Cybersecurity Automation Engineer

Atlanta, GA, US • Posted 4 hours ago • Updated 4 hours ago
Contract W2
12 Months
No Travel Required
On-site
$70 - $75/hr
Fitment

Dice Job Match Score™

✨ Finding the perfect fit...

Job Details

Skills

  • Splunk
  • SIEM
  • Cortex XSOAR
  • automation

Summary

Description:

Business Initiative/Purpose: (Goal, Business Impact, Accomplishments from the work)

  • Cybersecurity Automation Engineer to design, build, and maintain integrations and automated workflows within our SOAR platform (Cortex XSOAR). This role will focus on ingesting and correlating data from third-party risk and security tools (e.g., Archer, SecurityScorecard, Splunk), enabling alerting for vendor-related threats, and executing automated response playbooks to reduce risk and response time.

Bachelor Degree: (Required, Preferred or Not Required)

  • Preferred.

 

Role Responsibilities: (what they will be doing)

SOAR Engineering & Integrations

  • - Design, build, and maintain integrations between XSOAR and platforms such as Archer (or other GRC tools), SecurityScorecard (or similar vendor risk tools), and SIEM solutions such as Splunk.
  • - Develop custom connectors and API-based integrations where native connectors do not exist.
  • - Normalize, enrich, and correlate data from third-party and external risk sources for operational use.

Third-Party Risk Alerting

  • - Build alerting logic for vendor-related threats including vendor breaches, risk score degradation, SaaS abuse, and exposure of vendor-managed assets.
  • - Correlate vendor risk signals with internal telemetry to determine potential business impact.
  • - Enable SOC workflows for third-party-related detections.

Automation & Playbooks

  • - Design and implement SOAR playbooks to triage, enrich, and respond to vendor-related alerts.
  • - Automate response actions such as token revocation, access suspension, ticket creation, and stakeholder notification.
  • - Maintain and optimize playbooks to reduce manual effort and mean time to respond (MTTR).
  • - Partner with SOC, Vendor Risk, Threat Modeling, and Detection Engineering teams to translate risk scenarios into automation logic.
  • - Document integrations, workflows, and playbooks.
  • - Monitor performance and reliability of SOAR automations.                  .     

Must Have Skills/Prior Experiences: (Vendor should not submit any candidate that does not have these skills/prior experience.)

  • 3+ years of experience in security engineering, SOAR engineering, or security automation.
  • Hands-on experience with Cortex XSOAR (or similar SOAR platform).
  • Experience integrating SIEM platforms such as Splunk.
  • Strong API integration and scripting skills (Python, REST, JSON, webhooks).
  • Solid understanding of incident response workflows, SaaS security, IAM, and third-party risk.
  • Docker, Kubernetes, containerization pipeline, and deployment experience.
  • Other security certifications (e.g. CCNA Security, GSEC, GCED, GPPA, etc.).
  • Other technical Certifications (e.g. CCNA, RHCE, MCSE, etc.).
  • Demonstrated knowledge of Large Language Models (LLMs) and Generative AI, with a focus on Azure AI offerings                       

PlNice to Have Skills/Prior Experiences: (Hiring Manager DOES NOT require these skills/ prior experience. However candidates with any of these will be looked at first.)

- Experience integrating Archer, ServiceNow GRC, SecurityScorecard, BitSight, or RiskRecon.

- Knowledge of MITRE ATTACK and detection engineering concepts.

- Experience automating SaaS security actions (token revocation, session termination).

Familiarity with External Attack Surface Management (EASM) tools.

 

EEO

“Mindlance is an Equal Opportunity Employer and does not discriminate in employment on the basis of – Minority/Gender/Disability/Religion/LGBTQI/Age/Veterans.”

 

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 10114908
  • Position Id: 9045532
  • Posted 4 hours ago
Contact the job poster
LC

Lalit Chelani

Recruiter @ Mindlance
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Duluth, Georgia

Today

Full-time

Remote

Today

Easy Apply

Contract

Depends on Experience

Remote

4d ago

Easy Apply

Full-time

50 - 55

Remote or California

Today

Full-time

USD 163,987.00 per year

Search all similar jobs