CrawlJobs Logo

Soar Developer

United Kingdom, Newbury · Job Posted January 21, 2026
Apply Position
Job Link Share

Job Description

Cyber Defence Operations (CDO) is Vodafone Group’s Cyber Defence Operations Centre of Excellence. CDO’s mission is to protect Vodafone customers against global cyber risk. CDO is specifically accountable for delivering: Cyber Defence operational leadership across Vodafone. Cyber Defence operational capabilities to Vodafone Group, the Local Market Operating Companies, and Partner Markets to enhance Vodafone’s global cyber defence posture and reduce its cyber risk.

Job Responsibility

  • Work closely with security analysts and engineers to detect and address security gaps by implementing automation workflows that enhance security operations
  • Evaluate and enhance CSOC workflows and processes by integrating automation through SOAR tools and technologies
  • Deploy CSOC automation and ensure compatibility with existing detection and response tools
  • Create and implement custom scripts to automate current detection and response workflows
  • Operate and refine the CSOC playbook and workflow automations
  • Requirement Analysis – Collaborating with stakeholders to gather and analyse requirements for the Soar and translating them into actionable development tasks
  • Risk Management – Identifying potential risks and challenges in Soar development projects alongside implementing strategies to mitigate them
  • Vendor Management – Collaborating with external vendors or partners when necessary for tool integration, support or other aspects of SOAR development

Requirements

  • Strong understanding of security concepts and practices
  • Proficiency in programming languages such as Python, JavaScript or others commonly utilised in Soar development
  • In-depth knowledge and extensive hands-on experience with Soar platforms such as Splunk Phantom, Siemplify, IBM Resilient or similar tools
  • Knowledge of advanced threat detection and response methodologies alongside tools such as SIEM and SOAR
  • Comprehensive understanding of cybersecurity principles including security operations, incident response and threat intelligence
  • Strong analytical and problem-solving skills
  • Excellent familiarity with standard security frameworks such as MITRE, cyber kill chain and APT campaign strategies
  • Proven ability to work efficiently in fast-paced work environment and manage multiple priorities simultaneously
  • Bachelor’s degree or higher in Cyber Security/Information Technology or related field
  • One or more cyber security certifications such as GCIA, GCIH, GCFA, GNFA, CEH, ECSA preferred

What we offer

  • Discretionary yearly bonus: 10%
  • Annual leave: 28 days + bank holidays + the opportunity to buy/sell/carry over 5 days/year
  • Charity days: 5 days/year
  • Maternity/adoption leave: 52 weeks out of which the first 13 weeks are fully paid followed by 26 weeks of half pay and 6 months - working 4 days, getting paid 5
  • Paternity leave: 16 weeks fully paid
  • Private pension: You can contribute up to 5% of your basic pay with 2:1 matching from Vodafone up to 10%
  • Access to: private medical, private dental, free health assessments, share save scheme
  • Additional discounts: Vodafone retail, gym, cinema, cycle to work, season ticket loan

Looking for more opportunities?

Search for other job offers that match your skills and interests.

Similar Jobs for

Soar Developer

8 matching positions

SOAR Developer

At Vodafone, we’re not just shaping the future of connectivity for our customers...
Location
Location
United Kingdom , Newbury
Salary
Salary:
Not provided
vodafone.com Logo
Vodafone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • API
  • Web Applications
  • PHP
  • Oracle Database
  • Java
  • JavaScript Libraries/Frameworks
  • SQL
Read More
Arrow Right
New

