Develop and manage playbooks, workflows, and integrations within the Cortex XSOAR platform to accelerate incident resolution. * Cross-Functional Collaboration: Partner closely with security analysts ...
Develop and manage playbooks, workflows, and integrations within the Cortex XSOAR platform to accelerate incident resolution. * Cross-Functional Collaboration: Partner closely with security analysts ...
Contract W2 Only || Security Platform Engineer (SOC, Splunk, Cribl) || Remote
Raleigh, NC · On-site
$40 - $50/hr
Develop automation workflows using SOAR platforms such as Tines, Splunk SOAR, Cortex XSOAR, or similar automation tools. * Integrate security tools including Microsoft Defender, CrowdStrike, Palo ...
Quick apply
Contract W2 Only || Security Platform Engineer (SOC, Splunk, Cribl) || Remote
Raleigh, NC · On-site
$40 - $50/hr
Develop automation workflows using SOAR platforms such as Tines, Splunk SOAR, Cortex XSOAR, or similar automation tools. * Integrate security tools including Microsoft Defender, CrowdStrike, Palo ...
Develop and manage playbooks, workflows, and integrations within the Cortex XSOAR platform to accelerate incident resolution. * Cross-Functional Collaboration: Partner closely with security analysts ...
Quick apply
Develop and manage playbooks, workflows, and integrations within the Cortex XSOAR platform to accelerate incident resolution. * Cross-Functional Collaboration: Partner closely with security analysts ...
Senior Information Security Analyst - CSIRT
Mount Laurel Township, NJ · On-site
$110 - $170/hr
XSOAR #J-18808-Ljbffr
New
Senior Information Security Analyst - CSIRT
Mount Laurel Township, NJ · On-site
$110 - $170/hr
XSOAR #J-18808-Ljbffr
New
Certifications like SANS, CEH, GIAC, or Certified XSOAR Engineer highly preferred * Demonstrated hands-on experience in the administration, configuration, and integration of Security Operations tools ...
Certifications like SANS, CEH, GIAC, or Certified XSOAR Engineer highly preferred * Demonstrated hands-on experience in the administration, configuration, and integration of Security Operations tools ...
Architect, build, and maintain automated incident response playbooks and custom integrations within Cortex XSOAR, while designing and managing scalable security data pipelines utilizing OpenTelemetry ...
Architect, build, and maintain automated incident response playbooks and custom integrations within Cortex XSOAR, while designing and managing scalable security data pipelines utilizing OpenTelemetry ...
$70 - $90/hr
... XSOAR) * Documentation and reporting of security incidents #J-18808-Ljbffr
$70 - $90/hr
... XSOAR) * Documentation and reporting of security incidents #J-18808-Ljbffr
A4282826-- Security Architect -10794.
Columbia, SC · On-site
$60.25 - $77.75/hr
... XSOAR platform Knowledge of security monitoring use cases and incident response support.
Quick apply
A4282826-- Security Architect -10794.
Columbia, SC · On-site
$60.25 - $77.75/hr
... XSOAR platform Knowledge of security monitoring use cases and incident response support.
Sr. Manager, Technology - Security
San Francisco, CA · On-site
$170 - $202/hr
Lead the operation and continuous evolution of Google SecOps, CrowdStrike, Cortex XSOAR, MISP, Tanium, and supporting detection technologies. * Direct enterprise cyber incident response ...
Sr. Manager, Technology - Security
San Francisco, CA · On-site
$170 - $202/hr
Lead the operation and continuous evolution of Google SecOps, CrowdStrike, Cortex XSOAR, MISP, Tanium, and supporting detection technologies. * Direct enterprise cyber incident response ...
Sr. Manager, Technology - Security
San Francisco, CA · On-site
$130K - $176K/yr
Lead the operation and continuous evolution of Google SecOps, CrowdStrike, Cortex XSOAR, MISP, Tanium, and supporting detection technologies. * Direct enterprise cyber incident response from initial ...
Sr. Manager, Technology - Security
San Francisco, CA · On-site
$130K - $176K/yr
Lead the operation and continuous evolution of Google SecOps, CrowdStrike, Cortex XSOAR, MISP, Tanium, and supporting detection technologies. * Direct enterprise cyber incident response from initial ...
Firewalls (Palo Alto) Intrusion Detection and Prevention (Palo Alto Threat Prevention and Wildfire) Endpoint Protection Suite/XDR Security Orchestration Platform (XSOAR) Cloud Security services XDR ...
Firewalls (Palo Alto) Intrusion Detection and Prevention (Palo Alto Threat Prevention and Wildfire) Endpoint Protection Suite/XDR Security Orchestration Platform (XSOAR) Cloud Security services XDR ...
Firewalls (Palo Alto) Intrusion Detection and Prevention (Palo Alto Threat Prevention and Wildfire) Endpoint Protection Suite/XDR Security Orchestration Platform (XSOAR) Cloud Security services XDR ...
Firewalls (Palo Alto) Intrusion Detection and Prevention (Palo Alto Threat Prevention and Wildfire) Endpoint Protection Suite/XDR Security Orchestration Platform (XSOAR) Cloud Security services XDR ...
Security Orchestration Platform (XSOAR) * Cloud Security services * XDR SIEM monitoring and management * Vulnerability identification and mitigation/remediation The position also requires support in ...
Security Orchestration Platform (XSOAR) * Cloud Security services * XDR SIEM monitoring and management * Vulnerability identification and mitigation/remediation The position also requires support in ...
IS Systems Specialist $132,496 - $165,609
Irvine, CA · On-site
$80 - $100/hr
Security Orchestration Platform (XSOAR) * Cloud Security services * XDR SIEM monitoring and management * Vulnerability identification and mitigation/remediation The position also requires support in ...
IS Systems Specialist $132,496 - $165,609
Irvine, CA · On-site
$80 - $100/hr
Security Orchestration Platform (XSOAR) * Cloud Security services * XDR SIEM monitoring and management * Vulnerability identification and mitigation/remediation The position also requires support in ...
Sr. Manager, Technology - Security
San Francisco, CA · On-site
$130K - $176K/yr
Lead the operation and continuous evolution of Google SecOps, CrowdStrike, Cortex XSOAR, MISP, Tanium, and supporting detection technologies. * Direct enterprise cyber incident response from initial ...
Sr. Manager, Technology - Security
San Francisco, CA · On-site
$130K - $176K/yr
Lead the operation and continuous evolution of Google SecOps, CrowdStrike, Cortex XSOAR, MISP, Tanium, and supporting detection technologies. * Direct enterprise cyber incident response from initial ...
SOC Analyst
Saint Petersburg, FL · On-site
SOAR: Palo Alto XSOAR, Splunk SOAR * Forensics: FTK Imager, Autopsy, Wireshark, Procmon Preferred Certifications: * GIAC Certified Incident Handler (GCIH) * GIAC Certified Forensic Analyst (GCFA)
Quick apply
SOC Analyst
Saint Petersburg, FL · On-site
SOAR: Palo Alto XSOAR, Splunk SOAR * Forensics: FTK Imager, Autopsy, Wireshark, Procmon Preferred Certifications: * GIAC Certified Incident Handler (GCIH) * GIAC Certified Forensic Analyst (GCFA)
Sr. Manager, Technology - Security
San Francisco, CA · On-site
$130K - $176K/yr
Lead the operation and continuous evolution of Google SecOps, CrowdStrike, Cortex XSOAR, MISP, Tanium, and supporting detection technologies. * Direct enterprise cyber incident response from initial ...
Sr. Manager, Technology - Security
San Francisco, CA · On-site
$130K - $176K/yr
Lead the operation and continuous evolution of Google SecOps, CrowdStrike, Cortex XSOAR, MISP, Tanium, and supporting detection technologies. * Direct enterprise cyber incident response from initial ...
Firewalls (Palo Alto) Intrusion Detection and Prevention (Palo Alto Threat Prevention and Wildfire) Endpoint Protection Suite/XDR Security Orchestration Platform (XSOAR) Cloud Security services XDR ...
Firewalls (Palo Alto) Intrusion Detection and Prevention (Palo Alto Threat Prevention and Wildfire) Endpoint Protection Suite/XDR Security Orchestration Platform (XSOAR) Cloud Security services XDR ...
Firewalls (Palo Alto) Intrusion Detection and Prevention (Palo Alto Threat Prevention and Wildfire) Endpoint Protection Suite/XDR Security Orchestration Platform (XSOAR) Cloud Security services XDR ...
Firewalls (Palo Alto) Intrusion Detection and Prevention (Palo Alto Threat Prevention and Wildfire) Endpoint Protection Suite/XDR Security Orchestration Platform (XSOAR) Cloud Security services XDR ...
