Short Description
Our client is looking for a dynamic SOAR / Senior Security Automation Developer to join their team
Bullet Points
- A Remote role based in Maidenhead
- Advanced proficiency in Python programming. (4 years)
- An Indepth knowledge of security operations and SOAR platforms
Our client is looking for a dynamic Senior Security Automation Developer to join their team
A Remote role based in Maidenhead. Salary bonus benefits
Advanced proficiency in Python programming. (4 years)
Experience with and Indepth knowledge of KT1 security operations and SOAR platforms (preferably i.e. Chronicle SOAR/Palo Alto XOAR).
Job Overview:
The Senior Security Automation Developer will be responsible for maintaining and expanding our Security Orchestration Automation and Response (SOAR) platform with new features automations integrations jobs and playbooks. The ideal candidate will be proficient in Python API integration data parsing security operations and troubleshooting/debugging. The role will also address daily errors and ensure seamless integration with various systems. This role is crucial in streamlining our security operations and enhancing our incident response capabilities.
Key Responsibilities:
- Develop implement and maintain SOAR playbooks automations jobs and workflows.
- Integrate various security tools and platforms (SIEM EDR firewalls ticketing systems threat intelligence platforms etc.) with SOAR via API.
- Collaborate with security operations teams to define and implement efficient and effective processes.
- Automate repetitive tasks to improve efficiency and response times.
- Document processes playbooks and technical solutions.
- Promptly troubleshoot and resolve platform issues with integrations automations jobs and playbooks through effective problemsolving and collaboration.
- Stay informed about SOAR updates and implement software updates and upgrades.
- Manage security settings user roles and permissions within the SOAR platform.
Required Technical Competencies:
- Experience with KT1 security operations and SOAR platforms (i.e. Chronicle SOAR Palo Alto XSOAR).
- Advanced proficiency in Python programming. (4 years)
- Strong understanding of RESTful APIs and experience with API integration.
- Proficiency in handling and parsing data formats such as JSON XML and CSV.
- Ability to write and maintain automation scripts.
- Strong troubleshooting and problemsolving skills.
- Proficiency with version control systems like Git.
- Excellent communication skills and ability to document technical solutions.
Desirable but not essential
- Familiarity with cloud platforms (e.g. AWS Azure GCP) and their security services.KT2
- Experience integrating security and IT systems (e.g. SIEM EDR firewalls ticketing systems)KT3 .
- Strong understanding of cybersecurity principles threats and vulnerabilities.KT4
Qualifications:
- Bachelors degree in Computer Science Information Security or related field (or equivalent experience).
- Minimum of 5 years of experience in security automation or a related field.
- Relevant certifications (PCSAE CISSP Security) are a plus.