Kirkland & Ellis LLP

SOAR and Security Automation Engineer

Kirkland & Ellis LLP$110K — $130K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Cybersecurity, Information Systems, or a related field preferred
  • 3-7+ years in cybersecurity with experience in SOAR, SOC, incident response, or security engineering
  • Proven expertise in designing and maintaining automation workflows using platforms like Cortex XSOAR or Google SecOps
  • Strong scripting skills in Python, PowerShell, or related languages
  • Solid understanding of incident response lifecycle, SIEM, EDR, and threat intelligence practices
  • Familiarity with frameworks like ISO 27001, NIST 800-53, and MITRE ATT&CK
  • Capable of identifying inefficiencies and translating operational needs into automation strategies

Responsibilities

  • Design and improve automation playbooks for key incident types such as phishing and endpoint events
  • Translate manual processes into automated workflows to improve response speed
  • Administer and optimize SOAR platforms ensuring reliability and performance
  • Streamline security technologies across the ecosystem including SIEM and IAM
  • Oversee the lifecycle activities including development and deployment of automation solutions
  • Identify repetitive tasks and implement automation to reduce response time
  • Develop performance metrics to measure effectiveness and ROI of automation initiatives
  • Build AI-assisted workflows for triage and response using large language models

Benefits

  • Opportunity to transform security operations through innovative AI technologies
  • Engage in a high-impact role within a proactive cybersecurity team
  • Collaborate with diverse teams including SOC, incident response, and engineering
  • Access to continuous professional development and relevant certifications
  • Work in a dynamic environment focused on security innovation
  • Participate in shaping the future of AI-driven security operations
  • Encouragement to apply even if all qualifications are not met
Full Job Description
What You'll Do

Are you passionate about transforming security operations through automation and AI? As a SOAR & Security Automation Engineer, you'll design and scale intelligent workflows that power faster, smarter cyber incident response. You'll play a critical role within the Cybersecurity Investigations & Response function, helping protect the firm from evolving threats while driving efficiency through Security Orchestration, Automation, and Response (SOAR) and emerging AI technologies.
Working within the Security Governance organization led by the Chief Information Security Officer (CISO), you'll operate at the intersection of security, automation, and innovation. This is a high-impact role where sound judgment, attention to detail, and professionalism are essential as you support enterprise-wide security and compliance efforts.
• Design, build, and continuously improve automation playbooks for key incident types such as phishing, identity compromise, endpoint events, and threat intelligence.
• Translate manual investigation and response processes into scalable, automated workflows that improve accuracy and response speed.
• Administer and optimize SOAR platforms such as Palo Alto Cortex XSOAR and Google Security Operations (SecOps), ensuring reliability and performance.
• Connect and streamline security technologies across the ecosystem-including Security Information and Event Management (SIEM), Endpoint Detection and Response (EDR), identity and access management (IAM), ticketing systems, and threat intelligence platforms.
• Oversee end-to-end lifecycle activities including development, testing, deployment, and tuning of automation solutions.
• Identify repetitive, high-volume tasks and implement automation to reduce mean time to respond (MTTR) and improve signal-to-noise ratio.
• Develop and track performance metrics to measure the effectiveness, efficiency, and return on investment (ROI) of automation initiatives.
• Build and deploy AI-assisted workflows for triage, enrichment, and response using large language models (LLMs) and related tools.
• Collaborate with engineering and detection teams to evolve toward an agentic Security Operations Center (SOC) model.
• Partner with SOC, incident response, detection engineering, IT teams, and managed security service providers (MSSPs) to translate operational gaps into automation opportunities and continuously improve response processes.

What You'll Bring
• Education & Certifications: Bachelor's degree in Cybersecurity, Information Systems, or a related field (preferred); relevant certifications such as Palo Alto Networks Certified XSOAR Engineer, Google Cloud Professional Security Operations Engineer, or AI/automation credentials are a plus.
• Experience: 3-7+ years in cybersecurity, including hands-on work in SOAR, Security Operations Center (SOC), incident response, or security engineering.
• SOAR & Automation Expertise: Proven experience designing and maintaining automation workflows and playbooks using platforms like Cortex XSOAR or Google SecOps.
• Technical Skills: Strong scripting capabilities in Python, PowerShell, or similar languages to build scalable automation solutions.
• Security Operations Knowledge: Solid understanding of incident response lifecycle, SIEM, EDR, and threat intelligence practices.
• Framework Familiarity: Working knowledge of industry frameworks such as ISO 27001, National Institute of Standards and Technology (NIST) 800-53, Cybersecurity Framework (CSF), Center for Internet Security (CIS), and MITRE ATT&CK.
• Analytical Mindset: Ability to identify inefficiencies, solve complex problems, and translate operational needs into effective automation strategies.
• Collaboration & Communication: Strong interpersonal skills with the ability to work across teams and clearly communicate technical concepts to varied audiences.

If you're excited to shape the future of AI-driven security operations and make a meaningful impact in this SOAR & Security Automation Engineer role, we'd love to hear from you!

How to Apply

Thank you for your interest in Kirkland & Ellis LLP. To complete an application and submit your resume, please click "Apply Now."

Don't meet every job requirement? That's okay! If you're excited about this role but your experience doesn't perfectly fit every qualification, we encourage you to apply anyway. You may be just the right person for this role or others at Kirkland.

About Kirkland & Ellis LLP

Kirkland & Ellis LLP is an American law firm. Founded in 1909 in Chicago, Illinois, Kirkland & Ellis is the largest law firm in the world by revenue, the seventh-largest by number of attorneys, and is the first law firm in the world to reach US$4 billion in revenue. As of 2021, Kirkland & Ellis ranks third on Am Law's list of profits per equity partner. While Kirkland & Ellis was historically considered a firm focused on litigation, during the 2010s, it expanded private equity and restructuring practices which, together with large-scale commercial litigation, comprise the core legal service areas of the firm. Many attorneys from the firm have served as federal officials or judges, including United States Supreme Court Justice Brett Kavanaugh and former Attorney General William Barr.
Learn more about Kirkland & Ellis LLP
Industry
Founded
1909

Similar Jobs

More Jobs at Kirkland & Ellis LLP

More Information Technology Jobs

Find similar SOAR and Security Automation Engineer jobs: