Job Location : Ashburn,VA, USA
· Author, test, and maintain automation scripts/workflows within SOAR platform
· Design, implement, and maintain efficient and reusable Python code
· Review, debug, and resolve technical issues throughout all stages of SDLC
· Integrate SOAR platform with other security tools and APIs to execute automated workflows
· Coordinate with System Administrators, Engineers, and ISSOs to provision service accounts and/or grant required permissions
· Assist with process development and process improvement for Security Operations to include creation/modification of SOPs, Playbooks, and Work instructions
· Measure effectiveness of process improvement and automation efforts via metrics and KPIs
· Have expert proficiency with Python
· Experience with SOAR platforms such as Swimlane, Phantom, Demisto, etc.
· Experience as a SOC Analyst and/or Incident Responder
· Authored SOC SOPs, playbooks, work instructions and/or other process documents
· Familiarity with Splunk Search Processing Language (SPL) and/or Elastic Domain Specific Language (DSL)
· General networking knowledge to include operation of routers, firewalls, DNS, DHCP, subnetting, VPN and Web Proxies
Required Education/ExperienceBS degree in Science, Technology, Engineering, Math or related field and 3 years of prior relevant experience
Preferred QualificationsShould have 2 years of experience serving as a SOC Analyst or Incident Responder
#J-18808-Ljbffr