Cyber Security Consultant
Drunix Solution Inc
Atlanta, United States
2 months ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Apply on dice.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source
Tech stack
Software as a Service
Cyber Security
Intrusion Detection and Prevention
Smartsuite
Security Information and Event Management
QRadar
Cyber Threat Analysis
Cybercrime
RSA Archer Platform
Cortex XSOAR Platform
Splunk
Job description
- Design, build, and maintain integrations between Palo Alto XSOAR and enterprise security platforms
- Integrate XSOAR with:
- Archer (or other GRC platforms)
- SecurityScorecard (or similar vendor risk tools)
- Splunk and other SIEM solutions
- Develop and implement third-party risk alerting capabilities
- Build detection logic for:
- Vendor breaches
- Risk score degradation
- SaaS abuse
- Exposure of vendor-managed assets
- Correlate vendor risk intelligence with internal security telemetry
- Enable and enhance SOC workflows for third-party risk detections
- Design and implement SOAR playbooks for:
- Alert triage
- Threat enrichment
- Incident response
- Automate security response actions including:
- Token revocation
- Access suspension
- Ticket creation
- Stakeholder notifications
- Partner with SOC, Vendor Risk, Threat Modeling, and Detection Engineering teams
- Document integrations, workflows, playbooks, and automation processes
- Monitor and optimize performance of SOAR automations
Requirements
We are seeking an experienced Cyber Security Consultant - Intelligence & Operations with strong expertise in SOAR automation, Palo Alto XSOAR, SIEM integrations, and third-party risk monitoring. The ideal candidate will help strengthen enterprise security posture through intelligence-driven security operations, automation, and proactive threat detection., * Strong experience with Palo Alto Cortex XSOAR
- Hands-on experience integrating:
- Archer or other GRC tools
- SecurityScorecard or vendor risk platforms
- Splunk or enterprise SIEM solutions
- Experience designing and implementing SOAR playbooks and automation workflows
- Strong knowledge of:
- Security Operations (SOC)
- Threat Intelligence
- Incident Response
- Detection Engineering
- Experience correlating external threat intelligence with internal telemetry
- Strong scripting and automation experience
- Excellent troubleshooting and analytical skills
- Strong communication and stakeholder management abilities
Nice to Have Skills
- Experience with IBM QRadar
- Vendor Risk Management and Third-Party Risk Monitoring expertise
- Threat Hunting experience
- Security Intelligence & Operations Center (SIOC) experience
- Knowledge of cyber threat frameworks and intelligence-driven defense strategies
- Experience supporting enterprise-scale cybersecurity programs
Preferred Profile
- Experience working with large enterprise security environments
- Strong understanding of risk management and compliance frameworks
- Ability to translate business risks into actionable security controls and automations
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on dice.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
DC
Daniel Cranney
7 months ago
LM
Luis Minvielle
9 Ways to Make Money Hacking
over 2 years ago
CH
Chris Heilmann
Dev Digest 134 - Where pixels sing?
almost 2 years ago
DC
Daniel Cranney
Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents
10 months ago
DC
Daniel Cranney
Understanding and Mitigating Common Web Vulnerabilities
over 1 year ago
LM
Luis Minvielle
Fully Remote Software Engineer Jobs
over 2 years ago