Senior SOAR Engineer - Onsite

Genesis10Chicago, IL
Onsite

About The Position

Genesis10 is seeking a Senior SOAR Engineer for a 12+ month contract opportunity with a Global Financial Institution. This role is responsible for designing, developing, and supporting security orchestration, automation, and response (SOAR) capabilities, with a primary focus on SOAR migration initiatives. The ideal candidate has deep expertise in Splunk SOAR, Python development, and security automation, and will be responsible for the development and optimization of automated incident response workflows, integrations, and orchestration processes.

Requirements

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field, or equivalent experience preferred
  • 5+ years of experience in security engineering, security automation, or SOAR development
  • Hands-on experience with Splunk SOAR, including playbook development, custom app development, custom function development, and platform administration/troubleshooting
  • Strong Python programming skills
  • Experience writing and optimizing SPL queries
  • Experience integrating security technologies through APIs, webhooks, and automation frameworks
  • Strong documentation and technical writing skills
  • Experience managing and maintaining integration inventories and system dependencies
  • Strong analytical, troubleshooting, and problem-solving skills

Nice To Haves

  • Experience with enterprise SOAR migration projects
  • Knowledge of security operations, incident response, and threat detection workflows
  • Experience with SIEM platforms, particularly Splunk Enterprise Security
  • Familiarity with cloud environments (AWS, Azure, or GCP)
  • Knowledge of REST APIs, JSON, and modern integration patterns
  • Relevant cybersecurity certifications (e.g., Splunk, Security+, CISSP, GSEC, GIAC certifications)

Responsibilities

  • Migration, implementation, and optimization of SOAR platforms and automation capabilities
  • Design, develop, test, and maintain Splunk SOAR playbooks, custom applications, and custom functions
  • Create and manage integrations between security tools, IT systems, cloud platforms, and third-party technologies
  • Develop and maintain Python-based automation solutions to support security operations and incident response
  • Utilize Splunk Processing Language (SPL) to support automation workflows, investigations, and reporting
  • Maintain ownership of the organization's orchestration and integration inventory, ensuring accuracy and alignment with operational requirements
  • Identify opportunities to automate repetitive security processes and improve response efficiency
  • Collaborate with Security Operations Center (SOC), Incident Response, Engineering, and Infrastructure teams to improve security workflows
  • Perform troubleshooting and root cause analysis of automation failures and integration issues
  • Develop and maintain technical documentation, architecture diagrams, operational procedures, and knowledge articles
  • Ensure solutions adhere to security, compliance, and governance requirements
  • Participate in platform upgrades, testing, and continuous improvement efforts

Benefits

  • Access to hundreds of clients, most who have been working with Genesis10 for 5-20+ years.
  • The opportunity to have a career-home in Genesis10; many of our consultants have been working exclusively with Genesis10 for years.
  • Access to an experienced, caring recruiting team (more than 7 years of experience, on average.)
  • Behavioral Health Platform
  • Medical, Dental, Vision
  • Health Savings Account
  • Voluntary Hospital Indemnity (Critical Illness & Accident)
  • Voluntary Term Life Insurance
  • 401K
  • Sick Pay (for applicable states/municipalities)
  • Commuter Benefits (Dallas, NYC, SF, and Illinois)
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service