Security AI Ops Engineer

Thales•Austin, TX
•Hybrid

About The Position

Thales is looking for a Security AI Operations Engineer who bridges automated AI systems and human security operations. This role is responsible for the day-to-day supervision, quality control, and execution of AI-assisted security workflows. Working alongside the Security Automation & AI Engineering team, the Specialist manages "Human-in-the-Loop" (HITL) triage queues, maintains and updates knowledge bases feeding generative models, audits AI outputs for accuracy, and ensures prioritized investigation tasks are routed seamlessly to front-line security analysts and consultants.

Requirements

  • Bachelor’s degree, in Computer Science, Cybersecurity, Information Technology, Engineering, or a related field.
  • 8+ years in a Security Operations Center (SOC), Managed Security Services (MSSP), IT Service Management (ITSM), or technical workflow coordination role, including 2+ years working with AI/Gen AI-enabled tools or workflows.
  • Cybersecurity Foundation: Working knowledge of security operations, threat lifecycle, alert triage, WAF, API security, and common security frameworks (e.g., MITRE ATT&CK, NIST).
  • AI & Workflow Tooling: Practical experience interacting with generative AI tools, prompt workflows, and enterprise ticketing/orchestration platforms (e.g., Jira, ServiceNow, PagerDuty, or SOAR platforms).
  • Cloud & Search Interface Familiarity: Working comfort navigating the AWS Management Console (specifically Amazon Bedrock, Amazon OpenSearch Dashboards, and CloudWatch metrics).
  • Communication & Documentation: Strong technical writing skills with experience authoring security runbooks, SOPs, and structured process documentation.
  • Applicants must be legally authorized to work in the United States for any employer at the time of hire.
  • This position is not eligible for visa sponsorship or for assuming sponsorship of an employment visa now or in the future.

Nice To Haves

  • Data & Query Skills: Basic scripting ability in Python or experience writing search queries (OpenSearch / Elasticsearch queries, SQL, or Lucene).
  • Workflow Automation: Experience configuring no-code/low-code workflow tools, webhook triggers, or ticketing automation rules.
  • Industry Certifications: o AWS Certified Security – Specialty or AWS Certified Solutions Architect – Associate/Professional o AWS Certified AI Practitioner or Machine Learning – Specialty o CISSP (Certified Information Systems Security Professional) o GIAC Certifications: GCIH (Incident Handler), GCIA (Intrusion Analyst), GCDA (Detection Analyst), or GASAE (AI Security Automation Engineer)

Responsibilities

  • Review and validate low-confidence alert enrichments, threat summaries, and triage recommendations generated by AI agents.
  • Assign, dispatch, and track complex security investigations, policy changes, and incident response playbooks to appropriate Tier 2/3 analysts and consultants.
  • Serve as the operational escalation point when automated pipelines encounter exceptions, edge cases, or platform integration errors.
  • Curate, clean, and organize internal runbooks, standard operating procedures (SOPs), threat intelligence, and product documentation stored in Amazon Bedrock Knowledge Bases and Amazon OpenSearch Service.
  • Audit AI retrieval quality and document gaps in knowledge coverage that lead to model hallucinations or poor responses.
  • Perform routine prompt adjustments and template maintenance, submitting structured enhancement tickets to engineering when underlying code changes are required.
  • Regularly audit AI-generated outputs (incident summaries, triage context, customer reports) against human analyst benchmarks to ensure high fidelity and operational safety.
  • Identify recurring false positives or hallucination patterns, collaborating directly with automation engineers to refine model guardrails and prompt evaluation datasets.
  • Track and report on operational KPIs, including Mean Time to Respond (MTTR), task assignment velocity, and analyst AI adoption.
  • Train security analysts and services teams on prompt best practices, effective use of internal AI copilots, and feedback submission workflows.
  • Gather front-line feedback and feature requests from security practitioners to help shape the automation engineering roadmap.
  • Partner with the Sales Engineering team to develop and deliver Value-Added Services (VAS) proof-of-values (POVs), clearly demonstrating the business value and impact of these services.
  • Collaborate with Account teams to accelerate time-to-value for Thales solutions among non-VAS customers, strengthening customer adoption, retention, and renewal outcomes.

Benefits

  • Elective Health, Dental, Vision, FSA/HSA, Voluntary Life and AD&D, Whole Group Life w/LTC, Critical Illness, Hospital Indemnity, Accident Insurance, Legal Plan, Identity Theft, and Pet Insurance
  • Retirement Savings Plan after 30 days of employment with a company contribution and a match, and with no vesting period
  • Company paid holidays and Paid Time Off
  • Company provided Life Insurance, AD&D, Disability, Employee Assistance Plan, and Well-being Program
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service