Chenega MIOS SBU · 15 hours ago
Senior SOAR Engineer
Chenega Military, Intelligence & Operations Support (MIOS) is seeking a Senior SOAR Engineer to enhance their capabilities in Security Orchestration, Automation, and Response. The role involves designing, implementing, and optimizing SOAR technologies while collaborating with various teams to improve incident response workflows and automation initiatives.
Defense & Space
Responsibilities
Serve as the primary architect and technical expert for SOAR technologies (e.g., Palo Alto XSOAR, Splunk SOAR, IBM SOAR, Microsoft Sentinel automation)
Lead design and development of new SOAR playbooks, integrations, automation, and workflows
Maintain platform health, performance, scalability, and high availability
Collaborate with cross-functional teams to translate business requirements into technical specifications
Implement best practices for automation governance, version control, and deployment processes
Mentor, support, and guide engineers through code reviews, technical discussions, and career development
Build and optimize automated solutions for incident triage, enrichment, containment, remediation, and reporting
Develop custom connectors and integrations via APIs, Python scripting, or vendor SDKs
Identify repetitive SOC tasks and convert them into automation opportunities
Ensure automations meet security, compliance, and operational requirements
Enhance IR workflows with automated threat intelligence, vulnerability data, and detection signals
Troubleshoot automation failures, workflow issues, and data ingestion problems
Support major incident response activities by leveraging SOAR-driven orchestrations
Qualification
Required
Bachelor's degree in Information Technology, Cyber Security, or other related fields
8+ years of professional experience in cybersecurity with at least 5+ years dedicated to SOAR engineering or automation, including 3+ years working in a classified and air-gapped environment and 2+ years in a technical leadership role
CompTIA Security+
At least one of the following certifications: PCAP, PCPP, PCCSE, GCIH, GSOC, GMON, GCIA, GCDA, GCFA, or GCTI required
At least one platform-specific SOAR certification: XSOAR, Splunk, Sentinel
DOD Top Secret clearance w/ SCI eligibility with the ability to obtain CI Polygraph
Strong hands-on experience with at least one major SOAR platform (e.g., XSOAR, Splunk SOAR, IBM SOAR, Swimlane, Tines, Sentinel Logic Apps)
Proficiency in Python for automation and integrations
Deep understanding of system architecture, data structures, and algorithms
Strong understanding of SOC operations, detection engineering, and IR processes
Experience working with REST APIs, webhooks, JSON, YAML, and automation frameworks
Advanced troubleshooting and problem-solving across complex enterprise networks
Knowledge of classified/unclassified government network requirements, NIST, DISA STIGs, and other cybersecurity frameworks
Effective collaboration with cross-functional teams, including security, systems engineering, and program management
Experience with multiple operating systems (Windows, Linux, and MacOS)
Deep understanding of common security technologies (EDR, SIEM, firewalls, TIPs, IAM, cloud security)
Strong understanding of vulnerability requirements, system STIGing, RMF, and ATO life cycle best practices
Familiarity with DevOps/GitOps tools (Git, CI/CD pipelines)
Familiarity with SIEM and SOAR solutions (XSOAR, Swimlane, Splunk, Cortex XDR, QRadar, etc.)
Experience with cloud platforms (AWS, Azure, GCP) and cloud automation
Knowledge of scripting beyond Python (PowerShell, Bash)
Benefits
Opportunities to help sharpen skills
Formal development programs
Well-being programs
Company
Chenega MIOS SBU
Chenega Corporation’s MIOS Strategic Business Unit (SBU) provides innovative solutions for federal, DOD, and commercial customers around the globe.