





Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Mid-level metro role with niche SOAR skills but common security toolset increases applicant density.
Strong SOAR and SOC platform specialization limits transferability across industries.
Mandatory 5+ years SOAR experience, platform certifications, and US-hours onsite requirement tightens screening.
Design, develop, and maintain SOAR playbooks, workflows, and integrations using Palo Alto XSOAR and Splunk SOAR to automate incident response.
Develop and optimize automated incident response processes across SOC use cases including phishing, malware, endpoint, identity, vulnerability, and threat investigations.
Support SOAR platform architecture, deployment, upgrades, troubleshooting, and ensure 24x7 production support with incident response SLA improvements.
5+ years of experience with Palo Alto XSOAR and/or Splunk SOAR including playbook development, integrations, and enterprise deployments.
Strong programming skills in Python and experience with REST APIs, JSON, and webhooks for custom integrations.
Experience with SOC operations, incident response processes, and integrating SOAR with SIEM, EDR/XDR, IAM, email security, threat intelligence, and vulnerability platforms.
Work Location: Bangalore onsite with 3 days/week office attendance; Availability during US working hours (5:00 PM to 2:00 AM IST) mandatory.
Deep expertise in SOAR toolsets (Palo Alto XSOAR, Splunk SOAR) with hands-on experience building complex automation for mature SOC environments.
Comfortable working in a 24x7 security operations context with cross-team collaboration involving SOC analysts, incident responders, and threat intelligence.
Experience mentoring junior SOAR engineers with a focus on standards, documentation, and continuous improvement of automation effectiveness.