SIEMSOAREDRemail protectionsandboxesticketing systems
Full Job Posting
Engineering the Barracuda XDR SOAR solution.
Sprint tasks within the SOC Agile Sprint cycle to continuously improve overall SOC maturity level and R&D efforts.
Develop and maintain documentation on new processes, tools, technologies, and on-going R&D efforts.
Integrating various APIs into the SOC tech stack.
Proactive threat hunting amongst partners' networks to identify malicious activity.
Attack and Defend activities to test current detections and develop new detections.
Ensuring MITRE ATT&CK Framework coverage is obtained by XDR detections.
Conduct threat intelligence research.
Train new and current cyber security analysts on existing or new technologies, new or existing processes.
Will be on a rotating 24x7x365 on-call schedule to investigate, triage, and help customers remediate active breaches/incidents.
Designing and implementing AI-driven security automations, including Agentic AI workflows to autonomously investigate, triage, and respond to alerts.
Building and maintaining Retrieval-Augmented Generation (RAG) pipelines to enhance threat intelligence enrichment, alert context, and analyst decision-making.
Developing and integrating AI agents with SOC tooling (SIEM, SOAR, EDR) to reduce manual effort and improve response times.
Leveraging LLMs and AI frameworks to automate repetitive SOC tasks such as alert analysis, ticket generation, and incident summarization.
Integrating and managing MCP servers and agent orchestration frameworks to enable scalable, modular AI-driven workflows.
Experimenting with and operationalizing machine learning models for anomaly detection, alert prioritization, and signal-to-noise improvement.
Driving R&D initiatives focused on applying Generative AI in cybersecurity, including detection engineering, threat hunting, and purple team exercises.
Building internal tools and prototypes that combine security data pipelines with AI capabilities to improve SOC efficiency and accuracy.
5 years prior cybersecurity or SOC experience.
Bachelor's degree or Masters Degree in Cyber Security or Information Security or related field experience.
CIH, CEH, CompTIA Network+ or Security+, or other relevant certification.
Apply for this job in 1 click
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career