AI Security Automation Engineer
Build and operate governed AI-enabled security automation, including agentic workflows, SOAR playbooks, control evidence, GRC processes, and integrations across security platforms. The role requires at least three years of cybersecurity or related experience plus programming, API, security operations, and LLM workflow expertise.
About the job
Responsibilities
- Design and implement AI agents that gather context, analyze security data, use approved tools, generate evidence, route work, and escalate decisions within defined guardrails.
- Develop and maintain SOAR and security automation playbooks for alert enrichment, triage, correlation, evidence capture, case creation, notifications, response recommendations, and remediation tracking.
- Automate security controls, KCI calculations, evidence collection, validation, testing support, exception handling, and management reporting.
- Streamline GRC workflows, including ISQ, TPSR, evidence collection, control mapping, risk flagging, exception routing, SLA tracking, and audit trails.
- Integrate SIEM, SOAR, EDR, identity, vulnerability, cloud security, ticketing, data platforms, APIs, and collaboration tools into end-to-end workflows.
Requirements
- 3+ years of experience in cybersecurity, SecOps engineering, security automation, platform engineering, GRC engineering, or a related role.
- Experience building production-grade security workflows, integrations, or automation.
- Hands-on programming experience with Python or a similar language, REST APIs, webhooks, JSON, SQL, authentication, data transformation, and error handling.
- Experience with SIEM, SOAR, EDR, case-management, ticketing, GRC, or comparable security platforms.
- Understanding of alert triage, security investigations, incident response, remediation, and operational security metrics.
- Experience developing LLM-enabled workflows or agents using tools, enterprise context retrieval, traceability, and human review.
Skills
Python, REST APIs, Webhooks, JSON, SQL, SIEM, Soar, Edr, GRC, Llm Agents, Incident Response, Cloud Security, Identity Management, Vulnerability Management, Case Management
Similar jobs
Security Engineering jobsSecures Supabase’s cloud platform, Kubernetes environments, containers, and infrastructure by conducting risk assessments, strengthening controls, and building scalable security guardrails. Requires senior-level platform or cloud security experience with deep AWS, Kubernetes, container, and Linux expertise.
Build and defend enterprise applications by conducting application security reviews, validating controls, and embedding security across the Secure SDLC. The role also develops agentic AI workflows, secure platform integrations, and internal security tooling, requiring software development experience and familiarity with modern application and AI security guidance.
Leads a global Security Operations team, setting detection, response, and security strategy while driving incident response and risk remediation. The role requires strong SaaS and cloud security experience, leadership ability, familiarity with major security standards, and responsible use of AI.
Own and scale security governance, risk, compliance, and customer assurance programs, including audits, controls monitoring, third-party risk, policies, and security questionnaires. The role requires 3–5 years of security GRC experience and hands-on understanding of IAM, endpoint, and cloud controls.
A hands-on graduate fellowship focused on identifying, exploiting, analyzing, and defending against cybersecurity vulnerabilities affecting critical infrastructure. Applicants should be final-year students or recent graduates in cybersecurity, IT, or computer science and must work onsite three days per week.