£125 Per hour
Inside
Hybrid
London Area, United Kingdom
Summary: The Security Orchestration, Automation & Response (SOAR) Engineer role focuses on enhancing cyber threat detection and automation within a financial organization. The position requires a blend of technical expertise and strategic security automation across various platforms. The engineer will collaborate with multiple teams to design and optimize security workflows, aiming for efficient incident response through automation. The role is based in London, requiring in-office presence two days a week.
Key Responsibilities:
- Develop and enhance security detections and automations across SOAR platforms (ideally Palo Alto Cortex XSOAR)
- Create and maintain playbooks and integrations to improve incident response and operational efficiency
- Collaborate across teams to improve detection coverage and response workflows
- Monitor emerging threats and translate attacker TTPs into actionable detections and automated mitigations
Key Skills:
- Hands-on experience with Palo Alto Cortex XSOAR or other SOAR platforms
- Strong knowledge of threat detection and response engineering
- Familiarity with MITRE ATT&CK framework
- Proficiency in Python for automation and integration development
- Experience with query languages (KQL or similar)
- Understanding of REST APIs and ability to develop and consume them
- Experience working in Azure environments
- Strong background in Windows, Linux, and macOS administration
Salary (Rate): £125.00/hr
City: London
Country: United Kingdom
Working Arrangements: hybrid
IR35 Status: inside IR35
Seniority Level: undetermined
Industry: IT
Security Orchestration, Automation & Response (SOAR) Engineer | Palo Alto Cortex XSOAR, Python, Rest API's, Linux & Windows | Up to £1000 Inside | 2 Days p/ week in London
We are seeking an experienced Security Orchestration, Automation & Response (SOAR) Engineer to strengthen cyber threat detection and automation capabilities within a leading financial organisation. This role combines hands-on technical expertise with strategic security automation and orchestration across modern platforms. You will work closely with detection, response, and engineering teams to design, build, and optimise security workflows — enabling faster, more effective incident response and reducing manual effort through automation.
Key Responsibilities:
- Develop and enhance security detections and automations across SOAR platforms (ideally Palo Alto Cortex XSOAR)
- Create and maintain playbooks and integrations to improve incident response and operational efficiency
- Collaborate across teams to improve detection coverage and response workflows
- Monitor emerging threats and translate attacker TTPs into actionable detections and automated mitigations
Key Skills & Experience:
- Hands-on experience with Palo Alto Cortex XSOAR or other SOAR platforms
- Strong knowledge of threat detection and response engineering
- Familiarity with MITRE ATT&CK framework
- Proficiency in Python for automation and integration development
- Experience with query languages (KQL or similar)
- Understanding of REST APIs and ability to develop and consume them
- Experience working in Azure environments
- Strong background in Windows, Linux, and macOS administration
Security Orchestration, Automation & Response (SOAR) Engineer | Palo Alto Cortex XSOAR, Python, Rest API's, Linux & Windows | Up to £1000 Inside | 2 Days p/ week in London