Domain Consultant Cortex

Your Career As a Domain Consultant for SOC Transformation you will be the expert...
Location
Location
Morocco , Casablanca
Salary
Salary:
Not provided
paloaltonetworks.com Logo
Palo Alto Networks
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience in Security Operations or presales/ sales engineering within SIEM, SOAR, SOC, and/or endpoint environments
  • Solid understanding of Security Operations Center processes
  • Experience working with customers, with a client-centric approach and problem solving skills
  • Scripting experience is a plus - Python preferred
  • Native Arabic and French, strong English are must-have
Job Responsibility
Job Responsibility
  • Collaborate with account teams to recommend and develop customer solutions within your assigned specialization area
  • Present to customers as our expert at all levels in the customer hierarchy, from practitioner to senior leadership
  • Lead and support customer demonstrations that showcase our unique value proposition
  • Scope and Lead Proof of Value (PoV) projects for prospective customers based on best practices to ensure technical win in your assigned opportunities
  • Drive high technical validation and PoV win rates within your assigned specialization area
  • Architect solutions that will help our customers strengthen and simplify their security posture
  • Accelerate technical validation of proposed solutions within your specialization
  • Document High-Level Design and Key Use Cases to ensure proper implementation and value realization of Palo Alto Networks Solutions
  • Help our customers build and develop further their services around Cortex solutions
  • Lead conversations about industry trends and emerging changes to the security landscape
  • Fulltime
Read More
Arrow Right
New

Security Architect

Opportunity to join a premier enterprise Architecture & Delivery team to steer c...
Location
Location
Australia , Melbourne
Salary
Salary:
900.00 - 1100.00 AUD / Day
https://www.randstad.com Logo
Randstad
Expiration Date
July 03, 2026
Flip Icon
Requirements
Requirements
  • 8+ years of professional experience in IT solution design, build, or delivery, with 5+ years dedicated to IT Security, IAM, IGA, PAM, and cloud security environments
  • Expert hands-on experience with Entra ID (including Conditional Access Policies, Connect, B2B/B2C, ZTNA, Graph API) and Okta SSO (SAML, OIDC, OAuth)
  • Strong architectural knowledge of IGA platforms (SailPoint, One Identity, or Saviynt) and PAM architectures (CyberArk or Beyond Trust)
  • Proven understanding of identity-specific threat modelling, DevSecOps mindsets, and frameworks such as MITRE ATTCK and NIST AI RMF across hybrid cloud structures (VMware, AWS, Azure, GCP)
  • Tertiary qualification in IT, Engineering, or a related field, combined with an industry standard certification such as CISSP
  • 8+ years of professional experience in IT solution delivery or design, with 5+ years focused on SIEM, SOAR, Vulnerability Management, and Continuous Threat & Exposure Management (CTEM)
  • Direct experience architecting and implementing solutions using Microsoft Unified SecOps Platforms, Microsoft Sentinel, Microsoft Defender XDR, and Splunk ES/SOAR
  • Technically proficient in securing hybrid cloud environments using native and third-party CASB, M365 E5 Security Services, Intune MDM, and Cloud Workload Protection platforms
  • Comprehensive knowledge of security and architecture frameworks including TOGAF, SABSA, MITRE Atlas, NIST RMF, ISO 27001, ISM, and ASD Essential 8
  • Tertiary qualification in IT, Computing, or Engineering, with highly regarded certifications such as CISSP, AWS Security Specialty, Microsoft AZ-500, or Microsoft SC-100
Job Responsibility
Job Responsibility
  • Architect and implement modern identity and access management (IAM) models leveraging Entra ID, Ping Identity, and auxiliary technologies
  • Deliver secure solution architecture artefacts (such as SAR, SOAP, and NFRs) tailored for identity portfolio epics
  • Design and enforce robust network validation and enterprise authentication policies, including SSO, MFA, Conditional Access, and Passwordless Authentication
  • Lead enterprise migrations involving legacy infrastructure upgrades, Exchange transitions, and broad application onboarding to Entra ID
  • Govern and design solutions for Privileged Identity Management (PIM) and Privileged Access Management (PAM) to secure elevated credentials
  • Automate identity lifecycle processes (Joiner-Mover-Leaver) and configure rigid RBAC models and compliance access reviews
  • Define the secure implementation strategy and construct security controls aligned with Microsoft Azure and M365 E5 Security Services
  • Architect and implement SecOps solutions using Microsoft Defender, Microsoft Sentinel, Unified SecOps Platform, Microsoft Security Copilot, and Splunk ES/SOAR
  • Deliver end-to-end solution architectures and architecture documentation for assigned SecOps portfolio epics
  • Integrate and optimize Azure Sentinel to advance threat detection capabilities, incident response mechanisms, and AI security defense analytics
Read More
Arrow Right
New

