💼Job Title: XSOAR Security Engineer
👨💻Job Type: Contract/Freelance
📍Location: Brussels, Belgium
💼Work regime: Hybrid (4 Day Onsite in a Month)
🔥Keywords: Security Orchestration, Automation and Response (SOAR) platform (Cortex XSOAR)
Sector: our client is a is a key player in the financial services sector, specializing in post-trade settlement solutions for securities transactions. It operates a robust infrastructure that facilitates the clearing, settlement, and safekeeping of a wide range of financial instruments.
Position Overview:
What you will be doing
Candidates in this role are responsible for the development and maintenance of the code and capabilities of the Security Orchestration, Automation and Response (SOAR) platform (Cortex XSOAR).
Candidates will report to the Manager of Detection & Response Engineering and will work jointly with our detection engineering, threat detection and response teams to specify clear priorities, evaluate technical tradeoffs, and build high-impact features within the SOAR platform.
The candidates' main responsibilities will be to:
Focus on the development, maintenance, and delivery of new Security Orchestration and Automation content including custom SOAR Playbooks, Automations/Scripts, Jobs, dashboards, reports, widgets, RESTful API integrations, and code via Continuous Integration / Continuous Delivery pipelines adhering to an Agile development practice
Reduce Incident Response efforts and increase quality leveraging XSOAR for Security Orchestration, Automation and Response (SOAR)
Automate manual SOC procedures and develop, implement, and maintain playbooks
Document SOAR workflows, scripts, and develop, test and debug code and use established code repository for tracking.
Use python/other scripting languages to perform the customizations to develop the required automation.
Work with the existing playbook framework and ensure the amendments are hooked properly to the existing framework.
Prioritize and coordinate backlog of SOAR integration and automation requests, making sure we have a healthy balance between defect resolution and new features.
Work in partnership with the incident response team to design to identify opportunities for improvement
What you will Have:-
Qualifications
Technical Skills
3+ year prior experience in a similar position
Advanced knowledge of the Palo Alto Cortex XSOAR platform
Ability to create documentation for Palo Alto Networks Cortex XSOAR playbooks
Proficient in Python, JavaScript, and PowerShell are an asset
Good understanding of REST/SOAP/WSDL/XML (Web services)
Understanding of cybersecurity incident response procedures, experience as a Security Incident Responder or SOC analyst is a plus
Strong understanding of cybersecurity technologies, protocols, and applications
Soft Skills
Strong analytical skills to evaluate complex multivariate problems and find a systematic approach to gain a quick resolution, often under stress
Strong problem solving, documentation, process execution, time management and organizational skills.
Ability to communicate complex information, concepts, or ideas in a confident and well-organized manner through verbal, written, and/or visual means.
Passion and drive to work in start-up division with potential of significant growth in scope and services
Fast and independent learner, with ambition to self-improve