Key Responsibilities:
- Automation Development: Design, develop, and maintain security automation playbooks using XSOAR.
- Integration: Integrate various security tools and systems with XSOAR to enhance incident response capabilities.
- Incident Response: Collaborate with the SOC team to automate and streamline incident response processes.
- Custom Scripting: Develop custom scripts and integrations using Python or other relevant programming languages.
- Monitoring and Optimization: Continuously monitor and optimize XSOAR playbooks and integrations for performance and effectiveness.
- Documentation: Create and maintain comprehensive documentation for all automation processes and playbooks.
- Training: Provide training and support to SOC analysts on the use of XSOAR and automated workflows.
Skills and Qualifications:
- Experience: 3+ years of experience in security automation and orchestration, with a focus on XSOAR.
- Technical Expertise: Proficiency in Palo Alto Cortex XSOAR, Python scripting, and integration of security tools.
- Security Knowledge: Strong understanding of security operations, incident response, and threat intelligence.
- Problem-Solving: Excellent analytical and problem-solving skills with the ability to troubleshoot complex issues.
- Communication: Strong verbal and written communication skills to effectively collaborate with team members and stakeholders.
Preferred Qualifications:
- Experience with other SOAR platforms and SIEM tools.
- Relevant certifications such as CISSP, CEH, or Palo Alto Networks certifications.
- Knowledge of cloud security services and environments (AWS, Azure, GCP).
Additional Information:
- Willing to work from ODC as and when required in rotational shift.
- Weekend availability/flexibility to work weekends is a MUST.
- Willing to support US shift (Night shift)
EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.