Swimlane/SOAR Engineer with Security Clearance

3 weeks ago


Washing, United States Base One Technologies Full time
Our DC metro based client is looking an Swimlane/SOAR Engineer. If you are qualified for this opening. Please forward a copy of your updated resume in word format to . Preferred Qualification
CASP, GCIH, GCWN, GISF, GISP, GSSP, GICSP, GSSP, SEI, CISSP, CSSLP, SSCP, CCNP, CCNP Security, CCIE Security, ECSP, MCSE, RHCA, RHCE, VCP, VCAP, VCIX, VCDX Primary Responsibilities
Our DC Metro based client has an immediate need for a Security Orchestration Automation and Response (SOAR) Engineer to join our DHS Enterprise Security Operations Center (ESOC) Team. The ideal SOAR Engineer will work in a cross-functional capacity to identify, propose, design, develop, implement, integrate, and maintain security. The SOAR Engineer must be a cybersecurity and technical expert with the ability to clearly identify, capture, articulate, design, implement, and maintain security operations uses cases, including developing integration code to provide interoperability between disparate IT and security solutions and infrastructure components. The SOAR Engineer must have a solid background in cybersecurity technologies, including deploying enterprise platforms, conducting demonstrations, creating product documentation, training security analysts, and sustaining enterprise technology services. Additionally, the engineer must have a solid understanding of security operations, incident response, threat management, and enterprise IT and security engineering. The SOAR Engineers provide expert support for the analysis, development and integration of the Swimlane SOAR Platform along with providing technical expertise to operational users. Works on complex technical problems and provides innovative solutions. Develops advanced technological ideas and guides their development into a final product. o Design, implement, and maintain Swimlane infrastructure Develop and maintain custom Swimlane application for ESOC IR workflow (e.g. create custom application to automate intel gathering)
o Develop and maintain Swimlane Case Management system to support an Enterprise ticketing system.
o Serve as primary point of contact for Swimlane problem identification and resolution
o Create and maintain user, administrator, engineering, and compliance/accreditation documentation
o Manage and implement integration between components, ESOC, and security tools (e.g. send/receive data from component Swimlane, establish API connection with ESOC and OneNet network security stack, etc)
o Work with external teams to establish service accounts and/or API access
o Quickly grasp complex technical concepts and make them easily understandable in writing and network diagrams/illustrations
o Ensure SOAR capabilities are operational and developed to anticipate infrastructure growth. Basic Qualification
Experience with SOAR platforms such as Swimlane, Phantom, Demisto, etc
o 2 years experience in SOAR Solution Engineering
o Expert proficiency in Python scripting
o Working knowledge of REST APIs, JSON, HTML/CSS, Javascript, XML
o Experience deploying in high availability environments using Kubernetes
o Experience managing and maintaining MongoDB
o General networking knowledge to include operation of routers, firewalls, DNS, DHCP, subnetting, VPNs and Web Proxies
o Department of Homeland Security ESOC employees are required to obtain an Entry on Duty (EOD) clearance to support this program. Required Education/Experience
Bachelor’s degree in Computer Science, Engineering, or related field, 12+ years of experience in system administration, database administration, network engineering, software engineering, or software development, with a concentration in Cybersecurity. Preferred Qualification
o Swimlane Certified SOAR Administrator (SCSA)
o Swimlane Certified SOAR Developer (SCSD)
o Proven experience deploying and supporting Swimlane
o Experience in security process mapping, security process analysis, security process improvement concepts, models, and best practices