
Security Automation Engineer
Posted Aug 4

Posted Aug 4
This is a fully remote position, open to applicants in Colorado.
• Design, create, and enhance enterprise security automation solutions across on-premises, cloud, and hybrid environments.
• Architect scalable SOAR, API, scripting, and cloud-based automation workflows.
• Lead assessments, proofs of concept, and deployments of automation platforms and security technologies.
• Develop automation standards, reusable frameworks, coding guidelines, and best practices.
• Collaborate with Security Operations, Infrastructure, Identity, Network, Cloud, and Application teams.
• Design, develop, deploy, and sustain custom workflows, applications, integrations, and orchestration pipelines.
• Automate processes related to vulnerability management, incident response, IAM, investigations, alert triage, and remediation activities.
• Construct API integrations between security tools, cloud services, and enterprise applications.
• Troubleshoot intricate workflows, integrations, and production issues; conduct root cause analysis.
• Monitor platform health, workflow performance, and operational efficiency.
• Engage in production support and critical incident response.
• Establish automation metrics, dashboards, and KPIs.
• Maintain runbooks, playbooks, technical documentation, and operational standards.
• Evaluate emerging technologies, open-source solutions, and industry best practices.
• Provide technical leadership and mentorship for security automation initiatives.
• Drive ongoing improvements in automation maturity, operational excellence, service reliability, and customer satisfaction.
• A minimum of five (5) years of experience in security automation, cybersecurity engineering, software engineering, or infrastructure automation.
• At least five (5) years of hands-on experience with Tines or enterprise SOAR platforms such as Torq, Splunk SOAR (Phantom), Cortex XSOAR, or similar technologies.
• Experience in designing, implementing, and supporting enterprise security automation solutions.
• Proficient in Python, PowerShell, JavaScript, or other similar scripting languages.
• Experience in building and maintaining API integrations across security tools, cloud platforms, and enterprise applications.
• Strong understanding of Security Operations, SOAR, Vulnerability Management, Incident Response, IAM/SSO, cloud security concepts, REST APIs, integration frameworks, and software engineering best practices.
• Experience troubleshooting complex production issues and acting as a senior technical resource.
• Familiarity with AWS, Azure, or Google Cloud Platform.
• Excellent analytical, troubleshooting, documentation, and communication skills.
• Preferred experience integrating vulnerability management, SIEM, endpoint security, IAM, and cloud security platforms.
• Experience with Infrastructure as Code, including Terraform or CloudFormation, and CI/CD pipelines is preferred.
• Familiarity with Docker and Kubernetes is preferred.
• Experience with SaaS platforms and cloud-native architectures is preferred.
• Relevant certifications such as Security+, GSEC, GCSA, GCIH, CySA+, Azure Security Engineer, AWS Security Specialty, or equivalent credentials are preferred.
• A Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, Software Engineering, or a related field, or equivalent experience is preferred.
• Eligibility for a discretionary annual incentive plan for non-sales roles.
• Health insurance coverage.
• Life insurance options.
• Disability plans.
• Various retirement plans.
• Paid time off benefits.
• Exceptional health, dental, and vision insurance.
• Retirement 401(k) Savings Plan.
• Generous paid time off policy, including paid parental leave.
• Reasonable accommodations for individuals with disabilities.
Granicus
Upgrade, Inc.
S4 Capital Group
NBCUniversal
Get handpicked remote jobs straight to your inbox weekly.