Job Title: Splunk SOAR Engineer
3-6 months
onsite - St, Doral, FL 33172, USA
*** MUST HAVE SECRET CLEARANCE***
Job Title: Splunk SOAR Engineer
We are seeking a talented and driven Splunk SOAR(security orchestration, automation and response) Engineer to design, develop, and maintain automation solutions that streamline and accelerate our security operations. In this role, you will leverage Splunk SOAR (formerly Phantom) to create robust, scalable playbooks, integrate diverse security tools, and drive automation for threat detection, investigation, and response. This is a hands-on technical role that sits at the intersection of security and engineering.
Key Responsibilities • Design, build, and optimize automated playbooks using Splunk SOAR to support incident response and threat management.
• Develop and maintain integrations with security tools (e.g., EDR, SIEM, threat intel platforms, firewalls, ticketing systems).
• Automate repetitive SOC tasks such as enrichment, triage, response, and remediation actions.
• Collaborate with SOC analysts, engineers, and incident responders to identify use cases for automation.
• Write custom scripts and connectors (primarily in Python) to extend platform functionality.
• Integrate SOAR platform with Splunk.
• Maintain documentation for all playbooks, integrations, and processes.
• Monitor and troubleshoot playbook performance and execution issues.
• Support ongoing optimization and tuning of automation workflows for accuracy, speed, and reliability.
• Stay informed of emerging threats and best practices in security orchestration and automation.
Qualifications
Required: • 2–5 years of experience in a security engineering or SOC environment.
• 1+ year of hands-on experience with Splunk SOAR (Phantom) or another SOAR platform.
• Strong scripting skills in Python.
• Experience creating and deploying playbooks or automated workflows.
• Familiarity with REST APIs and integrations with security tools (e.g., EDRs, SIEMs, threat intel, AD, firewalls).
• Understanding of security operations and incident response procedures.
• Excellent problem-solving skills and attention to detail. Preferred:
• Splunk SOAR Certified Automation Developer or similar certification.
• Experience with Splunk ES or other SIEM platforms.
• Knowledge of common security frameworks (MITRE ATT&CK, NIST, etc.).
• Experience working with ServiceNow, Jira, or other ITSM platforms.
...At HALSTEAD, the Squarespace Website Designer works independently and with a team, with flexible hours, creating unique emotion-provoking designs, endlessly discovering inspiration, and pushing the boundaries on design norms, while being part of a growing company. Join...
Hello, guys! General Logistics Carrier is seeking reliable Owner-operator truck drivers to join our team! Weve delivered a great amount of loads all over the US and looking forward to delivering many more. We don't work with rental or leased vehicles. Basic Requirements...
Overview: Consonus Pharmacy in Iowa is hiring a Pharmacist Intern to join our team. The hours for this position are very flexible after the initial orientation and training period. Consonus Pharmacy is a closed-door long-term care pharmacy specializing in the needs of...
...Title: Registered Dental Assistant (RDA) Status: Full-Time Location: San Francisco, CA Financial District Pay: $25 - $30 per hour Embarcadero Dentistry is seeking a Full-Time Registered Dental Assistant (RDA) to join our well-established multi-specialty...
...Efficiency Mechanical in Gilbert, Arizona is now accepting applications for HVAC Foreman and Installers. We are looking for qualified Foreman and Installers for IMMEDIATE openings for year-round work. We offer a great drug free work environment plus a full benefit package...