More jobs:
XSOAR Architect; Secret clearance
Job Description & How to Apply Below
Valid Secret security clearance required
XSOAR Architect (Design, Implementation & Deployment)Role Overview
Design and lead the implementation of Palo Alto Cortex Security Orchestration, Automation, and Response (XSOAR) to enable Security Incident Management (SecIM), automation, and orchestration integrated with the Elastic Security Information and Event Management (SIEM) platform.
Key Responsibilities- Design XSOAR architecture and deployment model (multi‑tenant, scalable)
- Define incident ingestion workflows from Elastic SIEM into XSOAR
- Design automation strategy and playbook framework
- Playbook isolation
- Role‑Based Access Control (RBAC) model
- Design integrations with:
- SIEM
- Endpoint Detection and Response (EDR) platforms
- Firewalls and network security tools
- Identity and Access Management (IAM) systems
- Ticketing systems (Service Now, Jira)
- Define incident lifecycle and case management model (SecIM)
- Human‑in‑the‑loop controls
- Define high availability (HA), disaster recovery (DR), and backup strategies
- Ensure alignment with Security Assessment and Authorization (SA&A) and compliance requirements
- Collaborate with Elastic, Google Cloud Platform (GCP), and network architecture teams
- Strong experience with Palo Alto Cortex XSOAR architecture
- Deep understanding of Security Operations Centre (SOC) workflows
- Expertise in automation and orchestration design
- Experience integrating security tools and application programming interfaces (APIs)
- Strong knowledge of incident response processes and frameworks
- Understanding of multi‑tenant security platform design
- 7-10+ years in Security Operations, Incident Response, or Security Architecture
- 3-5+ years hands‑on experience with Cortex XSOAR
- Experience integrating SIEM, EDR, identity, and network tools
- Experience in multi‑tenant or Managed Security Service Provider (MSSP) environments
- Strong understanding of automation governance and risk management
- Experience in regulated environments
- Experience designing high‑availability and disaster recovery architectures
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
Search for further Jobs Here:
×