Job Description

Duties & Responsibilities Develop and maintain SOAR playbooks, integrations, and automations using Swimlane, Splunk Phantom, and Microsoft Logic Apps. Build API-driven workflows that integrate SIEM, EDR, NDR, identity, cloud, network, threat intelligence, and ticketing systems into end to end automated processes. Support the onboarding of new automation use cases, including requirements gathering, workflow design, testing, and deployment into production. Enhance and tune existing automations to reduce manual analyst workload, ensure reliability, and improve error handling and orchestration efficiency. Troubleshoot automation failures, integration issues, and platform errors, implementing durable fixes and improvements. Collaborate with SOC, IR, Threat Hunting, and Engineering teams to identify high value automation opportunities and translate them into actionable workflows. Develop enrichment, triage, containment, and remediation automations that accelerate incident response and improve consistency. Maintain updated documentation for playbooks, workflows, connectors, authentication models, and operational runbooks. Monitor SOAR platform health, performance, and workflow success rates, making recommendations to improve stability and scalability. Mentor junior analysts and engineers on automation development, platform capabilities, and best practices for SOAR operations. Requirements Basic Qualifications Proficient in various cybersecurity frameworks and standards. Experience with security tools such as SIEM, firewalls, and intrusion detection systems. Preferred Qualifications Relevant certifications (e.g., CISSP, CISM, CEH). Masters degree in Cybersecurity or related field.

4-6 years
Required Skills & Qualifications 10 year’s experience in an infrastructure engineering or DevOps role 4 years hands-on experience with Azure, GCP, or AWS 2 years hands on experience engineering Kubernetes solutions and associated ecosystems Strong background in automation with modern automation tools like Terraform, Packer, and Puppet. Demonstrated abilities managing code and other project files with Git CI/CD experience with modern tooling like Jenkins or Azure DevOps Strong understanding of cloud networking concepts (Virtual Private Networks, Software Defined Networking, Network and Application Load Balancers, DNS, API Gateways, Routing). Solid grasp of cloud security principles and compliance standards. Proficiency in Linux and Windows system administration. Understanding of GitOps Excellent problem-solving and communication skills. Bachelor’s degree in computer science, engineering, or related field. Preferred Qualifications Certified Kubernetes Administrator (CKA) or Certified Kubernetes Application Developer (CKAD) certification Certifications in cloud technologies (e.g., AWS Certified Solutions Architect, Azure Administrator, etc). Experience with monitoring tools (e.g., Prometheus, Grafana). Familiarity with scripting languages (e.g., Bash, Python, PowerShell). Hands on experience with modern GitOps tools such as FluxCD or ArgoCD

Apply for this Position

Ready to join ? Click the button below to submit your application.

Submit Application