13 security automation and incident response engineer jobs at 12 companies in United States

1mo
Save
Mark Applied
Hide
Information Security Engineer – Security Automation and Response
Darien, Illinois, United States
$98k-$115k/yr RemoteFull Time
UChicago Medicine
UChicago Medicine: Academic medical health system based in Chicago.
5+ YOEBS/BA in CS or Engineering (or equivalent), 5+ years security experience, SOAR playbook development, scripting (Python, PowerShell, Go), SIEM/query languages, incident response and threat investigation.
SOAR, Python, API, PowerShell, Go, SIEM, Yara-L, CQL, SPL
1mo
Save
Mark Applied
Hide
Développeur(se) principal(e), Opérations de sécurité et intervention en cas d’incident / Senior Security Operations and Incident Response Engineer
Austin or Montreal
$160k-$272k/yr RemoteFull Time
Unity
UnityNYSE: U: Develops tools for games and interactive experiences.
Hands-on SecOps/Incident Response experience, detection engineering, threat hunting, cloud (AWS/GCP/Azure) knowledge, scripting/APIs for automation, mentoring experience, and strong investigative and communication skills.
AWS, GCP, Azure, APIs
1mo
Save
Mark Applied
Hide
Senior Engineer, Cloud and System Security
McLean or Betzdorf
OnsiteFull Time
SES
SESEuronext Paris / Luxembourg Stock Exchange: SESG: Global satellite operator providing content and connectivity solutions.
10+ YOEDegree in Computer Science, 10+ years experience in large heterogeneous environments; hands-on system and cloud security, automation (PowerShell, Python, Terraform), identity and access management, and incident response.
Microsoft Azure, Office 365, Azure Information Protection, Security Center, Cloud App Security, Microsoft Defender for O365, Defender for Identities, Intune, Conditional Access, Identity Protection, Application Gateway, Azure DevOps, MS Windows 10, Windows Server, Linux, Citrix, VMWare, VDI, WVD, Powershell, Python, Terraform, JSON, SOAP, RestAPI, Azure AD, Active Directory, Kerberos, SSO, SAML, OAuth, MITRE ATT&CK, HSM, EDR
1w
Save
Mark Applied
Hide
Cybersecurity Detection & Response Engineer
Plainfield or Tinley Park or Chicago or Evansville or Highland
$78k-$153k/yr OnsiteFull Time
Old National Bank
Old National BankNASDAQ: ONB: Regional financial services institution and community-focused bank.
4+ YOEBachelor’s degree or equivalent experience; 4+ years in cybersecurity; Sentinel, Defender XDR, and KQL expertise; detection engineering, incident response, scripting or automation experience; MITRE ATT&CK and regulated security knowledge.
Microsoft Sentinel, Microsoft Defender XDR, MITRE ATT&CK, KQL, Logic Apps, PowerShell, Python, APIs, AI
1mo
Save
Mark Applied
Hide
Sr. Automation & Cybersecurity Engineer
Plano, Texas, United States
RemoteFull Time
Toyota Tsusho Systems
Toyota Tsusho Systems: Toyota Tsusho Group IT services providing cloud, cybersecurity, and engineering solutions for Toyota Group businesses.
6+ YOERequires 6–9 years of cybersecurity engineering experience, including 3–4 years in security automation or SOC engineering, plus Python, PowerShell, APIs, cloud automation, SIEM/SOAR, and incident response expertise. Bachelor's preferred.
Microsoft Sentinel, Microsoft Defender XDR, Azure Logic Apps, Tines, ServiceNow, Log Analytics, Confluence, Python, PowerShell, APIs, LLMs, AI, Machine Learning (ML), MITRE ATT&CK, ASIM, Sigma
2w
Save
Mark Applied
Hide
Cyber Defense Detection and Automation Engineer
United States
RemoteFull Time
Crane NXT
Crane NXTNYSE: CXT: Public industrial technology serving governments and businesses with payment, authentication, detection, and traceability solutions.
5+ YOERequires 5+ years in security operations and incident response, plus 3+ years developing automation and using SIEM platforms. Strong Python, PowerShell, detection engineering, threat hunting, and collaboration skills required.
SIEM, EDR, SOAR, APIs, Python, PowerShell
2w
Save
Mark Applied
Hide
Senior Manager, Detection Response
San Francisco, California, United States
$270k-$290k/yr HybridFull Time
Strava
Strava: Consumer fitness and social-network app helping athletes track, analyze, share, and improve their activities worldwide.
