Sr. Automation & Cybersecurity Engineer
Core
Design, build, and scale automation for the Security Operations Center (SOC) to handle detection, enrichment, triage, and incident response, including AI-assisted workflows.
Role type
Senior IC security automation engineer (SOC)
Builds
Automated detection, enrichment, triage, and response workflows for the SOC
Domain
Cybersecurity / Security Operations
Deliverable
production ML models | product features
Required skills
Python, PowerShell, API integration, SIEM/SOAR development, cloud automation, threat detection, incident response workflows
Preferred skills
Agentic workflow orchestration, LLM/AI agent design, detection-as-code, MITRE ATT&CK, Sigma rules, observability pipelines
Technologies
Microsoft Sentinel, Defender/XDR, Azure Logic Apps, Tines, ServiceNow, Log Analytics, Confluence
Responsibilities
Design automation for alert enrichment and incident response; Develop integrations using Python and cloud-native services; Collaborate with analysts to reduce false positives; Design AI-assisted workflows with human-in-the-loop; Mentor team members and establish automation standards
Seniority
Senior, hands-on IC