Advanced Cyber Security Engineer

NATIONMIND LLC

Advanced Cyber Security Engineer

Cincinnati, OH
Full Time
Paid
  • Responsibilities

    About NationMind LLC: NationMind LLC is a technology consulting firm focused on software development and QA testing services. We help clients build reliable, scalable applications with a strong emphasis on automation, performance, and quality. Our team works across industries, delivering solutions that drive innovation and operational efficiency. We are currently hiring skilled professionals for Advanced Cyber Security Engineer to join our growing team.

    Job Title: Advanced Cyber Security Engineer (Splunk & Palo Alto XSOAR Developer)

    Location: Cincinnati, OH (Open to Remote)

    Duration: 12+ Months

    Experience: 8+ Years

    Operational role on Splunk & Palo Alto XSOAR (SOAR Platform) with significant hands-on development experience.

    Key Responsibilities

    Work closely on the Palo Alto XSOAR platform to customize it as needed.

    Integrate existing Security Operations Center (SOC) systems through development and reuse of well-defined APIs.

    Work with stakeholders to onboard new data sources into Splunk (or other SIEM tools) and perform periodic maintenance.

    Deploy and evaluate external proof-of-concept tools.

    Help automate various SOC-related manual tasks.

    Must have 70–80% XSOAR/Python and 20–30% Splunk knowledge.

    Must Have

    Minimum 2 years of experience customizing any SOAR (Security Orchestration, Automation and Response) tool, preferably Palo Alto XSOAR.

    Minimum 5 years of development experience using Python and web frameworks (Django, Flask).

    Experience with log management and/or SIEM technologies such as Splunk.

    US Citizen required.

    Preferred Skills

    JavaScript

    jQuery

    HTML/CSS

    REST API development and integration

    SQL Database or other databases

    Strong communication skills

    Self-starter with the ability to prioritize and multitask

    Interest in cybersecurity and security best practices

    Ability to understand code written in other scripting languages

    Knowledge of incident response (SecOps)

    Experience evaluating open-source incident response/threat intelligence tools

    Strong technical documentation skills

    Linux

    Git

    Nginx