Cyber Security Consultant

Drunix Solution Inc
Atlanta, United States
2 months ago
Apply on dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source

Tech stack

Software as a Service Cyber Security Intrusion Detection and Prevention Smartsuite Security Information and Event Management QRadar Cyber Threat Analysis Cybercrime RSA Archer Platform Cortex XSOAR Platform Splunk

Job description

  • Design, build, and maintain integrations between Palo Alto XSOAR and enterprise security platforms
  • Integrate XSOAR with:
  • Archer (or other GRC platforms)
  • SecurityScorecard (or similar vendor risk tools)
  • Splunk and other SIEM solutions
  • Develop and implement third-party risk alerting capabilities
  • Build detection logic for:
  • Vendor breaches
  • Risk score degradation
  • SaaS abuse
  • Exposure of vendor-managed assets
  • Correlate vendor risk intelligence with internal security telemetry
  • Enable and enhance SOC workflows for third-party risk detections
  • Design and implement SOAR playbooks for:
  • Alert triage
  • Threat enrichment
  • Incident response
  • Automate security response actions including:
  • Token revocation
  • Access suspension
  • Ticket creation
  • Stakeholder notifications
  • Partner with SOC, Vendor Risk, Threat Modeling, and Detection Engineering teams
  • Document integrations, workflows, playbooks, and automation processes
  • Monitor and optimize performance of SOAR automations

Requirements

We are seeking an experienced Cyber Security Consultant - Intelligence & Operations with strong expertise in SOAR automation, Palo Alto XSOAR, SIEM integrations, and third-party risk monitoring. The ideal candidate will help strengthen enterprise security posture through intelligence-driven security operations, automation, and proactive threat detection., * Strong experience with Palo Alto Cortex XSOAR

  • Hands-on experience integrating:
  • Archer or other GRC tools
  • SecurityScorecard or vendor risk platforms
  • Splunk or enterprise SIEM solutions
  • Experience designing and implementing SOAR playbooks and automation workflows
  • Strong knowledge of:
  • Security Operations (SOC)
  • Threat Intelligence
  • Incident Response
  • Detection Engineering
  • Experience correlating external threat intelligence with internal telemetry
  • Strong scripting and automation experience
  • Excellent troubleshooting and analytical skills
  • Strong communication and stakeholder management abilities

Nice to Have Skills

  • Experience with IBM QRadar
  • Vendor Risk Management and Third-Party Risk Monitoring expertise
  • Threat Hunting experience
  • Security Intelligence & Operations Center (SIOC) experience
  • Knowledge of cyber threat frameworks and intelligence-driven defense strategies
  • Experience supporting enterprise-scale cybersecurity programs

Preferred Profile

  • Experience working with large enterprise security environments
  • Strong understanding of risk management and compliance frameworks
  • Ability to translate business risks into actionable security controls and automations

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:01 min

Bridging the gap between software development and security

Vandana Verma · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all