72 xsoar jobs at 44 companies in United States

2w
Save
Mark Applied
Hide
Principal Engineer Software (XSOAR)
Santa Clara, California, United States
$147k-$238k/yr OnsiteFull Time
Palo Alto Networks
Palo Alto NetworksNASDAQ: PANW: Provides enterprise-grade network, cloud, and endpoint security software.
8+ YOE8+ years software engineering experience, MS/BS in Computer Science or equivalent, 5+ years Go and Python, 7+ years production troubleshooting, cloud (GCP/AWS/Azure), Kubernetes/Docker, Linux proficiency, distributed systems experience.
Go, Python, GCP, AWS, Azure, Kubernetes, Docker, Linux, RHEL, CentOS, Ubuntu, SQL, NoSQL
2w
Save
Mark Applied
Hide
Engineer
Cleveland, Ohio, United States
$100k-$120k/yr OnsiteFull Time
Tata Consultancy Services
Tata Consultancy ServicesNational Stock Exchange of India: TCS: Global provider of IT services, consulting, and business solutions.
8+ YOEExperience refactoring and migrating XSOAR content to Cortex XSIAM, strong Python coding skills, bachelor in computer science, 8+ years experience.
Python, Cortex XSIAM, XSOAR
1w
Save
Mark Applied
Hide
Senior Associate, Cyber Operations
Montvale, New Jersey, United States
$90k-$168k/yr OnsiteFull Time
KPMG
KPMG: Global professional services network providing audit, tax, and advisory.
3+ YOE3+ years in cybersecurity operations with XSOAR playbook implementation, incident response, scripting/automation experience; bachelor's preferred; strong communication and collaboration skills.
XSOAR, ServiceNow, Electronic Medical Records (EMR)
1mo
Save
Mark Applied
Hide
Senior Insider Risk & AI Security Analyst/ Engineer IV
Arizona or Tempe or Missouri or St. Louis or United States
HybridFull Time
Edward Jones
Edward Jones: Offers investment management and financial planning through local branches.
5+ YOE5+ years in information systems security/IT with security controls; experience monitoring AI/ML platforms and telemetry; familiarity with UEBA, DLP, SIEM/SOAR; ability to investigate alerts, perform digital forensics, and translate AI risks for stakeholders.
Gurucul, XSOAR, Microsoft Purview, Proofpoint, Zscaler, SIEM, SOAR, UEBA, DLP
3w
Save
Mark Applied
Hide
SeniorAdministrator - Security Analysis, SIEM (129502)
United States
OnsiteFull Time
HCLTech
HCLTechNational Stock Exchange of India: HCLTECH: Global provider of information technology services and software consulting.
12+ YOE5+ Mgmt12+ years in security operations with 5+ years leading SOC teams; hands‑on SIEM administration and detection engineering (Splunk, Sentinel, QRadar, LogRhythm); incident response, EDR/XDR, SOAR, vulnerability management, and cloud/identity telemetry experience.
Splunk, Microsoft Sentinel, LogRhythm, QRadar, Microsoft Defender for Endpoint, CrowdStrike, SentinelOne, Splunk SOAR, Cortex XSOAR, Microsoft Logic Apps, Qualys, Tenable, Rapid7, Palo Alto, Fortinet, Cisco, F5, Zscaler, MITRE ATT&CK, NIST 800-61, NIST CSF, ISO 27001
2w
Save
Mark Applied
Hide
IT Technical Project Manager- Cyber Security
Georgia, United States
OnsiteFull Time
Mphasis
MphasisNational Stock Exchange of India: MPHASIS: Provides information technology and business process services.
10+ YOE10+ years IT project management with ~8 years in cybersecurity; experience with firewall/network security projects, $500K+ budgets, leading cross-functional teams, and knowledge of regulatory frameworks; bachelor's required; preferred certifications listed.
Palo Alto, Cisco ASA, Cisco Firepower, Fortinet, Check Point, NIST CSF, SANS Incident Response, MITRE ATT&CK, Splunk, Sentinel, Phantom, XSOAR, MISP, ThreatConnect, ServiceNow, Jira, MS Project, Smartsheet, AWS, Azure, GCP, SD-WAN, NAC
2mo
Save
Mark Applied
Hide
Senior Associate, National Security-Cyber Security Governance
Washington, District of Columbia, United States
$80k-$110k/yr OnsiteFull Time
Alvarez & Marsal
Alvarez & Marsal: Provides management consulting, restructuring, and business advisory services.
3+ YOE3+ years in AI/ML development/deployment or security, 2+ years in information security, hands-on with AI/ML frameworks, Python, cloud AI platforms, AI compliance knowledge, MLOps, security testing, US security clearance eligibility.
