Active Secret Clearance Required
We are seeking a skilled Palo Alto XSOAR Automation Engineer to join our cybersecurity team. The ideal candidate will have strong expertise in scripting, programming, and hands-on experience with Palo Alto Cortex XDR and SOAR platforms. Candidate will be responsible for designing, developing, and maintaining xSOAR playbooks, automating security workflows, and administering the xSOAR environment to enhance our threat detection and response capabilities.
Job Description
Develops computer systems specifications that address business requirements and that fit with the company's system architecture standards. Establishes and documents system parameters and formats, ensures hardware and software systems compatibility and coordinates and/or modifies system parameters in terms of existing and projected computer capacity and capabilities. Revises existing systems and procedures to correct deficiencies and maintain more effective data handling, conversion, input/output requirements, and storage.
Key Responsibilities:
- Design, develop, and implement automation playbooks in Palo Alto XSOAR to streamline security operations and incident response processes.
- Administer and maintain the XSOAR platform, including configuration, integrations, and performance optimization.
- Leverage Cortex XDR to create and enhance playbooks for threat detection, investigation, and response.
- Write and maintain scripts (e.g., Python, PowerShell, or JavaScript) to support automation and integration with third-party tools and APIs.Collaborate with cross-functional teams to integrate XSOAR with other security tools and systems.
- Monitor and troubleshoot XSOAR workflows to ensure seamless operation and quick resolution of issues.
- Stay updated on the latest cybersecurity trends, Palo Alto product updates, and best practices for SOAR automation.
- Document processes, playbooks, and configurations to ensure knowledge sharing and compliance.
Required Qualifications:
- Bachelor’s degree in Computer Science, Cybersecurity, or a related field (or equivalent experience).
- 3+ years of experience in cybersecurity, with a focus on automation and orchestration.
- Proven experience with Palo Alto XSOAR administration and playbook development.
- Hands-on experience with Palo Alto Cortex XDR for threat detection and response.
- Strong scripting and programming skills in Python, PowerShell, or JavaScript.
- Familiarity with integrating XSOAR with APIs and third-party security tools (e.g., SIEM, ticketing systems, threat intelligence platforms).
- Understanding of cybersecurity concepts, including incident response, threat hunting, and security operations.
- Excellent problem-solving skills and ability to work in a fast-paced environment.
- Strong communication skills to collaborate with technical and non-technical stakeholders.
Preferred Qualifications:
- Palo Alto certifications (e.g., PCNSE, PCSAE, or Cortex XDR certifications).
- Experience with other SOAR platforms or security automation tools.
- Knowledge of cloud security platforms (AWS, Azure, or GCP).
- Familiarity with DevOps practices and tools (e.g., Git, CI/CD pipelines).