Splunk SOAR Engineer
Tampa, FL · On-site
The Splunk SOAR Engineer will lead the full lifecycle of platform architecture, integration, content development, and performance optimization while collaborating closely with SOC analysts, threat ...
Tampa, FL · On-site
The Splunk SOAR Engineer will lead the full lifecycle of platform architecture, integration, content development, and performance optimization while collaborating closely with SOC analysts, threat ...
Tampa, FL · On-site
The Splunk SOAR Engineer will lead the full lifecycle of platform architecture, integration, content development, and performance optimization while collaborating closely with SOC analysts, threat ...
Tampa, FL · On-site
SIEM/SOAR Security Engineer Visa: USC, GC, GC-EAD, H4-EAD Interview: Video Mode: Onsite Work Location: Jersey City, NJ / Tampa, FL / Tempe, AZ Work location : Must work onsite for 4 days and 1 day ...
Quick apply
Tampa, FL · On-site
SIEM/SOAR Security Engineer Visa: USC, GC, GC-EAD, H4-EAD Interview: Video Mode: Onsite Work Location: Jersey City, NJ / Tampa, FL / Tempe, AZ Work location : Must work onsite for 4 days and 1 day ...
The Splunk SOAR Engineer will lead the full lifecycle of platform architecture, integration, content development, and performance optimization while collaborating closely with SOC analysts, threat ...
The Splunk SOAR Engineer will lead the full lifecycle of platform architecture, integration, content development, and performance optimization while collaborating closely with SOC analysts, threat ...
Tampa, FL · On-site
$85K/yr
Senior Cybersecurity Engineer - SOAR & UEBA Job Category: Information Technology Time Type: Full time Minimum Clearance Required to Start: TS/SCI Employee Type: Regular Percentage of Travel Required:
Tampa, FL · On-site
$85K/yr
Senior Cybersecurity Engineer - SOAR & UEBA Job Category: Information Technology Time Type: Full time Minimum Clearance Required to Start: TS/SCI Employee Type: Regular Percentage of Travel Required:
Senior Cybersecurity Engineer - SOAR & UEBA Job Category: Information Technology Time Type: Full time Minimum Clearance Required to Start: TS/SCI Employee Type: Regular Percentage of Travel Required:
Senior Cybersecurity Engineer - SOAR & UEBA Job Category: Information Technology Time Type: Full time Minimum Clearance Required to Start: TS/SCI Employee Type: Regular Percentage of Travel Required:
The role involves engineering SIEM platforms, ensuring log visibility, and supporting security ... Google SOAR+ is highly preferred • Familiarity with Python and/or PowerShell • Experience ...
The role involves engineering SIEM platforms, ensuring log visibility, and supporting security ... Google SOAR+ is highly preferred • Familiarity with Python and/or PowerShell • Experience ...
Sarasota, FL · On-site
$120 - $160/hr
From detection rules and log parsers to SOAR playbooks, dashboards, and custom API integrations ... Collaborate with Deployment Engineers to ensure content is ready for new customer go-lives
Sarasota, FL · On-site
$120 - $160/hr
From detection rules and log parsers to SOAR playbooks, dashboards, and custom API integrations ... Collaborate with Deployment Engineers to ensure content is ready for new customer go-lives
Miami, FL · On-site
Security Engineer About Millennium Millennium is a global, diversified alternative investment firm ... security, SOAR, Breach Attack Simulation and network security * Monitor, manage, and analyze ...
Miami, FL · On-site
Security Engineer About Millennium Millennium is a global, diversified alternative investment firm ... security, SOAR, Breach Attack Simulation and network security * Monitor, manage, and analyze ...
This position provides engineering and operational support for Microsoft's enterprise security ... Experience supporting SIEM, SOAR, UEBA, or security monitoring operations. * Working knowledge of ...
This position provides engineering and operational support for Microsoft's enterprise security ... Experience supporting SIEM, SOAR, UEBA, or security monitoring operations. * Working knowledge of ...
This position provides engineering and operational support for Microsoft's enterprise security ... Experience supporting SIEM, SOAR, UEBA, or security monitoring operations. * Working knowledge of ...
This position provides engineering and operational support for Microsoft's enterprise security ... Experience supporting SIEM, SOAR, UEBA, or security monitoring operations. * Working knowledge of ...
Tampa, FL · Hybrid
$108K - $148K/yr
Knowledge and experience with SIEM/SOAR management solutions. * Knowledge of networking ... Knowledge and experience with programming language to automate tasks (e.g. Python or PowerShell ...
Tampa, FL · Hybrid
$108K - $148K/yr
Knowledge and experience with SIEM/SOAR management solutions. * Knowledge of networking ... Knowledge and experience with programming language to automate tasks (e.g. Python or PowerShell ...
Collaborating with security operations center analysts and threat detection engineers to prioritize ... Translating security operations processes into SOAR playbooks and custom integrations to support ...
