Job Description
Required Education/Experience
BS degree in Science, Technology, Engineering, Math or related field and 3 years of prior relevant experience with a focus on cyber security or Masters with 1 years of prior relevant experience.
Primary Responsibilities
• Author, test, and maintain automation scripts/workflows within SOAR platform
• Design, implement, and maintain efficient and reusable Python code
• Review, debug, and resolve technical issues throughout all stages of SDLC
• Integrate SOAR platform with other security tools and APIs to execute automated workflows
• Coordinate with System Administrators, Engineers, and ISSOs to provision service accounts and/or grant required permissions
• Assist with process development and process improvement for Security Operations to include creation/modification of SOPs, Playbooks, and Work instructions
• Measure effectiveness of process improvement and automation efforts via metrics and KPIs
Basic Qualifications
• Have expert proficiency with Python
• Working knowledge of SOAP/REST APIs, JSON, HTML/CSS, Javascript, XML
• Experience with SOAR platforms such as Swimlane, Phantom, Demisto, etc
• Experience as a SOC Analyst and/or Incident Responder
• Authored SOC SOPs, playbooks, work instructions and/or other process documents
• Familiarity with Splunk Search Processing Language (SPL) and/or Elastic Domain Specific Language (DSL)
• General networking knowledge to include operation of routers, firewalls, DNS, DHCP, subnetting, VPN and Web Proxies
Preferred Qualifications
Should have 2 years of experience se
Responsibilities
- Author, test, and maintain automation scripts/workflows within SOAR platform
- Design, implement, and maintain efficient and reusable Python code
- Review, debug, and resolve technical issues throughout all stages of SDLC
- Integrate SOAR platform with other security tools and APIs to execute automated workflows
- Coordinate with System Administrators, Engineers, and ISSOs to provision service accounts and/or grant required permissions
- Assist with process development and process improvement for Security Operations to include creation/modification of SOPs, Playbooks, and Work instructions
- Measure effectiveness of process improvement and automation efforts via metrics and KPIs
Requirements
- BS degree in Science, Technology, Engineering, Math or related field and 3 years of prior relevant experience with a focus on cyber security or Masters with 1 years of prior relevant experience
- Have expert proficiency with Python
- Working knowledge of SOAP/REST APIs, JSON, HTML/CSS, Javascript, XML
- Experience with SOAR platforms such as Swimlane, Phantom, Demisto, etc
- Experience as a SOC Analyst and/or Incident Responder
- Authored SOC SOPs, playbooks, work instructions and/or other process documents
- Familiarity with Splunk Search Processing Language (SPL) and/or Elastic Domain Specific Language (DSL)
- General networking knowledge to include operation of routers, firewalls, DNS, DHCP, subnetting, VPN and Web Proxies
- Should have 2 years of experience se