Cybersecurity Engineer
Spectraforce
Atlanta, Georgia
3 days ago
Job Description
Position: Cybersecurity Engineer
Location: Atlanta, GA
Duration: 8 Months
Job Description:
Cybersecurity Automation Engineer to design, build, and maintain integrations and automated workflows within our SOAR platform (Cortex XSOAR). This role will focus on ingesting and correlating data from third-party risk and security tools (e.g., Archer, SecurityScorecard, Splunk), enabling alerting for vendor-related threats, and executing automated response playbooks to reduce risk and response time.
Top Skills:
Responsibilities:
SOAR Engineering & Integrations
Years of Experience: 14.00 Years of Experience
At SPECTRAFORCE, we are committed to maintaining a workplace that ensures fair compensation and wage transparency in adherence with all applicable state and local laws.The pay rate for this position is $50.00/hr.
Location: Atlanta, GA
Duration: 8 Months
Job Description:
Cybersecurity Automation Engineer to design, build, and maintain integrations and automated workflows within our SOAR platform (Cortex XSOAR). This role will focus on ingesting and correlating data from third-party risk and security tools (e.g., Archer, SecurityScorecard, Splunk), enabling alerting for vendor-related threats, and executing automated response playbooks to reduce risk and response time.
Top Skills:
- Palo Alto xSOAR
- Automation Workflow
- Integration
Responsibilities:
SOAR Engineering & Integrations
- Design, build, and maintain integrations between XSOAR and platforms such as Archer (or other GRC tools), SecurityScorecard (or similar vendor risk tools), and SIEM solutions such as Splunk.
- Develop custom connectors and API-based integrations where native connectors do not exist.
- Normalize, enrich, and correlate data from third-party and external risk sources for operational use.
- Build alerting logic for vendor-related threats including vendor breaches, risk score degradation, SaaS abuse, and exposure of vendor-managed assets.
- Correlate vendor risk signals with internal telemetry to determine potential business impact.
- Enable SOC workflows for third-party-related detections.
- Design and implement SOAR playbooks to triage, enrich, and respond to vendor-related alerts.
- Automate response actions such as token revocation, access suspension, ticket creation, and stakeholder notification.
- Maintain and optimize playbooks to reduce manual effort and mean time to respond (MTTR).
- Partner with SOC, Vendor Risk, Threat Modeling, and Detection Engineering teams to translate risk scenarios into automation logic.
- Document integrations, workflows, and playbooks.
- Monitor performance and reliability of SOAR automations.
Years of Experience: 14.00 Years of Experience
Applicant Notices & Disclaimers
- For information on benefits, equal opportunity employment, and location-specific applicant notices, click here
At SPECTRAFORCE, we are committed to maintaining a workplace that ensures fair compensation and wage transparency in adherence with all applicable state and local laws.The pay rate for this position is $50.00/hr.