> Markdown version of [/jobs/ext/1409640-senior-cybersecurity-engineer](https://www.wearedevelopers.com/jobs/ext/1409640-senior-cybersecurity-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Cybersecurity Engineer - **Company:** E.C.I., Inc. - **Location:** Boston, MA, United States - **Experience:** Expert - **Salary:** $150,000.0 - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Microsoft Windows, Application Programming Interfaces (APIs), Amazon Web Services, Data Analysis, Automation of Tests, Microsoft Azure, Cloud Computing Security, Configuration Management, Cyber Security, Continuous Integration, Linux, Elasticsearch, Github, Identity and Access Management, Intrusion Detection and Prevention, Python (Programming Language), Parsing, Logstash, Ansible, Security Information and Event Management, Software Construction, Systems Integration, Data Logging, Data Ingestion, Delivery Pipeline, Software Security, Mitre Att&ck, Git, Containerization, Kubernetes, Information Technology, Microsoft Sentinel, Kibana, Restful APIs, Terraform, Splunk, Webhooks, Devsecops, Docker, Security Orchestration, Automation & Response - **Published:** July 23, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=8093f6a15b1d055d ## About the Role * Degree in Computer Science or Cyber Security, or equivalent hands-on experience * 2+ years building software in a professional setting, with strong Python development (services, automation, and APIs, not only light scripting) * Hands-on experience with the Elastic Stack (Elasticsearch, Logstash/Beats, Kibana) for log ingestion, detection, or analytics * Practical CI/CD experience, including automated testing, build pipelines, and secure deployment workflows * Working knowledge of infrastructure-as-code (Terraform, Ansible, or Salt) and configuration management * Proficiency with Git/GitHub in a collaborative engineering workflow * Experience with REST APIs, webhooks, and integrations in automation workflows * Familiarity with core security concepts: logging, alerting, threat detection, and incident response * Working knowledge of Linux and Windows and their security implications * Strong problem-solving mindset and clear written and verbal communication Preferred Experience * Experience automating detection and response workflows in a SIEM/XDR (Elastic preferred; Splunk or Microsoft Sentinel a plus) * Working knowledge of the MITRE ATT&CK framework and its use in detection engineering * Exposure to SOAR, MISP, or Sigma and detection-as-code practices * Foundational cloud security on AWS or Azure (IAM, shared responsibility model, basic compliance) * Exposure to container security and Kubernetes hardening * Interest in applying AI tooling to security automation ## Description The Cyber Security Engineer (DevSecOps) builds and maintains the automation, pipelines, and integrations that keep ECI's flagship security platform running. This is a hands-on, implementation-focused role: you will write production Python, ship CI/CD and infrastructure-as-code, and build and operate detection and response workflows in the Elastic Stack (Elasticsearch, Logstash/Beats, Kibana). It suits an engineer with a strong software-development foundation who wants to own the build-and-deploy side of security operations and turn manual work into reliable, automated systems. You will report into and implement the standards set by the Cybersecurity Architect. Position Responsibilities * Build and maintain Python automation, services, and integrations that improve detection, response, and customer experience across the security platform * Develop and operate CI/CD pipelines and infrastructure-as-code (Terraform, Ansible) to deploy and maintain security tooling * Build and tune detection and response content in the Elastic Stack: data ingestion, parsing and normalization, detection rules, and Kibana dashboards * Integrate security tools and data sources using REST APIs, webhooks, and SOAR playbooks * Containerize and deploy workloads with Docker and Kubernetes following secure-deployment practices * Write tests, documentation, and runbooks for the workflows and scripts you ship * Work alongside the Cybersecurity Architect to implement the platform's reference architecture and detection standards ## Related Videos - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [How a Small Team Shrank a Microsoft Monorepo by 94%](https://www.wearedevelopers.com/videos/1236-how-a-small-team-shrank-a-microsoft-monorepo-by-94) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)