> Markdown version of [/jobs/ext/2737090-sr-cyber-security-engineer-automation](https://www.wearedevelopers.com/jobs/ext/2737090-sr-cyber-security-engineer-automation). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Sr. Cyber Security Engineer - Automation - **Company:** Versant View all jobs - **Location:** Englewood Cliffs, NJ, United States - **Experience:** Expert - **Salary:** $130,000.0 - $160,000.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Amazon Web Services, Amazon S3, Audit Trail, Cloud Computing Security, Cloud Engineering, Code Review, Cyber Security, Continuous Integration, Data Validation, Github, Identity and Access Management, Intrusion Detection and Prevention, Python (Programming Language), OpenID, Role-Based Access Control, Secure Coding, Security Information and Event Management, Tripwire, Policy as Code, Data Logging, Large Language Models, Multi-Agent Systems, Software Security, Amazon Virtual Private Cloud (VPC), AI Platforms, Kubernetes, Infrastructure Automation Frameworks, Opsworks, Cloudwatch, Terraform, Devsecops, Serverless Computing, Docker, Security Orchestration, Automation & Response - **Published:** September 5, 2026 - **Apply:** https://www.careerjet.com/job/use90f47305e8e62c25063af9d6988af6c/eaa ## About the Role * Strong Python software engineering skills, including API integration, testing, packaging, error handling, and production troubleshooting. * Hands-on expertise with GitHub and GitHub Actions, including reusable workflows, OIDC, permissions, secure secrets use, and CI/CD controls. * Strong Terraform experience: modules, state, plans, code review, testing, and policy or guardrail implementation. * Deep practical understanding of AWS security and cloud architecture, especially IAM, network boundaries, logging, encryption, and serverless/container services. * Experience designing automation that is reliable, observable, least-privileged, and safe to roll out. * Demonstrated ability to lead design discussions, review code, and guide work across teams. * Working knowledge of AI/LLM application risks and the engineering controls needed for safe agentic automation., * Experience with security orchestration, SIEM/SOAR, detection engineering, incident response, or vulnerability-management automation. * Experience with policy-as-code and cloud security tools such as OPA, Checkov, tfsec, Trivy, AWS Config, Security Hub, or GuardDuty. * Hands-on delivery with LLM APIs, agent frameworks, MCP, RAG, evaluation frameworks, or enterprise AI platforms. * AWS Security Specialty, AWS DevOps Engineer, CISSP, Security+, or comparable certification. * Experience operating workloads with Docker, Kubernetes, ECS, or EKS. ## Description The Senior Automation Security Engineer designs and delivers scalable automation that strengthens the organization's security posture and engineering velocity. This role combines strong Python engineering with deep working knowledge of GitHub/GitHub Actions, Terraform, and AWS. The engineer leads secure automation patterns, enables disciplined internal use of AI tools, and builds production-quality agentic workflows with appropriate governance, observability, and human control. What You Will Do Automation Platform Engineering * Design, build, and operate reusable Python services, libraries, CLIs, and integrations that automate security controls and operational workflows. * Establish engineering standards for reliability, testing, observability, secrets handling, access control, and lifecycle ownership of automations. * Automate high-value workflows such as identity and access reviews, cloud configuration remediation, evidence collection, security findings enrichment, exception management, and incident response orchestration. GitHub, GitHub Actions & DevSecOps * Own and improve GitHub Actions patterns for secure CI/CD, including reusable workflows, OIDC-based cloud access, artifact controls, approvals, and policy checks. * Integrate code scanning, dependency controls, secrets detection, IaC scanning, tests, and release gates into engineering workflows without unnecessary delivery friction. * Review workflow and repository permissions, third-party actions, supply-chain risks, and runner security; drive pragmatic remediation. Terraform & AWS Security Automation * Design and maintain Terraform modules, guardrails, and policy-as-code controls for AWS environments. * Automate secure AWS configuration across IAM, Organizations, VPC, CloudTrail, CloudWatch, S3, KMS, Lambda, ECS/EKS, Secrets Manager, and related services. * Build safe detection and remediation flows using least privilege, change controls, dry runs, rollback approaches, and audit-ready logging. Internal AI Enablement & Agent Development * Develop governed internal AI automations and agents that use approved models, tools, knowledge sources, and identity boundaries. * Design agent workflows with explicit tool scopes, input validation, prompt-injection defenses, audit logs, evaluation cases, and human-in-the-loop approvals for material actions. * Create reusable patterns for tool calling, retrieval/RAG, workflow orchestration, context handling, and secure deployment; mentor teams on their use. * Champion responsible AI-assisted or "vibe coding" practices: clear review accountability, source validation, secure code patterns, and protection of internal data. Technical Leadership * Translate security and operational needs into an automation roadmap, architecture, and measurable outcomes. * Lead technical design reviews, mentor junior engineers, and partner with platform, cloud, SOC, and application teams. * Communicate tradeoffs and risk clearly to technical and non-technical stakeholders., * Automation products materially reduce manual work, improve control coverage, and have clear owners, runbooks, telemetry, and SLAs. * GitHub Actions and Terraform controls improve delivery security while remaining usable for engineering teams. * AWS risks are prevented, detected, or remediated through durable automation and measurable reduction in recurrence. * Internal AI agents deliver bounded business value while passing security review, evaluation, and operational-readiness criteria. * Teams adopt consistent, safe AI-assisted development practices and can reuse documented automation patterns. Level Expectations * Independently owns ambiguous, cross-team automation problems from design through production operation. * Sets technical direction and guardrails; does not merely implement tickets. * Mentors others and raises the engineering quality, security posture, and AI readiness of the broader organization. ## Related Videos - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Docker Compose: Rediscovered](https://www.wearedevelopers.com/videos/1978-docker-compose-rediscovered) - [Real-World Security for Busy Developers](https://www.wearedevelopers.com/videos/1545-real-world-security-for-busy-developers) - [CI/CD with Github Actions](https://www.wearedevelopers.com/videos/856-ci-cd-with-github-actions) ## Related Articles - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again)