Search Jobs

Search by job, company or skills

Security Automation Engineer

Security Automation Engineer

ACloud Solutions
  • Posted 10 hours ago
  • Be among the first 10 applicants

Job Description

Seeking a highly skilled and developer-minded Managed Security Automation Engineer, to design, build, and maintain automation workflows across both Security Operations Center (SOC) and Managed Services Support (MSS) environments. This role is critical to scaling MSSP operations by automating alert enrichment, incident response, IT support tasks, and cross-platform integrations. The ideal candidate will have deep expertise in Microsoft Sentinel, Defender XDR, Microsoft 365, and Azure, with a passion for building resilient, scalable, and secure automation pipelines.

Key Responsibilities:

  • Automation Engineering: Design, build, test, deploy, and maintain secure automation workflows for SOC incident response and MSS operational support using Logic Apps, Power Automate, and Microsoft Sentinel playbooks.

  • Systems Integration: Integrate Microsoft Sentinel, Defender XDR, Microsoft 365, Azure, and third-party service platforms through APIs, webhooks, connectors, and middleware.

  • Scripting and Data Automation: Develop PowerShell, Python, KQL, Microsoft Graph API, and REST API solutions for security response, IT administration, threat hunting, and data analysis.

  • Operational Optimization: Partner with SOC, IT support, onboarding, and service teams to automate high-volume tasks, improve incident handling, and scale multi-tenant service delivery.

  • Azure and Tenant Automation: Automate Azure provisioning, identity and access controls, policy enforcement, monitoring, governance, and customer onboarding.

  • Governance and Enablement: Maintain secure, auditable, documented, and version-controlled automation assets; monitor performance, resolve failures, and transfer knowledge to operational teams.

Requirements:

  • Bachelor's degree in Computer Science, Cybersecurity, or a related discipline.
  • Automation Platforms: Advanced capability in Logic Apps, Power Automate, Microsoft Sentinel playbooks, custom connectors, and automation lifecycle management.
  • Microsoft Security and Cloud: Strong hands-on experience with Microsoft Sentinel, Defender XDR, Microsoft 365, Azure, Entra ID, RBAC, Intune, Exchange, Teams, and SharePoint.
  • Development and Integration: Proficiency in PowerShell, Python, KQL, Microsoft Graph API, REST API, webhooks, and integration with third-party service platforms.
  • Possess strong problem-solving, debugging, documentation, communication, and stakeholder collaboration skills, with a developer mindset focused on scalability, reusability, and security.
  • Fluent in written and spoken English.
  • Have at least five years in cybersecurity, SOC operations, or IT support, including two to three years in automation engineering or security orchestration; MSSP or multi-tenant experience is preferred.
  • Preferable to have Microsoft Security Operations Analyst Associate certification; Azure Security Engineer; or Azure Administrator certification.

More Info

Job Type:
Industry:
Function:
Employment Type:

Key Skills

KQL

Defender XDR

Microsoft Sentinel

Microsoft Graph API

About Company

Similar Jobs

3-5 yrs
Ho Chi Minh, Vietnam
Skills:
security automation remediation JsonSqlIncident ResponseGrcSiemRest ApisPythonSOARalert triagewebhooksEDR