Security Automation (SOAR) Engineer
1 мес. назад
USAOnsite
sqlgraphqlpythonjavascripttypescriptrest apiwebhooksllm
Build, optimize, and scale automated incident response workflows using SOAR and AI integration to enhance security operations.
О компании
- Be Challenged and Make a Difference In a world of technology, people make the difference. We believe if we invest in great people, then great things will happen. At AnaVation, we provide unmatched value to our customers and employees through innovative solutions and an engaging culture. Description of Task to be Performed: The Security Automation (SOAR) Engineer will build, optimize, and scale our automated incident response workflows. You will bridge security operations and software engineering, using modern low-code/pro-code tools and AI to cut response times and strengthen our threat posture. Core Responsibilities : Playbook Automation : Design, build, and maintain end-to-end incident response playbooks within our SOAR platform. Workflow Log
Требования
- Clearance : Active TS/SCI Clearance with CI Polygraph
- Education & Years of Experience : Bachelor’s degree and 8 years of experience related to specific functional area.
- Certifications: Active certifications for both IAT Level II (e.g. CompTIA Security+) and Cyber Security Service Provider (CSSP) Infrastructure Support (e.g. CompTIA Cloud+) by program onboarding date.
- The following individual certifications cover both certification requirements for this program: CompTIA Cybersecurity Analyst, CySA+; EC-Council Certified Network Defender (CND); GlAC Global Industrial Cyber Security Professional, GICSP; (ISC)2 System Security Certified Practitioner (SCCP).
- Hands-on experience and knowledge with the following:
- SOAR Playbook Automation: Proven experience building security orchestration and automated response workflows.
- Workflow Logic: Strong grasp of both low-code interface design and pro-code logic handling.
- API & Architectures: Deep hands-on experience with REST API integration, webhook management, and event-driven systems.
- Incident Response: Understanding of core security incidents, triage procedures, and playbook design patterns.
- Frontier LLMs: Familiarity with AI coding tools and LLMs (ChatGPT, Grok, Claude, Claude Code, Codex) is a strong plus.
Будет плюсом
- Extensive experience with SOAR Playbook Automation
- Multiple scripting and development languages
- Deep understanding of incident response playbook design