Collaborating with security operations center analysts and threat detection engineers to prioritize ... Translating security operations processes into SOAR playbooks and custom integrations to support ...
Collaborating with security operations center analysts and threat detection engineers to prioritize ... Translating security operations processes into SOAR playbooks and custom integrations to support ...
Collaborating with security operations center analysts and threat detection engineers to prioritize ... Translating security operations processes into SOAR playbooks and custom integrations to support ...
Collaborating with security operations center analysts and threat detection engineers to prioritize ... Translating security operations processes into SOAR playbooks and custom integrations to support ...
Collaborating with security operations center analysts and threat detection engineers to prioritize ... Translating security operations processes into SOAR playbooks and custom integrations to support ...
Collaborating with security operations center analysts and threat detection engineers to prioritize ... Translating security operations processes into SOAR playbooks and custom integrations to support ...
Collaborating with security operations center analysts and threat detection engineers to prioritize ... Translating security operations processes into SOAR playbooks and custom integrations to support ...
Develop, document, and automate cloud incident response procedures using SOAR platforms such as Splunk SOAR. * Work with infrastructure and DevOps teams to improve visibility and security posture ...
Develop, document, and automate cloud incident response procedures using SOAR platforms such as Splunk SOAR. * Work with infrastructure and DevOps teams to improve visibility and security posture ...
Develop, document, and automate cloud incident response procedures using SOAR platforms such as Splunk SOAR. * Work with infrastructure and DevOps teams to improve visibility and security posture ...
Develop, document, and automate cloud incident response procedures using SOAR platforms such as Splunk SOAR. * Work with infrastructure and DevOps teams to improve visibility and security posture ...
Sarasota, FL · On-site
$180 - $260/hr
All responsibilities of a Security Solution Engineer -- SIEM/SOAR, at greater scale and complexity * Define the content architecture strategy across platforms -- detection frameworks, parser ...
Sarasota, FL · On-site
$180 - $260/hr
All responsibilities of a Security Solution Engineer -- SIEM/SOAR, at greater scale and complexity * Define the content architecture strategy across platforms -- detection frameworks, parser ...
Leading and mentoring junior team members in SOC engineering, including SIEM, SOAR, and process development A successful candidate would possess these skills: * Ability to work independently and ...
Leading and mentoring junior team members in SOC engineering, including SIEM, SOAR, and process development A successful candidate would possess these skills: * Ability to work independently and ...
Leading and mentoring junior team members in SOC engineering, including SIEM, SOAR, and process development A successful candidate would possess these skills: * Ability to work independently and ...
Leading and mentoring junior team members in SOC engineering, including SIEM, SOAR, and process development A successful candidate would possess these skills: * Ability to work independently and ...
$28.4K - $38.8K
5% of jobs
$38.8K - $49.3K
7% of jobs
$49.3K - $59.7K
9% of jobs
$61.9K is the 25th percentile. Wages below this are outliers.
$59.7K - $70.1K
14% of jobs
The median wage is $79.5K / yr.
$70.1K - $80.5K
16% of jobs
$80.5K - $91K
13% of jobs
$91K - $101.4K
6% of jobs
$106.9K is the 75th percentile. Wages above this are outliers.
$101.4K - $111.8K
8% of jobs
$111.8K - $122.3K
8% of jobs
$122.3K - $132.7K
7% of jobs
$132.7K - $143.1K
5% of jobs
$28.4K
$86.6K
$143.1K
A SOAR (Security Orchestration, Automation, and Response) Engineer is responsible for designing, implementing, and managing security automation solutions within an organization's cybersecurity operations. They work with SOAR platforms to automate repetitive tasks, integrate security tools, and streamline incident response workflows. Their role involves scripting, playbook development, and optimizing security operations to improve efficiency and threat mitigation. SOAR Engineers typically collaborate with SOC teams, threat analysts, and other cybersecurity professionals to enhance an organization's defense mechanisms.
To thrive as a SOAR Engineer, you need strong knowledge of cybersecurity, incident response processes, and experience with Security Orchestration, Automation, and Response (SOAR) platforms. Familiarity with tools like Splunk Phantom, Palo Alto Cortex XSOAR, and relevant certifications such as CISSP or CompTIA Security+ are highly valued. Analytical thinking, attention to detail, and effective communication are important soft skills for collaborating across IT and security teams. These skills are crucial for automating threat detection and response, improving security operations efficiency, and minimizing organizational risk.
SOAR Engineers often face the challenge of integrating diverse security tools and processes to create seamless automated workflows. Ensuring that playbooks accurately address real-world threats while minimizing false positives requires careful tuning and ongoing collaboration with security analysts. Additionally, keeping up with evolving cyber threats and updating automation scripts to handle new scenarios is a regular part of the role. Working as a SOAR Engineer typically involves close teamwork with SOC members and IT staff to ensure incident response efforts are aligned and effective, making adaptability and strong problem-solving skills vital.
