S

SOAR Engineer

Sekuro Australia
Remote
This Job is No Longer Active This position is no longer accepting applications

Job Description


  • Contract with option of going perm
  • Fully Remote


About Sekuro


We're the challenger in the cyber security market. As a founder-led organisation, we bring a fresh and direct approach to helping organisations improve their cyber security posture, reduce risk, and build resilience.


Our vision is to be the world's most trusted security partner, enabling organisations to protect today and prepare for tomorrow. We exist to secure organisations, empowering them to thrive in a digital world. We live by our values: we are brave, we raise the bar, we tell it how it is, we own the outcome, and we care for all.


About the Role


Sekuro is searching for a SOAR Engineer to join our busy Security Engineering team. This is your chance to design, build and maintain automation workflows that power our round-the-clock Security Operations Centre and deliver tangible value to our clients. Reporting to the Engineering Manager, you will guide playbook development, integrations and documentation while helping shape the next generation of our SOC services.


What You'll Do


  • Design, develop and maintain SOAR playbooks that automate incident response and security operations tasks for internal analysts and external clients
  • Refactor and optimise existing automation to improve reliability, performance and re-use
  • Integrate SOAR with SIEM, EDR, ticketing, cloud and network tools using REST APIs, webhooks and software development kits
  • Write clean, well-documented scripts in Python, PowerShell or JavaScript to support integrations and data handling
  • Partner with SOC analysts and Detection Engineering to translate client security use cases into practical automated workflows
  • Provide rapid troubleshooting and playbook adjustments during incident triage as the SOAR subject matter expert
  • Use Git-based version control, peer reviews and continuous integration pipelines for all playbook releases
  • Produce and maintain run-books and technical documentation for internal teams and clients
  • Engage with client stakeholders to present automation outcomes, gather feedback and refine solutions
  • Contribute technical input and effort estimates to statements of work for upcoming SOAR projects


About You


  • At least two years in a security-focused role such as SOC, incident response or security engineering
  • Hands-on experience building playbooks in at least one SOAR platform such as Swimlane, Splunk SOAR, Palo Alto XSOAR, Microsoft Sentinel or Tines. Swimlane SOAR expertise is a welcome advantage
  • Proficiency in Python or similar scripting languages
  • Solid understanding of RESTful APIs, JSON and authentication methods such as OAuth 2.0 and API keys
  • Knowledge of common security use cases including phishing response, EDR containment, vulnerability triage and threat-intel enrichment
  • Familiarity with SIEM pipelines, log formats and alert lifecycles
  • Strong analytical and problem-solving skills with a passion for reducing manual effort through automation
  • Clear verbal and written communication skills with ability to present to clients and explain technical detail to non-technical audiences

Similar Jobs

Explore other opportunities that match your interests

Network Architect

Networking
1w ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Mid-Senior level

bullit management services lim...

Australia
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Mid-Senior level

opasa

Australia

Strategic Territory Director - Australia and New Zealand

Networking
6mos ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

Motorola Solutions

Australia

Subscribe our newsletter

New Things Will Always Update Regularly