You will manage the full lifecycle of automation playbooks within a SOAR environment, focusing on Splunk SOAR and Python development.
Responsibilities
Own the complete automation playbook lifecycle, from requirements gathering and planning through design, testing, implementation, and maintenance.
Review API documentation to connect third-party services to the SOAR platform and execute integrations following enterprise change management processes.
Develop detailed technical documentation for all orchestration workflows.
Collaborate with internal teams to establish SOAR integrations and troubleshoot existing playbooks.
Pass data to SOAR from Splunk for analysis and automated response.
Required Skills
2+ years of hands-on experience with Splunk SOAR, specifically writing playbooks and troubleshooting.
2+ years of experience using Splunk for data analysis.
Strong programming skills in Python.
Experience working with REST and third-party API integrations.
Proficiency with Git.
Solid understanding of IT security concepts and practices.
Experience working within Scrum or other agile development methodologies.
Familiarity with enterprise change management processes.
Strong deductive reasoning and critical thinking skills.
Preferred Skills
Experience with large-scale orchestration and automation workflows.