Career Level: Specialist
Role: Security Automation Engineer
Location: Cheltenham
Please note: Due to the nature of client work you will be undertaking, you will need to be willing to go through a Security Clearance process as part of this role, which requires 5+ years UK address history at the point of application.
Job Summary
You will be responsible for developing and optimising Security Orchestration, Automation and Response (SOAR) toolsets. The Security Automation Engineer (SOAR) will drive the maturation of Accenture’s Security Operation Centre (SOC) offerings, integrating security technologies and implementing automated workflows. The role requires a security‑first mindset and a strong technical background in security operations or network/infrastructure engineering.
Qualifications and Experience
- Hands‑on experience with developing playbooks in SOAR platforms such as Palo Alto XSOAR, Splunk Phantom, Google SecOps SOAR, Microsoft Sentinel (Azure Logic Apps).
- Knowledge of interacting with REST APIs and webhooks (including authentication methods), and working with JSON/YAML data structures.
- Understanding of DevOps principles and orchestration toolsets.
- Working knowledge of at least one software development or scripting language, such as Python or PowerShell.
- Familiarity with public Cloud environments such as AWS or Azure, and knowledge of cloud‑native security controls.
- Strong general Cyber Security knowledge; in‑depth knowledge of common threats, attacker tools, techniques, and MITRE ATT&CK is advantageous.
- Familiarity with functionality of common security toolsets (such as SIEM and EDR); previous experience in configuring or managing is advantageous.
- 2+ years’ experience in a Security Operations environment or similar.
- Collaborative and engaging approach to problem solving, and willingness to work as part of the team.
- Passion for diversity, recognising the innovation and competitive edge that comes from a diverse highly skilled team where equal opportunities are truly valued.
- Strong problem‑solving skills, always seeking the best solution for the right outcome.
- Self‑motivated, results‑focussed, pragmatic with the ability to manage conflicting deadlines and prioritise.
- Vendor certifications for Security Tooling (such as SOAR, SIEM, EDR) would be advantageous.
Responsibilities
- Integrate SOAR platforms with technologies such as SIEM, EDR, Email gateways and ITSM.
- Develop playbooks within SOAR platforms (interactive workflows that enable efficient triage of security incidents).
- Develop scripts to automate processes and repetitive tasks.
- Manage the lifecycle of security content (playbooks, integrations, scripts) from development through to production.
- Produce and maintain technical design documentation relating to SOAR integrations.
- Engage directly with client stakeholders to capture requirements and scope development activities.
- Work closely and collaboratively with internal project teams and engineers.
- Engage with SOAR vendors to provide feedback and drive product development roadmaps.
- Contribute to internal security working groups, advocating the adoption of SOAR and innovation within the discipline of Security Operations.
Benefits
At Accenture, you will receive a competitive basic salary plus an extensive benefits package that includes 25 days’ vacation per year, private medical insurance and 3 extra days leave per year for charitable work of your choice. Flexibility and mobility are required as the role may involve onsite time with clients and partners.
Accenture reserves the right to close the role should a suitable applicant be found. Closing date for applications: 25/08/26.
#J-18808-Ljbffr…
