· Develop, maintain, and enhance automated playbooks in SOAR platforms to streamline and improve incident response workflows.
· Proactive SIEM Content Management Specialist to join our security operations team. The ideal candida
· Will be responsible for designing, implementing, and managing custom SIEM content that supports the organization's security monitoring and threat detection capabilities.
· Ensuring that our SIEM system is optimized to detect, analyze, and respond to potential security threats effectively and efficiently.
Requirements
· 1-4 years of experience into Develop and optimize automation playbooks within SOAR platforms (preferably Palo Alto XSOAR/XSIAM).
· Deep understanding of security concepts, including incident response, threat intelligence, network security, and vulnerability management.
· Utilize SOAR platforms to automate security processes and response activities.
· Collaborate with security analysts and incident responders to design playbooks that automate and orchestrate the detection, triage, investigation, and remediation of security incidents.
· Integrate playbooks with a variety of security tools such as SIEMs, firewalls, threat intelligence platforms, endpoint protection tools, and ticketing systems to improve the efficiency of the security operations center
· Test playbooks to ensure they are working as expected, troubleshoot issues, and optimize them for performance and scalability.
· Document playbook logic, workflows, and integrations to ensure that they are understandable and maintainable by other team members.
· Work closely with security engineers, analysts, and IT teams to align playbook development with security operations needs and organizational goals.
· Provide technical expertise in the configuration and optimization of SOAR tools.
· Assist in the evaluation and selection of SOAR technologies based on organizational needs.
· Document and maintain standard operating procedures for SOAR processes and playbooks.
· Experience with Cortex XSOAR (preferred) or other security orchestration platforms.
· Ability to troubleshoot issues, perform root cause analysis, and continuously optimize automation processes.
· Knowledge of scripting and automation (Python, JavaScript, PowerShell, etc.) for building playbooks and integrations.
· Master's or Bachelor’s degree in Cybersecurity, Information Technology, or related field.
· Location: Mumbai, Hyderabad
Skills Required
- 1-4 years of experience developing and optimizing automation playbooks within SOAR platforms
- Experience with Cortex XSOAR or other security orchestration platforms
- Understanding of incident response, threat intelligence, network security, and vulnerability management
- Knowledge of scripting and automation using Python, JavaScript, PowerShell, or similar technologies
- Ability to troubleshoot issues, perform root cause analysis, and optimize automation processes
- Bachelor's or Master's degree in Cybersecurity, Information Technology, or a related field
- Ability to integrate SOAR playbooks with SIEMs, firewalls, threat intelligence platforms, endpoint protection tools, and ticketing systems
What We Do
Embark is a specialized consulting and execution platform that helps global enterprises establish, operate, scale, and transform Global Capability Centres in India. Its integrated offering spans strategy, workspace, talent, human resources, legal, finance, tax, real estate, and IT. Operating as an end-to-end partner, Embark supports global companies with setup, managed services, and long-term operational integration.








