Enhancing the efficiency and maturity of the organization's security operations by designing and implementing robust automated solutions.
Requirements
- Design and deploy AI-driven security agents leveraging state-of-the-art Large Language Models (LLMs) to automate traditionally manual security operations and workflows.
- Leverage LLM-powered platforms such as Microsoft Security Copilot to support cybersecurity tasks including threat hunting, generating policy recommendations, and creating security incident response playbooks.
- Build and maintain SOAR playbooks integrated with various security platforms (e.g., SIEMs, EDRs, identity platforms) to streamline incident response and automation.
- Ensure automation workflows and monitoring solutions are resilient, integrated, and optimized for 24/7 detection and response capabilities.
- Support the administration and management of security tools within the Security Engineering team.
- Participate in proof-of-concepts for innovative security and automation solutions.
Responsibilities
- Design and deploy AI-driven security agents leveraging state-of-the-art Large Language Models (LLMs) to automate traditionally manual security operations and workflows.
- Leverage LLM-powered platforms such as Microsoft Security Copilot to support cybersecurity tasks including threat hunting, generating policy recommendations, and creating security incident response playbooks.
- Build and maintain SOAR playbooks integrated with various security platforms (e.g., SIEMs, EDRs, identity platforms) to streamline incident response and automation.
- Lead automation initiatives to eliminate manual processes, improve the reliability and visibility of security controls, and define metrics to measure the impact of process improvements.
- Ensure automation workflows and monitoring solutions are resilient, integrated, and optimized for 24/7 detection and response capabilities.
- Support the administration and management of security tools within the Security Engineering team.
- Participate in proof-of-concepts for innovative security and automation solutions.
Other
- plays a pivotal role in enhancing the efficiency and maturity of the organization’s security operations
- Working in close collaboration with Global Information and Cyber Security Defense (ICSD) function
- contribute to the broader Security Engineering team
- Lead security operations process improvements, including development and refinement of SOPs, playbooks, and standards.
- Create technical documentation and deliver enablement sessions to enhance security awareness and practices within engineering teams.