SOAR Engineer
Overview
L3
Harris is dedicated to recruiting and developing high-performing talent who are passionate about what they do. Our employees are unified in a shared dedication to our customers’ mission and quest for professional growth. L3
Harris provides an inclusive, engaging environment designed to empower employees and promote work-life success. Fundamental to our culture is an unwavering focus on values, dedication to our communities, and commitment to excellence in everything we do.
L3
Harris is the Trusted Disruptor in defense tech. With customers’ mission-critical needs always in mind, our employees deliver end-to-end technology solutions connecting the space, air, land, sea and cyber domains in the interest of national security.
Job Title: SOAR Engineer
Job Location: Ottawa, ON
Job Code: 39852
Job Schedule: Day shift
Compensation Range: Between $85,500 and $135,500 CDN annually
Join our team as a SOAR Engineer and take the lead in designing, implementing, and optimizing our Security Orchestration, Automation, and Response (SOAR) platform. In this role, you will be the technical driver behind our security automation capabilities, responsible for building and refining workflows that detect, analyze, and respond to cyber threats with speed and precision.
As our SOAR Engineer, you will integrate a diverse set of security tools, APIs, and platforms—including open-source solutions like Shuffle
—to streamline incident response, and enhance our ability to counteract advanced threats. Your work will directly contribute to the resilience and agility of our clients’ security posture, making you a key player in our mission to deliver unparalleled protection.
- Develop and deploy manually selected and automated security processes to detect, analyze, and respond to cyber threats. Create and optimize playbooks to standardize incident response and ensure consistency across the security operations center (SOC).
- Connect and orchestrate a wide range of security technologies, including SIEMs (e.g. Wazuh, Security Onion), firewalls, IDS/IPS, threat intelligence platforms, and ticketing systems to create a unified and automated security ecosystem. Experience with open-source SOAR tools like Shuffle is a strong asset.
- Build and maintain automation scripts (e.g., Python, Power Shell) and workflows to eliminate manual, repetitive tasks, reducing response times and minimizing human error.
- Collaborate with security developers to identify gaps in current processes and develop SOAR solutions to address them, ensuring faster and more accurate threat mitigation.
- Oversee the configuration, maintenance, and optimization of SOAR platforms such as Shuffle, ensuring they align with our clients’ security requirements.
- Provide guidance and training to security developers, operators and other stakeholders on SOAR tools, playbooks, and best practices to foster a culture of automation and continuous improvement.
- Monitor emerging cyber threats and proactively update SOAR workflows and playbooks to address new attack vectors, ensuring our defenses are adaptive.
- Work closely with cyber developers, Dev Ops, and other security teams to ensure seamless integration of SOAR capabilities into broader security and operational frameworks.
- Education:
Bachelor’s degree in Computer Science, Engineering, Cybersecurity, or a related technical field (or equivalent experience). - Experience:
5+ years of hands-on experience in cybersecurity, with a focus on security operations, incident response, or SOAR implementation. Proven track record in designing and deploying automated security workflows. - SOAR Platform Expertise:
Experience with SOAR platforms such as Cortex XSOAR, Splunk Phantom, IBM Resilient, or open-source alternatives like Shuffle. Familiarity with Shuffle is considered a strong asset. - SIEM Familiarity:
Strong understanding of SIEM tools (e.g., Splunk, QRadar, Arc Sight, Wazuh) and their role in security monitoring and incident detection. - Scripting and Automation:
Proficiency in scripting languages such as Python or Power Shell for automating security tasks and building custom integrations. Familiarity with automation tools like…
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: