Posted in

Cyber Security Engineer – Soar

Cyber Security Engineer – Soar

CompanyFirst American
LocationOrange, CA, USA
Salary$95300 – $158900
TypeFull-Time
DegreesBachelor’s
Experience LevelMid Level

Requirements

  • Must have minimum 3 years information security experience working in a Security Operations Center (SOC).
  • Must have 1+ years hands on experience with SOAR technologies and SOC tools.
  • License or Certification: CISSP, GCIH, GIAC, or SOAR-specific credentials
  • Generally requires a BS Degree in Computer Science, Information Technology, Cybersecurity, or equivalent work experience.
  • Must have hands-on working knowledge of SOAR platform(s)
  • Must have hands-on working knowledge of integrating security tools and technologies
  • Strong understanding of incident response processes, security tools, and cybersecurity frameworks.
  • Proficiency in scripting languages (e.g., Python, JavaScript) for automation and integration.
  • Familiarity with APIs and system integrations for security tools.
  • Experience with SIEM solutions and threat intelligence platforms.
  • Knowledge of IT infrastructure and network security.
  • Experience in implementing Information Security technologies and/or processes required.
  • Experience in product evaluation and managing vendor relationships required.
  • Experience in defining Information Security strategy and integrating security technologies into corporate frameworks.
  • Strong communication and collaboration skills.

Responsibilities

  • Design, develop, and implement SOAR playbooks and workflows.
  • Investigates, recommends, evaluates, deploys, and integrates security tools and systems with the SOAR platform to improve our ability to protect corporate assets and infrastructure.
  • Automate repetitive SOC processes to improve efficiency and reduce response times.
  • Collaborate with SOC analysts to understand operational requirements and tailor automation solutions.
  • Monitor and maintain the SOAR platform to ensure optimal performance and uptime.
  • Develops test plans and conducts rigorous testing and validation of playbooks to ensure reliability and effectiveness.
  • Provide technical expertise and troubleshooting for SOAR-related issues.
  • Document playbooks, workflows, and integrations thoroughly for SOC reference.
  • Stay updated on advancements in SOAR platforms, cybersecurity threats, and best practices.
  • Monitors, reports and resolves security related problems and discrepancies.
  • Participates as a member of the Information Security Incident Response Team.
  • Participates in Cyber Security Incident investigations.
  • Required to perform duties outside of normal work hours based on business needs.

Preferred Qualifications

    No preferred qualifications provided.