TC-CS-CDR-Endpoint DLP Analyst-Senior
Job Summary
At EY were all in to shape your future with confidence.
Well help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go.
Join EY and help to build a better working world.
Title: Security Automation Developer
Summary:
Partners with various cross-functional teams to design build and maintain automated security playbooks to streamline security incident and task workflows. Integrate with various security tools and systems to enable efficient detection analysis and remediation of threats. Provides technical leadership expertise and mentorship for the SOAR team.
Responsibilities
- Design implement and maintain SOAR playbooks to automate routine security tasks and incident response processes.
- Develop and maintain integrations between the SOAR platform and various security tools such as SIEM EDR DLP and threat intelligence feeds.
- Collaborate with CSOC teams to identify automation opportunities and improve response times.
- Establish and enforce best practices for playbook design code quality and documentation.
- Work with cross-functional teams to gather requirements design solutions and ensure alignment with business objectives.
- Develop metrics to measure the effectiveness of automated workflows and identify areas of improvement.
- Provide training and documentation to CSOC analysts and other stakeholders on SOAR platform capabilities and playbook usage.
- Provides advanced level technical support to maintain our SOAR platform.
Qualifications:
- Undergraduate degree in Computer Science or Information Technology-related field or equivalent combination of training and experience.
- Proficiency in scripting and programming languages (e.g. Python JavaScript PowerShell)
- Experience with REST APIs webhooks JSON and/or web application development.
- Familiarity with development workflows and patterns
- Strong problem-solving and analytical skills
- Excellent communication and collaboration abilities.
- Strong understanding of cybersecurity concepts
- Experience with SOAR platforms. e.g. Tines
- Experience in security automation incident response or related fields.
- Experience with cloud environments (AWS Azure GCP)
- Relevant cybersecurity certifications
EY Building a better working world
EY is building a better working world by creating new value for clients people society and the planet while building trust in capital markets.
Enabled by data AI and advanced technology EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.
EY teams work across a full spectrum of services in assurance consulting tax strategy and transactions. Fueled by sector insights a globally connected multi-disciplinary network and diverse ecosystem partners EY teams can provide services in more than 150 countries and territories.
Required Experience:
IC
About Company
EY denkstatt е символ на десетилетия опит в прогресивните прозрения за устойчивостта и доверителните отношения с клиентите.