Security Automation and Response Engineer

TalentFish LLC
United States
6 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$100,000.0 - $110,000.0
Working hours
Regular working hours
Job source

Tech stack

Artificial Intelligence Cyber Security Computer Programming Computer Networks Query Languages Intrusion Detection and Prevention Python (Programming Language) Log Analysis Network Architecture Windows PowerShell Security Information and Event Management Scripting
+7 more
Computerised Systems Information Technology Cybercrime Purple Team (Cyber Security) Api Management Security Orchestration, Automation & Response Golang

Job description

  • Develop, implement, and maintain SOAR playbooks to automate repetitive security tasks, including alert triage, threat investigation, and incident response, using tools like SOAR, Python, and API integrations.
  • Advance Security Operations capabilities through AI-driven initiatives, in collaboration with the Information Security Operations Manager.
  • Investigate malware, intrusions, unauthorized access, and data infiltration/exfiltration events.
  • Analyze logs, memory, disk images, and network captures to determine attack scope and impact.
  • Stay current on cyber threats and industry best practices to continuously enhance SOC capabilities.
  • Work with SIEM platforms and associated query languages (Yara-L, CQL, SPL, etc.).
  • Participate in Purple Team activities.
  • Participate in on-call rotation and respond to critical security events.

Requirements

  • BS or BA in Computer Science, Engineering, or equivalent education, training, or work experience.
  • 5+ years of security experience, or equivalent training and education.
  • Solid knowledge of computing systems, data network communications, and network architecture.
  • Hands-on experience with SOAR playbook development.
  • Required scripting or programming skills (Python, PowerShell, Go, etc.).
  • Experience in incident response and threat investigation.
  • Experience in threat detection and understanding of logging systems.
  • Security certifications (GIAC, CISSP) preferred.
  • Effective written and verbal communication skills.

Benefits & conditions

This role requires authorization to work in the U.S. without current or future visa sponsorship. The expected salary range for this position is $100k - $110k per year, depending on experience and qualifications. This role qualifies for full comprehensive employee benefits such as medical, dental, and vision insurance, retirement savings, and paid time off. TalentFish is committed to pay transparency and equal opportunity. The salary range provided is in compliance with applicable state and federal regulations. All offers are contingent upon the completion of a background check, which may include but is not limited to reference checks, education verification, employment verification, drug testing, criminal records checks, and any required certifications or compliance requirements based on the end client’s background check policies and applicable laws.

About the company

TalentFish is casting a line for an Information Security Engineer Security Automation and Response. This is a full-time remote opportunity with our premier healthcare client.

This role will advance Security Operations capabilities through SOAR playbook development, automation, and AI-driven workflows, streamlining incident response and improving SOC operational efficiency.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:08 min

Building solutions with open source GoLang infrastructure tools

Jad Wahab · LIVE

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

6:16 min

Event-driven Golang backend architecture and cloud deployment

Irina Branovic Irina Branovic · World Congress 2026 Europe

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

Videos

See all

Related articles

See all