Security Automation and Response Engineer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+7 more
Job description
- Develop, implement, and maintain SOAR playbooks to automate repetitive security tasks, including alert triage, threat investigation, and incident response, using tools like SOAR, Python, and API integrations.
- Advance Security Operations capabilities through AI-driven initiatives, in collaboration with the Information Security Operations Manager.
- Investigate malware, intrusions, unauthorized access, and data infiltration/exfiltration events.
- Analyze logs, memory, disk images, and network captures to determine attack scope and impact.
- Stay current on cyber threats and industry best practices to continuously enhance SOC capabilities.
- Work with SIEM platforms and associated query languages (Yara-L, CQL, SPL, etc.).
- Participate in Purple Team activities.
- Participate in on-call rotation and respond to critical security events.
Requirements
- BS or BA in Computer Science, Engineering, or equivalent education, training, or work experience.
- 5+ years of security experience, or equivalent training and education.
- Solid knowledge of computing systems, data network communications, and network architecture.
- Hands-on experience with SOAR playbook development.
- Required scripting or programming skills (Python, PowerShell, Go, etc.).
- Experience in incident response and threat investigation.
- Experience in threat detection and understanding of logging systems.
- Security certifications (GIAC, CISSP) preferred.
- Effective written and verbal communication skills.
Benefits & conditions
This role requires authorization to work in the U.S. without current or future visa sponsorship. The expected salary range for this position is $100k - $110k per year, depending on experience and qualifications. This role qualifies for full comprehensive employee benefits such as medical, dental, and vision insurance, retirement savings, and paid time off. TalentFish is committed to pay transparency and equal opportunity. The salary range provided is in compliance with applicable state and federal regulations. All offers are contingent upon the completion of a background check, which may include but is not limited to reference checks, education verification, employment verification, drug testing, criminal records checks, and any required certifications or compliance requirements based on the end client’s background check policies and applicable laws.
About the company
TalentFish is casting a line for an Information Security Engineer Security Automation and Response. This is a full-time remote opportunity with our premier healthcare client.
This role will advance Security Operations capabilities through SOAR playbook development, automation, and AI-driven workflows, streamlining incident response and improving SOC operational efficiency.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Is Software Engineering Over-Saturated?
9 Ways to Make Money Hacking
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Understanding and Mitigating Common Web Vulnerabilities