Python, TensorFlow, PyTorch, scikit-learn, Hugging Face, Docker, Kubernetes, Terraform, MLflow, Kubeflow, Amazon SageMaker, Azure ML, Google Vertex AI, Evidently AI, Fiddler AI, WhyLabs, Neptune.ai, Guardrails AI, LangChain, LlamaIndex, SHAP, LIME, Fairlearn, AIF360, Splunk Phantom, Cortex XSOAR, PySyft, TensorFlow Privacy, Opacus
2w
Save
Mark Applied
Hide
Lead Security Engineer
United States
RemoteFull Time
Circles
Circles: Provides digital telecommunications software and global mobile connectivity.
10+ YOE10-12 years in application/security engineering, hands-on threat modeling, pen testing, SAST/DAST/SCA, SOC/incident response, DevSecOps, Python scripting; proficiency with cloud and container security and familiarity with AI/LLM vulnerabilities.
Splunk, Sentinel, XSOAR, Kubernetes, Python, Java, Go
1mo
Save
Mark Applied
Hide
Security Operations Center Analyst II (SOC)
Arlington, Virginia, United States
OnsiteFull Time
Chenega Corporation
Chenega Corporation: Provides professional government, defense, and facility support services.
2+ YOE2+ years relevant experience; DoD Top Secret clearance with SCI eligibility and DoD IAT Level II required. Experience with SIEM and security tools (FireEye, Wireshark, Splunk, Palo Alto, etc.). Bachelor's degree or equivalent experience accepted.
FireEye, Wireshark, Net Witness, Palo Alto, Cisco ASA, F5, tcpdump, Snort, Splunk, EMET, Bit9/Carbon Black, Stealth Watch, IronPort, McAfee ePO, Microsoft Defender, XSOAR, Nessus, Extrahop, OpenText NDR, SIEM
2mo
Save
Mark Applied
Hide
Lead Project/Program Manager
Washington, District of Columbia, United States
$175k-$225k/yr OnsiteFull Time
Evolver
Evolver: Provides cybersecurity and IT solutions for government and enterprise.
8+ YOE6+ MgmtMaster's degree and extensive cybersecurity program management experience; PMP; ITIL 4; US Citizen; ability to obtain government clearance.
SIEM, Splunk, Elastic, EDR, CrowdStrike, Microsoft Defender, SOAR, Cortex XSOAR, Tenable, Qualys
4w
Save
Mark Applied
Hide
Cyber Systems Engineer
San Diego, California, United States
$185k-$200k/yr OnsiteFull Time
World Wide Technology
World Wide Technology: Global technology solutions provider and systems integrator.
Active TS/SCI clearance required; experience designing/deploying cyber deception, SIEM/SOAR, EDR, virtualization, cloud, RMF/STIG compliance; scripting/automation and enclave architectures; CISSP and 8+ years supporting DoD/Navy environments preferred.
Acalvio ShadowPlex, VMware ESXi, Hyper-V, KVM, Splunk Enterprise, ELK (Elastic), Splunk Phantom, Cortex XSOAR, CrowdStrike Falcon, Microsoft Defender for Endpoint, Kubernetes (RKE2), AWS, Azure GovCloud, Windows Server, Windows 10/11, Red Hat, Linux, Ansible, CI/CD pipelines, NGINX, SQL/MariaDB, Active Directory, ACAS/Nessus, eMASS, CANES
3w
Save
Mark Applied
Hide
Palo Alto Subject Matter Expert
Springfield or St. Louis
$75k-$158k/yr OnsiteFull Time
CACI
CACINYSE: CACI: Provides information technology and professional services to government clients.
7+ YOEActive TS/SCI clearance, 7+ years administering Palo Alto NGFWs, PCNSE certification, DoD 8140/8570 IAT Level II compliance, Panorama/Prisma/VM experience, networking protocol expertise, bachelor’s degree or equivalent.
Prisma Access, Cortex XSOAR, Panorama, PAN-OS, Prisma SD-WAN, VM-Series, AWS, Azure, GCP, Python, Ansible, Terraform, Palo Alto XML/REST APIs, Cortex XDR, Palo Alto Networks Expedition, F5, Juniper SRX, Cisco FTD, ASA
1w
Save
Mark Applied
Hide
Cyber Defense Senior Analyst (Remote)
United States or Allen
$72k-$124k/hr RemoteFull Time
Experian
ExperianLondon Stock Exchange: EXPN: Provides data and analytical tools to manage credit risk.
3+ YOE3+ years information security experience in SOC/IR, Bachelor's or equivalent, knowledge of incident response lifecycle, MITRE ATT&CK and cyber kill chain, OS/network/cloud fundamentals, SIEM/EDR experience.
MITRE ATT&CK Framework, Cyber Kill Chain, SIEM, Qradar, Splunk, EDR, FireEye HX, CrowdStrike Falcon, Microsoft Defender, Palo Alto XSOAR, Google Secops (Chronicle), AWS, Azure, GCP
3w
Save
Mark Applied
Hide
NCO (National Cybersecurity Operations) Technical Lead
Washington or Leesburg
HybridFull Time
OCH Technologies
OCH Technologies: Provides IT and cybersecurity services for federal government agencies.
15+ YOE5+ MgmtBachelor's in a technical field, 15+ years cybersecurity experience with 5+ years supervisory experience, Public Trust eligibility, security cert (CISSP/CISM/CASP), SIEM/EDR experience, threat intelligence and incident response expertise.
MITRE ATT&CK, Diamond Model, Cyber Kill Chain, SIEM, threat intelligence platforms, EDR, MISP, OpenCTI, Cortex XSOAR, Splunk SOAR, Tines, CrowdStrike Falcon, SentinelOne, Carbon Black, US-CERT, CISA, AI/ML
4w
Save
Mark Applied
Hide
Pre-Sales Architect - Cybersecurity (f/d/m)
United States
OnsiteFull Time
Cognizant
CognizantNASDAQ: CTSH: Provides IT consulting and technology services to global enterprises.
Experienced cybersecurity pre-sales architect with expertise in Palo Alto and other vendor technologies, presales solutioning, pipeline generation, client engagement, and a bachelor’s degree or equivalent experience.
Palo Alto Networks, Cisco, Zscaler, CrowdStrike, SIEM, Prisma SASE, Prisma Cloud, Cortex XDR, XSIAM, XSOAR, Strata, Microsoft Word, Microsoft PowerPoint
1mo
Save
Mark Applied
Hide
Principal Engineer, DevSecOps
Las Vegas, Nevada, United States
$153k-$195k/yr OnsiteFull Time
Allegiant Air
Allegiant AirNASDAQ: ALGT: Low-cost airline providing scheduled flights to leisure destinations.
8+ YOEEight years in information security; production experience across application security, pipeline engineering, cloud infrastructure, and IaC governance; strong GitHub Advanced Security and CNAPP experience; leadership of small teams.
GitHub Actions, GitHub Advanced Security, CodeQL, Secret scanning, Dependabot, Checkov, Terraform, Terraform IaC, Palo Alto Prisma Cloud/Cortex CNAPP, CSINSEG SIEM/SOAR, Cortex XSOAR, CloudFormation, AWS Control Tower, IAM, VPC, Transit Gateway, ABAC
1w
Save
Mark Applied
Hide
Senior Systems Architect
Virginia, United States
$175k-$195k/yr RemoteFull Time
ECS
ECSNYSE: ASGN: Provides advanced technology and engineering services to government agencies.
12+ YOEU.S. citizen with 12+ years in cybersecurity IT, Bachelor\u0002s (or equivalent), Public Trust clearance eligibility, AWS Solution Architect cert, 3+ years cloud experience, strong SIEM/EDR/CDM and container expertise.
SIEM, EDR, CDM, AWS GovCloud, Amazon EKS, Amazon ECS, Splunk, Microsoft Sentinel, Palo Alto XSOAR, Terraform, AWS CloudFormation, Ansible, AWS App Mesh, Istio, CyberArk, Okta, AWS IAM Identity Center, AWS
3d
Save
Mark Applied
Hide
Endpoint Security Engineer
Alexandria, Virginia, United States
$100k-$110k/yr OnsiteFull Time
Halvik
HalvikNASDAQ: TTEK: Provides technology, analytics, and management consulting to federal agencies.
3+ YOEBachelor's degree, 3+ years administering enterprise endpoint security (SentinelOne), experience with Windows, Microsoft Intune, PowerShell, SIEM/SOAR integrations, and eligibility for Public Trust.
SentinelOne, Microsoft Intune, PowerShell, Microsoft Sentinel, Splunk, IBM QRadar, Cortex XSOAR, Microsoft Entra ID (Azure AD)
2mo
Save
Mark Applied
Hide
Staff Threat Hunter
Overland Park or Scottsdale or Sarasota
HybridFull Time
Tenex
Tenex: AI-powered managed detection and response cybersecurity services.
8+ YOE8+ years in threat hunting, SOC, or incident response; 3+ years in senior/lead role; strong SIEM/EDR telemetry experience; Python/PowerShell scripting; MITRE ATT&CK knowledge; cloud security experience
Google SecOps, Chronicle, Sentinel, Splunk Cloud, Tines, XSOAR, Chronicle SOAR, AWS, Azure, GCP, Python, PowerShell
1w
Save
Mark Applied
Hide
Senior Director, Security Threat
Saint Paul or Naperville
$168k-$253k/yr OnsiteFull Time
Ecolab
EcolabNYSE: ECL: Provides water, hygiene, and infection prevention solutions and services.
12+ YOE5+ MgmtBachelor's in related field or equivalent,12+ years cybersecurity experience,5+ years leadership,experience with SOC,detection engineering,threat intelligence,and incident response;familiarity with cloud and security frameworks.
SIEM, SOAR, Elasticsearch, Splunk, Swimlane, Cortex XSOAR, CrowdStrike, Microsoft Sentinel