SOAR and AI Engineer - Managed Security
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+8 more
Job description
Experteer Overview In this role you will design, build, and continuously improve automation and AI-assisted workflows for AHEAD’s 24/7 Managed Security operations. You’ll work closely with SOC and engineering teams to translate analyst needs into scalable SOAR playbooks, integrations, and AI-enabled capabilities. The position focuses on accelerating incident handling, enrichment, and response through automation while ensuring security and auditability. It’s an opportunity to shape security automation at scale within a culture that values belonging and cross-team collaboration. Compensation / Benefits * Design, develop, and maintain scalable security automation workflows in the SOAR platform * Create automated playbooks for triage, enrichment, containment, and case management * Integrate SOAR with SIEM, ticketing, collaboration, endpoint, identity, and cloud security tools * Develop Python scripts and integrations to automate tasks and normalize data * Apply AI/ML to improve analyst efficiency, alert triage, and workflow decisioning * Establish guardrails and validation for AI-enabled workflows * Collaborate with SOC, SIEM, threat detection, and incident response teams on automation opportunities * Monitor, tune, and optimize automation platforms for reliability and performance * Build dashboards and metrics to track automation adoption and incident response improvements * Contribute to automation/AI roadmap and client onboarding activities Tasks * Strong experience with SOAR platforms (preferably Swimlane and Palo Alto XSOAR) * Security automation, orchestration, and systems integration experience * Proficiency in Python or other scripting languages for automation * Experience with APIs, webhooks, JSON, authentication, and event-driven integrations * Familiarity with SIEM platforms and security operations workflows * Knowledge of AI-assisted operations and practical uses of AI in security * Excellent verbal and written communication skills * Incident handling and response experience * Ability to work independently and collaboratively in a high-sensitivity environment * 2-4 years in Information Security, Incident Response, SOAR engineering, or related fields * Hands-on experience with IDS, Firewall, SIEM, SOAR, EDR, IAM, email security, and cloud security tools * Understanding of security threats, attack vectors, vulnerabilities, and exploits * Knowledge of regular expressions and data transformation concepts * Customer service oriented with professionalism and strong judgment Key requirements * Medical, Dental, and Vision Insurance * 401(k) * Paid holidays * Paid time off * Paid parental and caregiver leave * Plus more benefits
Requirements
belonging alert triage, and workflow decisioning * Establish guardrails and validation for AI-enabled workflows * Collaborate with SOC, SIEM, threat detection, and incident response teams on automation opportunities * Monitor, tune, and optimize automation platforms for reliability and performance * Build dashboards and metrics to track automation adoption and incident response improvements * Contribute to automation/AI roadmap and client onboarding activities Tasks * Strong experience with SOAR platforms (preferably Swimlane and Palo Alto XSOAR) * Security automation, orchestration, and systems integration experience * Proficiency in Python or other scripting languages for automation * Experience with APIs, webhooks, JSON, authentication, and event-driven integrations * Familiarity with SIEM platforms and security operations workflows * Knowledge of AI-assisted operations and practical uses of AI in security * Excellent verbal and written communication skills * Incident handling and aa aaaaJ_ experience * Ability to work independently and collaboratively in a high-sensitivity environment * 2-4 years in Information Security, Incident Response, SOAR engineering, or related fields * Hands-on experience with IDS, Firewall, SIEM, SOAR, EDR, IAM, email security, and cloud security tools * Understanding of security threats, attack vectors, vulnerabilities, and exploits * Knowledge of regular expressions and data transformation concepts * Customer service oriented with professionalism and strong judgment Key requirements * Medical, Dental, and Vision Insurance * 401(k) * Paid holidays * Paid time off * Paid parental and caregiver leave * Plus more benefits
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on us.experteer.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Highest Paying Tech Companies for Developers
Navigating the AI Shift
Stephan Gillich - Bringing AI Everywhere
Dev Digest 134 - Where pixels sing?