Remote Cybersecurity Engineer - XSOAR Playbooks
Job Description An enterprise organization is seeking a Security Engineer to join its Security Operations team and drive security automation initiatives across the incident response lifecycle. This role is heavily focused on Cortex XSOAR playbook development, workflow orchestration, and security process automation, helping security teams reduce manual effort and improve operational efficiency.
The ideal candidate will have deep experience building and maintaining XSOAR playbooks, developing Python-based automations, and partnering with security analysts to streamline investigations and response actions. This position offers the opportunity to design scalable automation solutions that enhance threat detection, triage, containment, and remediation activities. Required Skills & Experience
- Hands-on experience developing and supporting Cortex XSOAR playbooks and automations
- Strong Python development skills
- Experience automating security workflows and operational processes
- Incident response experience
- Security investigations and data analysis experience
- Experience working with Splunk or similar SIEM technologies
- Strong understanding of cybersecurity operations and threat response
- CrowdStrike experience
- Proofpoint experience
- Tanium experience
- Microsoft Azure experience
- Digital forensics knowledge
- Networking and network security experience
- Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or related field preferred
- Design, develop, and optimize Cortex XSOAR playbooks, integrations, and automations
- Build Python-based solutions to automate security operations workflows
- Identify opportunities to eliminate manual processes through orchestration and automation
- Partner with incident response and SOC teams to improve investigation and response capabilities
- Develop and implement new SOAR use cases that increase operational efficiency
- Create automated response actions for security events and alerts
- Analyze security data and translate findings into repeatable automated workflows
- Support threat detection, incident containment, remediation, and root cause analysis activities
- Enhance security monitoring, reporting, and operational processes through automation
- Collaborate with cross-functional security teams to strengthen enterprise security operations
- Fully Remote (United States)
- 22-Week Contract Opportunity
- $94.30 - $97.55/hour
- Standard business hours
- Medical Insurance
- Dental Benefits
- Vision Benefits
- Paid Time Off (PTO)
- 401(k)