SIEM / SOAR Automation Engineer

مصر - Egypt
B2B Contract 2 000 - 3 700 USDGet to know us better CodiLime is a software and network engineering industry expert and the first-choice service partner for top global networking hardware providers, software providers and telecoms. We create proofs-of-concept, help our clients build new products, nurture existing ones and provide services in production environments. Our clients include both tech startups and big players in various industries and geographic locations (US, Japan, Israel, Europe).While no longer a startup - we have 300+ people on board and have been operating since 2011 we’ve kept our people-oriented culture. Our values are simple:Act to deliver.Disrupt to grow.Team up to win.The project and the teamWe are looking for an open-minded, passionate about new technologies, logically thinking person with a creative approach to solving problems. If you are eager to learn, if you like to design, deploy and troubleshoot network solutions, and if you want to automate repetitive work, we would like to offer you a great opportunity to grow with CodiLime. You will have a chance to join a team of specialists who know that every problem can be solved. We have already completed numerous projects in the field of networking, cloud or infrastructure automation and monitoring.We are a team of DevOps, Network Engineers and Security Engineers with network automation experience who explore the world of SDN, NFV and work with top-notch cybersecurity solutions.What else you should know:Our engineers support projects from the automation development phase, through solution deployment and integration, to troubleshooting a working serviceWe collaborate closely with analysts, architects and developer teamsOur tech stack for the project includes various cybersecurity solutions, especially NGFW, SASE, and SIEMWe work on many interesting projects at the same time, so we may invite you for an interview for another project if we consider your competences and profile suitable.Your roleAs a part of the project team, you will be responsible for:Automating SOC processes to improve the efficiency and accuracy of alert handlingCooperating closely with the technical lead to ensure that creating playbooks meets customer requirements and is in line with the best practicesSharing your knowledge and expertise during the design phase, ensuring the created playbooks are as concise and effective as possibleCooperating with the technical lead to create a clear automation process for the customer’s SOCSharing expertise around Automation best practices and playbook designAssisting customers in connecting their security tooling to Cortex XSIAMUsing the Cortex MarketplaceCreating playbooks that reflect design intent and customer requirementsWhere required, demonstrating playbooks, explaining various tasksExplaining and demonstrating the value of integrations, offering support and setup guidanceCooperating with internal and external teams to ensure product adoptionCreating technical documentation detailing the SIEM aspects of the engagementDo we have a match?As a Cortex XSIAM Automation Engineer you must meet the following criteria:4+ years of deploying and integrating SOAR or SIEM to the enterprise and large enterprise levelAbility to define, create and automate the SOC process through the use of playbooksKnowledge of a scripting language (e.g. Python, Bash) to develop advanced custom integrations, automations for use in playbooksStrong understanding of security concepts, frameworks, and compliance standards, with the ability to provide strategic guidance and recommendationsAdvanced APIs knowledge and ability to integrate SOAR or SIEM with variety of security tools and infrastructure componentsKnowledge in the field of incident response processes, including triage, investigation, and remediationStrong communication (written and verbal) and presentation skills, both internally and externallyFluent English is our requirement. Knowledge of any other language will be an additional advantageRelevant bachelor's degree or industry recognized qualificationsAbility to read, understand and create technical design documentationWillingness to work flexible hours (including maintenance windows in different time zones)Beyond the criteria above, we would appreciate the nice-to-haves:Knowledge of Palo Alto Networks solutions, especially Cortex XSIAM, XSOAR, XDM, SplunkExperience with Version Control SystemExperience with automation toolsPlease be aware that we process CVs written only in English / Polish, so kindly submit your CV in one of these languages.More reasons to join usFlexible working hours and approach to work: fully remotely, in the office or hybridProfessional growth supported by internal training sessions and a training budgetSolid onboarding with a hands-on approach to give you an easy startA great atmosphere among professionals who are passionate about their workThe ability to change the project you work on
تاريخ النشر: اليوم
الناشر: Wuzzuf .com
تاريخ النشر: اليوم
الناشر: Wuzzuf .com