Infosec SOAR Engineer

5 days ago


Hyderabad, Telangana, India Zoetis Full time

POSITION SUMMARY 

Zoetis, Inc. is the world's largest producer of medicine and vaccinations for pets and livestock.  The Zoetis Tech & Digital (ZTD) Global ERP organization is as a key building block of ZTD comprising of enterprise applications and systems platforms. 

Join us at Zoetis India Capability Center (ZICC) in Hyderabad, where innovation meets excellence. As part of the world's leading animal healthcare company, ZICC is at the forefront of driving transformative advancements and applying technology to solve the most complex problems. Our mission is to ensure sustainable growth and maintain a competitive edge for Zoetis globally by leveraging the exceptional talent in India. 

At ZICC, you'll be part of a dynamic team that partners with colleagues worldwide, embodying the true spirit of One Zoetis. Together, we ensure seamless integration and collaboration, fostering an environment where your contributions can make a real impact. Be a part of our journey to pioneer innovation and drive the future of animal healthcare. 

The Information Security Strategy & Risk Management team at Zoetis ensures a secure strategy through a disciplined process of making colleagues security savvy, driving down residual risk, reducing the attack surface, all while enabling the business. This team is responsible for critical services that strengthen Zoetis' security posture, including protecting sensitive data, identifying and mitigating cyber threats, and seamlessly integrating secure assets during organizational changes. Key functions within the team include Security Operations, Vulnerability Management, Threat Intelligence, Security Awareness, Mergers & Acquisitions Security, and Operational Technology (OT) Security. Through these services, the team empowers the organization to operate securely and efficiently in a dynamic digital environment.  

The SOAR Engineer is responsible for designing, implementing, and maintaining automated security workflows to streamline incident response and threat management within an organization. This role involves integrating various security tools, developing playbooks, and collaborating with security analysts to enhance detection, investigation, and remediation processes. 

POSITION RESPONSIBILITIES  

Percent of Time 

Design, build, and optimize XSOAR playbooks for alert triage, enrichment (Threat Intel, EDR, SIEM), containment, escalation, and reporting. 

Integrate SOAR with SIEM, EDR (CrowdStrike, Threat Intel, ITSM, Identity, Email (M365), and Data Security applications. 

Maintain platform health: monitor performance, review logs, manage integrations, handle upgrades, and troubleshoot failures. 

Implement robust error handling, retries, and circuit breakers within playbooks; ensure idempotent and safe actions. 

Develop and maintain documentation for playbooks, integrations, operational procedures, and release notes. 

Partner with SOC analysts, threat hunters, IR, and IT teams to translate requirements into reliable automation; conduct UAT and stakeholder signoffs. 

Establish version control, testing, and CI/CD practices for playbook code and content (e.g., Git-based workflows) 

Track and report automation KPIs; recommend enhancements based on new SOAR features and operational trends. 100% 

ORGANIZATIONAL RELATIONSHIPS 

Collaborates closely with onshore security teams, including Security Operations, Vulnerability Management, Threat Intelligence, Security Awareness and Data Protection  

Works with cross-functional teams such as Infrastructure, Application Development, and Cloud Engineering to ensure seamless integration and operation of security tools.  

Partners with Identity and Access Management teams to implement and maintain secure access controls.  

Engages with external vendors and service providers to evaluate and integrate third-party security solutions.  

EDUCATION AND EXPERIENCE  

Education: 

University Degree in Computer Science or Information Systems is required.   

MS or advanced identity courses or other applicable certifications is desirable, including Certified Information Systems Security Professional (CISSP)   

Certifications: Palo Alto Networks PCSAE; CISSP or similar; cloud security exposure (AWS/Azure/GCP) 

Experience: 

6-8 years in security automation in SOC environments 

Bachelor's degree in computer science, Information Security, or a related field (or equivalent experience). 

Excellent problem-solving, communication, and documentation skills; ability to work across time zones. 

TECHNICAL SKILLS REQUIREMENTS 

Hands-on experience with Palo Alto Networks Cortex XSOAR and Python scripting for automation/integration 

Familiarity with REST APIs, JSON, webhooks, and secure credential handling; experience building custom integrations/connectors. 

Understanding of SOC processes and incident response lifecycle (triage, containment, eradication, recovery) 

Experience operating in SIEM-centric workflows and integrating case management systems. 

