1

Xsoar Engineer Jobs (NOW HIRING)

They are seeking an Automation Engineer to design and implement CI/CD and evidence automation ... Cortex XSOAR, Singularity Hyper automation, Phantom, or similar) • Proficiency in Python for ...

Lead SOAR Engineer

Austin, TX · On-site

$101.60K - $133.80K/yr

... XSOAR, Tines or Splunk Enterprise Security) coupled with advanced scripting skills in Python to ... programming and scripting languages common to security such as Python, Go, Bash, or Powershell ...

Senior Network Security Engineer

Baton Rouge, LA · On-site

$56.25 - $73.50/hr

Role: Senior Network Security Engineer Location : Baton Rouge, LA (On-site) Duration: Long Term ... XSoar and CorTex Management * External Dynamic List Management * Indicators of Compromise and ...

Sr. Torq/SOAR Engineer

Falls Church, VA · On-site

$111.50K - $153.10K/yr

The Sr. TORQ/SOAR Engineer serves as a technical leader and trusted authority for Security ... Stay current on competing SOAR technologies (e.g., Palo Alto Cortex XSOAR, Splunk SOAR, Siemplify ...

next page

Showing results 1-20

Xsoar Engineer information

What are the key skills and qualifications needed to thrive as an XSOAR Engineer, and why are they important?

To thrive as an XSOAR Engineer, you need expertise in cybersecurity, scripting (such as Python), and incident response, usually supported by a degree in computer science or a related field. Familiarity with Palo Alto Cortex XSOAR, SIEM platforms, and relevant certifications like Palo Alto Networks Certified Security Automation Engineer (PCSAE) is essential. Strong problem-solving skills, attention to detail, and effective communication set top performers apart in this role. These skills and qualifications are vital for efficiently automating security operations and improving an organization's incident response capabilities.

What are some common challenges XSOAR Engineers face when integrating new security tools into an existing SOAR platform?

XSOAR Engineers often encounter challenges when integrating new security tools due to differences in APIs, data formats, and authentication methods. Ensuring seamless communication between platforms requires strong troubleshooting skills and an in-depth understanding of both the SOAR platform and the third-party tool. Additionally, engineers must carefully map data fields and develop custom scripts when out-of-the-box integrations are not available. Collaboration with security analysts and vendors is essential to address compatibility issues and maintain effective automation workflows.

What is an XSOAR Engineer?

An XSOAR Engineer is a cybersecurity professional who specializes in deploying, configuring, and maintaining Palo Alto Networks Cortex XSOAR (Extended Security Orchestration, Automation, and Response) platforms. Their main responsibilities include automating security operations, integrating threat intelligence, and developing playbooks to streamline incident response. XSOAR Engineers work closely with security teams to improve efficiency and reduce response times to cyber threats. They require strong knowledge of security operations, scripting, and integrating various security tools and APIs. This role is crucial in modern security operations centers (SOCs) to enhance automation and coordination of security processes.

What is the difference between Xsoar Engineer vs Cortex XSOAR Specialist?

AspectXsoar EngineerCortex XSOAR Specialist
CertificationsRelevant security and cloud certifications, such as Palo Alto Networks certificationsSame certifications, often including Palo Alto Networks certifications
Work EnvironmentSecurity teams, cybersecurity firms, IT departmentsSecurity operations centers, cybersecurity consulting firms
Industry UsageUsed across industries for security automation and orchestrationPrimarily in cybersecurity and threat management sectors
Job FocusDesign, develop, and maintain Xsoar integrations and automationImplement, optimize, and manage Cortex XSOAR platforms and playbooks

Both roles focus on security automation with Cortex XSOAR, but Xsoar Engineers typically develop and maintain integrations, while Cortex XSOAR Specialists focus on platform deployment and management. The roles often overlap, especially in organizations using Cortex XSOAR for security operations.

More about Xsoar Engineer jobs
What cities are hiring for Xsoar Engineer jobs? Cities with the most Xsoar Engineer job openings:
What states have the most Xsoar Engineer jobs? States with the most job openings for Xsoar Engineer jobs include:
Infographic showing various Xsoar Engineer job openings in the United States as of May 2026, with employment types broken down into 75% Full Time, and 25% Contract. Highlights an 100% In-person job distribution.
Remote SOAR Developer/Engineer

Remote SOAR Developer/Engineer

WaveStrong, Inc.

Dallas, TX • Remote

Contractor

Posted 8 days ago


Job description

Exciting Remote SOAR Developer/Engineer contract opportunity.

Requirements

  • Automate SOC Security Incident Response processes providing the ability to analyze and resolve alerts from existing security tools leveraging a single stream management system
  • Develop and maintain custom applications for SOC workflows
  • Assist with process development and process improvement for SOC to include creation/modification of SOPs, Playbooks, and work instructions
  • Integrate SOAR platform with other security tools and APIs to execute automated workflows
  • Author, test, and maintain automation scripts/workflows within SOAR platform
  • Design, implement, and maintain efficient and reusable Python, Javascript, and JSON code
  • Review, debug, and resolve technical issues throughout all stages of SDLC
  • Coordinate with system administrators and engineers to provision service accounts and/or grant required permissions
  • Actively mentor and train team members of the SOC processes, governance, and frameworks

Education, Experience, and Skill Requirements

  • 2 plus years of work experience in one or more Cybersecurity focus areas such as SOC or Network Security
  • Bachelors degree in Computer Science, Information Systems, Engineering, or related field
  • Experience with SOAR platforms such as Swimlane, Phantom, XSOAR, etc...
  • Experience in security process mapping, security process analysis, security process improvement concepts, models, and best practices
  • Proficient in Python scripting
  • Working knowledge of REST APIs, JSON, HTML/CSS, Javascript, XML
  • Experience authoring SOC SOPs, playbooks, work instructions and/or other process documents
  • Experience with SIEMs, such as Splunk, XSIAM, QRadar, etc...
  • Experience with Visual Studio
  • Experience in DevSecOps environment