Security Automation Engineer - SOAR
- Full-time
Company Description
Technology is our how. And people are our why. For over two decades, we have been harnessing technology to drive meaningful change.
By combining world-class engineering, industry expertise and a people-centric mindset, we consult and partner with leading brands from various industries to create dynamic platforms and intelligent digital experiences that drive innovation and transform businesses.
From prototype to real-world impact - be part of a global shift by doing work that matters.
Job Description
Our infrastructure specialists are responsible for designing and implementing back-end services. They ensure reliability, security, and scalability for all platform layers within our solutions. Infrastructure teams provide expertise across virtualization, cloud services, storage solutions, cybersecurity, and scripting and automation.
Responsibilities:
• Develop and implement security automation workflows using SOAR platforms such as Google Chronicle (formerly Siemplify) or Microsoft Sentinel SOAR.
• Integrate SOAR platforms with SIEM solutions (e.g., Google Chronicle, Splunk, Microsoft Sentinel), cyber threat intelligence platforms, and other security tools.
• Automate security operations tasks, including alert triage, incident response, and threat intelligence enrichment.
• Optimize SOC workflows by developing custom playbooks, scripts, and connectors for seamless automation.
• Monitor and fine-tune automation workflows to ensure efficiency, reliability, and minimal false positives.
• Collaborate with security teams to define automation requirements and continuously improve security response capabilities.
• Conduct proof-of-concept (PoC) evaluations for new integrations.
• Document automation processes, workflows, and playbooks for knowledge sharing and operational continuity.
• Stay up to date on the latest SOAR trends, cybersecurity threats, and best practices in security automation.
• Track SOAR platform performance, report on efficiency gains, and provide insights on ROI from automation efforts.
Qualifications
• 3+ years of experience in security automation, security operations , or security engineering.
• Hands-on experience with SOAR platforms, preferably Google Chronicle and/or Microsoft Sentinel SOAR.
• Strong scripting skills in Python, PowerShell, or JavaScript for automation and integration.
• Experience integrating SOAR with SIEMs, EDR, threat intelligence platforms, and ticketing systems (e.g., ServiceNow, Jira).
• Knowledge of cyber security frameworks such as MITRE ATT&CK and NIST.
• Understanding of security incident handling, threat detection, and response processes in an enterprise environment.
• Familiarity with APIs, webhooks, and integrations for security tool interoperability.
• Excellent problem-solving skills and the ability to work in a fast-paced security environment.
• Tooling-specific certifications such as Splunk SOAR Certified Automation Developer, Google Chronicle SOAR Developer, Palo Alto Cortex XSOAR Specialist, GIAC Security Automation (GCSA), or similar relevant.
• Exposure to machine learning or AI-driven automation for security operations.
Additional Information
Discover some of the global benefits that empower our people to become the best version of themselves:
- Finance: Competitive salary package, share plan, company performance bonuses, value-based recognition awards, referral bonus;
- Career Development: Career coaching, global career opportunities, non-linear career paths, internal development programmes for management and technical leadership;
- Learning Opportunities: Complex projects, rotations, internal tech communities, training, certifications, coaching, online learning platforms subscriptions, pass-it-on sessions, workshops, conferences;
- Work-Life Balance: Hybrid work and flexible working hours, employee assistance programme;
- Health: Global internal wellbeing programme, access to wellbeing apps;
- Community: Global internal tech communities, hobby clubs and interest groups, inclusion and diversity programmes, events and celebrations.
Our diversity makes us stronger - it drives meaningful change and enables us to build innovative technology solutions. We are committed to creating an inclusive community where all of us, regardless of background, identity, or personal characteristics, feels valued, respected, and free from discrimination. As an equal opportunity employer, we welcome applications from all individuals and base hiring decisions on merit, skills, qualifications, and potential.