Security Automation Engineer
Core
Designing and operating AI-powered security threat detection and response automation systems (AI-SOC) to enable scalable, intelligent security operations.
Role type
Senior IC Security Automation Engineer (Detection Engineering)
Builds
AI-driven security automation workflows, SOAR integrations, and LLM-based triage/orchestration capabilities for the AI-SOC platform.
Domain
Cybersecurity / Security Operations / AI Engineering
Deliverable
production ML models | product features
Required skills
Python, security event processing, SIEM/EDR/SOAR/CTI platforms, RESTful APIs, cloud systems (AWS), Git/CI/CD
Preferred skills
LLM agent frameworks (LangChain, LlamaIndex), Kubernetes/EKS, log processing pipelines, security operations dashboards
Technologies
Python, AWS, SIEM, EDR, SOAR, CTI, RESTful APIs, JSON, Kubernetes, EKS, LangChain, LlamaIndex
Responsibilities
Design normalization, enrichment, and automated triage workflows for security events; Develop and operate SOAR workflows; Build integrations with security platforms (SIEM, EDR, CTI, ticketing); Create LLM-based triage logic and automated response orchestration; Manage incident response and system reliability for automation systems; Optimize automation workflows for performance and scalability.
Seniority
Senior, hands-on IC