JobMesh

Internship : SOAR Automation Engineer

ELCA Group · CH

Description Join our Security Operations team to develop automation features within our SOAR (Security Orchestration, Automation and Response) platform. The...

Job description

Description Join our Security Operations team to develop automation features within our SOAR (Security Orchestration, Automation and Response) platform. The intern will work on integrating Microsoft security tools to streamline detection, investigation, and response workflows. The mission includes building Python and REST API-based scripts to ingest and correlate security data, automate incident analysis, and apply AI-driven logic to accelerate case handling. You’ll gain hands-on experience with Microsoft Graph API, security automation frameworks, and cloud-based SOC operations. Objectives: - Design and implement automation workflows for incident detection and analysis. - Integrate data from Microsoft security tools into SOAR pipelines. - Develop Python scripts and REST API connectors for security event processing. - Enhance automation playbooks with AI-based decision logic. - Leverage Microsoft Graph API for contextual enrichment and correlation. - Document workflows and collaborate with SOC analysts to evaluate improvements. Our offer: › A dynamic work and collaborative environment with a highly motivated multi-cultural and international sites team › The chance to make a differen...