About the company
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Cybersecurity Automation Architect based in United States.
Responsibilities
- Collaborate with cybersecurity teams to identify operational pain points, technical requirements, and opportunities to automate or streamline security processes.
- Design enterprise cybersecurity automation solutions encompassing workflows, integrations, APIs, services, data flows, and AI-enabled capabilities within established architecture and governance standards.
- Develop and promote reusable automation patterns, frameworks, connectors, and development standards in partnership with cybersecurity and enterprise architecture teams.
- Design, build, enhance, and maintain automated workflows that reduce manual effort, improve operational efficiency, and enable security teams to focus on higher-value activities such as threat hunting, detection engineering, and incident response.
- Design integrations between cybersecurity platforms and enterprise technologies using REST APIs, webhooks, event-driven architectures, messaging systems, and other integration approaches.
- Evaluate tradeoffs between custom development, low-code/no-code orchestration, platform-native automation, and AI or agentic solutions.
- Design and implement AI-enabled and agentic automation with appropriate permissions, validation, observability, security boundaries, human-in-the-loop controls, and responsible AI practices.
- Provide technical leadership across the full solution lifecycle, including requirements analysis, architecture and design, development, testing, deployment, documentation, monitoring, troubleshooting, and continuous improvement.
- Perform hands-on development and debugging of complex workflows, scripts, integrations, APIs, services, and supporting infrastructure.
- Conduct design and code reviews to ensure solutions meet cybersecurity, scalability, reliability, maintainability, and operational requirements.
- Mentor and support developers and engineers through technical guidance, troubleshooting, training, design reviews, and development best practices.
Requirements
- Bachelor’s degree in a relevant field, with additional professional experience considered in lieu of a degree.
- 8+ years of experience in cybersecurity, software development, automation engineering, security engineering, solution design, or a closely related discipline.
- Demonstrated experience designing and implementing enterprise-scale automation, orchestration, integration, or cybersecurity solutions.
- Strong programming and scripting capabilities, with Python experience preferred, as well as experience working with REST APIs, webhooks, authentication mechanisms, and application integration patterns.
- Experience with low-code or visual workflow platforms such as Tines, Operations Orchestration, Appian, Salesforce Visual Flow, ServiceNow AppEngine, Zoho, Node-RED, or similar technologies.
- Experience applying AI within development workflows and designing user-facing or backend AI agents for reliable solutions to non-deterministic problems.
- Understanding of AI and agentic-system design considerations, including permissions, data access, validation, observability, security boundaries, and human oversight.
- Strong troubleshooting and debugging skills across code, APIs, integrations, workflows, and complex technical environments.
- Ability to translate high-level business or cybersecurity objectives into technical requirements, solution designs, implementation plans, and reusable architectures.
- Experience creating and maintaining technical, workflow, integration, and operational documentation, using Jira or similar work-management tools and version-controlled code repositories.
- Strong organizational and time-management skills, with the ability to independently break down complex objectives, identify dependencies, evaluate alternatives, and execute effective technical plans.
- Excellent written, verbal, interpersonal, and collaborative communication skills, with the ability to explain complex technical concepts to both technical and non-technical audiences.
- Experience with cybersecurity automation across SIEM, SOAR, EDR/XDR, identity and access management, vulnerability management, cloud security, threat intelligence, incident response, or security data platforms is highly desirable.
- Familiarity with Tines, event-driven and asynchronous automation, secure software development, CI/CD, DevSecOps, infrastructure-as-code, and technologies such as Go, C#, .NET, JavaScript, PowerShell, AWS, Azure, SQL, Ansible, Jenkins, Git, and Docker is a plus.
- Experience developing reusable connectors, services, libraries, or integration frameworks, as well as knowledge of identity, authentication, authorization, and security is a plus.