> Markdown version of [/jobs/ext/2293600-security-engineer](https://www.wearedevelopers.com/jobs/ext/2293600-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer - **Company:** Volvo Group - **Location:** Greensboro, United States - **Experience:** Expert - **Salary:** $111,100.0 - $137,200.0 - **Contract:** Permanent contract - **Skills:** .NET Framework, Application Programming Interfaces (APIs), Artificial Intelligence, Amazon S3, C Sharp (Programming Language), Cloud Computing Security, Cyber Security, System Configuration, Continuous Integration, Data Architecture, Data Infrastructure, Dataspaces, Data Structures, Query Languages, Entity Relationship Models, Graph Database, JSON, Python (Programming Language), Neo4j, Windows PowerShell, Red Team (Cyber Security), Kusto Query Language, Security Information and Event Management, Software Construction, Software Engineering, SQL Databases, Systems Integration, TypeScript, YAML, Scripting, Large Language Models, Firewalls (Computer Science), Git, Containerization, Data Lakes, Bicep, Cosmos DB, Operational Systems, Api Gateway, Terraform, Splunk, Software Version Control, Docker - **Published:** August 29, 2026 - **Apply:** https://jobs.volvogroup.com/job/Greensboro-Senior-Engineer%2C-Cyber-Defense-Center-NC-27409/1365972455/?feedId=361555 ## About the Role * Collaboration & Articulation: Problem-solving mindset with the ability to bridge the gap between engineering and SOC operations effectively. Able to convey targeted messages to different audiences. * Core Security Expertise: Strong background in SOC and/or SecOps engineering. * Engineering Mindset: Proficiency in Python or PowerShell, software engineering best practices, APIs, and data structures (JSON/YAML). * Query Mastery & Scripting: Deep proficiency in security query languages (Splunk SPL, KQL, SQL) and Python/TypeScript. * GitOps & CI/CD: Hands-on experience with Git and CI/CD platforms for managing infrastructure and logic as code. * Security Tooling: Technical experience configuring and administering enterprise security controls (XDR/EDR/NDR, Firewalls, Cloud Security, DLP, Identity). Bonus if you have: * Data Modeling: Familiarity with Graph Databases (Neo4j, Cosmos DB Gremlin) and entity relationship modeling. * Applied AI: Experience integrating LLMs or building RAG pipelines for enterprise use cases. * Containerization & IaC: Experience with Docker, API Gateways, and Infrastructure-as-Code (Terraform/Bicep). * Software Development: Experience working with compiled languages (C# / .NET). * OT Security: Exposure to Operational Technology (OT) and manufacturing environments. Ready for the next move? Are you excited to bring your skills and disruptive ideas to the table? We can't wait to hear from you. Apply today! ## Description * Engineer Detection-as-Code: Write detection logic using KQL, SPL, SQL, and Python. Manage the lifecycle strictly through version control and CI/CD pipelines. Create new monitoring use cases based on red team exercises, CTIC reports, and your own hypothesis-driven threat research. * Automate Threat Response: Build and integrate modular automation playbooks across the security stack to accelerate incident response. * Optimize Security Controls: Configure and tune enterprise security controls (XDR, firewalls, cloud security, DLP) to adapt to new threats. * Drive Capability Engineering: Partner with cross-functional teams to translate analytical needs into architecture and working code. Ensure engineering output directly supports frontline defenders without adding operational friction. * Establish AI & Data Foundations: Integrate contextual data models (like knowledge graphs), API gateways, and threat intelligence pipelines to support our targeted AI and ML workloads. * Leverage Hybrid Data Ecosystems: Develop detection and automation use cases across a variety of different data architectures (SIEM, data lakes, S3/Storage blobs, Federated Search). * Mitigate Security Gaps: Mitigate detection and response gaps through the creation of new detection rules, improvement of processes, new architectural designs, and hand-over to other technical teams. * Enforce Pipeline Quality: Build and maintain CI/CD pipelines with automated validation gates for secure content deployment. Use breach attack simulation & threat intelligence verification where applicable in larger validation workflows. ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [How a Small Team Shrank a Microsoft Monorepo by 94%](https://www.wearedevelopers.com/videos/1236-how-a-small-team-shrank-a-microsoft-monorepo-by-94) - [CI/CD with Github Actions](https://www.wearedevelopers.com/videos/856-ci-cd-with-github-actions) - [Tips and Tricks for Working with JSON](https://www.wearedevelopers.com/videos/1229-tips-and-tricks-for-working-with-json) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Git for Code Reviews](https://www.wearedevelopers.com/videos/429-git-for-code-reviews) ## Related Articles - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline)