Senior Cyber Security Engineer
Core
Design, deploy, and maintain Cortex XSIAM detections, correlations, and analytics across endpoint, network, cloud, and identity data to reduce noise and improve true-positive rates.
Role type
Senior IC detection engineering and automation specialist
Builds
Automated response playbooks, custom detections, and optimized data ingestion pipelines for enterprise security
Domain
Cybersecurity, SIEM/XDR, Threat Detection, Incident Response
Required skills
SIEM/XDR concepts, log analytics, incident response, automation and orchestration, XQL/KQL/SPL query languages, Python scripting, enterprise-scale platform operations
Preferred skills
Endpoint security tools (Cortex XDR, Defender, CrowdStrike), cloud security telemetry (AWS, Azure, GCP), identity and access logs (AD, Azure AD, IAM), MITRE ATT&CK frameworks, 24/7 SOC operations
Technologies
Cortex XSIAM, Palo Alto Networks, AWS, Azure, Google Cloud Platform, Python, XQL, KQL, SPL
Responsibilities
Design and maintain automated response playbooks to accelerate incident containment; Convert threat intelligence and adversary techniques into actionable detections aligned with MITRE ATT&CK; Collaborate with SOC analysts and engineering teams on investigations and response activities; Provide technical guidance and mentorship to engineers and analysts.
Seniority
Senior, hands-on IC