Our DC metro based client is looking an Swimlane/SOAR Engineer. If you are qualified for this opening. Please forward a copy of your updated resume in word format to firstname.lastname@example.org.
CASP, GCIH, GCWN, GISF, GISP, GSSP, GICSP, GSSP, SEI, CISSP, CSSLP, SSCP, CCNP, CCNP Security, CCIE Security, ECSP, MCSE, RHCA, RHCE, VCP, VCAP, VCIX, VCDX
Our DC Metro based client has an immediate need for a Security Orchestration Automation and Response (SOAR) Engineer to join our DHS Enterprise Security Operations Center (ESOC) Team. The ideal SOAR Engineer will work in a cross-functional capacity to identify, propose, design, develop, implement, integrate, and maintain security. The SOAR Engineer must be a cybersecurity and technical expert with the ability to clearly identify, capture, articulate, design, implement, and maintain security operations uses cases, including developing integration code to provide interoperability between disparate IT and security solutions and infrastructure components. The SOAR Engineer must have a solid background in cybersecurity technologies, including deploying enterprise platforms, conducting demonstrations, creating product documentation, training security analysts, and sustaining enterprise technology services. Additionally, the engineer must have a solid understanding of security operations, incident response, threat management, and enterprise IT and security engineering. The SOAR Engineers provide expert support for the analysis, development and integration of the Swimlane SOAR Platform along with providing technical expertise to operational users. Works on complex technical problems and provides innovative solutions. Develops advanced technological ideas and guides their development into a final product.
Design, implement, and maintain Swimlane infrastructure Develop and maintain custom Swimlane application for ESOC IR workflow (e.g. create custom application to automate intel gathering)
Develop and maintain Swimlane Case Management system to support an Enterprise ticketing system.
Serve as primary point of contact for Swimlane problem identification and resolution
Create and maintain user, administrator, engineering, and compliance/accreditation documentation
Manage and implement integration between components, ESOC, and security tools (e.g. send/receive data from component Swimlane, establish API connection with ESOC and OneNet network security stack, etc)
Work with external teams to establish service accounts and/or API access
Quickly grasp complex technical concepts and make them easily understandable in writing and network diagrams/illustrations
Ensure SOAR capabilities are operational and developed to anticipate infrastructure growth.
Experience with SOAR platforms such as Swimlane, Phantom, Demisto, etc
2 years experience in SOAR Solution Engineering
Expert proficiency in Python scripting
Experience deploying in high availability environments using Kubernetes
Experience managing and maintaining MongoDB
General networking knowledge to include operation of routers, firewalls, DNS, DHCP, subnetting, VPNs and Web Proxies
Department of Homeland Security ESOC employees are required to obtain an Entry on Duty (EOD) clearance to support this program.
Bachelor’s degree in Computer Science, Engineering, or related field, 12+ years of experience in system administration, database administration, network engineering, software engineering, or software development, with a concentration in Cybersecurity.
Swimlane Certified SOAR Administrator (SCSA)
Swimlane Certified SOAR Developer (SCSD)
Proven experience deploying and supporting Swimlane
Experience in security process mapping, security process analysis, security process improvement concepts, models, and best practices