Note: Due to the nature of client work you will be undertaking, you will need to be willing to go through a Security Clearance process as part of this role, which requires 5+ years UK address history at the point of application.
Security Automation Engineer
You will be responsible for developing and optimising Security Orchestration, Automation and Response (SOAR) toolsets. The Security Automation Engineer (SOAR) will drive the maturation of Accenture’s Security Operation Centre (SOC) offerings, integrating security technologies and implementing automated workflows. The ideal candidate will approach problems with a security-first mindset, and have a strong technical background in security operations or network / infrastructure engineering.
Qualifications
- Hands‑on experience developing playbooks with Security Orchestration, Automation and Response (SOAR) platforms, such as Palo Alto XSOAR, Splunk Phantom, Google SecOps SOAR, Microsoft Sentinel (Azure Logic Apps).
- Knowledge of interacting with REST APIs and webhooks (including authentication methods), and working with JSON / YAML data structures.
- Understanding of DevOps principles and orchestration toolsets.
- Working knowledge of at least one software development or scripting language, such as Python or PowerShell.
- Familiarity with the principles of public Cloud environments such as AWS or Azure, and knowledge of cloud-native security controls.
- Strong general Cyber Security Knowledge; in‑depth knowledge of common threats, attacker tools and techniques, and MITRE ATT&CK is advantageous.
- Familiarity with functionality of common security toolsets (such as SIEM and EDR); previous experience in configuring or managing is advantageous.
- 2+ years’ experience working within a Security Operations environment or similar.
- Collaboration skills, inclusive mindset, problem‑solving approach.
Responsibilities
- Integrate SOAR platforms with technologies such as SIEM, EDR, Email gateways and ITSM.
- Develop playbooks within SOAR platforms (interactive workflows that enable efficient triage of security incidents).
- Develop scripts to automate processes and repetitive tasks.
- Manage the lifecycle of security content (playbooks, integrations, scripts) from development through to production.
- Produce and maintain technical design documentation relating to SOAR integrations.
- Engage directly with client stakeholders to capture requirements and scope development activities.
- Work closely and collaboratively with internal project teams and engineers.
- Engage with SOAR vendors to provide feedback and drive product development roadmaps.
- Contribute to internal security working groups, advocating the adoption of SOAR and innovation within Security Operations.
Benefits
In addition to a competitive basic salary, Accenture offers an extensive benefits package that includes 25 days’ vacation per year, private medical insurance, and 3 extra days leave per year for charitable work of your choice. Flexibility and mobility are required to deliver this role as there may be requirements to spend time onsite with our clients and partners to enable delivery of the first‑class services we are known for.
#J-18808-Ljbffr…