Palo Alto Subject Matter Expert
Springfield, VA · On-site
$61 - $80/hr
This role requires a unique blend of deep, hands-on expertise with traditional Gen 2/Gen 3 hardware platforms and modern, cloud-native solutions like Prisma Access (SASE) and Cortex XSOAR. You will ...
Palo Alto Subject Matter Expert
Springfield, VA · On-site
$61 - $80/hr
This role requires a unique blend of deep, hands-on expertise with traditional Gen 2/Gen 3 hardware platforms and modern, cloud-native solutions like Prisma Access (SASE) and Cortex XSOAR. You will ...
Xsoar information
See salary details
$5.29 - $12.74
0% of jobs
$12.74 - $20.19
0% of jobs
$20.19 - $27.64
0% of jobs
$27.64 - $35.10
0% of jobs
$35.10 - $42.55
0% of jobs
$42.55 - $50
0% of jobs
$53.93 is the 25th percentile. Wages below this are outliers.
$50 - $57.45
47% of jobs
$57.45 - $64.90
0% of jobs
The median wage is $67.57 / hr.
$64.90 - $72.36
7% of jobs
$79.05 is the 75th percentile. Wages above this are outliers.
$72.36 - $79.81
23% of jobs
$79.81 - $87.26
23% of jobs
$5
$68
$87
How much do xsoar jobs pay per hour?
What is an XSOAR?
A XSOAR job typically involves working with Palo Alto Networks Cortex XSOAR, a security orchestration, automation, and response (SOAR) platform. Professionals in this role are responsible for integrating security tools, automating incident response workflows, and managing security playbooks. They work closely with SOC teams to enhance threat detection and response time. Strong skills in scripting (Python), API integrations, and cybersecurity operations are essential for success in this role.
What are the key skills and qualifications needed to thrive in the XSOAR position, and why are they important?
To thrive as a Cortex XSOAR (Security Orchestration, Automation, and Response) Engineer, you need strong expertise in cybersecurity, incident response, automation scripting (such as Python), and knowledge of SOAR platforms. Familiarity with the Palo Alto Networks Cortex XSOAR platform, relevant security certifications (like CISSP or CEH), and experience with SIEM and ticketing systems are typically required. Attention to detail, problem-solving skills, and effective communication are key soft skills for this role. These skills ensure timely and accurate automation of security tasks, effective collaboration with IT and security teams, and improved response to cyber threats.
What are the typical daily responsibilities of a Cortex XSOAR engineer?
As a Cortex XSOAR Engineer, your day-to-day responsibilities include designing, building, and maintaining playbooks to automate security incident response tasks. You will collaborate closely with SOC analysts, threat intelligence teams, and IT staff to streamline workflows and improve threat containment. Regular duties also involve integrating various security tools and monitoring their performance to ensure seamless automation. Additionally, you will participate in troubleshooting, optimizing scripts, and recommending improvements to enhance overall security operations efficiency.
What are the most commonly searched types of Xsoar jobs?
The most popular types of Xsoar jobs are:
What states have the most Xsoar jobs?
States with the most job openings for Xsoar jobs include:
What job categories do people searching Xsoar jobs look for?
The top searched job categories for Xsoar jobs are:

Full-time
Medical, Dental, Vision, Retirement, PTO
Re-posted yesterday
AbbVie rating
8.7
Based on 103 frontline employees who took The Breakroom Quiz
14th of 86 rated pharmaceutical
Job description
About AbbVie
AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable impact on people's lives across several key therapeutic areas including immunology, oncology, and neuroscience - and products and services in our Allergan Aesthetics portfolio. For more information about AbbVie, please visit us at www.abbvie.com. Follow @abbvie on LinkedIn, Facebook, Instagram, X and YouTube.
The Cyber Security Engineering team is seeking a dynamic AI & Automation Engineer to build and support the critical technologies that enable our Information Security and Incident Response teams. Operating in a highly collaborative, hybrid Agile/Scrum environment, you will leverage Python and Golang to develop robust scripting, orchestrate tasks within Cortex XSOAR, and streamline complex security operations. Beyond traditional SOAR engineering, you will play a pivotal role in our AI enablement journey by exploring, securing, and implementing cutting-edge technologies like Retrieval-Augmented Generation (RAG), Agent-to-Agent communications, and the Model Context Protocol (MCP). We are looking for a strong software engineer with a passion for learning emerging AI concepts who can effectively partner with cross-functional teams to automate our defenses and accelerate incident response.
Responsibilities:
- Automation Script Development: Write, maintain, and optimize efficient scripts using Python and Golang to automate routine security and incident response tasks.
