Logo for HONEYWELL

Advanced Cyber Sec Archt/Engr

Role overview

Qualifications

  • A minimum of seven years of software development experience using Python and web frameworks such as Django and Flask.
  • Working knowledge of front-end technologies, including HTML, CSS, JavaScript, and jQuery.
  • Hands-on experience working in Linux environments, including Red Hat Enterprise Linux (RHEL) and Debian-based distributions.
  • Experience managing source code and collaborating through Git-based repositories.

Responsibilities

  • Collaborate closely with the Incident Response, Threat Intelligence, and Insider Risk teams to design, develop, and enhance capabilities on the Cortex XSOAR platform.
  • Develop and implement automation solutions that reduce manual effort and improve the efficiency of Security Operations Center (SOC) processes.
  • Operate effectively in a fast-paced environment, managing and prioritizing diverse requests from multiple teams.
  • Develop, maintain, and enhance internally built and third-party tools, ensuring their reliability, scalability, and alignment with operational requirements.

Key facts

  • Remote from: India
  • Full time
  • English

Hard skills

Other skills

  • Collaboration
  • Adaptability
  • Problem Solving

About the company

HONEYWELL logo

HONEYWELL

Electronic Equipment, Instruments & Components

Honeywell is a Fortune 100 company that invents and manufactures technologies to address tough challenges linked to global macrotrends such as safety, security, and energy. With approximately 110,000 employees worldwide, including more than 19,000 engineers and scientists, we have an unrelenting focus on quality, delivery, value, and technology in everything we make and do.

Company details

Company typeLarge
IndustryElectronic Equipment, Instruments & Components
Company size10001

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

This role is responsible for developing, enhancing, and supporting security automation solutions across Cortex XSOAR and Splunk. The successful candidate will collaborate with Incident Response, Threat Intelligence, Insider Risk, and SOC stakeholders to build integrations and automated workflows, onboard and maintain security data sources, and improve the reliability and efficiency of security operations. The position requires strong software development experience and the ability to deliver scalable solutions in a fast-paced, cross-functional environment.

Key Responsibilities

  • Collaborate closely with the Incident Response, Threat Intelligence, and Insider Risk teams to design, develop, and enhance capabilities on the Cortex XSOAR platform.
  • Develop and implement automation solutions that reduce manual effort and improve the efficiency of Security Operations Center (SOC) processes.
  • Operate effectively in a fast-paced environment, managing and prioritizing diverse requests from multiple teams.
  • Develop, maintain, and enhance internally built and third-party tools, ensuring their reliability, scalability, and alignment with operational requirements.

Required Qualifications  

  • A minimum of seven years of software development experience using Python and web frameworks such as Django and Flask.
  • Working knowledge of front-end technologies, including HTML, CSS, JavaScript, and jQuery.
  • Hands-on experience working in Linux environments, including Red Hat Enterprise Linux (RHEL) and Debian-based distributions.
  • Experience managing source code and collaborating through Git-based repositories.
  • A sound understanding of SQL fundamentals and database management systems (DBMS).
  • A demonstrated eagerness to learn new technologies and adapt quickly to changing requirements.
  • Basic knowledge of Security Operations Center (SOC) operations, including security monitoring, alert triage, incident investigation, and escalation processes.

Added Advantage

  • Experience designing and developing features, integrations, or automated playbooks within Security Orchestration, Automation, and Response (SOAR) platforms.
  • Hands-on experience onboarding, configuring, and validating data sources in Splunk.
  • Proficiency in developing and optimizing complex Splunk Search Processing Language (SPL) queries for security monitoring, investigation, and reporting.
  • Experience working with cybersecurity tools that support incident response and threat intelligence operations.
  • Experience integrating security platforms with IT service management tools and ITIL-aligned workflows, particularly ServiceNow.

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Related jobs

Other jobs at HONEYWELL

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.