SOAR and AI Engineer - Managed Security
Listed on 2026-08-08
-
IT/Tech
Cybersecurity, Security Management & Operations
AHEAD builds platforms for digital business. By weaving together advances in cloud infrastructure, automation and analytics, and software delivery, we help enterprises deliver on the promise of digital transformation.
AtAHEAD, we prioritize creating a culture of belonging,where all perspectives and voices are represented, valued, respected, and heard. We create spaces to empower everyone to speak up, make change, and drive the culture at AHEAD.
We are an equal opportunity employer,anddo not discriminate based onan individual's race, national origin, color, gender, gender identity, gender expression, sexual orientation, religion, age, disability, marital status,or any other protected characteristic under applicable law, whether actual or perceived.
We embrace all candidatesthatwillcontribute to the diversification and enrichment of ideas and perspectives atAHEAD.
The Managed Security Team at AHEAD monitors client environments and performs incident detection, validation, response support, and reporting. The SOAR and AI Engineer will be responsible for the design, implementation, and continuous improvement of automation capabilities that increase the scale, speed, and consistency of our Managed Security operations. This role is heavily focused on security automation across SOAR, SIEM, case management, telemetry pipelines, and AI-assisted workflows that support the success of AHEAD’s Managed Security program.
Position OverviewThis is a technical hands-on position that requires someone with a strong understanding of the needs of a 24/7 SOC (Security Operations Center). We are looking for a candidate with deep experience in security operations, SOAR engineering, scripting, systems integration, and applied AI who will work closely with the Managed Security staff and other highly technical members across multiple teams, both within AHEAD and in client environments, to continuously improve and enhance AHEAD’s automation-first Managed Security capabilities.
Incumbents will possess strong technical and analytical skills while providing accurate analysis of security-related problems. They will have a well-rounded networking and security background and will be responsible for automating operational workflows, improving analyst efficiency, reducing mean time to respond, and helping teams troubleshoot complex client issues. This individual is client- and user-focused and works to resolve needs in a timely manner.
These needs may involve automating repetitive analyst tasks, orchestrating security response actions, improving enrichment and triage workflows, integrating security tools, and applying AI to improve the speed and quality of security operations.
The SOAR and AI Engineer is responsible for the day-to-day management and evolution of the automation platforms used by the Managed Security Team to monitor client environments and support security investigations and response. This includes workflow design and development, tool integrations, case enrichment, automated triage, alert-to-case orchestration, playbook creation and tuning, chatbot or analyst-assist workflows, and continuous optimization of automation performance and reliability.
The SOAR and AI Engineer is expected to be familiar with a wide range of security tools and understand core security operations fundamentals.
- Design, develop, and maintain security automation workflows within the SOAR platform, with a strong emphasis on scalable, reliable, and auditable automation
- Build and maintain automated playbooks for alert triage, enrichment, containment, escalation, evidence gathering, and case management
- Partner with SOC analysts, SIEM engineers, threat detection engineers, and incident responders to identify repeatable processes and convert them into high-value automation workflows
- Design and implement integrations between SOAR, SIEM, ticketing systems, collaboration tools, endpoint tools, identity platforms, firewalls, threat intelligence sources, and cloud security platforms
- Develop automation that improves incident handling speed, consistency, and quality across the Managed Security service
- Apply AI and machine learning…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).