Virtusa Recognized as Global Leader in Gen AI Services by ISG Provider Lens® - Read report

× Success! Job has been saved successfully.

Security Automation Engineer

Colombo, Western Province, Sri Lanka
Posted on: 01-09-2025

Job description

Key responsibilities and Accountabilities

Develop and optimize automation workflows within Torq Hyperautomation or other SOAR platforms such as XSOAR Splunk SOAR LogicHub Swimlane

Build API integrations between security tools such as SIEMs EDRs XDRs case management systems and cloud platforms

Extensively work with JSON formatting parsing and data transformations to enable seamless data exchange across multiple security platforms

Streamline incident response automation to improve efficiency reduce MTTR and enhance security event correlation

Design and maintain fault tolerant automation processes that scale across thousands of clients

Maintain and optimize CI CD pipeline infrastructure within a SOAR platform

Collaborate with SOC analysts DFIR teams and threat intelligence groups to refine and enhance automation capabilities

Lead migration projects to improve automation platforms ensuring seamless transitions without impacting security operations

Continuously evaluate and implement emerging automation techniques to enhance SOC and MSSP workflows

Skills and Ability

Must Have Skills and Experience

1 plus years of experience in security automation SOAR engineering or cybersecurity automation within an MSSP DFIR or enterprise security environment

Extensive experience working with JSON including JSON schema design manipulation parsing and API based data transformations

Strong scripting skills in Python PowerShell or Bash for workflow automation

Proficiency in API development and integration including RESTful APIs JSON based APIs and webhook automation

Experience working with SIEM such as Splunk Sentinel QRadar Rapid7 IDR and EDR or XDR tools such as CrowdStrike SentinelOne Stellar Cyber Cortex XDR

Knowledge of incident response threat intelligence and security event lifecycle management

Nice to Have Skills

Experience in multi client environments MSSP IR firms or security service providers

Hands on experience with Torq Hyperautomation XSOAR Splunk SOAR or similar platforms

Certifications such as Torq SOAR Analyst Torq SOAR Expert CompTIA Security plus AWS or Azure Security Certifications

Proficiency in using JQ filters for data manipulation

Familiarity with CI CD pipelines such as Azure DevOps

Experience automating cloud security workflows AWS Azure Google Cloud

Familiarity with case management automation and cross platform data normalization

Prior experience leading SOAR migration projects or developing custom security playbooks

Qualification

Must Have Skills and Experience

  • 1+ years of experience in security automation, SOAR engineering, or cybersecurity automation within an MSSP, DFIR, or enterprise security environment

  • Extensive experience working with JSON, including JSON schema design, manipulation, parsing, and API-based data transformations

  • Strong scripting skills in Python, PowerShell, or Bash for workflow automation

  • Proficiency in API development and integration, including RESTful APIs, JSON-based APIs, and webhook automation

  • Experience working with SIEM such as Splunk, Sentinel, QRadar, Rapid7 IDR, and EDR or XDR tools such as CrowdStrike, SentinelOne, Stellar Cyber, Cortex XDR

  • Knowledge of incident response, threat intelligence, and security event lifecycle management

Nice to Have Skills

  • Experience in multi-client environments, MSSP, IR firms, or security service providers

  • Hands-on experience with Torq Hyperautomation, XSOAR, Splunk SOAR, or similar platforms

  • Certifications such as Torq SOAR Analyst, Torq SOAR Expert, CompTIA Security+, AWS or Azure Security Certifications

  • Proficiency in using JQ filters for data manipulation

  • Familiarity with CI/CD pipelines such as Azure DevOps

  • Experience automating cloud security workflows (AWS, Azure, Google Cloud)

  • Familiarity with case management automation and cross-platform data normalization

  • Prior experience leading SOAR migration projects or developing custom security playbooks

 Key job details

Primary Location
Colombo, Western Province, Sri Lanka
Job Type
Experienced
Primary Skills
SentinelOne, Sentinel, RESTful APIs, Splunk, Azure DevOps, SOAR, Python, SIEM, Bash, Cloud IDAM
Years of Experience
3
Travel
No
Job Posting
01/09/2025

Join Virtusa

 

Please enter a valid email address to begin your application.

Thank you for verifying your email. Please proceed with the steps below to apply.

We only accept the following file extensions: .pdf, .docx or .doc
Maximum file size: 1 MB
File name must not include special characters or spaces (e.g. “name_resume.pdf”)

We only accept the following file extensions:

Thank you. You already have an active account with Virtusa's hiring system. Please login to our portal to proceed with your application or apply for more opportunities.

LoginClick to Login

About Virtusa

Teamwork, quality of life, professional and personal development: values that Virtusa is proud to embody. When you join us, you join a team of 27,000 people globally that cares about your growth — one that seeks to provide you with exciting projects, opportunities and work with state of the art technologies throughout your career with us.

Great minds, great potential: it all comes together at Virtusa. We value collaboration and the team environment of our company, and seek to provide great minds with a dynamic place to nurture new ideas and foster excellence.

Virtusa is an Equal Opportunity Employer. All applicants will receive fair and impartial treatment without regard to race, color, religion, sex, national origin, ancestry, age, legally protected physical or mental disability, protected veteran status, status in the U.S. uniformed services, sexual orientation, gender identity or expression, marital status, genetic information or on any other basis which is protected under applicable federal, state or local law.

Applicants may be required to attend interviews in person or by video conference. In addition, candidates may be required to present their current state or government-issued ID during each interview. All candidates must be authorized to work in the USA.

Learn more

Awards and recognition

Find us on Glassdoor.

Have any questions?

What is the best way to find and apply for positions at Virtusa?

To join our bright team of professionals, you can apply directly to our website under the Careers tab and search all open jobs. https://www.virtusa.com/careers

Can I apply for more than one position at the same time?

Yes, you can. Virtusa gives you the flexibility to apply for multiple open positions that excite you about your future and align to your experience and career goals.

Can I apply for a position across multiple geographical locations?

Yes, you can. Virtusa is a global Company, and we serve our clients through our global delivery model.

What happens after I’ve submitted my resume?

Our dedicated recruitment team will review your online application and match it to all our open jobs. We update our open jobs on a daily basis and encourage you to check back often.

How will I be evaluated for a career opportunity with Virtusa?

Our team of recruiters will review your application, relevant job experience, and skills to appropriately align it to our open jobs. From there, the recruitment team will contact the qualified candidate to start the interview process.

Career insights

Want to explore the ways you can engineer your career in technology? Our thought leaders share key career insights for candidates from entry-level job seekers to senior technologists.