Назад
1 месяц назад

Senior Information Security Engineer (Detection, Automation & AI)

15 833 - 19 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Information Security Engineer (Detection, Automation & AI) (SIEM/SOAR, Python, AWS, LLM): Designing and automating security detection and incident-response workflows with an accent on high-fidelity SIEM detections, SOAR playbooks, and AI-assisted alert triage. Focus on building security operations as code, integrating LLM agents with investigation workflows, and securing AWS and on-premise infrastructure against complex threats.

Location: Foster City, California, United States; hybrid workplace

Salary: $190,000–$228,000 per year base salary, plus potential RSUs, Zoox Stock Appreciation Rights, and sign-on bonus.

Company

Zoox develops fully autonomous vehicle fleets and the supporting mobility ecosystem, combining robotics, machine learning, and automotive technology.

What you will do

  • Design, test, maintain, and tune high-fidelity SIEM detections mapped to the MITRE ATT&CK framework.
  • Architect SOAR playbooks and Python-based integrations using REST APIs to automate security operations and reduce response times.
  • Build LLM-powered workflows and agentic tools that analyze, summarize, and enrich security alerts for faster investigations.
  • Serve as a senior escalation point during incidents, guiding containment, eradication, and recovery.
  • Monitor and secure AWS and on-premise workloads across multiple operating systems.
  • Lead post-incident reviews and convert root-cause findings into preventive controls and detections.

Requirements

  • 8+ years of experience in information security, security operations, or DevSecOps engineering.
  • Hands-on experience with Splunk or ElasticSIEM for log analysis and detection creation.
  • Strong Python skills and experience building security tools, API integrations, and automation pipelines.
  • Experience designing and maintaining playbooks in a modern SOAR platform.
  • Practical experience using LLM APIs for security logs, alert analysis, or triage workflows.
  • Strong knowledge of AWS security services and incident-response lifecycles, including experience as an incident commander or handler.

Nice to have

  • CISSP, GCIA, GCIH, or AWS Certified Security – Specialty certification.
  • Experience with Terraform or other Infrastructure as Code tools.
  • Open-source security contributions, including tools or Sigma rules.

Culture & Benefits

  • Hybrid work environment in Foster City.
  • Paid time off, including sick leave, vacation, and bereavement leave, plus unpaid time off.
  • Zoox Stock Appreciation Rights and Amazon Restricted Stock Units.
  • Health, long-term care, disability, and life insurance.
  • Fast-moving, execution-oriented environment focused on autonomous mobility.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →