Developing and maintaining automated processes that help to minimize cyber risk by improving the organization's ability to identify and respond to threats efficiently.
Partnering with members of cyber operations, information security and the larger business to design, develop, test, and deploy strong automation use-cases.
Partnering with technology leaders in adherence to technology strategy and roadmap.
Skillfully gathering and analyzing requirements from requesting parties and stakeholders.
Designing, developing, and releasing new use cases to maximize the benefits and efficiencies from a SOAR platform.
Developing automations using no-code, low-code, and traditional code approaches.
Engineering for software quality through sound manual and automated testing, peer review, and customer acceptance.
Developing and maintaining custom security apps and tools via python web development.
Improving performance and efficiency of existing automation solutions.
Participating in diagnosing and resolving production support issues as directed.
Requirements
Bachelor’s degree with 4 to 5+ years of software engineering within Information Security or Intelligence contexts; OR in lieu of degree, 6 to 7+ years of software engineering within Information Security or Intelligence contexts
Demonstrated competence in Python, particularly HTTP client programming.
SOAR platform engineering and development preferred.
Intimate familiarity with the Agile Manifesto preferred.
Applicable Information Security professional certifications (e.g., SANS, AWS Security and Developer based certifications) and tool-specific certifications.
Ability to work independently as well as part of a team.
Strong analytical, detail-oriented, and strong problem solving with a common-sense approach to resolving problems.
Expertise to clearly define complex issues despite incomplete or ambiguous information.
Prior SOC, cyber intelligence, or incident response experience is a plus.