The most popular types of Soar Engineer jobs in Florida are:
For Soar Engineer jobs in Florida, the most frequently searched job titles are:
The top searched job categories for Soar Engineer jobs in Florida are:

Full-time
Medical, Dental, Vision, Retirement, PTO
Re-posted yesterday
About Us
Venatore is a woman-owned small business headquartered in Tampa, Florida, providing mission-driven technology and professional services to federal defense and civilian agencies. We deliver expertise in information technology, engineering, logistics, and program support to help our clients achieve operational excellence and mission success.
About the Job
Venatore is seeking a Splunk SOAR Engineer to support U.S. Central Command (USCENTCOM) operations by designing, implementing, and optimizing enterprise-level Security Orchestration, Automation, and Response (SOAR) capabilities. This role is responsible for transforming manual incident response processes into scalable, automated workflows that accelerate threat detection, containment, and remediation. The Splunk SOAR Engineer will lead the full lifecycle of platform architecture, integration, content development, and performance optimization while collaborating closely with SOC analysts, threat hunters, and incident response teams. An active TS/SCI clearance is required.
Responsibilities
Platform Architecture & Engineering
Design, deploy, document, and maintain distributed Splunk SOAR (Phantom) platform architecture to ensure high availability, scalability, and performance.
Support system upgrades, patching, and performance tuning across the SOAR infrastructure.
Provide advanced troubleshooting and resolution of platform issues and playbook execution errors.
Adhere to security best practices and compliance requirements within the operational environment.
Playbook Development & Automation
Develop, customize, and maintain complex SOAR playbooks using Python and the Phantom Playbook Editor for automated enrichment, triage, containment, and remediation of security incidents (e.g., phishing, malware, unauthorized access).
Translate manual security procedures into robust, automated workflows aligned with SecOps best practices.
Establish and track automation metrics, including utilization rates, automation coverage, and Mean Time to Respond (MTTR) improvements.
Integration & Interoperability
Integrate Splunk SOAR with Splunk Enterprise Security (ES) and other core security technologies, including EDR/XDR platforms, firewalls, vulnerability scanners, threat intelligence platforms, and ticketing systems.
Develop custom apps and integrations to connect proprietary or unsupported security tools using RESTful APIs and custom connectors.
Manage and optimize data flow between Splunk ES and Splunk SOAR to ensure effective event-triggered automation actions.
Collaboration & Documentation
Partner with SOC analysts, threat hunters, and incident response teams to gather requirements and document workflows.
Develop and maintain detailed technical documentation for platform configurations, integrations, and automation content.
Provide training and mentorship to SOC staff on SOAR usage, content development, and automation best practices.
Evaluate and integrate emerging security technologies and threat intelligence feeds into the automation ecosystem.
Required Qualifications
Active TS/SCI security clearance.
U.S. citizenship.
Applicable DoD 8140 or DoD 8570 certification.
8+ years of related experience in security engineering or security operations.
Hands-on expertise with Splunk SOAR (Phantom) administration, configuration, and maintenance in a distributed enterprise environment.
Advanced proficiency in Python scripting for playbook development, custom apps, and integrations.
Proven experience integrating SOAR platforms with Splunk Enterprise Security (ES), SIEMs, EDR/XDR tools, and other security technologies.
Strong understanding of security operations principles, incident response lifecycles, and threat detection methodologies.
Experience working with RESTful APIs and developing tool connectors.
Proficiency in data manipulation, log parsing, and understanding of the Common Information Model (CIM) in a security context.
Strong verbal and written communication skills with the ability to convey complex automation concepts to technical and non-technical audiences.
Preferred Qualifications
Familiarity with cloud security logging, containerization (Docker/Kubernetes), and CI/CD pipelines for playbook deployment.
Knowledge of the MITRE ATT&CK framework and its application in automated detection and response use cases.
Experience using Git or other version control systems for SOAR content management.
Familiarity with network protocols, Windows and Linux operating systems, and enterprise security architecture components.
Splunk Enterprise Security Certified Admin or Architect certification.
Splunk SOAR (Phantom) Certified Content Developer or Administrator certification.
Experience with other SOAR platforms (e.g., Palo Alto Cortex XSOAR, IBM Resilient).
Experience supporting USCENTCOM or multi-domain defense security operations environments.
ITIL 4 Foundation certification.
Benefits
Venatore offers a competitive benefits package designed to support the well-being of our employees, including:
Paid Time Off (PTO)
10 Federal Holidays
401(k) with company matching
Medical, dental, and vision insurance
Paid parental leave
Paid military leave
Venatore is an equal opportunity employer and considers qualified applicants without regard to disability or protected veteran status.
Sourced by ZipRecruiter
It services
11 - 50 Employees
Tampa, FL, US
2007