×
Register Here to Apply for Jobs or Post Jobs. X

Senior Security Engineer – XDR and Automation

Job in Boston, Suffolk County, Massachusetts, 02298, USA
Listing for: CyberTrust
Apprenticeship/Internship position
Listed on 2026-08-16
Job specializations:
  • IT/Tech
    Cybersecurity, Systems Engineer
Salary/Wage Range or Industry Benchmark: 120000 - 170000 USD Yearly USD 120000.00 170000.00 YEAR
Job Description & How to Apply Below

Senior Security Engineer - XDR and Automation About the job Senior Security Engineer - XDR and Automation

Full-Time |

Location:

Hybrid - Massachusetts (On-site 1x/week required)

About the Company

Cyber Trust Massachusetts is a non-profit committed to growing and diversifying the cyber workforce, creating new and innovative opportunities for education and employment, and hardening the security posture of under-resourced local entities. Cyber Trust enhances cyber education programs with hands-on, experiential learning, both through our state-of-the-art cyber range and by placing students in a live security operations center (SOC) that serves local governments, nonprofits and small businesses.

Cyber Trust SOC provides local governments with Advisory and Operational cybersecurity services, with student interns serving in key delivery roles. Advisory services include cyber assessments and scanning, program planning, and policy development. Operational services include real-time monitoring and response delivered from our four SOC locations across the Commonwealth.

Position Summary

We are seeking an experienced and highly skilled Senior Security Engineer to join our Security Operations team. This role is central to the administration, optimization, and expansion of our Sentinel One EDR/XDR platform across a diverse multi-tenant client environment. The ideal candidate brings hands-on, recent Sentinel One expertise - including Hyper-automation, XDR integrations, and API-driven workflows - and thrives in a fast-paced MSSP setting where precision, automation, and cross-platform visibility are paramount.

This is a hybrid position requiring in-state residency (Massachusetts) and the ability to be on-site at least one day per week.

Key Responsibilities

Sentinel One Platform Administration

  • Serve as a primary technical owner for the Sentinel One EDR and XDR platform across all managed client environments
  • Manage multi-tenant console configurations, policies, agent deployments, and platform health across municipal and institutional clients
  • Monitor platform performance, conduct tuning, and implement changes to reduce noise while improving detection fidelity

XDR Integrations & API Development

  • Design, build, and maintain XDR integrations with third-party data sources via API, including Microsoft Entra  / Microsoft 365, Google Workspace (GWS), and other security telemetry sources in a multi-tenancy environment
  • Evaluate new integration opportunities to strengthen cross-platform detection and response capabilities

Hyper-automation & Playbook Engineering

  • Create, maintain, and optimize Sentinel One Hyper-automation playbooks to automate response actions, alert enrichment, and workflow orchestration
  • Translate repeatable analyst workflows into scalable automated processes that improve MTTR and reduce manual effort across the SOC team
  • Continuously review and refine automation logic based on evolving threat patterns and client environment changes
  • Develop and maintain custom log parsers to normalize and structure telemetry from diverse client environments and third-party security tools
  • Ensure consistent and accurate data ingestion into the XDR platform to support detection engineering and reporting

Documentation & Runbooks

  • Create and maintain thorough documentation including runbooks, integration guides, playbook logic, parser specifications, and operational procedures
  • Ensure documentation is current, accessible, and supports team scalability and onboarding
  • U.S Citizenship or permanent resident and must reside in or near Massachusetts and be available for on-site presence one day per week
  • 5+ years of hands-on experience in security engineering, with recent Sentinel One platform experience
  • Demonstrated expertise with Sentinel One XDR, including third-party integrations, API configuration, and multi-tenant management
  • Proven experience building and managing Sentinel One Hyper-automation playbooks in a production environment
  • Experience developing custom log parsers for security data normalization
  • Strong proficiency with REST API integration and Python for security automation
  • Experience with SIEM platforms and correlation rule development
  • Knowledge of MITRE ATT&CK framework and its application to detection engineering
  • Experience working in an MSSP or multi-tenant managed security environment
Required Skills and Qualifications
Why Join Us

This role offers the opportunity to make a tangible impact protecting the public-sector organizations that communities depend on - from local governments and schools to rural health clinics. You'll work with a dedicated team, have meaningful ownership of critical security services, and help shape how modern MSSP security engineering is delivered at scale.

#J-18808-Ljbffr
Position Requirements
10+ Years work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary