Cyber Incident Automation Engineer

Mertens – Malam TeamYehuddrushimpublished 09/05/2026
Must-have:PythonAzure
Machine translation — original language: Hebrew.Show original

Mertens - MalamTeam is recruiting a Cyber Incident Automation Engineer for a leading organization in the center

Job Description:

As part of the role, leading complex cyber investigations from end to end, performing Digital Forensics investigations at the endpoint and network level, analyzing attack techniques, persistence mechanisms, and attacker movement, and developing automated response processes to improve organizational capabilities. Working with Python, SOAR, DFIR, API, SIEM, XDR, Cortex XSOAR, QRadar, Microsoft Sentinel, Cortex XDR/XSIAM, Azure. The role includes developing Playbooks, integration between information security systems, improving Incident Response processes, working in collaboration with SOC and information security teams, and leading advanced automation processes.

  • At least 4 years of experience in SOC, Incident Response, or DFIR roles
  • At least 2 years of experience performing Digital Forensics and Incident Response
  • At least 1 year of experience in developing SOAR Playbooks and automations
  • Practical experience in development in Python, API integrations, and working with SIEM/XDR and SOAR platforms
  • High-level English and Israeli citizenship – mandatory