Banglore, Karnataka
Job Summary
Job Summary : We are seeking an experienced Palo Alto Cortex XSIAM/XSOAR Engineer with 6 years of hands-on experience in designing, implementing, and managing Security Information and Event Management (SIEM) and Security Orchestration, Automation, and Response (SOAR) platforms, with a strong focus on Palo Alto Cortex XSOAR and Cortex XSIAM/XDR. The ideal candidate will be responsible for security monitoring, incident investigation, threat detection, automation development, and improving SOC operational efficiency through orchestration and automated response workflows.
Key Responsibilities
Job Responsibilities : • Administer, configure, and maintain Palo Alto Cortex XSOAR, Cortex XSIAM, and Cortex XDR platforms. • Design, develop, and optimize SOAR playbooks for automated incident response and security operations. • Integrate security tools including Firewalls, EDR, Threat Intelligence, IAM, Ticketing, and Cloud Security solutions with SOAR platforms. • Develop and maintain use cases, correlation rules, dashboards, alerts, and reports within SIEM environments. • Conduct threat hunting, incident analysis, root cause investigations, and forensic analysis. • Monitor security events and respond to incidents in alignment with organizational security policies and SLAs. • Fine-tune detection rules and reduce false positives to improve SOC efficiency. • Create custom automation scripts using Python, REST APIs, and JSON-based integrations. • Work closely with SOC analysts, Incident Response teams, Threat Intelligence teams, and IT operations teams. • Support security audits, compliance requirements, and reporting activities. • Develop operational runbooks, knowledge articles, and technical documentation. • Stay updated on emerging threats, vulnerabilities, and Palo Alto security technology advancements.
Skill Requirements
Skill Requirement : SIEM Technologies • Palo Alto Cortex XSIAM • Splunk (preferred) • IBM QRadar • Microsoft Sentinel • LogRhythm or ArcSight (good to have) SOAR Technologies • Palo Alto Cortex XSOAR • Security automation and orchestration • Playbook development and optimization • Incident lifecycle automation Security Technologies • Palo Alto Next-Generation Firewalls • Cortex XDR • Endpoint Security Solutions • IDS/IPS • Email Security Solutions • Threat Intelligence Platforms Scripting & Automation • Python • REST APIs • JSON • PowerShell (good to have) • Automation workflow development Cloud Security (Preferred) • AWS Security Services • Microsoft Azure Security • Google Cloud Platform Security
Other Requirements
Other Requirement : Required Qualifications • Bachelor\'s degree in Computer Science, Information Security, Cybersecurity, or related field. • 6+ years of experience in Cybersecurity Operations, SIEM, and SOAR technologies. • Strong experience with Palo Alto Cortex XSOAR and Cortex XSIAM deployment and administration. • Hands-on experience integrating third-party security products through APIs. • Experience in incident response, threat hunting, and SOC operations. • Strong analytical, troubleshooting, and problem-solving skills. • Excellent communication and stakeholder management skills. Preferred Certifications • Palo Alto Networks Certified XSOAR Engineer • Palo Alto Networks Certified Cybersecurity Associate (PCCSA) • Palo Alto Networks Certified Network Security Engineer (PCNSE) • Splunk Core Certified Power User/Admin • Microsoft SC-200 • CISSP • CEH • GCIH Key Competencies • Security Monitoring & Incident Management • Threat Detection & Analysis • Security Automation & Orchestration • Threat Hunting • SIEM Engineering • SOC Operations • API Integration • Process Improvement • Technical Documentation • Stakeholder Collaboration
#body.unify div.unify-button-container .unify-apply-now: focus, #body.unify div.unify-button-container .unify-apply-#body.unify div.unify-button-container .unify-apply-now: focus, #body.unify div.unify-button-container .unify-apply-