Information Security Engineer, I

Zebra Technologies
Lincolnshire, IL, United States
3 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Starter
Experience required
0 years minimum
Compensation
$70,000.0 - $80,000.0
Working hours
Regular working hours
Job source

Tech stack

Zebra (Programming Language) Microsoft Excel Artificial Intelligence Cloud Computing Security Cyber Security Intelligence Analysis Python (Programming Language) Microsoft Security Essentials Security Information and Event Management Software Vulnerability Management Application Enhancement Tool Large Language Models
+9 more
Mitre Att&ck Mttr Cyber Threat Analysis Information Technology Cybercrime Microsoft Sentinel Cortex XSOAR Platform Splunk Security Orchestration, Automation & Response

Job description

We are seeking a forward-thinking AI Security Operations Engineer to spearhead the integration and creation of advanced AI capabilities within our 24/7 Security Operations Center (SOC). This role is pivotal in transforming our security posture by embedding agentic AI into our core operational functions. You will be responsible for architecting and implementing AI-driven solutions to enhance our threat detection, response, and intelligence analysis, directly impacting our vulnerability management, threat hunting, and incident response processes. Responsibilities: * AI-Enhanced Incident Response:

  • Design, build, and deploy agentic AI frameworks to accelerate the full incident response lifecycle, from initial detection and triage to containment and eradication.
  • Develop and refine sophisticated SOAR (Security Orchestration, Automation, and Response) playbooks that leverage AI prompts for dynamic, context-aware decision-making and automated remediation actions.
  • Integrate AI agents into existing security platforms (SIEM, EDR, XDR) to provide real-time analysis of security events, automated evidence gathering, and recommended response actions for SOC analysts.
  • AI-Driven Threat Hunting and Intelligence:
  • Create and manage AI-powered systems to proactively hunt for threats by analyzing vast datasets for anomalous patterns, novel attack techniques, and indicators of compromise (IOCs) that evade traditional detection methods.
  • Develop AI models and prompts to automate the collection, correlation, and analysis of threat intelligence from multiple sources, providing actionable insights tailored to our threat landscape.
  • Build AI agents capable of contextualizing threat intelligence, predicting potential attack vectors, and recommending proactive defensive adjustments.
  • Automated Vulnerability Management:
  • Implement AI-driven workflows to automate the identification, prioritization, and remediation of vulnerabilities across the enterprise.
  • Utilize AI to analyze vulnerability data in conjunction with threat intelligence and asset criticality, creating a dynamic, risk-based prioritization model.
  • Develop SOAR rules and AI prompts to orchestrate mitigation efforts, reducing the mean time to remediate (MTTR).
  • AI Capability Development and Integration:
  • Act as the subject matter expert for integrating generative and agentic AI into the SOC’s toolset and daily operations.
  • Collaborate with security analysts to identify and develop custom AI-powered tools and automations that address specific operational challenges and reduce manual effort.
  • Continuously evaluate and experiment with emerging AI technologies and security platforms to ensure our SOC remains at the cutting edge of security innovation.

Requirements

  • Bachelor’s Degree required or equivalent experience
  • 0-2 years of experience
  • Proven experience in a 24/7 SOC environment with hands-on responsibilities in incident response, threat hunting, or threat intelligence.
  • Strong practical experience with SOAR platforms (e.g., Palo Alto XSOAR, Splunk SOAR, Microsoft Sentinel) and developing complex automation playbooks.
  • Demonstrated ability to write and utilize scripts (e.g., Python) for security automation and integration.
  • Deep understanding of existing security platforms such as SIEM, EDR, and threat intelligence platforms.
  • Familiarity with the concepts of AI in cybersecurity, including crafting effective prompts for security use cases and understanding the principles of agentic AI workflows.

Preferred Requirements:

  • Hands-on experience integrating AI, particularly large language models (LLMs), into security tools and workflows.
  • Direct experience with AI-native security platforms like Microsoft Security Copilot.
  • Knowledge of API integration for connecting disparate security systems and data sources.
  • A strong understanding of threat actor methodologies (TTPs) and the MITRE ATT&CK framework.
  • Certifications related to security operations, automation, or cloud security (e.g., GCIH, GCIA, GDAT).
  • Good verbal and written communication Skills
  • Ability to understand end user issues
  • Technical hands-on experience
  • Able to work independently and excel in a collaborative environment
  • Ability to trouble shoot
  • Demonstrated knowledge of applicable IT systems/applications
  • Ability to develop new systems and tools
  • Demonstrated analytical skills
  • Comfortable performing in a fast-paced, high growth, rapidly changing environment
  • Ability to identify and implement process improvements

Benefits & conditions

Zebra is a federal contractor and is committed to an alcohol and drug free workplace. As a result, all U.S. based employees are subject to the Drug and Alcohol Free Workplace Policy and Procedure.

To all recruitment agencies: Zebra does not accept agency resumes. Please do not forward resumes to Zebra employees or any other team members. Zebra is not responsible for any fees related to unsolicited resumes and direct engagement with Zebra employees.

Zebra Total Rewards includes more than just pay and is structured to meet the needs of our changing global business and evolving talent. We are committed to providing our employees with a benefits program that is comprehensive and competitive - including healthcare, wellness, inclusion networks, and continued learning and development offerings. We offer community service days, in addition to the traditional insurances, compensation, parental leave, employee assistance program and paid time off offerings depending on the country where you work.

Salary: USD 70000.00 - USD 80000.00 Yearly

About the company

At Zebra, we are a community of innovators who come together to create new ways of working. United by curiosity and a culture of caring, we develop smart solutions that anticipate our customer’s and partner’s needs and solve their challenges. Being a part of Zebra Nation means you are seen, heard, valued, and respected. Drawing from our unique perspectives, we collaborate to deliver on our purpose. Here you are a part of a team pushing boundaries today to redefine the work of tomorrow for organizations, their employees, and those they serve. You’ll have opportunities to learn and lead in a forward-thinking environment, defining your path to a fulfilling career while channeling your skills toward causes you care about - locally and globally. Come make an impact every day at Zebra.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:08 min

Aligning engineering processes with core business impact metrics

Chris Riley · WWC 2021

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all