Primary Responsibilities
· Author, test, and maintain automation scripts/workflows within SOAR platform
· Design, implement, and maintain efficient and reusable Python code
· Review, debug, and resolve technical issues throughout all stages of SDLC
· Integrate SOAR platform with other security tools and APIs to execute automated workflows
· Coordinate with System Administrators, Engineers, and ISSOs to provision service accounts and/or grant required permissions
· Assist with process development and process improvement for Security Operations to include creation/modification of SOPs, Playbooks, and Work instructions
· Measure effectiveness of process improvement and automation efforts via metrics and KPIs
· Have expert proficiency with Python
· Working knowledge of SOAP/REST APIs, JSON, HTML/CSS, Javascript, XML
· Experience with SOAR platforms such as Swimlane, Phantom, Demisto, etc
· Experience as a SOC Analyst and/or Incident Responder
· Authored SOC SOPs, playbooks, work instructions and/or other process documents
· Familiarity with Splunk Search Processing Language (SPL) and/or Elastic Domain Specific Language (DSL)
· General networking knowledge to include operation of routers, firewalls, DNS, DHCP, subnetting, VPN and Web Proxies
Required Education/Experience
BS degree in Science, Technology, Engineering, Math or related field and 3 years of prior relevant experience
Preferred Qualifications
Should have 2 years of experience serving as a SOC Analyst or Incident Responder
Freqently Asked Questions
Automation using Python at Base-One Inc streamlines security workflows by integrating SOAR platforms with diverse security tools, reducing manual incident response time. This leads to faster threat detection and remediation, enhancing overall cybersecurity efficiency in Hamilton’s tech landscape.
In Hamilton, VA, a Python Developer/Automation Engineer often contends with complex integrations between SOAR platforms and legacy security systems, requiring deep knowledge of APIs and network protocols. Navigating local compliance and ensuring seamless automation in hybrid environments also present significant challenges.
Proficiency in Python scripting, REST/SOAP APIs, and familiarity with SOAR tools like Swimlane or Demisto are essential. Additionally, understanding Splunk’s SPL and networking fundamentals such as firewalls and VPNs is critical for successful automation within security operations.
Professionals often transition from hands-on scripting roles to leading security automation strategy, becoming SOAR architects or security automation leads. Continuous upskilling in emerging platforms and threat intelligence can open doors to senior cybersecurity engineering or managerial positions.
Base-One Inc emphasizes integrating automation workflows with existing security tools to optimize incident response. The role involves close collaboration with SOC analysts and system engineers to develop scalable, efficient Python scripts that align with the company’s security operations roadmap.
At Base-One Inc, there’s a strong focus on blending automation with process improvement metrics, using KPIs to measure impact. The role uniquely combines software development with SOC operational knowledge, fostering a comprehensive understanding of both coding and security incident management.
Python Developers with automation expertise in Hamilton typically earn between $90,000 and $115,000 annually, influenced by experience and proficiency with SOAR platforms and security tools. This range reflects the demand for hybrid skills merging software engineering and cybersecurity.
Local employers often value certifications like CISSP, CEH, or vendor-specific SOAR platform credentials. Coupled with a STEM degree and hands-on Python experience, such qualifications enhance a candidate’s competitiveness in Hamilton’s growing cybersecurity market.
Hamilton’s cybersecurity niche is moderately competitive, with increasing demand for automation expertise. Base-One Inc attracts candidates by offering roles that blend development and SOC experience, appealing to professionals seeking to deepen their security automation skills locally.
Daily responsibilities include crafting and debugging Python automation scripts within SOAR platforms, collaborating on service account provisioning with system admins, and refining security operation processes through SOP and playbook development, ensuring smooth incident management.
Find The Related Jobs
Capitol Communicator
Full Stack Developer
Herndon, VA
Capitol Communicator
Full Stack Developer
Oakton, VA
Capitol Communicator
Full Stack Developer
Great Falls, VA
Capitol Communicator
Full Stack Developer
Dunn Loring, VA
Capitol Communicator
Full Stack Developer
Arlington, VA
Capitol Communicator
Full Stack Developer
Chantilly, VA