Ethical Hacking Specialist

We are seeking an experienced Ethical Hacking Specialist to enhance Vodafone’s c...
Location
Location
Romania , Bucuresti
Salary
Salary:
Not provided
vodafone.com Logo
Vodafone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 2–3 years of experience in penetration testing, with exposure to coordinating or leading testing activities
  • Proven experience in vulnerability discovery, including CVE registration, security research, or participation in recognised cybersecurity competitions
  • Relevant professional certifications such as CPTS, OSEP, OSWE, CWEE, eCPTX, or equivalent
  • University degree in an IT-related field, with Cybersecurity preferred
  • Applied knowledge of Windows and Linux/Unix environments, virtualisation technologies, and cloud platforms (AWS, Azure, GCP)
  • In-depth understanding of application development processes and hands-on experience with at least one scripting or programming language (e.g. Java, Python, PowerShell, PHP)
  • Confident working with CI/CD automation tools and/or SOAR platforms
  • Strong documentation skills and ability to translate complex technical issues into practical insights
Job Responsibility
Job Responsibility
  • Execute advanced security testing activities using recognised MITRE tactics and techniques to identify vulnerabilities across Vodafone systems
  • Design, develop, and maintain comprehensive security testing and penetration testing plans
  • Lead and deliver specialised security testing engagements, including defining scope, prerequisites, and testing approaches
  • Collaborate with testers, managers, and business functions to ensure coordinated and effective test execution
  • Produce high-quality technical reports detailing identified vulnerabilities, associated technical and business risks, and clear remediation guidance
  • Provide detailed exploit reproduction steps, retesting scripts, and support remediation activities with technical teams
  • Develop solutions and code to automate security testing and document reusable test cases
  • Act as a security consultant for international teams, supporting complex IT project situations
  • Maintain up-to-date knowledge of emerging technologies, tools, and information security trends to continuously improve testing practices
What we offer
What we offer
  • Hybrid way of working: 2 days per week/ 8 per month
  • Medical and dental services
  • Life and hospitalization insurance
  • Dedicated employee phone subscription
  • Take control of your benefits and choose any of the below options: MEAL TICKETS/ PRIVATE PENSION/VACATION VOUCHERS/ CULTURAL VOUCHERS within the budget
  • Special discounts for gyms and retailers
  • Annual Company Bonus
  • Ongoing Education
  • You get to work with tried and trusted web-technology
  • 23 days off
  • Fulltime
Read More
Arrow Right

A&PS Solution Architect Private Cloud

This role has been designed as ‘Hybrid’ with an expectation that you will work o...
Location
Location
Slovakia , Bratislavský kraj
Salary
Salary:
5000.00 EUR / Month
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Industry experience - 5 years to 10 years
  • Bachelor's degree in computer science or related field, or equivalent experience
  • Ability to understand the customer's business problem, need, or opportunity and to design an IS solution that appropriately addresses the business problem, need, or opportunity
  • Ability to lead a team of two or more consultants in the completion of one or more architecture, requirements, operational, or implementation deliverables
  • Ability to lead the architectural design, development, deployment, and technical quality of medium to large business unit level IT based solutions (typically within multiple technology or specialty areas)
  • Be able to provide architectural direction for multiple medium sized projects concurrently
  • Understands and applies information system or operational solution related modeling methods and tools
  • Can validate/evaluate if an information systems or operational architecture meets technical requirements and specifications
  • Familiar with multiple architectural, development and operational methodologies (e.g., Zachman, TOGAF, ITSM, ...)
  • Applies appropriate methodologies and SME knowledge to resolve complex business issues
Job Responsibility
Job Responsibility
  • Architect custom solutions of project and program or operational scope
  • Architect reusable solutions of project or operational scope
  • Customize reusable solutions of project and program or operational scope
  • Capture and share architectural IP at the project and program level
  • Oversee the implementation and governance of architectures of project and program or operational scope
  • Contribute to the Architect profession worldwide and across the company businesses
  • Develop for client technically feasible long-term IT strategies and plans
  • Assess business impact of specific technologies/strategies
  • Identify and address technical or operational risks
  • Provide review/input on project activities for medium to large business unit level projects
What we offer
What we offer
  • Health & Wellbeing
  • Personal & Professional Development
  • Unconditional Inclusion
  • Fulltime
Read More
Arrow Right

