AlphaSense Oy logo
Posted July 31, 2026 · 0 days agoLast seen July 30, 2026Est. expiry September 4, 2026

Security Automation Engineer

Pune, India
Onsite · Software Engineering
Full-time · Mid-Level
English
No People Management
5 years experience
About the role

About the Role We are building an AI-augmented Security Operations capability and need a Security Automation Engineer to sit at the intersection of security engineering and AI systems. You will design, build, and maintain the automation pipelines and tooling that allow our AI-driven detections, investigations, and responses to operate at machine speed. Working alongside detection engineers, threat intelligence analysts, and AI/ML engineers, you will turn manual processes into reliable, observable, and testable automation workflows ing system Key Responsibilities AI-Powered Response Automation Design and operate SOAR playbooks and agentic AI workflows that triage, enrich, and respond to security alerts with minimal human intervention. Detection Engineering Support Translate detection logic and AI model outputs into actionable, low-noise alerts. Tune thresholds and automate feedback loops to continuously improve signal quality. Integration & Pipeline Development Build and maintain integrations between security tools (SIEM, EDR, TIP, identity platforms) and AI inference services using APIs, event streaming, and orchestration frameworks. Observability & Reliability Instrument automation pipelines with metrics, logging, and alerting so the security ops team can trust and verify AI-driven decisions in production. Automation Testing & Validation Write tests for playbooks and automation logic. Run purple-team exercises and tabletop simulations to validate that automated responses behave correctly under adversarial conditions. Cross-functional Collaboration Partner with AI/ML, DevSecOps, and IT teams to embed security automation into infrastructure change management workflows. Who You Are Basic Requirements 5+ years in security engineering, SecOps, or automation roles Proficiency in Python and/or Go for scripting and tooling Hands-on SOAR experience (Splunk SOAR, Palo Alto XSOAR, Tines, or similar) Experience with SIEM platforms (Splunk, Microsoft Sentinel, Google Chronicle) REST API integration and event-driven architecture Understanding of threat detection logic (MITRE ATT&CK, kill chain) Familiarity with LLM/AI APIs and prompt-driven automation workflows Version control and CI/CD practices (Git, GitHub Actions) Cloud security fundamentals (AWS, Azure, or GCP) Strong written documentation habits Nice to Have Experience deploying or fine-tuning ML models for anomaly detection or NLP-based log analysis Familiarity with agentic AI frameworks (LangChain, AutoGen, CrewAI, or similar) Container and orchestration experience (Docker, Kubernetes) Certifications: CISSP, AWS Security Specialty, or equivalent Background in threat intelligence automation or Cyber Thread Intelligence platform integration (Malware Information Sharing Platform, OpenCTI)

Job Details

Responsibilities

  • Design and operate SOAR playbooks and agentic AI workflows for security alert triage and response
  • Translate detection logic and AI model outputs into actionable, low-noise alerts
  • Build and maintain integrations between security tools (SIEM, EDR, TIP) and AI inference services
  • Instrument automation pipelines with metrics, logging, and alerting for observability
  • Write tests for playbooks and automation logic, and run purple-team exercises
  • Partner with AI/ML, DevSecOps, and IT teams to embed security automation into infrastructure change management

Requirements

  • 5+ years in security engineering, SecOps, or automation roles
  • Proficiency in Python and/or Go for scripting and tooling
  • Hands-on SOAR experience (Splunk SOAR, Palo Alto XSOAR, Tines, or similar)
  • Experience with SIEM platforms (Splunk, Microsoft Sentinel, Google Chronicle)
  • REST API integration and event-driven architecture
  • Understanding of threat detection logic (MITRE ATT&CK, kill chain)
  • Familiarity with LLM/AI APIs and prompt-driven automation workflows
  • Version control and CI/CD practices (Git, GitHub Actions)
  • Cloud security fundamentals (AWS, Azure, or GCP)
  • Strong written documentation habits

Skills & Technologies

PythonGoSOARSplunk SOARPalo Alto XSOARTinesSIEMSplunkMicrosoft SentinelGoogle ChronicleREST APIMITRE ATT&CKLLMAI APIsGitGitHub ActionsAWSAzureGCPLangChainAutoGenCrewAIDockerKubernetesCISSP
Seen 1 day agoPartial Schema
Financial overview
€28.2M
Revenue
€14.9M
Profit
0.5%
Profit margin
AlphaSense Oy logo
AlphaSenseOy · 204 open roles
Top locations: Remote - Global · 177 · Helsinki, Finland · 17 · New York, USA · 2+6 other locations
View company
Most-hired roles
Software Engineer
27
Account Manager
9
Customer Success Manager
6
Product Manager
6
Human Resources Specialist
5
Role-level mix
Mid-Level (158)Senior (7)Manager (3)

Help us improve JobCrawls — sign in to sync saved jobs across devices, or send feedback anytime.