Responsibilities:
- Write, maintain, and optimize automation scripts using Python and Golang for routine security and incident response tasks.
- Develop and manage playbooks, workflows, and integrations within Cortex XSOAR to accelerate incident resolution.
- Partner with security analysts and cross-functional stakeholders to gather requirements and deliver solutions.
- Participate in Agile sprint activities (stand-ups, sprint planning, retrospectives).
- Assist in designing and implementing AI technologies (e.g., RAG) to enhance security capabilities.
- Build and test Agent-to-Agent communication workflows.
- Support the development, integration, and security of the Model Context Protocol (MCP).
- Connect internal systems and third-party security tools via RESTful API integrations.
- Research and experiment with new AI/automation advancements to improve operational efficiency.
- Perform peer code reviews and implement automated testing.
- Create and maintain documentation for scripts, playbooks, and AI integrations.
Qualifications:
Required:
- BS in CS/Software Engineering or related + 5 yearsβ experience, or MS + 4 yearsβ experience.
- Experience in software engineering, automation, or integration development.
- Strong Python and Golang proficiency.
- Proven experience developing and consuming RESTful APIs for complex integrations.
- Interest in learning AI technologies (LLMs, RAG, MCP).
- Experience with Agile/Scrum.
- Strong collaboration/communication; translate operational needs into technical solutions.
- Understanding of SDLC, version control (e.g., Git), and code testing principles.
- Ability to work in a hybrid environment.
Preferred:
- Hands-on Cortex XSOAR (or similar SOAR platforms).
- Foundational AI knowledge (RAG or agent communications).
- Basic cybersecurity/incident response knowledge.
- CI/CD and infrastructure-as-code.
- Docker or Kubernetes experience.