Soc Analyst

Location
Location
United Kingdom , Cambridge
Salary
Salary:
Not provided
roku.com Logo
Roku
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong understanding of SIEM, EDR, cloud security services (e.g., AWS GuardDuty), and various security technologies
  • Experience in automation and development of automated playbooks and associated processes in security orchestration, automation and response (SOAR) environments
  • Experience in the creation of incident response plans and leading incident response efforts and post incident reporting when required
  • Threat intelligence, knowledge of tactics, techniques, and procedures (TTPs) utilised by threat actors and how to generate and deploy mitigation strategies
  • Vulnerability management, monitoring, reporting and engagement with necessary stakeholders to ensure timely remediation
  • Can demonstrate strong understanding of network security principles and encryption technologies
  • Experience of security change management processes and procedures
  • Demonstrate experience of risk assessment and advisory capabilities on both internal systems and products/solutions from third party vendors (SaaS, AI etc)
  • Experience in contributing to the development, implementation and management of security policies and procedures
  • Strong knowledge of security frameworks and industry best practices – such as ISO 270001, NIST, PCI-DSS and others
Job Responsibility
Job Responsibility
  • Supporting the design and implementation of information security systems and frameworks including threat prevention, detection and mitigation tools
  • Manage, maintain and optimize security information and event management (SIEM) platforms and associated security infrastructure
  • Detect and respond to information security incidents, investigate security incidents, identify attack vectors, and lead containment/eradication/recovery efforts
  • Create detailed incident reports, lead post-incident reviews, document lessons learned, and contribute to compliance reporting
  • Hunt for undetected threats, tune security tools, refine detection rules, and address false positives
  • Vulnerability management, analysis, oversee the vulnerability management lifecycle and reporting, support prioritization and advise relevant stakeholders on vulnerability status and postures
  • Identify risks in new and existing projects and environments and support the implementation of necessary security controls to meet business needs
  • Support the implementation of security orchestration, automation and response (SOAR) playbooks and procedures in order to improve response times and ensure consistent approach to incidents
  • Provide mentorship and support to more junior analysts, act as escalation point for complex issues
  • Support in testing and evaluation of security products and solutions
What we offer
What we offer
  • Global access to mental health and financial wellness support and resources
  • healthcare (medical, dental, and vision)
  • life, accident, disability, commuter, and retirement options (401(k)/pension)
  • Fulltime
Read More
Arrow Right

