





Mid-level plus recognized employer and metro location, but niche SOAR/SIEM skills limit applicant pool.
Security automation is moderately transferable, but SOAR and SIEM expertise creates domain-specific fit requirements.
Explicit 5+ years plus mandatory SOAR, SIEM, Python/Go, and cloud fundamentals makes filters strict.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Design, build, and maintain automation pipelines and tooling for AI-driven security detections, investigations, and response workflows.
Develop and operate SOAR playbooks and agentic AI workflows to automate triage, enrichment, and response to security alerts with minimal human intervention.
Integrate security tools (SIEM, EDR, TIP, identity platforms) with AI inference services and ensure observability, reliability, and testing of automation workflows.
5+ years experience in security engineering, SecOps, or automation roles.
Proficiency in Python and/or Go scripting; hands-on experience with SOAR platforms (e.g., Splunk SOAR, Palo Alto XSOAR).
Experience with SIEM platforms (Splunk, Microsoft Sentinel, Google Chronicle) and REST API/event-driven integration.
Familiarity with threat detection logic (MITRE ATT&CK, kill chain), LLM/AI APIs, cloud security fundamentals (AWS/Azure/GCP), and version control/CI-CD (Git, GitHub Actions).
Experienced in designing and operationalizing AI-powered security automation in production environments with reliable observability and testing.
Strong cross-functional collaboration experience with AI/ML, DevSecOps, and IT teams to embed security automation within infrastructure workflows.
Demonstrated ability to translate detection engineering needs into automated, low-noise alerts and improve signal quality continuously using feedback loops.