Requires experience building or scaling detection engineering or security operations programs, incident command, threat intelligence, detection strategy, security vendors, automation or AI/ML, and executive communication.
AI, AI/ML
2w
Save
Mark Applied
Hide
Senior Manager, Security Engineering and Operations
California or Pennsylvania
$146k-$220k/yr RemoteFull Time
Jazz Pharmaceuticals
Jazz PharmaceuticalsNasdaq Global Select Market: JAZZ: Public global biopharmaceutical developing medicines for rare diseases, including epilepsy, cancer, and sleep disorders.
5+ YOERequires 5+ years in security operations, incident response, threat detection, and vulnerability management; SIEM, EDR, AWS, Google Cloud, automation, forensic analysis, and security project leadership experience.
Splunk, Gurucul, MITRE ATT&CK, CrowdStrike, AWS, Google Cloud Platform, Python, PowerShell, BASH, Salesforce, Snowflake, Windows, Linux, Unix, Azure, Web Proxy, IAM, SSO, Active Directory, PAM, App Control, DLP, PKI, Salesforce Shield
3w
Save
Mark Applied
Hide
Support Solutions Engineer (L5) - Security, Privacy and Assurance
United States
$270k-$410k/yr RemoteFull Time
Netflix
NetflixNASDAQ: NFLX: Global subscription-based streaming entertainment service and content producer.
Requires extensive enterprise identity, authentication, cloud security, incident response, log analysis, and automation experience; proficiency in Java, Python, or Go; and hands-on use of AI coding tools.
Okta, SCIM, OIDC, OAuth2, SAML 2.0, FIDO2, WebAuthn, SIEM, SOAR, EDR, IAM, Java, Python, Go, Claude Code, Cursor, MCP
2mo
Save
Mark Applied
Hide
Identity and Directory Services Engineer
Washington, District of Columbia, United States
$135k-$216k/yr OnsiteFull Time
Peraton
Peraton: Provider of mission-critical national security technologies and services.
10+ YOEActive TS/SCI (ability to obtain CI Poly), 10+ years relevant experience (varies by degree), strong Active Directory and ICAM knowledge, Windows Server/PKI experience, scripting/automation, incident response, and security certifications (CISSP or Security+). US citizenship required.
Active Directory, ICAM, Windows Server, Public Key Infrastructure (PKI)
2mo
Save
Mark Applied
Hide
Identity and Directory Services Engineer
Washington, District of Columbia, United States
$135k-$216k/yr OnsiteFull Time
Peraton
Peraton: Provider of mission-critical national security technologies and services.
10+ YOEActive TS/SCI (ability to obtain CI Poly) and US citizenship required. Strong AD/Directory and ICAM experience; proficiency in scripting/automation, Microsoft Windows Server, PKI, incident response, and security auditing. Security+ or CISSP and relevant years of experience (Bachelor/Master/HS pathways).
Microsoft Active Directory Domain Services, ICAM, Microsoft Windows Server, Public Key Infrastructure (PKI)
2mo
Save
Mark Applied
Hide
Lead OT Network Systems
Chicago, Illinois, United States
$142k-$177k/yr OnsiteFull Time
The Kraft Heinz Company
The Kraft Heinz CompanyNASDAQ: KHC: Multinational food and beverage with iconic global brands.
7+ YOEBachelor's in engineering/IT/cybersecurity/computer science (or equivalent OT experience); 7+ years in OT infrastructure, automation, industrial networking, or OT cybersecurity; deep experience with Windows, VMware, Allen-Bradley/Rockwell, EDR/NDR, Claroty; MSP and incident response experience.
Allen-Bradley, Rockwell, VMware, Windows, Claroty, Claroty CTD, Claroty xDome, EDR, NDR, micro-segmentation, Purdue OT reference architecture, IEC 62443, NIST CSF
1mo
Save
Mark Applied
Hide
Global Director of Autonomous Cyber Defense and Security Event Triage (SOC)
Tempe or Jersey City
$182k-$249k/yr HybridFull Time
MUFG Bank, Ltd.
MUFG Bank, Ltd.: Core commercial banking subsidiary of Mitsubishi UFJ Financial Group.
7+ YOE7+ years in cybersecurity operations, bachelor’s or equivalent, relevant certs preferred (CISSP, CISM, etc.), experience with detection engineering, incident response, threat hunting, and AI/ML-enabled automation.
Torq, 7AI, CrowdStrike, Tanium, Snowflake, Splunk, ELKS, SOAR, EDR, SIEM, Endpoint Detection & Response, MITRE ATT&CK, AI/ML, LLM