Cyber Defense Monitoring Engineer – Automation & AI
CME GroupMatch Score
Against your primary resumeLogin to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Protocol Intelligence
Data-driven signals on your job's competitivenessLog in to see why each signal reads the way it does.
Job Description
Structured overview of role & requirementsAbout This Role
Lead transition to an AI-driven, autonomous Security Operations Center by designing and deploying AI agents for triage, context gathering, and initial containment.
Develop, maintain, and architect complex automation playbooks using Python, REST APIs, and SOAR platforms to optimize incident response and reduce detection and response times.
Act as senior escalation point for complex threats, execute threat hunts, oversee security tool health, and integrate LLMs and data science techniques into monitoring and detection workflows.
Minimum Requirements
5+ years progressive experience in SOC or Incident Response with deep technical knowledge of network protocols, OS internals (Windows/Linux), and adversary tactics (MITRE ATT&CK).
Advanced programming skills in Python, Go, or PowerShell and experience with RESTful APIs, JSON/XML.
Hands-on experience architecting workflows in SOAR platforms like Cortex XSOAR, Splunk SOAR, Torq, or Tines.
Bachelor's degree in Engineering, Computer Science, Information Security, or equivalent experience; certifications in security or automation are relevant.
Ideal Candidate Profile
Experienced cybersecurity professional with a strong engineering mindset blending security operations with automation and AI capabilities.
Skilled in AI/ML application including working with Large Language Models, prompt engineering, and data science tools to enhance SOC effectiveness.
Proven ability to lead advanced threat escalation and develop autonomous workflows within a high-complexity enterprise SOC environment.
