Senior Automation Engineer (AI-Accelerated Threat Response),
Core
Design and implement SOAR platforms and AI/LLM-assisted automation to accelerate threat response and containment for AI-driven cyber attacks.
Role type
Senior IC Security Automation Engineer (SOAR/AI)
Builds
Automated SOC playbooks, response workflows, and AI-integrated detection pipelines
Domain
Cybersecurity / Security Operations Center (SOC)
Deliverable
production ML models | product features
Required skills
Python, SOAR platforms, SIEM systems, Incident Response, API development, log analysis, threat actor TTPs, AI/LLM integration
Preferred skills
None stated
Technologies
SOAR, Python, SIEM, AI/LLM APIs
Responsibilities
Evaluate and upgrade SOC processes to integrate automation via SOAR tools; Initiate new SOC automation compatible with existing detection tools; Integrate new log sources and develop playbooks for incident triage; Design custom scripts and evaluate AI/LLM tooling to automate workflows; Assess SOC alerts to minimize false positives; Create pipelines to enrich logs and alert results; Operate and mature SOC playbooks focusing on AI-enabled attack scenarios.
Seniority
Senior, hands-on IC