Dubai, Dubai, United Arab Emirates
SOAR Admin
Job Description:
Client Introduction:
In this role, you will have the opportunity to work closely with one of our esteemed clients. This client is a global leader known for its commitment to quality and innovation. They have chosen Dautom as their trusted partner for their upcoming projects.
Job Description:
- Manage and Maintain: Manage and Maintain the SOAR platform by troubleshooting in co-ordination with the OEM support.
- Automation Scripting: Develop and maintain automation scripts using languages like Python, PowerShell, or others to automate routine and repetitive security tasks within the SOAR platform.
- Incident Response Playbook Creation: Design, create, and update incident response playbooks that outline the sequence of automated actions to be taken in response to specific security incidents.
- Security Tool Integration: Integrate diverse security tools and technologies, including SIEM, IDS/IPS, and antivirus solutions, into the SOAR platform to create a cohesive and interoperable security ecosystem.
- Threat Intelligence Integration: Incorporate threat intelligence feeds into the SOAR platform to enhance the organization's ability to proactively detect and respond to emerging cyber threats.
- Continuous Improvement: Regularly assess and optimize automation workflows, playbooks, and processes to improve the efficiency and effectiveness of security operations.
- Documentation: Create and maintain comprehensive documentation for SOAR platform configurations, incident response playbooks, and best practices to ensure consistency and facilitate knowledge transfer within the team.
Required Skills:
Powershell Intelligence Continuous Improvement Automation Integration Troubleshooting Security Documentation Python Design