Reston, Virginia, United States Hybrid / WFH Options
Google, Inc
qualifications: Bachelor's degree or equivalent practical experience. 10 years of experience with Security Operations (SecOps) toolset including Security Information and Event Management (SIEM), SecurityOrchestration, Automation, andResponse (SOAR), Threat Intelligence and Endpoint Detection andResponse (EDR) tools. Experience engaging with, and presenting to, technical stakeholders and executive leaders. … SIEM/SOAR implementations. You will also be familiar with technologies such as Security Operations (SecOps) toolset including Security Information and Event Management (SIEM), SecurityOrchestration, Automation, andResponse (SOAR), Threat Intelligence and Endpoint Detection andResponse (EDR) tools. You will present to customer and channel executives in business andMore ❯
Washington, Washington DC, United States Hybrid / WFH Options
Optiv+ClearShark
A Splunk SOAR Engineer is an individual who can operate independently and will be entrusted with delivering success for Optiv + ClearShark's customers to achieve predetermined goals aligned with a statement of work. To be successful in this role, a Level I/III Engineer will be expected to … issue resolution and compliance reporting to lower time on detection, time on mitigation for security organizations. Integrate Splunk Mission Control, Splunk SecurityOrchestration, AutomationResponse (SOAR), and/or other customer approved security product applications utilizing Enterprise Security. Utilize data thresholds, trend-based conditions and behavioral pattern recognition. Client Engagement … across services. What we're looking for Active TS/SCI clearance with FSP required. Proven experience with Splunk SOAR (formerly Phantom) or similar securityorchestration, automation, andresponse (SOAR) platforms. Strong background in developing and maintaining automation playbooks and scripts. Security Certification (i.e, Security+, CISSP, etc) required. Experience operating More ❯
playbook development, and integration with other solutions Proven experience with the Microsoft Defender security stack and Microsoft Online ecosystem Knowledge of other SIEM andSOAR solutions is a plus (Q-radar, Palo Alto, Splunk ) Proven professional experience in a SOC or security-related role Understanding of the MITRE ATT&CK More ❯
Reading, Oxfordshire, United Kingdom Hybrid / WFH Options
Thames Water Utilities Limited
effective security operations processes, ensuring continuous improvement across security tools and services. • Support an effective security operations environment using tools such as Microsoft Sentinel, SOAR, EDR/XDR, and PAM. • Achieve reductions in repetitive alerts and improve the time taken to investigate and resolve incidents. Proactive Risk Remediation: • Identify, analyse More ❯
Bethesda, Maryland, United States Hybrid / WFH Options
Lockheed Martin
individual who is committed to making a difference in the field of cybersecurity, we enc Basic Qualifications: • Extensive experience with SOC operations including SIEM, SOAR, threat hunting, incident investigation, endpoint protection, standard frameworks, Microsoft 365 security, and strategic planning. • Strong knowledge of cyber threat landscape, vulnerability assessments, incident response, andMore ❯
Phoenix, Arizona, United States Hybrid / WFH Options
SPECTRAFORCE
program. Tool Deployment: • Lead the configuration of a new insider threat detection tool. • Ensure seamless integration with existing security systems, such as SIEM andSOAR solutions. • Collaborate with vendors and IT teams to customize the tool for organization-specific use cases. Threat Detection and Analysis: •Monitor user and entity behavior More ❯
San Francisco, California, United States Hybrid / WFH Options
cyberThink Inc
Define program metrics and reporting frameworks Tool Deployment Lead configuration of the insider threat detection tool Ensure seamless integration with existing systems (e.g., SIEM, SOAR) Collaborate with vendors and IT to tailor tools to organizational needs Threat Detection and Analysis Monitor UEBA for suspicious behavior and policy violations Conduct investigations More ❯
have some of the following skills and experience: Experience in Cyber Threat Intelligence Experience in Threat Hunting Experience with the Microsoft Sentinel SIEM/SOAR platform Proficient in writing KQL Strong understanding of threat intelligence principles and practices. Strong understanding of security risk management Understanding of threat modelling Knowledge of More ❯
technologic solutions to big companies. What we look for? We are seeking a talented and experienced Information Security Architect with a strong focus on SOAR to join our Information Security team. The ideal candidate will be adept at developing and implementing automated security solutions to protect our systems and data. … communication between security tools and systems. Build new and edit existing automation to high standards of reliability, efficiency and error-handling. Implement and manage SecurityOrchestration, Automation, andResponse (SOAR) platforms to streamline and automate incident response activities, including but not limited to Palo Alto Cortex XSOAR, Splunk Phantom, IBM … cloud security (AWS, Azure, GCP) and container security (Docker, Kubernetes). Experience with API development and integration, including RESTful APIs. Proficiency in implementing and managing SOAR platforms (e.g., Palo Alto Cortex XSOAR, Splunk Phantom, IBM Resilient, Cyware, Microsoft Logic Apps, ThreatConnect). Hands-on experience with Microsoft Defender for Endpoint More ❯
Hampton, Virginia, United States Hybrid / WFH Options
Gridiron IT Solutions
network protocols, including TCP, UDP, DNS, HTTP, HTTPS, SSH, and FTP Top Secret clearance Bachelor's degree in Engineering or Computer Science Splunk, Splunk SOAR Phantom, Security+, CEH, or CISSP certification Clearance: Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access More ❯
