Назад
Company hidden
2 часа назад

Security Automation Engineer (AI)

112 500 - 187 500$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Automation Engineer (AI) (SOAR/LLM/Python): Building scalable security response automations and agentic AI workflows for a SOC platform with an accent on SOAR migration, LLM agent design, secure integrations, and production Python services. Focus on designing guardrails and output evaluations, integrating SIEM and EDR systems, and measuring response efficiency and analyst time saved.

Location: Chicago, Illinois; hybrid work with at least two days per week in person at an assigned hirify.global office

Salary: $112,500–$187,500 annually

Company

hirify.global provides data, technology, and information solutions while developing security capabilities for global operations and customers.

What you will do

  • Design, develop, and maintain security response automations on an agentic AI SOC platform, including migration of existing Splunk SOAR playbooks.
  • Build end-to-end agentic workflows with prompts, agents, tool integrations, guardrails, output evaluation, and human review.
  • Develop integrations across SIEM, EDR, threat intelligence, case management, and ITSM platforms using REST APIs, webhooks, and event-driven patterns.
  • Build Python tools, services, and APIs that expand platform capabilities and reduce repetitive analyst work.
  • Partner with detection engineering to convert security detections into automated response workflows.
  • Improve engineering standards through Git-based development, code reviews, automated testing, CI/CD, documentation, and runbooks.

Requirements

  • 10+ years of experience in security engineering, security automation, or software engineering with a strong cybersecurity focus.
  • Hands-on experience with SOAR or security automation platforms such as Splunk SOAR, Cortex XSOAR, Tines, or Torq.
  • Experience with modern LLM platforms, including agent design, prompt design, tool-use patterns, and model-output evaluation.
  • Strong production-level Python development and experience with REST APIs, JSON services, webhooks, authentication, OAuth, API keys, and secrets management.
  • Knowledge of SOC operations, incident response workflows, and the MITRE ATT&CK framework.
  • Ability to work in the Chicago hybrid arrangement with regular in-person attendance at an assigned office.

Nice to have

  • Production experience with autonomous or semi-autonomous agent systems and agentic AI security platforms.
  • Experience with LLM fine-tuning, systematic evaluations, safety testing, or red-teaming.
  • Exposure to Splunk Enterprise Security, SPL, detection logic, or detection-as-code.
  • Experience with ServiceNow, FastAPI, Flask, AWS, Docker, Kubernetes, Terraform, or DevOps practices.
  • Experience mentoring engineers or leading technical workstreams.

Culture & Benefits

  • Medical, dental, and vision coverage with day-one eligibility, plus HSA and FSA options.
  • Company-paid life and disability insurance, with optional legal, pet, travel accident, and long-term care coverage.
  • Paid parental leave, adoption assistance, fertility planning coverage, caregiver support, and dependent care benefits.
  • 401(k) with employer match, ESPP, tuition reimbursement, career coaching, and financial wellness resources.
  • Flexible time off or paid time off, up to 12 paid holidays, commuter benefits, and paid volunteer time.
  • Well-being support including therapy, coaching, meditation, and 24/7 emotional wellness resources.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →