- Develop, maintain, and enhance automated playbooks in SOAR platforms to streamline and improve incident response workflows.
- Proactive SIEM Content Management Specialist to join our security operations team. The ideal candida
- Will be responsible for designing, implementing, and managing custom SIEM content that supports the organization's security monitoring and threat detection capabilities.
Preferred candidate profile
- 1-7 years of experience into Develop and optimize automation playbooks within SOAR platforms (preferably Palo Alto XSOAR/XSIAM).
- Deep understanding of security concepts, including incident response, threat intelligence, network security, and vulnerability management.
- Utilize SOAR platforms to automate security processes and response activities.
- Collaborate with security analysts and incident responders to design playbooks that automate and orchestrate the detection, triage, investigation, and remediation of security incidents.
- Integrate playbooks with a variety of security tools such as SIEMs, firewalls, threat intelligence platforms, endpoint protection tools, and ticketing systems to improve the efficiency of the security operations center
- Test playbooks to ensure they are working as expected, troubleshoot issues, and optimize them for performance and scalability.
- Document playbook logic, workflows, and integrations to ensure that they are understandable and maintainable by other team members.