Job Purpose
The Senior SOAR Engineer specializes in leveraging Cortex XSOAR to automate and orchestrate security operations across the organization.
This role involves designing, implementing, and optimizing automated workflows, incident response strategies, and playbooks to enhance the efficiency of security operations.
Responsibilities
- Design and implement automation workflows using Cortex XSOAR to enhance incident response efficiency and reduce mean time to resolution (MTTR).
- Develop and optimize playbooks addressing various security incidents and alerts, ensuring comprehensive coverage of the threat landscape.
- Integrate Cortex XSOAR with existing security tools, ensuring smooth data flow and enhancing overall security posture.
- Collaborate with SOC teams and other stakeholders to gather requirements and translate them into effective automation solutions.
- Monitor and maintain the health of the Cortex XSOAR environment, troubleshooting issues and ensuring high availability.
- Provide training and mentorship to junior staff and SOC analysts on SOAR best practices and usage of Cortex XSOAR.
- Document workflows, processes, and playbook configurations as part of operational and compliance requirements.
- Stay updated with the latest trends in security automation and SOAR technologies to continuously improve and adapt security operations.
- Participate in incident response activities, contributing to investigations and post-incident reviews to improve future automation efforts.
- Lead projects focused on adding new capabilities to the SOAR platform based on emerging threats and organizational needs.
Qualifications
- Private Health Insurance ( Family ) Social Insurance Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- 5+ years of experience in security operations, incident response, or security engineering, with significant experience in SOAR solutions.
- Proficient understanding of Cortex XSOAR platform, including playbook development and integration with security tools.
- Experience in scripting and automation (e.g., Python, JavaScript) for workflow improvements.
- Strong analytical and problem‑solving skills, with proven ability to work in fast‑paced environments.
- Excellent communication skills, capable of collaborating with diverse teams and stakeholders.
- Saudi Nationality is a requirement for this position.