Entelligence is seeking a TS/SCI cleared Cyber Security Engineer to support Palo Alto Networks clients with their Cortex XSOAR platform. The successful candidate will provide guidance and technical support to clients deploying security integrations and act as a technical partner to secure a digital environment.
Responsibilities:
- Lead security automation technical implementations in a customer environment
- Translate complex business requirements into best practice solutions
- Identify and document operational business processes for automated playbook development
- Prepare capacity planning, deployment, business continuity and configuration guides
- Ability to communicate effectively in various situations with all levels of an organization from Engineering/Operations to CIO/CISO audiences
- Present technical information to non-technical personnel
- Train and enable customer teams to be successful with our products
- Develop key performance indicators (KPIs), understand critical success factors, and continuously measure performance
- Engage with the account team to allow them to clearly understand the customer business & technical requirements as you learn through active engagement with the client
Requirements:
- Expertise with security automation platforms and orchestration (SOAR) tools
- Experience in Python and/or Javascript
- Familiarity with IDS/IPS, SIEM, and endpoint solutions
- Experience managing complex automated security solutions in large environments
- Deep understanding of security threats, internet protocols and cybersecurity tools and applications
- Project leadership experience; ability to drive organizations and resources to complete required tasks in service of end goals
- Detailed experience in the installation, configuration, operation and documentation of security solutions to prevent cybersecurity threats
- Experience working in a Security Operations Center (SOC) and documenting operational workflows
- Excellent written and verbal communication skills, with confirmed ability to communicate to senior leaders and technical peers
- Some understanding of Linux or Unix and network troubleshooting analysis
- Preferred experience in cybersecurity incident response
- Previous experience with STIGs, RMF, NIST publications and/or SCAP
- GCIA, CISSP, CEH, and/or Security+ certifications is a plus