CrawlJobs Logo

Soar Developer

vodafone.com Logo

Vodafone

Location Icon

Location:
United Kingdom , Newbury

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

Cyber Defence Operations (CDO) is Vodafone Group’s Cyber Defence Operations Centre of Excellence. CDO’s mission is to protect Vodafone customers against global cyber risk. CDO is specifically accountable for delivering: Cyber Defence operational leadership across Vodafone. Cyber Defence operational capabilities to Vodafone Group, the Local Market Operating Companies, and Partner Markets to enhance Vodafone’s global cyber defence posture and reduce its cyber risk.

Job Responsibility:

  • Work closely with security analysts and engineers to detect and address security gaps by implementing automation workflows that enhance security operations
  • Evaluate and enhance CSOC workflows and processes by integrating automation through SOAR tools and technologies
  • Deploy CSOC automation and ensure compatibility with existing detection and response tools
  • Create and implement custom scripts to automate current detection and response workflows
  • Operate and refine the CSOC playbook and workflow automations
  • Requirement Analysis – Collaborating with stakeholders to gather and analyse requirements for the Soar and translating them into actionable development tasks
  • Risk Management – Identifying potential risks and challenges in Soar development projects alongside implementing strategies to mitigate them
  • Vendor Management – Collaborating with external vendors or partners when necessary for tool integration, support or other aspects of SOAR development

Requirements:

  • Strong understanding of security concepts and practices
  • Proficiency in programming languages such as Python, JavaScript or others commonly utilised in Soar development
  • In-depth knowledge and extensive hands-on experience with Soar platforms such as Splunk Phantom, Siemplify, IBM Resilient or similar tools
  • Knowledge of advanced threat detection and response methodologies alongside tools such as SIEM and SOAR
  • Comprehensive understanding of cybersecurity principles including security operations, incident response and threat intelligence
  • Strong analytical and problem-solving skills
  • Excellent familiarity with standard security frameworks such as MITRE, cyber kill chain and APT campaign strategies
  • Proven ability to work efficiently in fast-paced work environment and manage multiple priorities simultaneously
  • Bachelor’s degree or higher in Cyber Security/Information Technology or related field
  • One or more cyber security certifications such as GCIA, GCIH, GCFA, GNFA, CEH, ECSA preferred
What we offer:
  • Discretionary yearly bonus: 10%
  • Annual leave: 28 days + bank holidays + the opportunity to buy/sell/carry over 5 days/year
  • Charity days: 5 days/year
  • Maternity/adoption leave: 52 weeks out of which the first 13 weeks are fully paid followed by 26 weeks of half pay and 6 months - working 4 days, getting paid 5
  • Paternity leave: 16 weeks fully paid
  • Private pension: You can contribute up to 5% of your basic pay with 2:1 matching from Vodafone up to 10%
  • Access to: private medical, private dental, free health assessments, share save scheme
  • Additional discounts: Vodafone retail, gym, cinema, cycle to work, season ticket loan

Additional Information:

Job Posted:
January 21, 2026

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Soar Developer

Principal Automation Engineer

We are seeking a Principal Automation Engineer to lead and drive innovation in a...
Location
Location
India , Bangalore
Salary
Salary:
Not provided
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s or master’s degree in computer science, cybersecurity, data science, or related engineering field
  • proven experience (8+ years) in cybersecurity, with at least 3+ years in automation-focused roles
  • deep understanding of cybersecurity frameworks and concepts, including attack vectors, threat landscapes, and defence mechanisms
  • strong experience with SIEM/SOAR/ and EDR/XDR platforms and tools
  • experience in Machine Learning (ML) and Agentic AI applied for security use-cases
  • experience with anomaly detection, behavioural modeling, and predictive analytics in cybersecurity contexts
  • experience integrating machine learning models into security operations workflows in enterprise environments
  • proficiency in languages such as Python, Go, SPL, YaraL, and building automation frameworks
  • hands-on experience with big data technologies and cloud environments (AWS, Azure, GCP)
  • familiarity with regulatory requirements and compliance frameworks (e.g., GDPR, NIST, ISO 27001)
Job Responsibility
Job Responsibility
  • Drive the SOAR development lifecycle, in support of security operations and engineering teams
  • develop SOAR playbooks and logic
  • build integrations across SIEM, SOAR, EDR, identity platforms, and cloud-native services
  • write, test, and maintain automation scripts and workflows
  • deliver API solutions for SOC and enterprise Business Units
  • design and implement reusable automation services, APIs, and playbooks
  • maintain documentation for scripts, integrations, and workflows
  • debug and resolve technical issues in the automation lifecycle
  • apply advanced analytics, Machine Learning, and AI for security automation
  • partner with SOC/IR leadership and IT stakeholders to gather SOAR requirements and develop solutions
What we offer
What we offer
  • Health and wellbeing benefits
  • career development programs
  • unconditional inclusion
  • flexibility to manage work and personal needs
  • Fulltime
Read More
Arrow Right