- SOAR Platform Orchestration: Develop and manage playbooks, workflows, and integrations within the Cortex XSOAR platform to accelerate incident resolution.
- Cross-Functional Collaboration: Partner closely with security analysts and cross-functional stakeholders to gather requirements and deliver impactful solutions.
- Agile Sprint Participation: Actively engage in daily stand-ups, sprint planning, and retrospectives to ensure continuous delivery within our Agile framework.
- AI Implementation Support: Assist in designing and implementing emerging AI technologies, including RAG architectures, to enhance security team capabilities.
- Agent Communication Design: Build and test reliable Agent-to-Agent communication workflows that support intelligent, automated decision-making processes.
- MCP Integration Support: Assist in the development, integration, and security of the Model Context Protocol (MCP) to standardize our AI interactions.
- API Integration Management: Connect disparate internal systems and third-party security tools using robust RESTful API integrations.
- Continuous Technology Learning: Dedicate time to researching and experimenting with the latest advancements in AI and automation to identify new operational efficiencies.
- Code Testing Review: Conduct peer code reviews and implement automated testing to maintain a high-quality, secure, and reliable codebase.
- Technical Documentation Creation: Create and maintain comprehensive documentation for developed scripts, playbooks, and AI integrations to ensure team-wide knowledge sharing.
Required:
- Bachelor's degree in Computer Science, Software Engineering, or a closely related field plus 5 years' experience; Or Master's Degree plus 4 years' experience.
- Respective years of related work experience in software engineering, automation, or integration development.
- Strong proficiency in programming and scripting languages, specifically Python and Golang.
- Proven experience developing and consuming RESTful APIs for complex system integrations.
- Demonstrated capability and enthusiastic interest in learning new technologies, specifically in the AI space (e.g., LLMs, RAG, MCP).
- Experience working effectively within an Agile/Scrum development methodology.
- Excellent cross-functional collaboration and communication skills, with the ability to translate operational needs into technical solutions.
- Solid understanding of software development lifecycles, version control (e.g., Git), and code testing principles.
- Ability to work successfully in a hybrid work environment.
Preferred:
- Hands-on experience with Cortex XSOAR or similar SOAR platforms (e.g., Splunk SOAR, Tines).
- Prior exposure to or foundational knowledge of AI frameworks, RAG implementations, or Agent-to-Agent communications.
- Basic understanding of cybersecurity principles or incident response workflows (prior security experience is not required, but an interest is a plus).
- Familiarity with CI/CD pipelines and infrastructure-as-code deployments.
- Experience with containerization technologies like Docker or Kubernetes.
Applicable only to applicants applying to a position in any location with pay disclosure requirements under state or local law:
- The compensation range described below is the range of possible base pay compensation that the Company believes in good faith it will pay for this role at the time of this posting based on the job grade for this position. Individual compensation paid within this range will depend on many factors including geographic location, and we may ultimately pay more or less than the posted range. This range may be modified in the future.
- We offer a comprehensive package of benefits including paid time off (vacation, holidays, sick), medical/dental/vision insurance and 401(k) to eligible employees.
- This job is eligible to participate in our short-term incentive programs.
Note: No amount of pay is considered to be wages or compensation until such amount is earned, vested, and determinable. The amount and availability of any bonus, commission, incentive, benefits, or any other form of compensation and benefits that are allocable to a particular employee remains in the Company's sole and absolute discretion unless and until paid and may be modified at the Company's sole and absolute discretion, consistent with applicable law.
AbbVie is an equal opportunity employer and is committed to operating with integrity, driving innovation, transforming lives and serving our community. Equal Opportunity Employer/Veterans/Disabled.
US & Puerto Rico only - to learn more, visit https://www.abbvie.com/join-us/equal-employment-opportunity-employer.html
US & Puerto Rico applicants seeking a reasonable accommodation, click here to learn more:
https://www.abbvie.com/join-us/reasonable-accommodations.html
About AbbVie
Sourced by ZipRecruiter
AbbVie's mission is to discover and deliver innovative medicines that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable impact on people's lives across several key therapeutic areas: immunology, oncology, neuroscience, eye care, virology, women's health, and gastroenterology, in addition to products and services across its Allergan Aesthetics portfolio. For more information about AbbVie, please visit us at www.abbvie.com. Follow @abbvie on Twitter, Facebook, Instagram, YouTube, and LinkedIn.
Industry
Scientific research and development services
Company size
10,000+ Employees
Headquarters location
North Chicago, IL, US
Year founded
2013