Back to all jobs

FortiSOAR Specialist

Ref: JO-2608-362967

  • Environment: In-office
  • Contract Type: Permanent
  • Starts: 2026-09-30
Apply Report issue

Job Overview

We are looking for a talented and experienced FortiSOAR Specialist who will be responsible for the orchestration and automation of incident response activities.

The role supports customer engagements, working both off-site and on-site, leveraging FortiSOAR solutions and expertise in IT and cybersecurity technologies to implement, optimize, and demonstrate the value of Security Orchestration, Automation and Response (SOAR) solutions.

The successful candidate will serve as the primary technical and operational Subject Matter Expert (SME) for automation, integration, and playbook development. The role will work closely with Cyber Engineering, Cyber Defense, Platforms & Architecture, Service Delivery, and other relevant teams to deliver successful outcomes for customers.

Responsibilities:

  • Integrate new logging sources and develop playbooks to effectively triage and respond to security incidents while reducing investigation and response times.
  • Develop simple and complex playbooks, as well as standard and custom connectors, integrating FortiSOAR with various security and IT technologies.
  • Deploy, configure, manage, operate, and monitor FortiSOAR within a Security Operations Center (SOC) environment.
  • Identify challenges faced by customer security teams and provide guidance on SOAR best practices.
  • Deploy and manage FortiSOAR virtual machines across dedicated, on-premises, cloud, and multi-tenant environments.
  • Design, develop, and architect FortiSOAR solutions based on customer environment requirements.
  • Configure dashboards, reports, incident war rooms, and roster management.
  • Define and implement Jinja filters, functions, and conditions.
  • Support pre-sales, sales, and business development activities for new and existing services.
  • Support the service transition process and work with relevant teams to effectively transition customers and infrastructure into operations.
  • Work proactively and collaboratively with internal teams and external stakeholders to achieve mutually beneficial outcomes.
  • Support the rapid and effective detection, mitigation, containment, and response to cybersecurity incidents by leveraging integrations with infrastructure platforms, security tools, managed assets, and customer controls.
  • Create, optimize, and document processes, procedures, and workflows.
  • Track and report on SLAs, KPIs, and OLAs.
  • Initiate, support, and manage incidents, problems, issues, risks, and compliance activities.
  • Participate in 24×7 on-call support for critical or urgent activities as required.

Qualifications & Skills:

  • Bachelor’s degree in Computer Science, Information Systems, Electrical Engineering, or a closely related field.
  • Strong expertise in at least three of the following areas:
    • Security Controls Operations
    • Cyber Incident Response
    • Cybersecurity Detection
    • Managed Services Integration
    • Cyber Threat Intelligence
    • Threat Hunting
  • Minimum 5 years of hands-on experience with Fortinet FortiSOAR is required.
  • Proven experience developing FortiSOAR connectors and playbooks.
  • Hands-on experience integrating various technologies with SOAR platforms.
  • Experience with SIEM platforms such as Splunk, Microsoft Sentinel, QRadar, or Securonix is strongly preferred.
  • Fortinet FortiSOAR certifications, such as NSE 6 FortiSOAR Administrator and NSE 7 FortiSOAR Design and Development (Architect), are preferred.
  • Experience in the design, implementation, maintenance, and optimization of playbooks for the detection, protection, containment, and mitigation of cybersecurity threats and incidents.
  • Strong scripting and integration skills using technologies such as Python, Go, Kusto/KQL, and PowerShell.
  • Strong knowledge of information security technologies, including SIEM, NGFW, CTI, and WAF, as well as IT systems such as Microsoft 365 and service management tools.
  • Good understanding of APIs and interfaces used to integrate, automate, and orchestrate IT and security systems.
  • Solid experience and understanding of Managed Security Service delivery, cybersecurity concepts, and relevant security standards.
  • Demonstrated experience in effectively managing and mitigating security events, threats, attacks, and vulnerabilities.
  • Working knowledge of cyber threats, threat actors, Tactics, Techniques, and Procedures (TTPs), and threat mitigation across on-premises, cloud, and distributed environments.
  • Understanding of classic and emerging threat actor tactics, techniques, and procedures across both pre-exploitation and post-exploitation phases of attack lifecycles.
  • CISSP, CISM, CISA, or equivalent professional experience/certification is preferred.
  • ITIL certification or relevant experience is preferred.
  • Solid cybersecurity background with a strong understanding of security tools, infrastructure, and systems.
  • Customer- and team-focused approach.
  • Excellent organizational skills, with the ability to lead and motivate skilled security professionals.
  • Strong communication, presentation, training, and active listening skills.
  • Ability to collaborate with and influence pre-sales and sales teams to achieve agreed business outcomes.
  • Flexible approach to work based on operational and business requirements.
  • Strong interpersonal and collaboration skills, with the ability to work effectively across teams and reconcile differences constructively.

Benefits:

  • Health insurance with a leading global medical insurance provider.
  • Career progression and growth through challenging projects and diverse work opportunities.
  • Employee engagement and wellness activities throughout the year.
  • Excellent learning and professional development opportunities.
  • Annual flight tickets to the employee’s home country.
  • Inclusive and diverse working environment.
  • Flexible/hybrid working environment.
  • Open-door management and communication culture.

Salt is acting as an Employment Agency in relation to this vacancy.

Apply Report issue

Cyber Security and Risk jobs

Career and Job Insights

Apply for this job

FortiSOAR Specialist

  • United Arab Emirates, Dubai
  • Cyber Security and Risk, Technology
  • In-office
  • Permanent

Save jobs

Log in to save a job

Report job

FortiSOAR Specialist

  • United Arab Emirates, Dubai
  • Cyber Security and Risk, Technology
  • In-office
  • Permanent

"*" indicates required fields

Need talent? Request a callback

This form is for companies looking to hire talent.

I am looking for a job I have a general enquiry

"*" indicates required fields

E.g. “Senior Frontend Developer” or “Offshoring team for design.”
This field is hidden when viewing the form