обновлено 1 месяц назад
Security Automation & AI Engineer
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Security Automation & AI Engineer (Cybersecurity/AI): Designing and maintaining SOAR playbooks, detection-as-code pipelines, and AI-assisted security operations solutions with an accent on threat detection, incident response, vulnerability management, and DevSecOps integration. Focus on building API integrations, embedding automated security controls into CI/CD workflows, and developing production-grade automation across SIEM, EDR, DLP, and IAM platforms.
Location: Barcelona, Spain
Company
develops precision engineered components and subsystems for mission-critical healthcare and advanced manufacturing applications, including minimally invasive surgery, robotics, and 3D metal printing.
What you will do
- Design, develop, and maintain security automation workflows and SOAR playbooks for alert triage, enrichment, containment, and remediation.
- Build detection-as-code pipelines with programmatic rule creation, testing, version control, and deployment across SIEM and EDR platforms.
- Develop AI-assisted investigation tools that correlate signals across SIEM, EDR, DLP, and IAM systems to accelerate incident response.
- Automate vulnerability management, including scan orchestration, prioritization, remediation tracking, and reporting.
- Embed automated security checks into GitHub, Azure DevOps, and other CI/CD workflows in collaboration with R&D Engineering, Cloud, DevOps, and IT teams.
- Build API integrations, evaluate emerging AI and automation technologies, support threat hunting and incident response, and maintain documentation and runbooks.
Requirements
- Bachelor’s degree in Computer Science, Cybersecurity, Software Engineering, or a related field, or equivalent practical experience.
- 3–5 years of experience in security operations, security engineering, or DevSecOps, focused on automation and tooling development.
- Strong Python skills and experience with PowerShell, Bash, or other scripting languages; ability to write maintainable production-quality code.
- Hands-on experience with CI/CD platforms such as GitHub Actions, Azure DevOps Pipelines, or Jenkins, plus Git and DevOps practices.
- Experience with SIEM, EDR, and/or SOAR platforms; working knowledge of AWS, Azure, or GCP, infrastructure as code, and RESTful APIs.
- Understanding of AI/ML applications in cybersecurity, NIST, MITRE ATT&CK, CIS, and GDPR.
Nice to have
- Familiarity with DLP and IAM tools.
- Experience with AI frameworks or platforms.
- Certifications such as GIAC GCSA or GMON, PCSAE, AWS Security Specialty, or equivalent.
Culture & Benefits
- Work within global Corporate and Shared Services teams supporting ’s business units.
- Collaborate across global, cross-functional teams in IT, R&D Engineering, Cloud, DevOps, and Security Operations.
- Contribute to a culture focused on teamwork, collaboration, empowerment, continuous learning, and customer value creation.
- Support security operations for a global organization with offices across the Americas, Europe, and Asia-Pacific.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →