At a Glance
About This Role
Responsibilities
- Design, develop, implement, and maintain SOAR playbooks and security automation workflows that streamline SOC operations, including alert triage, enrichment, incident response, containment, case management, reporting, and identity-based investigations.
- Build and maintain integrations between SOAR platforms and security technologies using APIs, webhooks, SDKs, scripting, and custom connectors to automate security processes across the technology ecosystem.
- Optimize security operations by reducing manual effort, improving response times, enhancing detection workflows, and supporting operational scalability through automation and AI-driven initiatives.
- Administer SOAR platforms by managing upgrades, governance, testing, role-based access controls, change management, environment hardening, and overall platform health.
- Collaborate closely with SOC analysts, security engineers, consultants, leadership teams, and external vendors to identify automation opportunities and deliver operational improvements.
- Support AI-powered cybersecurity initiatives by researching emerging technologies, implementing intelligent orchestration workflows, and contributing to autonomous investigation capabilities.
- Produce technical documentation, workflow diagrams, operational procedures, and runbooks while participating in project planning, deployment, testing, and continuous improvement initiatives.
Requirements
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or a related technical discipline.
- 3–5 years of cybersecurity experience, including proven hands-on expertise with SOAR platforms in enterprise or Managed Security Services Provider (MSSP) environments.
- Strong experience designing and implementing security automation workflows from scratch while supporting Security Operations Center (SOC) environments.
- Solid understanding of incident response, detection engineering, threat intelligence, security orchestration, identity-based investigations, authentication mechanisms, and SIEM technologies, particularly Microsoft Sentinel and Microsoft Defender XDR.
- Experience integrating security platforms using REST APIs, JSON, webhooks, Python, PowerShell, and automation frameworks, along with familiarity with ticketing systems such as Datto Autotask.
- Knowledge of Microsoft Defender solutions, CrowdStrike Falcon, Microsoft Graph API, cloud security, endpoint protection, identity security, email security, and related cybersecurity technologies.
- Exposure to AI-driven security operations, cloud security platforms, DevSecOps concepts, governance, and automation best practices is highly desirable.
- Relevant certifications such as Security+, CySA+, GCIH, SC-200, AZ-500, SOAR platform certifications, or Microsoft and Splunk certifications are considered an advantage.
- Excellent analytical, troubleshooting, documentation, communication, and stakeholder management skills, with the ability to work independently in a fast-paced, remote-first environment aligned with USA Eastern Time business hours.
Benefits & Perks
About Jobgether
Jobgether is a global talent platform founded in 2020 and launched in 2021, focused on connecting white-collar professionals with remote and flexible job opportunities. The platform emphasizes three key dimensions of flexibility: location, working hours, and contract types. With over 60,000 remote positions available, Jobgether attracts around 1.5 million users monthly and facilitates 100,000 job applications each month. The platform utilizes proprietary AI and machine learning algorithms to match candidates with job offers based on their professional profiles, enhancing job satisfaction and retention. Jobgether also offers an AI-powered career coach to help users optimize their profiles, identify skill gaps, and prepare for job searches. Employers can post job offers and receive curated candidate lists, streamlining the recruitment process. Jobgether aims to reshape the future of work by promoting flexibility and remote opportunities, contributing to a significant shift in the labor market.
Security at Jobgether
Compiled from public job postings, careers pages, and company materials. Data may not reflect current state — verify during interviews.
Security Philosophy
“Publicly available information regarding Jobgether's internal Application Security mission, developer enablement approach, risk philosophy, and stated pain points or goals is not available.”
Security Team
Information regarding Jobgether's internal AppSec team organizational structure, reporting lines, key public-facing leaders, estimated team size, and active AppSec job postings by Jobgether as an employer is not publicly available. However, job postings for Application Security Engineer roles, which appear to be hosted by Jobgether for partner companies, indicate a demand for professionals with skills in integrating security tooling for static analysis, dependency scanning, container security, and policy enforcement. These roles also emphasize embedding security into the SDLC, familiarity with compliance frameworks such as SOC 2, ISO 27001, and FedRAMP, and experience with tools like HashiCorp Vault, Snyk, Trivy, Open Policy Agent, GitHub Actions, and GitLab CI.
Key Initiatives
No evidence was found for a Security Champions Program at Jobgether. However, job descriptions indicate a focus on 'Shift Left' practices, including embedding security into the SDLC by reviewing architecture, code, and CI/CD pipelines. The vulnerability management process involves supporting vulnerability management, risk assessments, and security incident response. Familiarity with security compliance frameworks such as SOC 2, ISO 27001, and FedRAMP is also preferred. Information on recent initiatives specific to Jobgether's internal AppSec team is not publicly available.
Preparing for an AppSec interview?
Get the weekly briefing 2,000+ security pros trust.
Interested in this role?
Apply on LinkedIn