Назад
Company hidden
4 дня назад

Senior Automation Engineer (AI-Accelerated Threat Response)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Philippines
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Automation Engineer (AI-Accelerated Threat Response) (SOAR/Cybersecurity): Building and maturing security automation, orchestration, and response capabilities for Global Cyber Defense with an accent on AI-accelerated attack detection, incident triage, and containment. Focus on designing SOAR playbooks, integrating log sources and security tools, developing Python and AI/LLM-assisted workflows, and reducing response latency for machine-speed attacks.

Location: Manila Net Park Office, Manila, Philippines; flexible work schedule with available work-from-home arrangements

Company

Procter & Gamble produces globally recognized consumer brands and operates in approximately 70 countries.

What you will do

  • Implement and manage SOAR automation, orchestration, and incident-response capabilities for Global Cyber Defense.
  • Collaborate with the SOC, Detection Engineering, Incident Response Team, and other stakeholders to deliver security automation solutions.
  • Design and upgrade SOC workflows, playbooks, pipelines, and automated response actions for emerging AI-accelerated attack techniques.
  • Integrate log sources and security tools, enrich alerts, and develop workflows for efficient incident triage and containment.
  • Build custom scripts and evaluate AI/LLM-assisted tooling to improve detection, triage, remediation, and response consistency.
  • Analyze alert statistics and workflows to reduce false positives and guide engineering priorities.

Requirements

  • Comprehensive knowledge of classic and emerging threat actor tactics, techniques, and procedures, including AI/LLM-assisted reconnaissance, exploit development, and attack automation.
  • Proven experience using Python to automate security operations and incident response, including integration with AI/LLM APIs.
  • Strong understanding of security architecture, tool integration, API development, and automation.
  • Extensive Incident Response experience focused on reducing response time for machine-speed attacks.
  • Familiarity with SOC and SOAR processes, SIEM systems, security datasets, log formats, and protocols.
  • Excellent communication and collaboration skills for working with cross-functional security teams.

Culture & Benefits

  • Flexible work schedule with available work-from-home arrangements.
  • Performance bonus through the STAR program.
  • Health insurance, fitness support, and an Employee Assistance Program.
  • Opportunities to lead, guide, and collaborate on transformative cybersecurity projects.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →