XSOAR Security Engineer - REMOTE

Houston, TX, US

Binary Defense

Binary Defense combines the right people, processes, and technologies to deliver world-class MDR across endpoint, network, cloud, and more.

View all jobs at Binary Defense

Apply now Apply later

Description


Binary Defense is seeking a talented XSOAR Security Engineer to join our team. The XSOAR Security Engineer plays a crucial role in modern cybersecurity operations by utilizing the Palo Alto Networks Cortex XSOAR platform for security orchestration, automation, and response (SOAR).


Responsibilities

  • Develop and maintain security automation: Design and implement automated workflows (playbooks) within Cortex XSOAR to respond to security incidents and streamline security operations.
  • Integrate security tools: Connect XSOAR with various security tools like SIEMs, EDRs, firewalls, and ticketing systems to facilitate data sharing and coordinated responses.
  • Write automation scripts: Use scripting languages such as Python, PowerShell, or Javascript to create and maintain automated tasks and integrations.
  • Translate security needs into technical solutions: Analyze client requirements and translate them into a SOAR design that efficiently addresses security automation needs.
  • Support incident response: Collaborate with incident responders and SOC analysts to improve the use of SOAR tools and automate incident response workflows.
  • Troubleshoot and optimize: Identify and resolve issues related to automation scripts, integrations, and playbooks, and continuously improve platform performance.
  • Maintain documentation: Create and maintain documentation for automation workflows, integration processes, and standard operating procedures.

Requirements


  • SOAR expertise: Strong experience with Palo Alto Cortex XSOAR, including playbook design and custom integrations.
  • Scripting proficiency: Experience with Python is highly preferred, along with familiarity with other scripting languages like PowerShell or JavaScript.
  • Security knowledge: Solid understanding of cybersecurity concepts, incident response lifecycles, and security operations center (SOC) workflows.
  • Experience with APIs and integrations: Experience with REST APIs, JSON, and webhooks is essential for integrating different security tools.
  • Troubleshooting and problem-solving skills: Ability to troubleshoot and resolve issues related to automation and integrations.
  • Communication and collaboration skills: Ability to effectively communicate technical information and collaborate with various teams.
  • Experience in enterprise environments: Experience supporting production XSOAR environments in enterprise settings.
  • Preferred certifications: XSOAR Automation Engineer certification, CEH, CFR, CCNA Cyber Ops, CCNA-Security, CYSA+, GCIA, GCIH, GICSP, etc.


About Binary Defense


Binary Defense is a trusted leader in security operations, supporting companies of all sizes to proactively monitor, detect and respond to cyberattacks. The company offers a personalized Open XDR approach to Managed Detection and Response, advanced Threat Hunting, Digital Risk Protection, Phishing Response, and Incident Response services, helping customers mature their security program efficiently and effectively based on their unique risks and business needs.


With a world-class 24/7 SOC, deep domain expertise in cyber, and sophisticated technology, hundreds of companies across every industry have entrusted Binary Defense to protect their business. Binary Defense gives companies actionable insights within minutes not hours, the confidence in their program to be resilient to ever-changing threats, and the time back that matters most to their business.


Binary Defense is also the Trusted Cybersecurity Partner of the Cleveland Browns and partners with PGA TOUR players. For more information, visit our website, check out our blog, or follow us on LinkedIn.


Binary Defense offers competitive medical, dental and vision coverage for employees and dependents, a 401k match which vests every payroll, a flexible and remote friendly work environment, as well as training opportunities to expand your skill set (to name a few!). If you’re interested in joining a growing team with great perks, we encourage you to apply!

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  6  0  0

Tags: APIs Automation CEH Firewalls GCIA GCIH GICSP Incident response JavaScript JSON PowerShell Python Scripting SIEM SOAR SOC XDR XSOAR

Perks/benefits: 401(k) matching Flex hours Health care

Regions: Remote/Anywhere North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.