Familiarity with secure coding practices, secrets management (Vault/KMS), and role-based access control in SOAR 

PHYSICAL POSITION REQUIREMENTS  

Regular working hours are from 3:00 AM to 12:00 PM EST. (ICC Second Shift)

Full time

  • Hyderabad, Telangana, India Micron Technology Full time ₹ 15,00,000 - ₹ 45,00,000 per year

    Our vision is to transform how the world uses information to enrich life forall.Micron Technology is a world leader in innovating memory and storage solutions that accelerate the transformation of information into intelligence, inspiring the world to learn, communicate and advance faster than ever.Micron Technology's vision is to transform how the world uses...


  • Hyderabad, Telangana, India Micron Technology Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Our vision is to transform how the world uses information to enrich life for all. Micron Technology is a world leader in innovating memory and storage solutions that accelerate the transformation of information into intelligence, inspiring the world to learn, communicate and advance faster than ever.Micron Technology's vision is to transform how the world...

  • Automation Engineer

    2 weeks ago


    Hyderabad, Telangana, India UltraViolet Cyber Full time ₹ 5,00,000 - ₹ 15,00,000 per year

    The Automation Analyst will be responsible for designing, developing, and maintaining automation workflows that enhance efficiency across cybersecurity and IT operations. The role involves collaborating with various functional teams such as SOC, IR, VM, Cloud, and Run to identify repetitive manual processes and automate them using tools, scripts, and...

  • Automation Engineer

    2 weeks ago


    Hyderabad, Telangana, India UltraViolet Cyber Full time ₹ 10,00,000 - ₹ 15,00,000 per year

    The Automation Analyst will be responsible for designing, developing, and maintaining automation workflows that enhance efficiency across cybersecurity and IT operations. The role involves collaborating with various functional teams such as SOC, IR, VM, Cloud, and Run to identify repetitive manual processes and automate them using tools, scripts, and...


  • Hyderabad, Telangana, India TMUS Global Solutions Full time

    About T-Mobile:T-Mobile US, Inc. (NASDAQ: TMUS), headquartered in Bellevue, Washington, is America's supercharged Un-carrier, connecting millions through its strong nationwide network and flagship brands, T-Mobile and Metro by T-Mobile. Customers benefit from an unmatched combination of value, quality, and exceptional service experience.TMUS Global...

  • Group Specialist

    5 days ago


    Hyderabad, Telangana, India DP World Full time

    KEY ACCOUNTABILITIES:Design and implement automated workflows and playbooks across SOC, CSPM, VM, and IAM platforms.Integrate diverse tools such as Sentinel (SIEM/XDR), Wiz (CSPM/CNAPP), SailPoint (IAM), Check Point (EDR/DLP), and Zscaler (SSE) using APIs and event-driven automation.Build automation for incident response (IR), threat enrichment, user...

  • Security Engineer

    6 days ago


    Hyderabad, Telangana, India, Telangana Tata Consultancy Services Full time

    Role: Security EngineerExperience: 5-10yearsLocation: Hyderabad, Chennai, PuneInterview Mode: VirtualMandatory skills: crowd strike, MS Defender, Agent Installation.JD:ResponsibilitiesAdminister and troubleshoot IT security applications (CrowdStrike, Defender Endpoint, FireEye, DLP).Perform system administration on Windows/Linux environments.Develop...

  • InfoSec L2 VM

    1 week ago


    Hyderabad, Telangana, India Zoetis Full time ₹ 6,00,000 - ₹ 18,00,000 per year

    POSITION SUMMARYZoetis, Inc. is the world's largest producer of medicine and vaccinations for pets and livestock. The Zoetis Tech & Digital (ZTD) Global Technology Risk Management Organization is a key building block of ZTD.Join us at Zoetis India Capability Center (ZICC) in Hyderabad, where innovation meets excellence. As part of the world's leading animal...

  • Security Engineer

    2 weeks ago


    Hyderabad, Telangana, India LiveRamp Full time US$ 4,000 - US$ 80,000 per year

    LiveRamp is the data collaboration platform of choice for the world's most innovative companies. A groundbreaking leader in consumer privacy, data ethics, and foundational identity, LiveRamp is setting the new standard for building a connected customer view with unmatched clarity and context while protecting precious brand and consumer trust. LiveRamp offers...

  • AWS Engineering

    7 days ago


    Hyderabad, Telangana, India Wipro Full time ₹ 6,00,000 - ₹ 18,00,000 per year

    Job DescriptionJob Title: AWS EngineeringReq Id: 83990City: HyderabadState/Province: TelanganaPosting Start Date: 9/4/25Wipro Limited (NYSE: WIT, BSE: 507685, NSE: WIPRO) is a leading technology services and consulting company focused on building innovative solutions that address clients' most complex digital transformation needs. Leveraging our holistic...