Senior SOAR Engineer
Malomatia โ Qatar ยท Posted ~1 week ago
๐ Log in to save this job, tailor your resume & track your apply process โ 7 days free, no card needed.
Log in to add to target listDescription
Job Description
Our SOAR Engineer is responsible for monitoring, developing, and maintaining the beating heart of malomatia Cyber Security Services and driving our efficiency improvements.
The effective use of our tools and expertise is critical to ensure malomatia and our customers can quickly identify, understand, and respond to cyber security incidents.
The successful candidate will have a good technical knowledge of cyber systems and incident response, and a desire to drive improvements through automation.
They should possess an understanding of different security technologies, technical infrastructures and APIs and an awareness of cyber threats.
Responsibilities
Act as a Technical Subject Matter Expert, be the primary point of contact for Security Automation, Orchestration, Playbooks, Python Automation, API-based automation, Incident Response lifecycle automation, Security AutomationDevelop, implement, and execute standard procedures for SOAR platform administration.Design, Deployment and Maintenance of SOAR platforms (including content management, change management, version/patch management, and lifecycle management).Work closely with the Security Operations Center (SOC) and Security Engineering teams to improve existing automation and deliver resilient security solutionsAssess, design, and improve SOC processes and workflows with a focus on integrating automation through Security Orchestration, Automation and Response (SOAR) tools.Implement SOC automation and ensure continued compatibility with existing detection and response tools.Integrate new sources and build playbooks to properly triage and respond to security incidents while reducing the time needed to analyze each event.Develop custom scripts to automate current detection and response workflows.Build pipelines to enrich logs and alert results to provide a comprehensive view for SOC analysts.Operate and help mature a SOC playbook, workflow automations and use casesAssist with client setup transition and onboarding, serve as primary point of contact for Managed Security Service client
Qualifications
Required Skills:
Proven experience with Security Orchestration, Automation and Response (SOAR) technologies (e.g., Palo Alto Cortex XSOAR, Splunk SOAR/Phantom, Microsoft Sentinel Automation/Logic Apps, IBM Resilient).Understanding of security architecture, tool integration, API development and automation.Understanding of Incident Response processes (Detection, Investigation, and response).Understanding of common SOC processes and workflows.Experience with Python scripting language for automation and working knowledge of REST APIs, JSON, HTML/CSS, JavaScript, XML.Experience developing Dashboards and Reports focused on cyber security operations.Experience with operating system internals for both Linux and Windows platforms.Proven experience building or customizing integrations/playbooks with common security tools (e.g., Palo Alto/Fortinet firewalls, CrowdStrike/SentinelOne EDR, Splunk/QRadar/Sentinel SIEM, ServiceNow/Jira ticketing).Proven experience integrating SOAR platforms with ITSM systems (e.g., Jira, ServiceNow etc).Strong problem-solving capabilities and the ability to work with minimal oversight.Exceptional written and verbal communication skills.
Educational Qualifications:
Relevant DegreeAdditionally, one or more SOAR certificate related to a SOAR platform
Desirable:
Familiarity and experience working within the regionExperience working as part of a MSSP or MDR provider
We have 86,488 jobs that might be an even better fit for you
DontApply's real value goes far beyond a single job link or company name. Just upload your resume โ in under a minute we'll analyze all 86,488 jobs and tell you exactly which ones you should apply to right now.
Upload My Resume