Cybersecurity analyst

We are looking for a Cybersecurity Analyst – Blue Team Level 2 to join a special...
Location
Location
Portugal , Lisbon
Salary
Salary:
Not provided
https://www.inetum.com Logo
Inetum
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proven experience (+2 years) in vulnerability analysis using one or more SIEM platforms
  • Use Case creation and Playbook development
  • Strong knowledge of SOAR and automated incident response
  • Familiarity with ticketing and workflow tools (e.g., Remedy)
  • Fluent in English
  • Analytical mindset, attention to detail, and collaborative spirit
Job Responsibility
Job Responsibility
  • Investigate and handle incidents escalated by Level 1, ensuring accurate technical diagnosis
  • Execute containment, remediation, and follow-up actions for system, network, and security failures
  • Operate and optimize monitoring platforms such as SIEM and SOAR
  • Create and maintain Use Cases and Playbooks
  • Document solutions and update the knowledge base
  • Support continuous improvement of security processes
  • Work with ticketing and workflow tools (e.g., Remedy)
  • Collaborate with technical and functional teams in incident response
  • Fulltime
Read More
Arrow Right

Lead SOAR Engineer

We are looking for a Lead Security Operations Engineer to design, implement, and...
Location
Location
United States , Las Vegas
Salary
Salary:
Not provided
take2games.com Logo
Take-Two Interactive Software, Inc.
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years’ experience as a SOAR Engineer
  • Deep expertise in designing, building, and maintaining automated security workflows and playbooks using a SOAR platform
  • The ability to analyze complex security challenges, find opportunities to automate repetitive manual tasks, and develop data-driven solutions
  • Excellent written and verbal communication skills
  • Hands-on experience with a leading SOAR platform (Palo Alto Networks Cortex XSOAR, Tines or Splunk Enterprise Security) coupled with advanced scripting skills in Python
Job Responsibility
Job Responsibility
  • Lead the design, development, and maintenance of SOAR playbooks, workflows, and integrations with other security tools
  • Identify and implement automation opportunities to improve the speed and accuracy of security operations and incident response
  • Act as a domain expert for SOAR, providing technical guidance, mentorship, and support to the security team
  • Partner with other security teams to ensure SOAR capabilities align with the overall security strategy
  • Create and maintain comprehensive documentation for workflows and integrations, and develop reports to measure program success
  • Assist with SOAR tool migrations, document all system changes, and stay ahead of the latest SOAR and automation trends
What we offer
What we offer
  • Medical (HSA & FSA), dental, vision, 401(k) with company match, employee stock purchase plan, commuter benefits, in-house wellness program, broad learning & development opportunities, a charitable giving platform with company match
  • Fitness allowance, employee discount programs, free games & events and stocked pantries
  • Fulltime
Read More
Arrow Right

Lead SOAR Engineer

We are looking for a Lead Security Operations Engineer to design, implement, and...
Location
Location
United States , New York
Salary
Salary:
133900.00 - 198160.00 USD / Year
take2games.com Logo
Take-Two Interactive Software, Inc.
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years’ experience as a SOAR Engineer
  • Deep expertise in designing, building, and maintaining automated security workflows and playbooks using a SOAR platform
  • The ability to analyze complex security challenges, find opportunities to automate repetitive manual tasks, and develop data-driven solutions
  • Excellent written and verbal communication skills
  • Hands-on experience with a leading SOAR platform (Palo Alto Networks Cortex XSOAR, Tines or Splunk Enterprise Security) coupled with advanced scripting skills in Python
Job Responsibility
Job Responsibility
  • Lead the design, development, and maintenance of SOAR playbooks, workflows, and integrations with other security tools
  • Identify and implement automation opportunities to improve the speed and accuracy of security operations and incident response
  • Act as a domain expert for SOAR, providing technical guidance, mentorship, and support to the security team
  • Partner with other security teams to ensure SOAR capabilities align with the overall security strategy
  • Create and maintain comprehensive documentation for workflows and integrations, and develop reports to measure program success
  • Assist with SOAR tool migrations, document all system changes, and stay ahead of the latest SOAR and automation trends
What we offer
What we offer
  • Medical (HSA & FSA), dental, vision
  • 401(k) with company match
  • Employee stock purchase plan
  • Commuter benefits
  • In-house wellness program
  • Broad learning & development opportunities
  • A charitable giving platform with company match
  • Fitness allowance
  • Employee discount programs
  • Free games & events
  • Fulltime
Read More
Arrow Right

Cloud Security Test Engineer

This role involves designing and executing complex penetration tests against clo...
Location
Location
India , Bangalore
Salary
Salary:
Not provided
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • B.E / B.Tech / M.Tech / MCA in Computer Science or Information Technology
  • Minimum of 2 to 6 years penetration testing, with a strong focus on cloud environments
  • In-depth understanding of cloud technologies (AWS, Azure, GCP) and their security implications
  • Proficiency in advanced penetration testing tools and techniques, such as Burp, ZAP, Metasploit, Cobalt Strike, and PowerSploit
  • Experience with container technologies (Docker, Kubernetes) and serverless architectures
  • Strong scripting skills (Python, PowerShell) for automation and custom tool development
  • Experience with security orchestration, automation, and response (SOAR) platforms
  • Active security certifications such as OSCP, CSSLP or related is strongly desired
  • Ability to work well under minimal supervision
  • Requires strong interpersonal, organizational, written and verbal communication skills
Job Responsibility
Job Responsibility
  • Design and execute complex penetration tests against cloud-native applications, infrastructure, and data stores
  • Exploit vulnerabilities in cloud platforms, such as AWS, Azure, and GCP, using advanced techniques and tools
  • Assess the security posture of cloud-native applications, microservices, and serverless architectures
  • Develop and execute attack scenarios that simulate real-world threats, including supply chain attacks, privilege escalation, and lateral movement
  • Lead and mentor a team of experienced penetration testers, providing guidance and support on advanced techniques and tools
  • Assign tasks, review deliverables, and ensure project timelines are met
  • Develop and maintain standard operating procedures for complex penetration testing activities
What we offer
What we offer
  • Health & Wellbeing
  • Personal & Professional Development
  • Unconditional Inclusion
  • Fulltime
Read More
Arrow Right

Cloud Automation Test Engineer

This role involves designing and executing complex penetration tests against clo...
Location
Location
India , Bangalore
Salary
Salary:
Not provided
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Must have B.E / B.Tech / M.Tech / MCA in Computer Science or Information Technology
  • Must have a minimum of 2 to 6 years penetration testing, with a strong focus on cloud environments
  • In-depth understanding of cloud technologies (AWS, Azure, GCP) and their security implications
  • Proficiency in advanced penetration testing tools and techniques, such as Burp, ZAP, Metasploit, Cobalt Strike, and PowerSploit
  • Experience with container technologies (Docker, Kubernetes) and serverless architectures
  • Strong scripting skills (Python, PowerShell) for automation and custom tool development
  • Experience with security orchestration, automation, and response (SOAR) platforms
  • Active security certifications such as OSCP, CSSLP or related is strongly desired
  • Ability to work well under minimal supervision
  • Requires strong interpersonal, organizational, written and verbal communication skills
Job Responsibility
Job Responsibility
  • Design and execute complex penetration tests against cloud-native applications, infrastructure, and data stores
  • Exploit vulnerabilities in cloud platforms, such as AWS, Azure, and GCP, using advanced techniques and tools
  • Assess the security posture of cloud-native applications, microservices, and serverless architectures
  • Develop and execute attack scenarios that simulate real-world threats, including supply chain attacks, privilege escalation, and lateral movement
  • Lead and mentor a team of experienced penetration testers, providing guidance and support on advanced techniques and tools
  • Assign tasks, review deliverables, and ensure project timelines are met
  • Develop and maintain standard operating procedures for complex penetration testing activities
What we offer
What we offer
  • Health & Wellbeing
  • Personal & Professional Development
  • Unconditional Inclusion
  • Fulltime
Read More
Arrow Right

Software Developer

The Software Developer II performs advanced (senior-level) software development ...
Location
Location
United States , Austin
Salary
Salary:
Not provided
triwavesolutions.com Logo
Triwave Solutions
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Graduation from an accredited four-year college or university with major coursework in computer science, computer information systems, software engineering, cybersecurity, or a related field
  • Two (2) years of full-time experience in software development, cloud engineering, SIEM engineering, or cybersecurity engineering
  • Knowledge of Microsoft Sentinel architecture, SOAR, and UEBA capabilities
  • Knowledge of Azure cloud services, Logic Apps, Azure Functions, Event Hubs, Key Vault, and Azure AD
  • Knowledge of security operations processes (triage, threat detection, incident response, threat modeling)
  • Knowledge of MITRE ATT&CK, NIST CSF, Zero Trust Architecture concepts
  • Knowledge of programming and scripting languages (Python, PowerShell, KQL, C#, JavaScript, or equivalent)
  • Knowledge of CI/CD pipelines, DevOps practices, and Git-based version control
  • Knowledge of API integrations and JSON/YAML structures
  • Skills in building Logic App workflows and custom Sentinel automation playbooks
Job Responsibility
Job Responsibility
  • Designs, develops, tests, and deploys Sentinel SOAR automation playbooks using Azure Logic Apps, Azure Functions, ARM templates, and REST APIs
  • Creates automated workflows for alert enrichment, triage, response actions, notification processes, and case management
  • Integrates Sentinel with third-party systems (EDR, IAM, ticketing systems, email gateways, firewalls, etc.) to automate security operations
  • Develops custom UEBA detection rules, anomaly models, ML-based behavior patterns, and advanced hunting queries (KQL)
  • Builds and maintains analytics content, data parsers, normalization rules, and entity behavior profiles
  • Evaluates behavioral anomalies and collaborates with cybersecurity teams to fine-tune detection logic
  • Designs and implements custom data connectors, ingestion pipelines, and data transformation logic
  • Creates dashboards, workbooks, hunting queries, and detection-as-code assets
  • Performs platform tuning to improve performance, reduce noise, and align to MITRE ATT&CK and Zero Trust principles
  • Develops supporting code modules, scripts, microservices, and helper APIs using Python, PowerShell, .NET, or similar languages
  • Fulltime
Read More
Arrow Right

Senior Analyst, Security Operations Center

The Senior Analyst, Security Operations Center (SOC) is a technical leader respo...
Location
Location
United States , Charlotte
Salary
Salary:
Not provided
brightspeed.com Logo
Brightspeed
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Associate's degree in Computer Science, Information Systems, Engineering, Technology, or related field or equivalent experience/training
  • Experience managing cases/incidents
  • Ability to think analytically
  • Robust creativity and problem-solving skills
  • Knowledge of technical systems and terminology
  • Proficiency in threat management analysis and dissemination
  • Proficiency in scripting languages
  • Advanced written and verbal communication skills
Job Responsibility
Job Responsibility
  • Lead incident response efforts for high-severity and complex security events, serving as the primary technical coordinator during major incidents
  • Act as escalation point for junior analysts, providing technical guidance and decision support in real time
  • Oversee daily SOC operations, including shift management, workload distribution, and quality assurance of investigations
  • Conduct post-incident reviews and facilitate lessons-learned sessions to drive continuous improvement
  • Mentor and train junior analysts to elevate team capabilities and strengthen overall SOC maturity
  • Perform advanced threat analysis, including APT detection, multi-stage attack correlation, and deep analysis of threat actor tactics, techniques, and procedures (TTPs)
  • Lead proactive threat hunting initiatives across cloud, network, identity, and endpoint environments
  • Design and implement advanced detection rules, correlation logic, queries, and dashboards in SIEM and SOAR platforms
  • Develop custom automation playbooks to accelerate investigation, triage, and containment processes
  • Evaluate and recommend enhanced SOC technologies, detection techniques, and analytic capabilities
What we offer
What we offer
  • Competitive compensation
  • Comprehensive benefits
  • Medical, dental, vision, and life insurance
  • Employee assistance program
  • 401K plan with company match
  • Voluntary benefits
  • Fulltime
Read More
Arrow Right