This role involves designing, building, and maintaining security automation across SIEM/SOAR platforms to streamline alert enrichment, correlation, incident response, and case management. The engineer will develop automation and integrations using Python, PowerShell, APIs, and cloud-native technologies with production-quality monitoring, documentation, and error handling. Collaboration with SOC analysts, detection engineers, and incident responders is key to automating repetitive tasks, improving detection quality, and reducing false positives. The position also involves designing and implementing AI-assisted and agentic security workflows for investigation, enrichment, summarization, and decision support, while ensuring human oversight and governance. Partnering with security, infrastructure, compliance, and platform teams to establish automation standards, perform code reviews, and mentor junior engineers is also a core responsibility. The role requires continuously improving SOC operational efficiency by identifying opportunities to automate manual processes and enhance incident response capabilities, as well as evaluating and implementing emerging AI and automation technologies to strengthen security operations.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior
Education Level
Associate degree