Senior Security Operations Engineer
Core
Implement AI-enabled SOC automation, develop security tooling and data integrations, tune detections to reduce false positives, and participate in incident response for network, infrastructure, and physical security services.
Role type
Senior Security Operations Engineer (AI/ML focus)
Builds
Security automation workflows, analyst tooling, dashboards, and data integrations for SOC operations
Domain
Cybersecurity / Security Operations Center (SOC) / AI-assisted operations
Deliverable
production ML models | product features
Required skills
AI-assisted operational workflows, security automation, signal enrichment, workflow orchestration, incident investigation, threat analytics, SIEM, network troubleshooting, C++/C# or Python or Scala programming, enterprise networking (DNS, TCP/IP, firewalls, routing, VPNs), insider threat platform experience, agentic AI or LLM-based automation design
Preferred skills
Experience with Purview, DTEX, Proofpoint ITM, Magnet Axiom, or Forcepoint, export control (EAR / ITAR) familiarity, government program environment experience
Technologies
PowerShell, Python, Logic Apps, C++, C#, Scala, SIEM, DNS, TCP/IP, firewalls, routing, VPNs
Responsibilities
Implement AI-enabled SOC automation and investigation capabilities, develop and operate security tooling and data integrations, tune detections and investigation workflows, participate in incident investigation and response, troubleshoot security issues affecting network and infrastructure, partner with engineering and security teams to automate manual processes, design and deploy agentic AI or LLM-based automation in security operations
Seniority
Senior, hands-on IC