Skip to main content

MDR Security Engineer

Technology
חברה בתחום הייטק / חומרה / תוכנה / סייבר
הרצליה, ישראללפני 2 שבועותעד 6.10.2026
משרה מלאה

תיאור המשרה

We are seeking an MDR Security Engineer to own and scale the automation layer that powers our global MDR operations. This role is responsible for building and operating production-grade automation systems that reduce manual workload, improve detection quality, and enable consistent, high-quality incident response.The ideal candidate is a hands-on engineer with strong experience in SOAR platforms, security operations, and automation design, capable of driving measurable improvements in efficiency, reliability, and response outcomes across a high-volume SOC environment.ResponsibilitiesUpkeep the design, development, and lifecycle of SOAR playbooks, workflows, and integrations across the MDR platformBuild and operate production-grade automation systems supporting alert triage, enrichment, investigation, and responseDefine and drive automation strategy by identifying high-impact, high-volume SOC processes and scaling them through automationDevelop integrations across SIEM, EDR/XDR, identity, cloud, and ticketing systems using APIs and scriptingPartner with MDR analysts, IR, threat hunters, and engineering teams to translate operational workflows into scalable automationImprove detection and response quality through automation of enrichment, investigation, and containment workflowsContribute to incident response and RCAs by delivering tooling that improves investigation speed, accuracy, and consistencyEvaluate and implement new automation capabilities, including AI-assisted workflows and data-driven decisioningMonitoring, Metrics & Reliability OwnershipDefine and own automation KPIs, including:Automation coverage (% of alerts handled or augmented)MTTD / MTTR improvementFalse positive reduction and signal-to-noise improvementAnalyst time saved and throughput increaseBuild and maintain dashboards and reporting to measure automation impact on SOC performance and SLAsEnsure production reliability and stability of automation systems, including:Monitoring workflow success/failure rates and execution latencyTracking integration and API health, errors, and retry behaviorImplementing logging, alerting, and observability across automation pipelinesContinuously optimize workflows based on data, feedback, and operational performance to ensure consistent 24/7 MDR operation.Requirements: 4+ years of experience in Security Operations, MDR, Incident Response, or Security Engineering2-3+ years of hands-on experience with SOAR platforms and security automationProven experience owning and operating production-grade automation workflows in a SOC/MDR environmentStrong understanding of SOC operations, alert triage, escalation workflows, and incident responseExperience with enterprise security technologies (SIEM, SOAR, EDR/XDR, IAM/AD)Strong scripting/development skills (Python, PowerShell, Bash) and experience building APIs and integrationsExperience with CI/CD, version control (Git), and deploying automation at scaleStrong analytical thinking and problem-solving skills with the ability to translate complex workflows into automationExcellent communication and collaboration skills across engineering and operations teamsNice to HaveExperience with AI-enhanced automation or large-scale workflow orchestrationExperience in high-volume MDR/SOC environmentsFamiliarity with threat hunting or detection engineering.This position is open to all candidates.

Keywords
PowershellPythonCI / CDGitCI/CD

מתעניינים במשרה הזו?