Incident Management, KPIs, SLAs, and SOC collaboration
- Integration and custom integration with security tools and third-party systems
- Custom scripting using Python, REST APIs, and Docker
- Security Operations optimization and Threat Intelligence
- Playbook as a Service (PaaS)
Required Experience & Qualifications:
- Strong hands-on experience with Palo Alto Cortex XSOAR.
- Proven experience in Security Operations, Incident Response, and Automation.
- Deep understanding of cybersecurity threats, malware trends, and attack methodologies.
- Strong analytical, problem-solving, and documentation skills.