Overview
Security Automation Engineer to build AI-augmented security operations automation pipelines and tooling for detections, investigations, and responses.
What you'll do
- Design and operate SOAR playbooks and agentic AI workflows for alert triage, enrichment, and response.
- Translate detection logic and AI model outputs into actionable, low-noise alerts.
- Build and maintain integrations between security tools and AI inference services via APIs, event streaming, and orchestration frameworks.
- Instrument automation pipelines with metrics, logging, and alerting for observability and reliability.
- Write tests for playbooks/automation logic and validate automated responses through purple-team and tabletop exercises.
- Collaborate with AI/ML, DevSecOps, and IT teams to embed security automation into infrastructure change management workflows.
What you'll need
- 5+ years in security engineering, SecOps, or automation roles.
- Proficiency in Python and/or Go for scripting and tooling.
- Hands-on SOAR experience (Splunk SOAR, Palo Alto XSOAR, Tines, or similar).
- Experience with SIEM platforms (Splunk, Microsoft Sentinel, Google Chronicle).
- REST API integration and event-driven architecture experience.
- Understanding of threat detection logic (MITRE ATT&CK, kill chain).
- Familiarity with LLM/AI APIs and prompt-driven automation workflows.
- Version control and CI/CD practices (Git, GitHub Actions).
- Cloud security fundamentals (AWS, Azure, or GCP).
- Strong written documentation habits.
Nice to have
- Experience deploying or fine-tuning ML models for anomaly detection or NLP-based log analysis.
- Familiarity with agentic AI frameworks (LangChain, AutoGen, CrewAI, or similar).
- Container/orchestration experience (Docker, Kubernetes).
- Certifications: CISSP, AWS Security Specialty, or equivalent.
- Background in threat intelligence automation or threat intelligence platform integration (Malware Information Sharing Platform, OpenCTI).
Details
- Location listed as Delhi.
Read the full description and apply on the company’s own careers page.