Senior SOAR Engineer

🏢 Malomatia
📍 Doha, QatarFull-timeOn-site
📅 Posted: 1w ago🔄 Updated: 1w ago
CV%
✨ AI Summary
Malomatia is seeking a Senior SOAR Engineer to monitor, develop, and maintain their cyber security services, focusing on automation and efficiency. The role involves acting as a Subject Matter Expert for Security Automation, Orchestration, Playbooks, and API-based automation. Responsibilities include developing, implementing, and maintaining SOAR platforms, designing and improving SOC processes through automation, and integrating new tools and playbooks to enhance incident response. The ideal candidate will possess a Bachelor's degree in Engineering, Economics, or Computer Science, with a SOAR certificate. They should have at least 6 years of relevant experience in SOAR technologies, a strong understanding of security architecture, incident response, and common SOC workflows. Proficiency in Python scripting, REST APIs, and experience with integrating various security tools and ITSM systems are crucial. The role also requires strong problem-solving and communication skills, with familiarity working in the region and potentially within an MSSP or MDR provider.
Required Skills
Information Technology
Palo AltoPythonSOARMicrosoft Sentinel
Engineering, Construction & Trades
Automation
Other
IBM Resilientphantom
Requirements
The Senior SOAR Engineer must have a Bachelor's degree in Engineering, Economics, or Computer Science, and at least one SOAR platform certificate. A minimum of 6 years of experience in Security Orchestration, Automation, and Response (SOAR) technologies is required, along with proficiency in Python scripting, REST APIs, and common security tools integration. Strong problem-solving and communication skills are essential.
Description
JOB PROFILE:Our SOAR Engineer is responsible for monitoring, developing, and maintaining the beating heart of malomatia Cyber Security Services and driving our efficiency improvements. The effective use of our tools and expertise is critical to ensure malomatia and our customers can quickly identify, understand, and respond to cyber security incidents. The successful candidate will have a good technical knowledge of cyber systems and incident response, and a desire to drive improvements through automation. They should possess an understanding of different security technologies, technical infrastructures and APIs and an awareness of cyber threats.ROLES & RESPONSIBILITIES:Act as a Technical Subject Matter Expert, be the primary point of contact for Security Automation, Orchestration, Playbooks, Python Automation, API-based automation, Incident Response lifecycle automation, Security AutomationDevelop, implement, and execute standard procedures for SOAR platform administration.Design, Deployment and Maintenance of SOAR platforms (including content management, change management, version/patch management, and lifecycle management).Work closely with the Security Operations Center (SOC) and Security Engineering teams to improve existing automation and deliver resilient security solutionsAssess, design, and improve SOC processes and workflows with a focus on integrating automation through Security Orchestration, Automation and Response (SOAR) tools.Implement SOC automation and ensure continued compatibility with existing detection and response tools.Integrate new sources and build playbooks to properly triage and respond to security incidents while reducing the time needed to analyze each event.Develop custom scripts to automate current detection and response workflows.Build pipelines to enrich logs and alert results to provide a comprehensive view for SOC analysts.Operate and help mature a SOC playbook, workflow automations and use casesAssist with client setup transition and onboarding, serve as primary point of contact for Managed Security Service clientJOB SPECIFICATIONS:Education:Bachelor's degree in Engineering, Economics, Computer Science, or a related discipline.Additionally, one or more SOAR certificate related to a SOAR platformExperience:Minimum 6+ years of relevant experience working on Security Orchestration, Automation and Response (SOAR) technologiesSkills:Proven experience with Security Orchestration, Automation and Response (SOAR) technologies (e.g., Palo Alto Cortex XSOAR, Splunk SOAR/Phantom, Microsoft Sentinel Automation/Logic Apps, IBM Resilient).Understanding of security architecture, tool integration, API development and automation.Understanding of Incident Response processes (Detection, Investigation, and response).Understanding of common SOC processes and workflows.Experience with Python scripting language for automation and working knowledge of REST APIs, JSON, HTML/CSS, JavaScript, XML.Experience developing Dashboards and Reports focused on cyber security operations.Experience with operating system internals for both Linux and Windows platforms.Proven experience building or customizing integrations/playbooks with common security tools (e.g., Palo Alto/Fortinet firewalls, CrowdStrike/SentinelOne EDR, Splunk/QRadar/Sentinel SIEM, ServiceNow/Jira ticketing).Proven experience integrating SOAR platforms with ITSM systems (e.g., Jira, ServiceNow etc).Strong problem-solving capabilities and the ability to work with minimal oversight.Exceptional written and verbal communication skills.Technical Skills:Familiarity and experience working within the regionExperience working as part of a MSSP or MDR provider
✨ Premium Match Details
Deep-dive CV analysis, customized Cover Letters, and Interview prep!
📊 Match Analysis
Insights against your active CV
📊
Personalized Match Analysis
Upload your CV to see exact matching percentages, detailed skills mapping, and gap analysis for this role.
🎯 Overalli74%
⚡ Skillsi85%
View Breakdown
Ontology Match: 85.0
Matched:✓ Requirements Matching✓ Ontology Skills Mapping
📜 Eligibilityi49%
View Breakdown
Local: 19600%
🏗️ Career Fiti91%
View Breakdown
Seniority: 91.0
📋 Requirementsi67%
View Breakdown
Domain: 67.0
🔥 Motivationi78%
View Breakdown
Title Fit: 78.00