19 Aug
|
EMBARK SERVICES PRIVATE
|
India
19 Aug
EMBARK SERVICES PRIVATE
India
Job Description
· Develop, maintain, and enhance automated playbooks in SOAR platforms to streamline and improve incident response workflows.
· Proactive SIEM Content Management Specialist to join our security operations team. The ideal candida
· Will be responsible for designing, implementing, and managing custom SIEM content that supports the organization's security monitoring and threat detection capabilities.
· Ensuring that our SIEM system is optimized to detect, analyze, and respond to potential security threats effectively and efficiently.
Requirements
· 4-7 years of experience into Develop and optimize automation playbooks within SOAR platforms (preferably Palo Alto XSOAR/XSIAM).
· Deep understanding of security concepts, including incident response, threat intelligence, network security, and vulnerability management.
· Utilize SOAR platforms to automate security processes and response activities.
· Collaborate with security analysts and incident responders to design playbooks that automate and orchestrate the detection, triage, investigation, and remediation of security incidents.
· Integrate playbooks with a variety of security tools such as SIEMs, firewalls, threat intelligence platforms, endpoint protection tools, and ticketing systems to improve the efficiency of the security operations center
· Test playbooks to ensure they are working as expected, troubleshoot issues, and optimize them for performance and scalability.
· Document playbook logic, workflows, and integrations to ensure that they are understandable and maintainable by other team members.
· Work closely with security engineers, analysts, and IT teams to align playbook development with security operations needs and organizational goals.
· Provide technical expertise in the configuration and optimization of SOAR tools.
· Assist in the evaluation and selection of SOAR technologies based on organizational needs.
· Document and maintain standard operating procedures for SOAR processes and playbooks.
· Experience with Cortex XSOAR (preferred) or other security orchestration platforms.
· Ability to troubleshoot issues, perform root cause analysis, and continuously optimize automation processes.
· Knowledge of scripting and automation (Python, Java Script, Power Shell, etc.) for building playbooks and integrations.
· Bachelor’s or Master’s degree in Computer Science, Information Security, or related field.
· Location: Mumbai, Hyderabad
Requirements
• 4-7 years of experience into Develop and optimize automation playbooks within SOAR platforms (preferably Palo Alto XSOAR/XSIAM). • Deep understanding of security concepts, including incident response, threat intelligence, network security, and vulnerability management. • Utilize SOAR platforms to automate security processes and response activities.
• Collaborate with security analysts and incident responders to design playbooks that automate and orchestrate the detection, triage, investigation, and remediation of security incidents. • Integrate playbooks with a variety of security tools such as SIEMs, firewalls, threat intelligence platforms, endpoint protection tools, and ticketing systems to improve the efficiency of the security operations center • Test playbooks to ensure they are working as expected, troubleshoot issues, and optimize them for performance and scalability. • Document playbook logic, workflows, and integrations to ensure that they are understandable and maintainable by other team members. • Work closely with security engineers, analysts, and IT teams to align playbook development with security operations needs and organizational goals. • Provide technical expertise in the configuration and optimization of SOAR tools. • Assist in the evaluation and selection of SOAR technologies based on organizational needs. • Document and maintain standard operating procedures for SOAR processes and playbooks. • Experience with Cortex XSOAR (preferred) or other security orchestration platforms. • Ability to troubleshoot issues, perform root cause analysis, and continuously optimize automation processes. • Knowledge of scripting and automation (Python, Java Script, Power Shell, etc.) for building playbooks and integrations. • Master's or Bachelor’s degree in Cybersecurity, Information Technology, or related field. • Location: Mumbai, Hyderabad
📌 XSOAR Engineer - Assistant Manager (Mumbai/Hyderabad) (India)
🏢 EMBARK SERVICES PRIVATE
📍 India