Staff Security Analyst, Threat Intelligence

We are building an elite team, applying frontier technologies to the world’s big...
Location
Location
United States , Menlo Park
Salary
Salary:
191000.00 - 225000.00 USD / Year
robinhood.com Logo
Robinhood
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 8–12+ years of total experience, including 3–5+ years operating at a senior or staff-level scope in threat intelligence, brand protection, or cyber investigations
  • Hands-on experience tracking criminal ecosystems tied to phishing, scams, impersonation, fraud, and infrastructure abuse, and the ability to move from isolated indicators to campaign- and actor-level analysis
  • Deep familiarity with domain registration patterns, DNS and certificate transparency analysis, cloud and hosting abuse across providers (e.g., AWS, GCP, Azure, VPS), and attacker monetization methods
  • Experience using OSINT tooling, SQL, Python, notebooks, SIEM or SOAR platforms, OpenCTI, and case management systems to analyze data and automate workflows
  • Ability to translate complex technical threats into clear business risk for technical teams and executive audiences through strong written and verbal communication
  • Experience mentoring others or leading initiatives across teams, with a high level of accountability and sound risk judgment in ambiguous situations
Job Responsibility
Job Responsibility
  • Proactively hunt and map criminal ecosystems targeting Robinhood and its customers, then translate intelligence into scalable systems and coordinated defenses that disrupt adversaries before they cause harm
  • Build and operationalize a comprehensive "Universe of Threats" by identifying, tracking, and prioritizing adversaries across phishing, scams, impersonation, fraud, and infrastructure abuse
  • Establish and mature a proactive threat intelligence lifecycle by developing industry partnerships, collaborating with trusted peers and federal authorities, and cultivating online personas to generate early warning capabilities that protect Robinhood’s business operations
  • Investigate attacker infrastructure across domains, DNS, certificate transparency logs, cloud providers, and telecom platforms, and convert findings into concrete detections, controls, and customer protections
  • Coordinate threat actor infrastructure takedowns with hosting providers, domain registrars, cloud platforms, and other infrastructure partners to disrupt adversary operations at scale
  • Design and automate intelligence workflows using OSINT tooling, enrichment pipelines, data analysis tools, and case management systems to scale analysis and reporting
  • Partner directly with Detection & Response, Automation, Customer Trust & Safety (Fraud and Financial Crimes), Security Engineering, Corporate Security, Risk, and executive leaders to prioritize threats based on measurable business risk
What we offer
What we offer
  • Challenging, high-impact work to grow your career
  • Performance-driven compensation with multipliers for outsized impact, bonus programs, equity ownership, and 401(k) matching
  • Best-in-class benefits to fuel your work, including 100% paid health insurance for employees with 90% coverage for dependents
  • Lifestyle wallet — a highly flexible benefits spending account for wellness, learning, and more
  • Employer-paid life & disability insurance, fertility benefits, and mental health benefits
  • Time off to recharge including company holidays, paid time off, sick time, parental leave, and more
  • Exceptional office experience with catered meals, events, and comfortable workspaces
  • Fulltime
Read More
Arrow Right

Domain Consultant 2 - Cortex Cloud

As a Domain Consultant for SOC Transformation you will be the expert for our Cor...
Location
Location
Germany , Munich
Salary
Salary:
Not provided
paloaltonetworks.com Logo
Palo Alto Networks
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience in Security Operations or presales/ sales engineering within SIEM, SOAR, SOC, and/or endpoint environments
  • Solid understanding of Security Operations Center processes
  • Experience working with customers, with a client-centric approach and problem solving skills
  • Scripting experience is a plus - Python preferred
Job Responsibility
Job Responsibility
  • Collaborate with account teams to recommend and develop customer solutions within your assigned specialization area
  • Present to customers as our expert at all levels in the customer hierarchy, from practitioner to senior leadership
  • Lead and support customer demonstrations that showcase our unique value proposition
  • Scope and Lead Proof of Value (PoV) projects for prospective customers based on best practices to ensure technical win in your assigned opportunities
  • Drive high technical validation and PoV win rates within your assigned specialization area
  • Architect solutions that will help our customers strengthen and simplify their security posture
  • Accelerate technical validation of proposed solutions within your specialization
  • Document High-Level Design and Key Use Cases to ensure proper implementation and value realization of Palo Alto Networks Solutions
  • Help our customers build and develop further their services around Cortex solutions
  • Lead conversations about industry trends and emerging changes to the security landscape
  • Fulltime
Read More
Arrow Right