Skip to main content
Back to jobs

[8NW] Senior SecOps Incident Response Automation Engineer

External
Softwaremind logoSoftwaremind · San José, Costa Rica
Full-timeRemote1d ago
ExcelIncident ResponseLeanNegotiationPythonSIEM
Cover LetterConnect

Prepare for this interview

Elite

AI-generated questions, company research, and talking points tailored to this role


About the role

Software Mind is seeking qualified candidates located in Latam to fill the role of Sr. SecOps Incident Response Automation Engineer. In addition to a competitive salary rate and a positive work environment, committed to delivering high-quality technology solutions, we also offer: Flexible schedules An authentic work-life balance Payment in US Dollars Our client develops digital experiences and platforms that provide consumers with information about financial services and financial products, to help them make the best financial decisions for their unique needs. We are looking for a Senior SecOps Incident Response Automation Engineer to support the client's new, greenfield projects, and build an incident response automation program using Torq (or similar SOAR tools), manage escalations, build incident response workflows, write playbooks, and automate a wide range of manual processes. The role is part of a new team and program being built from the ground up. The role provides plenty of autonomy, and the client is looking for someone who is a high driver who is biased to take action and able to identify, assess, and tackle problems that are sometimes ambiguous. They are looking for a proactive individual with great communication skills who enjoys taking on ownership of tasks and challenges.

Responsibilities

  • Help build and maintain a new SOAR automated response platform using Torq, that supports AI-enabled response and escalations to be routed to on-call personnel at appropriate times.
  • Build automated SOC response tools, automation programs, incident response workflows, etc.
  • Perform various Security team tasks as needed.
  • Be available to support the on-call response team, occasionally on an "as needed" basis during off-hours to respond to potential security incidents.
  • Required Skills & Qualities:
  • Communication and Negotiation - excellent English fluency/proficiency is required, and candidates must be able to communicate effectively to technical and non-technical stakeholders.
  • SOC response experience (ideally with experience in a fintech industry or another highly regulated industry environment)
  • Experience working as part of a lean team in a fast-paced technical environment or organization.
  • Experience designing, implementing, and tuning SIEM and SOAR findings, including experience configuring advanced automations with cutting-edge tools like Torq, Tines, or similar.
  • Experience in data retrieval, data manipulation, and data reporting, including the following skills:
  • Experience working with APIs (at a minimum, having a strong understanding of APIs, API integrations, the ability to set up API connections, and using APIs to access/retrieve data).
  • Experience with scripting for automation
  • Experience in data management, manipulation, and presentation (using data in Google Sheets, Excel, and databases).
  • Control work areas:
  • 90% SOC/SIEM/SOAR automation development
  • 5% Join the on-call response team
  • 5% Other

Requirements

  • Experience using Python for scripting
  • Experience with AI/LLM response automation within the area of SOC response, or at minimum, a desire and willingness to learn
  • Experience with DLP design and tuning
  • Experience with Panther SIEM

Benefits

Flexible schedule

Your Match

How well this role fits your profile.

Company Intel

What employees say

Worked at Softwaremind? Share your experience

Interested in this role?

Apply on the company's website.

Cover LetterConnect