XSOAR Extended Expertise Engineer

Zachary Piper
Scott Air Force Base, IL, United States
4 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
6 years minimum
Compensation
$140,000.0 - $150,000.0
Working hours
Regular working hours

Tech stack

Amazon Web Services ARM Architecture Microsoft Azure Cloud Computing Cyber Security Intrusion Detection and Prevention Python (Programming Language) Linux System Administration Security Information and Event Management Systems Integration Scripting Google Cloud
+8 more
Data Ingestion QRadar Information Technology Cybercrime Enterprise Integration Cortex XSOAR Platform Splunk Security Orchestration, Automation & Response

Job description

Zachary Piper Solutions is seeking an XSOAR Extended Expertise Engineer to support a company focused on enterprise cybersecurity operations, security automation, and next-generation SIEM/XDR platform adoption. This position is on-site in Scott AFB, IL. The XSOAR Extended Expertise Engineer will serve as a trusted technical advisor responsible for SIEM engineering, detection development, automation, and customer enablement across Cortex XSIAM and Cortex XSOAR environments. Join a mission-driven team helping organizations strengthen their security posture through advanced detection, automation, and operational excellence., * Develop and optimize SIEM log ingestion pipelines while onboarding and maintaining high-value log sources.

  • Create, tune, and manage correlation rules, detections, custom alerts, and threat hunting content.
  • Design and develop security automation workflows and SOAR playbooks utilizing Python and platform integrations.
  • Provide troubleshooting, operational guidance, and best practices for SIEM, SOAR, XDR, cloud, and endpoint security technologies.
  • Deliver customer training, technical documentation, and presentations to both technical and non-technical stakeholders.

Requirements

  • 6+ years of experience deploying, integrating, and supporting enterprise SIEM platforms.
  • Hands-on experience with Cortex XSOAR, Cortex XSIAM, Splunk, QRadar, SIEM technologies, XDR platforms, and security automation tools.
  • Experience with detection engineering, threat hunting, SOC operations, log ingestion, correlation rule development, Python scripting, networking, Linux administration, and cloud technologies (AWS, Azure, GCP).
  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related field (or equivalent professional experience).
  • Active Top Secret Security Clearance required.

Benefits & conditions

  • Salary Range: $140,000 - $150,000 depending on experience
  • Full Benefits Package: PTO, Paid Holidays, Medical, Dental, Vision, 401K, Sick Leave as required by law

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:53 min

Transitioning toward DevSecOps with dynamic scanning and secrets management

Christoph Ruggenthaler · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

1:53 min

Evaluating traditional scripting languages for modern development tasks

Jens Knipper Jens Knipper · Europe 2026 Virtual

Videos

See all

Related articles

See all