Job TitleRequired Qualifications5–7 years of experience with Splunk SOAR (Phantom)Strong Python (3.x) programming skills (API integration, async, error handling, testing)Solid understanding of security operations (SOC/IR) use casesHands-on experience integrating with tools such as: CrowdStrike, Defender, Carbon Black, Okta/Azure AD, Proofpoint/M365, Palo Alto/Fortinet, VirusTotal, ServiceNow/Jira, AWS/Azure/GCPStrong knowledge of REST APIs, JSON, Postman/SwaggerExperience with Git workflows and CI/CD pipelinesUnderstanding of Splunk Enterprise Security (ES), alerting, and adaptive responseExcellent communication and documentation skillsPreferred SkillsExperience working in financial services or regulated environmentsExposure to cloud security and automation frameworks