Senior SIEM & SOAR Engineer (Palo Alto XSIAM / XSOAR), EU based
- Hiring from
- Europe
- Work type
- Remote
- Posted
Is this job info correct?
508,688 remote jobs, straight from company career pages
100% free · New jobs every hour
Show job descriptionHide job description
We are looking for an experienced Senior SIEM & SOAR Engineer to support the Cyber Defense Center (CDC) of a large international organization.
The role focuses on developing, deploying, and maintaining security automation solutions within an enterprise cybersecurity environment, with a strong emphasis on Palo Alto Cortex XSIAM and XSOAR.
Details:
Start: ASAP / October 2026
Duration: Until the end of 2026, with expected extension into 2027
Allocation: Full-time
Location: Remote
Language: English
Responsibilities:
- Develop, implement, and maintain security automation playbooks using Palo Alto Cortex XSIAM / XSOAR.
- Automate and optimize security incident detection, investigation, and response workflows.
- Collaborate with internal security teams to gather requirements and implement automation solutions.
- Support the integration and operation of SIEM/SOAR technologies within the existing security infrastructure.
- Troubleshoot security automation issues and assist with root cause analysis.
- Maintain and improve existing playbooks and automation workflows.
- Perform approved operational changes in accordance with established security procedures.
- Ensure the stability and reliability of security automation services.
Requirements:
- Strong hands-on experience with Palo Alto Cortex XSIAM / XDR.
- Practical experience with Palo Alto Cortex XSOAR, including security automation and playbook development.
- Good understanding of SIEM/SOAR technologies and security operations.
- Experience working with security incident workflows and automation.
- Strong analytical and troubleshooting skills.
- Good English communication skills.
Nice to Have:
- Experience in Cloud Information Security.
- Experience with Cyber Threat Intelligence (CTI) platforms.
- Python scripting skills, particularly for security automation.
- Understanding of cloud environments such as Microsoft Azure and GCP.
- Knowledge of the MITRE ATT&CK framework.