Description of Task to be Performed:
The Security Automation (SOAR) Engineer will build, optimize, and scale our automated incident response workflows. You will bridge security operations and software engineering, using modern low-code/pro-code tools and AI to cut response times and strengthen our threat posture.
Core Responsibilities:
- Playbook Automation: Design, build, and maintain end-to-end incident response playbooks within our SOAR platform.
- Workflow Logic: Write custom automation logic using a mix of low-code tools and pro-code scripting.
- Integrations: Connect disparate security tools via REST APIs, webhooks, and event-driven architecture.
- Incident Response: Partner with the SOC team to translate manual triage steps into reliable, automated actions.
- AI Integration: Leverage frontier LLMs (such as ChatGPT, Grok, Claude Code, or Codex) to enhance automation intelligence and code generation.
Primary Languages & Technical Stack
- Query & Data: SQL and GraphQL.
- Scripting & Development: Proficiency in Python, JavaScript, or TypeScript (at least one required)