Cyber Incident Automation Engineer
Mertens - MalamTeam is recruiting a Cyber Incident Automation Engineer for a leading organization in the center
Job Description:
As part of the role, leading complex cyber investigations from end to end, performing Digital Forensics investigations at the endpoint and network level, analyzing attack techniques, persistence mechanisms, and attacker movement, and developing automated response processes to improve organizational capabilities. Working with Python, SOAR, DFIR, API, SIEM, XDR, Cortex XSOAR, QRadar, Microsoft Sentinel, Cortex XDR/XSIAM, Azure. The role includes developing Playbooks, integration between information security systems, improving Incident Response processes, working in collaboration with SOC and information security teams, and leading advanced automation processes.
- At least 4 years of experience in SOC, Incident Response, or DFIR roles
- At least 2 years of experience performing Digital Forensics and Incident Response
- At least 1 year of experience in developing SOAR Playbooks and automations
- Practical experience in development in Python, API integrations, and working with SIEM/XDR and SOAR platforms
- High-level English and Israeli citizenship – mandatory