XSOAR Cybersecurity Engineer
i
Qube
i
Qube is an IT consulting company based in Lisbon, Portugal, specializing in accelerating its clients' digital transformation through intelligent and efficient technological solutions.
The company focuses on three main areas of services: IT Outsourcing (providing scalable integration of experienced professionals), Project Implementation (custom software development, web, and mobile applications), and AI Consulting (helping organizations implement and optimize Artificial Intelligence strategies, from feasibility assessments to building predictive systems). i
Qube operates with a flexible,
- centric approach, supporting both Portuguese national operations and international customers through a nearshore model.
XSOAR Cybersecurity Engineer (Lisbon or Porto)
We are looking for a XSOAR Cybersecurity Engineer to integrate a team based in Lisbon or Porto.
Responsibilities
Your responsibilities include:
- Design, implement and maintain SOAR use cases and automated playbooks on platforms such as Cortex XSOAR, Microsoft Sentinel and Forti
SIEM; - Monitor and analyze security alerts from various SIEM platforms, ensuring an effective and timely response;
- Correlate and investigate logs from multiple sources (e. g. , Elastic, Sentinel, Forti
SIEM) to identify malicious patterns and potential incidents; - Develop automation scripts and integrations to speed up incident response;
- Continuously optimize SOAR workflows to reduce false positives and improve response efficiency;
- Document incident response procedures and contribute to the team knowledge base;
- Accompany and train junior SOC analysts in best practices and automation technologies;
- Participate in
- incident analysis and contribute to identifying root causes and improving processes.
*Requirements*
You must have:
- Academic degree level 4 or higher in IT, Computer Science, Security or equivalent professional experience;
- Minimum of 3 years experience in SOC environments or security operations;
- At least 1 year of practical experience with SOAR platforms;
- Proficiency in scripting languages: Python, Power
Shell or Bash; - Good understanding of incident response frameworks, threat detection and security monitoring;
- Knowledge of and practical experience with: Palo Alto Cortex XSOAR, Microsoft Sentinel and Forti
SIEM.
We value:
- Experience with other automation tools, such as: Elastic Security (Elastic SIEM), Tines, DFLabs Inc
Man, Siemplify (Chronicle SOAR) and Swimlane; - Familiarity with integrations via REST APIs;
- Knowledge of the MITRE ATT&CK Framework and good technical documentation practices;
Relevant certifications, namely:
- Palo Alto Cortex XSOAR Certified Automation Engineer;
- Microsoft SC-200: Security Operations Analyst Associate;
- Fortinet NSE 5 - Forti
SIEM; - Elastic Certified Analyst;
- Swimlane Certified SOAR Developer;
- Tines Automation Specialist.
- Informações detalhadas sobre a oferta de emprego
Empresa: iQube IT Consulting Localização: Coimbra
Coimbra, Coimbra District, PortugalPublicado: 20. 12. 2025
Vaga de emprego atual
Seja o primeiro a candidar-se à vaga de emprego oferecida!