Job Description This is a remote position. Location : Remote Engagement Type : Project-based Assignment; B2B Contract (Outside IR35) Duration : 6 months with auto renew Timezone : CET ± 2 hours Be part of our Global Engineering Network! One of our clients, a leader in in the Cybersecurity and Information Security Services industry is looking for an experienced SOAR Engineer to design, develop, and implement automated security response workflows that enhance the organization's cyber defense capabilities.You will be responsible for building and maintaining SOAR playbooks, integrating the platform with IT Service Management (ITSM) tools and security technologies, and automating incident response actions to improve operational efficiency and reduce response times. Key Deliverables: Design, develop, test, and maintain SOAR playbooks to automate security incident detection, investigation, and response. Integrate the SOAR platform with ITSM solutions, SIEM platforms, security tools, and enterprise applications using APIs and connectors. Develop scripts and automation workflows using supported scripting languages (e.g., Python, PowerShell, Bash). Implement and orchestrate automated response actions, including: Firewall rule updates and IP blocking Active Directory (AD) user account disablement Endpoint isolation and quarantine Packet capture (PCAP) extraction Memory dump acquisition for forensic analysis Develop API integrations with internal and third-party security solutions. Collaborate with SOC analysts and incident responders to automate repetitive security operations and improve incident handling processes. Troubleshoot and optimize automation workflows to ensure reliability, efficiency, and accuracy. Document playbooks, integration procedures, automation workflows, and operational runbooks. Ensure automation activities comply with organizational security policies and governance requirements. Participate in continuous improvement initiatives to expand automation coverage and enhance SOC maturity. Requirements Ideal Profile: Bachelor's degree in Computer Science, Cybersecurity, Information Technology, Engineering, or a related field. Proven experience implementing and managing SOAR platforms. Strong expertise in developing automation playbooks and security workflows. Hands-on experience with REST APIs, scripting (Python, PowerShell, Bash), and system integrations. Experience integrating SOAR with ITSM platforms and security tools. Knowledge of SOC operations and incident response processes. Experience automating actions such as firewall blocking, Active Directory account disablement, endpoint quarantine, PCAP extraction, and memory dump collection. Strong analytical, troubleshooting, and communication skills. Why Partner with Us? · Clear scope with no ambiguity over deliverables. · Opportunity for repeat engagements based on performance. Selection Process 1. Proposal Submission o Submit your professional profile/CV by applying for the role. 2. Business Alignment Call o 30-minute virtual discussion with a Human Capital Consultant to review scope and expectations. 3. Verification o Opportunity to complete Castille Vetting (background and compliance checks). 4. Client Skills Review o Direct interview with the end client to discuss project specifics. o Project-specific technical assessment (if required). Ongoing Business Support · Access to CX guidance and market insights through our professional network.
.NET/MONGODB
Workiy
General Systems Administrator
Cditsolutions
Senior Full Stack Software Engineer
Protege
Software Engineer
STARLIMS Corporation
Senior Application Security Engineer
Citrin Cooperman
ServiceNow HR Service Delivery (HRSD) Integration
Elfonze