At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all.
Threat Detection & Response Consulting - Security Orchestration, Automation and Response (SOAR) – Staff
A Security Automation Engineer has the primary role of analyzing and implementing cyber security use cases to be automated. This entails configuring connections between applications either thru web services or other network technologies. Another expectation is to support and mitigate production issues on existing automated workflows.
KEY Capabilities:
Excellent teamwork skills, passion and drive to succeed and combat Cyber threats Work collaboratively with other team members to find creative and practical solutions to customers’ challenges and needs. Knowledge in design principles of SOAR solution such as Splunk SOAR, XSOAR or Resilient Creation of reusable and efficient Python-based Playbooks. Use SOAR platform to enable automation and orchestration on various tools and technologies by making use of existing or custom integration Partner with security operations teams, threat intelligence groups and incident responders and develop automated playbooks to cater for the Client's cyber security use cases. Prior experience in a security operations center and understanding of SIEM and other log management platforms will be an added advantage Having experience in Splunk content development will be an added advantage Quick to apprehend and adopt new applications. Knowledge in endpoint detection and response tools (Carbon Black, Tanium, Microsoft Defender ATP, etc.) and Network detection and response tool (Fidelis, Dark Trace, etc.) will be an added advantage
Qualification & experience:
Experienced developer with at least 2 years of experience using Python, REST, JSON, SOAP, ODBC, XML etc. Strong oral, written and listening skills are an essential component to effective consulting. Sufficient knowledge in business industry standard security incident response life cycle Good grasp in conceptualizing and/or implementing automation for business process workflows Must have honours degree in a technical field such as computer science, mathematics, engineering, or similar field Certifications in a core security related discipline will be an added advantage.
EY | Building a better working world
EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.
Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate.
Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today.