What are the responsibilities and job description for the Remote SOAR Developer/Engineer position at Lensa?
Lensa is a career site that helps job seekers find great jobs in the US. We are not a staffing firm or agency. Lensa does not hire directly for these jobs, but promotes jobs on LinkedIn on behalf of its direct clients, recruitment ad agencies, and marketing partners. Lensa partners with DirectEmployers to promote this job for Wavestrong. Clicking "Apply Now" or "Read more" on Lensa redirects you to the job board/employer site. Any information collected there is subject to their terms and privacy notice.
Exciting Remote SOAR Developer/Engineer contract opportunity.
Requirements
Exciting Remote SOAR Developer/Engineer contract opportunity.
Requirements
- Automate SOC Security Incident Response processes providing the ability to analyze and resolve alerts from existing security tools leveraging a single stream management system
- Develop and maintain custom applications for SOC workflows
- Assist with process development and process improvement for SOC to include creation/modification of SOPs, Playbooks, and work instructions
- Integrate SOAR platform with other security tools and APIs to execute automated workflows
- Author, test, and maintain automation scripts/workflows within SOAR platform
- Design, implement, and maintain efficient and reusable Python, Javascript, and JSON code
- Review, debug, and resolve technical issues throughout all stages of SDLC
- Coordinate with system administrators and engineers to provision service accounts and/or grant required permissions
- Actively mentor and train team members of the SOC processes, governance, and frameworks
- 2 plus years of work experience in one or more Cybersecurity focus areas such as SOC or Network Security
- Bachelors degree in Computer Science, Information Systems, Engineering, or related field
- Experience with SOAR platforms such as Swimlane, Phantom, XSOAR, etc…
- Experience in security process mapping, security process analysis, security process improvement concepts, models, and best practices
- Proficient in Python scripting
- Working knowledge of REST APIs, JSON, HTML/CSS, Javascript, XML
- Experience authoring SOC SOPs, playbooks, work instructions and/or other process documents
- Experience with SIEMs, such as Splunk, XSIAM, QRadar, etc…
- Experience with Visual Studio
- Experience in DevSecOps environment