Security Automation Engineer in India at Jobgether
Explore Related Opportunities
Job Description
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Security Automation Engineer based in India.
The role focuses on building the next generation of AI-powered security operations capabilities by combining security engineering, automation, and artificial intelligence.
You will design and maintain intelligent workflows that help detect, investigate, and respond to security threats at scale.
Working across security, AI, and engineering teams, you will transform manual processes into reliable and automated systems.
Your work will directly improve operational efficiency, threat response speed, and the overall security posture of the organization.
This is an opportunity to contribute to advanced security automation initiatives within a global, technology-driven environment.
The ideal candidate is passionate about cybersecurity, automation, and emerging AI technologies, with a strong ownership mindset.
As a Security Automation Engineer, you will be responsible for designing, implementing, and optimizing security automation solutions that enhance detection, investigation, and response capabilities. You will collaborate with cross-functional teams to build scalable security workflows, improve operational reliability, and ensure AI-driven security processes deliver accurate and actionable outcomes.
- Design and manage SOAR playbooks and AI-driven workflows to automate security alert triage, enrichment, investigation, and response processes.
- Support detection engineering initiatives by converting detection logic and AI model outputs into actionable security alerts.
- Build and maintain integrations between security platforms, including SIEM, EDR, threat intelligence platforms, identity systems, and AI services using APIs and event-driven architectures.
- Develop automation pipelines with strong observability through monitoring, logging, metrics, and alerting.
- Create and maintain testing frameworks for automation logic, playbooks, and security response workflows.
- Conduct validation exercises, including simulations and security testing, to ensure automated responses perform effectively under real-world scenarios.
- Partner with AI/ML, DevSecOps, and infrastructure teams to embed security automation into technology and operational processes.
- Continuously improve automation reliability, scalability, and effectiveness through feedback loops and performance analysis.
The ideal candidate brings strong experience in security engineering, automation, and modern cloud environments, along with the ability to work across technical teams. You should have hands-on experience building security workflows, integrating security tools, and applying automation techniques to improve cybersecurity operations.
- 5+ years of experience in security engineering, SecOps, cybersecurity automation, or related roles.
- Strong programming and scripting skills using Python and/or Go.
- Hands-on experience with SOAR platforms such as Splunk SOAR, Palo Alto XSOAR, Tines, or similar solutions.
- Experience working with SIEM platforms such as Splunk, Microsoft Sentinel, Google Chronicle, or equivalent technologies.
- Strong understanding of REST APIs, integrations, and event-driven architectures.
- Knowledge of threat detection concepts, including MITRE ATT&CK framework and cyber kill chain methodologies.
- Familiarity with LLM APIs, AI-driven automation, and prompt-based workflows.
- Experience with version control and CI/CD practices using tools such as Git and GitHub Actions.
- Understanding of cloud security fundamentals across AWS, Azure, or Google Cloud environments.
- Strong documentation skills and ability to communicate technical concepts clearly.
Nice-to-have qualifications:
- Experience deploying or tuning machine learning models for anomaly detection or security analytics.
- Familiarity with agentic AI frameworks such as LangChain, AutoGen, CrewAI, or similar technologies.
- Experience with containers and orchestration tools including Docker and Kubernetes.
- Security certifications such as CISSP, AWS Security Specialty, or equivalent.
- Experience with threat intelligence automation platforms or integrations with security intelligence ecosystems.
- Background in improving security operations through innovative automation solutions.
- Opportunity to work on advanced AI-driven cybersecurity initiatives with global impact.
- Exposure to emerging technologies across artificial intelligence, security automation, and cloud platforms.
- Collaborative environment working alongside experienced security, engineering, and AI professionals.
- Opportunity to contribute to the design and evolution of next-generation security operations capabilities.
- Inclusive workplace culture focused on innovation, respect, and professional growth.
- Flexible work environment supporting productivity and autonomy.
- Opportunities to expand technical expertise through challenging projects and continuous learning.