Cyber Security Engineer

Mindlance

  • Atlanta, GA
  • 5 days ago
  • $88.44 Per Hour
Want to know if you’re a fit?
Upload your resume and let our AI show you.

Skills

  • Application Programming Interface (API)unmatched
  • Artificial Intelligence (AI)unmatched
  • Asset Managementunmatched
  • Automationunmatched
  • Automation Engineeringunmatched
  • CCNA - Cisco Certified Network Associateunmatched
  • Consultingunmatched
  • Dockerunmatched
  • GSEC - GIAC Security Essentials Certificationunmatched
  • Incident Responseunmatched
  • Internet Securityunmatched
  • JSONunmatched
  • MCSE - Microsoft Certified Systems Engineerunmatched
  • Microsoft Windows Azureunmatched
  • Modeling Languagesunmatched
  • Performance Analysisunmatched
  • Python Programming/Scripting Languageunmatched
  • REST (Representational State Transfer)unmatched
  • Riskunmatched
  • Risk Managementunmatched
  • Risk Modelingunmatched
  • Scorecardingunmatched
  • Scripting (Scripting Languages)unmatched
  • Security Information and Event Management (SIEM)unmatched
  • ServiceNowunmatched
  • Software as a Service (SaaS)unmatched
  • Splunkunmatched
  • Telemetryunmatched
  • Threat Modelingunmatched
  • Vendor/Supplier Evaluationunmatched

Description

Title: Security Automation Engineer
Location: Atlanta, GA
Duration: 12+ months contract to hire

 
Description:
Business Initiative/Purpose: (Goal, Business Impact, Accomplishments from the work)
  • Cybersecurity Automation Engineer to design, build, and maintain integrations and automated workflows within our SOAR platform (Cortex XSOAR). This role will focus on ingesting and correlating data from third-party risk and security tools (e.g., Archer, SecurityScorecard, Splunk), enabling alerting for vendor-related threats, and executing automated response playbooks to reduce risk and response time.
Bachelor Degree: (Required, Preferred or Not Required)
  • Preferred.
 
Role Responsibilities: (what they will be doing)
SOAR Engineering & Integrations
  • - Design, build, and maintain integrations between XSOAR and platforms such as Archer (or other GRC tools), SecurityScorecard (or similar vendor risk tools), and SIEM solutions such as Splunk.
  • - Develop custom connectors and API-based integrations where native connectors do not exist.
  • - Normalize, enrich, and correlate data from third-party and external risk sources for operational use.
Third-Party Risk Alerting
  • - Build alerting logic for vendor-related threats including vendor breaches, risk score degradation, SaaS abuse, and exposure of vendor-managed assets.
  • - Correlate vendor risk signals with internal telemetry to determine potential business impact.
  • - Enable SOC workflows for third-party-related detections.
Automation & Playbooks
  • - Design and implement SOAR playbooks to triage, enrich, and respond to vendor-related alerts.
  • - Automate response actions such as token revocation, access suspension, ticket creation, and stakeholder notification.
  • - Maintain and optimize playbooks to reduce manual effort and mean time to respond (MTTR).
  • - Partner with SOC, Vendor Risk, Threat Modeling, and Detection Engineering teams to translate risk scenarios into automation logic.
  • - Document integrations, workflows, and playbooks.
  • - Monitor performance and reliability of SOAR automations.                  .     
Must Have Skills/Prior Experiences: (Vendor should not submit any candidate that does not have these skills/prior experience.)
  • 3+ years of experience in security engineering, SOAR engineering, or security automation.
  • Hands-on experience with Cortex XSOAR (or similar SOAR platform).
  • Experience integrating SIEM platforms such as Splunk.
  • Strong API integration and scripting skills (Python, REST, JSON, webhooks).
  • Solid understanding of incident response workflows, SaaS security, IAM, and third-party risk.
  • Docker, Kubernetes, containerization pipeline, and deployment experience.
  • Other security certifications (e.g. CCNA Security, GSEC, GCED, GPPA, etc.).
  • Other technical Certifications (e.g. CCNA, RHCE, MCSE, etc.).
  • Demonstrated knowledge of Large Language Models (LLMs) and Generative AI, with a focus on Azure AI offerings                       
Plus/Nice to Have Skills/Prior Experiences: (Hiring Manager DOES NOT require these skills/ prior experience. However candidates with any of these will be looked at first.)
- Experience integrating Archer, ServiceNow GRC, SecurityScorecard, BitSight, or RiskRecon.
- Knowledge of MITRE ATTACK and detection engineering concepts.
- Experience automating SaaS security actions (token revocation, session termination).
- Familiarity with External Attack Surface Management (EASM) tools.
 
 

EEO

“Mindlance is an Equal Opportunity Employer and does not discriminate in employment on the basis of – Minority/Gender/Disability/Religion/LGBTQI/Age/Veterans.”

Numbers & Facts

LocationAtlanta, GA
Salary$88.44 Per Hour

Similar Jobs

See more jobs