Palo Alto Cortex XSOAR Engineer

Dipole Group — Australia · Posted ~1 hour ago

Senior Full-time

Skills

Palo Alto Cortex XSOAR SOAR security automation Python JavaScript incident response

🔓 Log in to save this job, tailor your resume & track your apply process — 7 days free, no card needed.

Log in to add to target list

Summary ✨ AI‑Generated

An experienced security engineering role focused on designing, implementing, and optimizing SOAR platforms. The position involves automation development, security workflow creation, and improving operational efficiency for security teams.

Highlights

Work on security automation solutions, improving incident response processes and integrating enterprise security tools within modern SOC environments.

Description

About the role We are seeking an experienced Palo Alto Cortex XSOAR Engineer to design, implement, integrate and optimise Security Orchestration, Automation and Response (SOAR) solutions using the Palo Alto Cortex XSOAR platform. The successful candidate will automate security operations, integrate enterprise security tools, develop playbooks and improve incident response capabilities across Security Operations Centres (SOC). Key Responsibilities Cortex XSOAR Administration Install, configure and administer Palo Alto Cortex XSOAR.Manage tenants, roles, permissions and integrations.Maintain platform health, upgrades and performance.Configure incident types, layouts and automation workflows.Support platform optimisation and continuous improvement.SOAR Development & Automation Design and develop automated playbooks.Build security orchestration workflows.Develop incident response automation.Create custom scripts using Python and JavaScript.Automate repetitive SOC tasks.Develop approval and notification workflows.Security Integrations Develop and maintain integrations with: Palo Alto Cortex XDRCortex XSIAMPalo Alto NGFWPrisma CloudSplunkMicrosoft SentinelMicrosoft DefenderCrowdStrikeServiceNowJiraActive DirectoryAzureAWSMicrosoft 365Email Security PlatformsThreat Intelligence PlatformsSIEM solutionsITSM toolsREST APIsIncident Response Automate incident triage.Develop containment workflows.Automate enrichment activities.Improve Mean Time to Detect (MTTD).Improve Mean Time to Respond (MTTR).Support cyber incident investigations.Develop standard response procedures.Detection Engineering Enhance detection workflows.Create automated enrichment.Integrate threat intelligence feeds.Develop IOC enrichment.Automate case management.Improve alert prioritisation.Technical Skills Mandatory Palo Alto Cortex XSOARPython scriptingSIEM technologiesNetworking fundamentalsPreferred Cortex XDRCortex XSIAMPalo Alto NGFW Responsibilities Install and administer Cortex XSOAR.Develop automation playbooks.Create custom integrations.Develop Python automation scripts.Integrate enterprise security platforms.Optimise SOC workflows.Improve incident response processes.Develop dashboards and reports.Troubleshoot platform issues.Support platform upgrades.Deliver knowledge transfer.Provide customer support.Experience 5+ years in Cyber Security.3+ years in Security Operations (SOC).2+ years hands-on experience with Cortex XSOAR.Experience developing SOAR playbooks.Experience integrating enterprise security platforms.Experience with API development and automation.Qualifications Degree in Information Technology, Cyber Security or related discipline.Palo Alto Networks Certified Cybersecurity Associate (PCCSA) – Preferred.Palo Alto Cortex XSOAR Certification – Highly Desirable.PCNSE – Advantageous.CISSP, Security+, GSEC or equivalent – Preferred. Key Deliverables Automated incident response playbooks.Security tool integrations.SOC workflow optimisation.Reduced MTTR and MTTD.Improved analyst efficiency.Enhanced security automation.Operational dashboards and reporting.Continuous platform optimisation. Suitable For This role is ideal for: Cortex XSOAR EngineerSOAR Automation EngineerCyber Security Automation EngineerSOC Automation SpecialistSecurity Integration EngineerManaged Security Services (MSSP)Enterprise Cyber Security ConsultantThe role is particularly suited to enterprise environments where Cortex XSOAR is integrated with Cortex XDR, Cortex XSIAM, Splunk, Microsoft Sentinel, ServiceNow, Microsoft Defender, and other security platforms to automate incident response and improve SOC efficiency.