Enter a job title or keyword

Senior SIEM & SOAR Engineer, EU based

Whirr Crew


Job Location:

Prague - Czech Republic

Monthly Salary: Not provided by the employer
Posted: 9 October 2026 (20 hours ago)
Application Deadline: 6 January 2027
Vacancies: 1 Vacancy

Job Summary

We are looking for an experienced Senior SIEM & SOAR Engineer to support the Cyber Defense Center (CDC) of a large international organization.

The role focuses on developing deploying and maintaining security automation solutions within an enterprise cybersecurity environment with a strong emphasis on Palo Alto Cortex XSIAM and XSOAR.

Details:
Start: ASAP / October 2026
Duration: Until the end of 2026 with expected extension into 2027
Allocation: Full-time
Location: Remote
Language: English

Responsibilities:

  • Develop implement and maintain security automation playbooks using Palo Alto Cortex XSIAM / XSOAR.
  • Automate and optimize security incident detection investigation and response workflows.
  • Collaborate with internal security teams to gather requirements and implement automation solutions.
  • Support the integration and operation of SIEM/SOAR technologies within the existing security infrastructure.
  • Troubleshoot security automation issues and assist with root cause analysis.
  • Maintain and improve existing playbooks and automation workflows.
  • Perform approved operational changes in accordance with established security procedures.
  • Ensure the stability and reliability of security automation services.

Requirements:

  • Strong hands-on experience with Palo Alto Cortex XSIAM / XDR.
  • Practical experience with Palo Alto Cortex XSOAR including security automation and playbook development.
  • Good understanding of SIEM/SOAR technologies and security operations.
  • Experience working with security incident workflows and automation.
  • Strong analytical and troubleshooting skills.
  • Good English communication skills.

Nice to Have:

  • Experience in Cloud Information Security.
  • Experience with Cyber Threat Intelligence (CTI) platforms.
  • Python scripting skills particularly for security automation.
  • Understanding of cloud environments such as Microsoft Azure and GCP.
  • Knowledge of the MITRE ATT&CK framework.