Create and maintain custom security automation solutions, develop new automation workflows supporting custom integrations.
Ensure that documentation is maintained and kept latest for all team activities such as automation workflows, feature requests and custom integrations.
Participate in development of new SOAR playbooks and ensure they are integrated with security automation workflows.
Conduct knowledge transfer and upskilling sessions with various internal teams.
Participate in vendor discussions to support and enhance automation solutions.
Submit and manage new product feature requests to vendor.
Work with different stakeholders to identify new opportunities for security automation activities with enterprise supported tools.
Work on JIRA requests and deliver solutions within the agreed SLA / OLA.
Preferred candidate profile
Experience working with a team of security automation engineers.
Experience with implementing and managing SOAR and automation environments.
Experience with various programming constructs e.g. PowerShell, Python and Azure Devops.
Experience working with incident response & security operations centre and security engineering teams.
Experience developing custom scripts for supported operating systems, experience of SOAR / Ansible automation playbook development and troubleshooting.
Working knowledge of various detect and response tools like SIEM, EDR, vulnerability management tools, and other security technologies.
Good communication, presentation and proactive engagements skills with stakeholders.
Certifications on Ansible / Splunk
Perks and benefits
Hybrid working
Flexible working hours
Job Classification
Industry: IT Services & Consulting Functional Area / Department: IT & Information Security Role Category: IT Security Role: Cyber Security Employement Type: Full time