SOAR Engineer/Architect

Remote • Posted 1 hour ago • Updated 1 hour ago
Contract W2
No Travel Required
Remote
$75 - $105/hr
Fitment

Dice Job Match Score™

🤯 Applying directly to the forehead...

Job Details

Skills

  • SOAR
  • Cortex XSOAR
  • automation
  • MITRE ATT&CK framework
  • SIEM

Summary

Job Description:
Position: SOAR Engineer/Architect
Location: Remote
Duration: 12 months contract with possible extension
Client: Direct

Scope of the project:
The position will work as a consulting Security Orchestration, Automation, and Response engineer within the Division of Information Security. This role will focus on Playbook development and Orchestration, Workflow automation, and logic optimization within the state SOAR platform.  They will also build and maintain integrations between the state SOAR platform, SIEM, EDR, Firewalls, and other necessary security tools. Engaging directly with state agencies to promote, support, and improve adoption of centralized security services is a key focus.

Daily Duties / Responsibilities:

  • Provide technical expertise and experience in creating efficient automation workflows.
  • Develop, implement automations and optimize existing automations in response to security alerts and incidents.
  • Build and maintain integrations with the SOAR platform.
  • Create custom scripts when required to provide functionality not supported out of the box integrations.
  • Document processes, runbooks, and troubleshooting steps related to the SOAR and integrations.
  • Proactively Coordinate with engineering, SOC, and IR support as needed to meet goals.


Required education/certifications:

  • Bachelor''s degree in an information technology or information security related field
  • Eight years of relevant work experience may be substituted in lieu of education
  • Five years of experience in supporting large it environments and/or system deployments
  • 5+ years of experience with automation platforms or SOAR solutions.
  • Strong scripting and automation skills (Python, bash, PowerShell, or similar).
  • Understanding of rest APIs, json, and YAML.
  • Familiarity with MITRE ATT & CK framework
  • Experience in working in multi-tenancy environment; experience in multi-agency or enterprise service projects.


Preferred Skills (rank in order of Importance):

  • Experience creating automations within the Cortex XSOAR platform.
  • Knowledge of security monitoring use cases and incident response support.


PREFERRED EDUCATION/CERTIFICATIONS:

  • CISSP, CISA, CISO OR EQUIVALENT ADVANCED SECURITY CERTIFICATION.
  • ADDITIONAL RELEVANT CERTIFICATIONS (E.G., CEH, OSCP, GPEN).
  • VENDOR CERTIFICATIONS IN SOAR OR AUTOMATION TECHNOLOGIES.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 91122780
  • Position Id: 8955487
  • Posted 1 hour ago
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Remote

Today

Easy Apply

Contract

$90 - $100

Remote

Today

Easy Apply

Contract

Depends on Experience

Remote

Today

Easy Apply

Contract

Depends on Experience

Remote

Today

Easy Apply

Contract

Depends on Experience

Search all similar jobs