Назад
Company hidden
20 часов назад

Automation Engineer (Cybersecurity)

Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Automation Engineer (Cybersecurity/SOAR): Designing and developing SOAR playbooks and automating incident response workflows for the Congressional Budget Office with an accent on Microsoft Sentinel and Azure Logic Apps. Focus on integrating security tools, optimizing MTTD/MTTR, and building custom automation pipelines for SOC operations.

Location: Remote (Must hold an active Public Trust clearance)

Company

hirify.global provides specialized IT and cybersecurity support services for government agencies.

What you will do

  • Design, develop, and maintain SOAR playbooks using Microsoft Sentinel and Azure Logic Apps.
  • Automate incident response workflows, including phishing, malware containment, and endpoint isolation.
  • Integrate Microsoft Sentinel with Microsoft Defender XDR and other identity, network, and cloud security tools.
  • Develop custom automation workflows and enrichment pipelines aligned with Sentinel data models and schema requirements.
  • Maintain audit logging, chain-of-custody, and compliance controls within automated workflows.
  • Develop reporting on automation effectiveness, specifically focusing on MTTD and MTTR improvements.

Requirements

  • Active Public Trust clearance.
  • 5+ years of experience in cybersecurity engineering, automation, or SOAR development.
  • Hands-on expertise with Microsoft Sentinel and Azure Logic Apps.
  • Experience integrating Microsoft Defender XDR (Endpoint, Identity, Cloud).
  • Strong scripting skills in Python, PowerShell, or similar languages.
  • B.S. in Computer Science, Information Technology, or a related field.

Nice to have

  • Cybersecurity certifications such as GCIA, GCIH, CISSP, or CEH.
  • Microsoft Sentinel or Microsoft security platform certifications.
  • Cloud security certifications (e.g., AWS security).
  • Privacy certifications (e.g., CIPP/US, CIPM).

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →