Job Title: Cybersecurity Automation SOAR Engineer
Duration: 6+ Months Contract with Possible extension
Location: Dallas TX
Work Authorization/VISA : Need only VISA independent candidates, W2 Contract only.
Job Description:
At least 5+ years of experience in the IT industry with strong technical knowledge on AWS Infrastructure & security services (EC2, ELB, Guard Duty, Config, Inspector, Security Hub, RDS, Route53, S3, VPC, VPN, TGW, CloudWatch, CloudTrail, event bridge, etc.)
Strong security automation experience and ability to convert security use cases to automation scripts especially covering large set of AWS specific use cases.
Strong proficiency in XSOAR platform, including playbook development, automation scripting (Python preferred), and integration management.
Strong working experience in XSOAR product with the ability to design, implement, and maintain the Palo Alto XSOAR platform.
Ability to build new or modify existing Playbooks, develop custom playbooks, automations, and integrations with various security tools and technologies.
Ability to configure and manage Threat Intelligence Management (TIM) features in XSOAR
Identify opportunities to automate repetitive security tasks and processes using XSOAR.
Ability to develop/document playbooks to automate security controls and processes for AWS.
Collaborate with Security Operations Center (SOC) teams to streamline incident response workflows.
Palo Certified Security Automation Engineer (PCSAE) preferred
Good understanding of security controls related to regulatory requirements, such as NIST, PCI, ISO 27001, HIPAA compliance etc.
Experience working on FedRamp compliant projects is a plus.