What are the responsibilities and job description for the Security Engineer - XSOAR position at RedMatter Solutions?
Location: Washington, D.C. Metro Area (On-site)
Clearance Requirement: U.S. Citizen Must be able to obtain a Public Trust.
Position Overview
We are seeking a Security Engineer with expertise in SOAR technologies, specifically Palo Alto Cortex XSOAR, to enhance our cybersecurity operations. The ideal candidate will have at least 10 years of experience in cybersecurity/IT and a strong background in security automation, incident response, and tool integration. Prior experience working in government environments is a plus.
Key Responsibilities
- SOAR Development & Automation
- Design, develop, and implement automation playbooks using Palo Alto Cortex XSOAR.
- Automate security incident detection, response, and remediation processes.
- Optimize workflows to enhance operational efficiency and threat response times.
- Security Tool Integration
- Integrate SIEM, EDR, Threat Intelligence Platforms, Firewalls, and other security tools into SOAR solutions.
- Ensure seamless interoperability between security systems to improve threat detection and response.
- Incident Response & Collaboration
- Work closely with SOC analysts, incident responders, and IT teams to enhance security processes.
- Provide expertise in threat analysis, forensic investigations, and incident resolution.
- Compliance & Best Practices
- Ensure security automation aligns with industry best practices and compliance requirements.
- Assist in documenting processes and developing playbook templates for future use.
Required Qualifications
- 10 years of experience in Cybersecurity/IT with a focus on security automation and incident response.
- Hands-on experience with SOAR technologies, preferably Palo Alto Cortex XSOAR.
- Strong knowledge of SIEM, EDR, threat intelligence platforms, and security automation.
- Proficiency in Python or other scripting languages for automation.
- Ability to design and implement security playbooks for automated response workflows.
- Must be local to the Washington, D.C. Metro Area.
- U.S. Citizenship is required Must be able to obtain a Public Trust clearance.
Preferred Qualifications
- Experience working with government agencies or in a federal cybersecurity environment.
- Familiarity with compliance frameworks such as NIST, FISMA, and FedRAMP.
- Certifications such as CISSP are a plus.
Salary : $165,000 - $180,000