Current experience working with a SOC environment Microsoft Sentinel: Development and tuning of custom analytic rules. Workbook creation and dashboarding. Automation using Playbooks andSOAR integration. Kusto Query Language (KQL): Writing complex, efficient queries for advanced threat hunting and detection. Correlating data across key tables (e.g., SignInLogs, SecurityEvent, OfficeActivity, DeviceEvents More ❯
Wolverhampton, West Midlands, United Kingdom Hybrid / WFH Options
Tilt Recruitment Limited
cloud security services (Defender for Cloud, Azure Sentinel, Key Vault, APIM) Strong advocate of Zero Trust models and secure development practices Experienced in SIEM & SOAR, ideally with tools like Rapid7 Excellent communicator with the ability to influence at all levels Passionate about cloud innovation and continuous security improvement Microsoft Azure More ❯
Chatham, Kent, South East, United Kingdom Hybrid / WFH Options
Tilt Recruitment Limited
cloud security services (Defender for Cloud, Azure Sentinel, Key Vault, APIM) Strong advocate of Zero Trust models and secure development practices Experienced in SIEM & SOAR, ideally with tools like Rapid7 Excellent communicator with the ability to influence at all levels Passionate about cloud innovation and continuous security improvement Microsoft Azure More ❯
birmingham, midlands, united kingdom Hybrid / WFH Options
Tilt Recruitment Limited
cloud security services (Defender for Cloud, Azure Sentinel, Key Vault, APIM) Strong advocate of Zero Trust models and secure development practices Experienced in SIEM & SOAR, ideally with tools like Rapid7 Excellent communicator with the ability to influence at all levels Passionate about cloud innovation and continuous security improvement Microsoft Azure More ❯
Kent, Broomfield, United Kingdom Hybrid / WFH Options
Tilt Recruitment
cloud security services (Defender for Cloud, Azure Sentinel, Key Vault, APIM) Strong advocate of Zero Trust models and secure development practices Experienced in SIEM & SOAR, ideally with tools like Rapid7 Excellent communicator with the ability to influence at all levels Passionate about cloud innovation and continuous security improvement Microsoft Azure More ❯
West Midlands, Bilbrook, Staffordshire, United Kingdom Hybrid / WFH Options
Tilt Recruitment
cloud security services (Defender for Cloud, Azure Sentinel, Key Vault, APIM) Strong advocate of Zero Trust models and secure development practices Experienced in SIEM & SOAR, ideally with tools like Rapid7 Excellent communicator with the ability to influence at all levels Passionate about cloud innovation and continuous security improvement Microsoft Azure More ❯
Tempe, Arizona, United States Hybrid / WFH Options
GlobalSource IT
improvements. Oversee the development and execution of security monitoring processes and incident response plans. - Cloud-based workloads, security logging, automation Automate tasks within the SOAR environment to enhance operational efficiency. Participate in typical on-call rotation for security issue escalation. What you'll need: High School diploma or G.E.D. with More ❯
Peoria, Arizona, United States Hybrid / WFH Options
GlobalSource IT
improvements. Oversee the development and execution of security monitoring processes and incident response plans. - Cloud-based workloads, security logging, automation Automate tasks within the SOAR environment to enhance operational efficiency. Participate in typical on-call rotation for security issue escalation. What you'll need: High School diploma or G.E.D. with More ❯
Surprise, Arizona, United States Hybrid / WFH Options
GlobalSource IT
improvements. Oversee the development and execution of security monitoring processes and incident response plans. - Cloud-based workloads, security logging, automation Automate tasks within the SOAR environment to enhance operational efficiency. Participate in typical on-call rotation for security issue escalation. What you'll need: High School diploma or G.E.D. with More ❯
Chandler, Arizona, United States Hybrid / WFH Options
GlobalSource IT
improvements. Oversee the development and execution of security monitoring processes and incident response plans. - Cloud-based workloads, security logging, automation Automate tasks within the SOAR environment to enhance operational efficiency. Participate in typical on-call rotation for security issue escalation. What you'll need: High School diploma or G.E.D. with More ❯
Gilbert, Arizona, United States Hybrid / WFH Options
GlobalSource IT
improvements. Oversee the development and execution of security monitoring processes and incident response plans. - Cloud-based workloads, security logging, automation Automate tasks within the SOAR environment to enhance operational efficiency. Participate in typical on-call rotation for security issue escalation. What you'll need: High School diploma or G.E.D. with More ❯
Arizona City, Arizona, United States Hybrid / WFH Options
GlobalSource IT
improvements. Oversee the development and execution of security monitoring processes and incident response plans. - Cloud-based workloads, security logging, automation Automate tasks within the SOAR environment to enhance operational efficiency. Participate in typical on-call rotation for security issue escalation. What you'll need: High School diploma or G.E.D. with More ❯
Scottsdale, Arizona, United States Hybrid / WFH Options
GlobalSource IT
improvements. Oversee the development and execution of security monitoring processes and incident response plans. - Cloud-based workloads, security logging, automation Automate tasks within the SOAR environment to enhance operational efficiency. Participate in typical on-call rotation for security issue escalation. What you'll need: High School diploma or G.E.D. with More ❯
Glendale, Arizona, United States Hybrid / WFH Options
GlobalSource IT
improvements. Oversee the development and execution of security monitoring processes and incident response plans. - Cloud-based workloads, security logging, automation Automate tasks within the SOAR environment to enhance operational efficiency. Participate in typical on-call rotation for security issue escalation. What you'll need: High School diploma or G.E.D. with More ❯