Security Automation Engineer

Lumen Technologies India

Dadri

On-site

INR 1,800,000 - 2,800,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Microsoft SC-200
AZ-204
Power Platform certification
CompTIA Security+
Cortex XSIAM/XSOAR
CrowdStrike Falcon

Job summary

Lumen Technologies India is seeking a Security Automation Engineer to design, implement, and optimize automation workflows across SOC operations and platform engineering. You will work with Microsoft Sentinel, Cortex XSIAM, CrowdStrike, ServiceNow, and related tools to reduce manual effort and improve scalability.

You will build integrations, maintain GitHub repos, and create reusable components, while collaborating with SOC and customer teams to ensure practical, maintainable automations across

Qualifications

  • 6–10 years of hands-on security automation, platform engineering or SOC tooling.
  • Proficiency with Python, PowerShell, Bash or JavaScript.
  • Familiar with REST APIs, JSON, webhooks and authentication/integration patterns.
  • Basic understanding of SIEM, SOAR, EDR, ITSM and incident response workflows.
  • Experience with Microsoft Sentinel, Cortex XSIAM, CrowdStrike or ServiceNow is preferred.
  • Strong documentation, troubleshooting and process-improvement skills.

Responsibilities

  • Develop and maintain automation workflows, playbooks, runbooks, and scripts for SOC and platform operations.
  • Build integrations between SIEM, SOAR, EDR, ITSM, ticketing, identity, email security, cloud, and threat intel tools.
  • Support alert enrichment, escalation routing, case creation, customer notification, and reporting.
  • Assist with Sentinel Logic Apps, XSIAM playbooks, API integrations, and reusable automation components.
  • Maintain GitHub repositories, version control practices, deployment templates, and documentation.
  • Create onboarding templates for new customers, log sources, detections, and workflows.
  • Support automation testing, validation, error handling and handoff to operations.
  • Partner with SOC analysts to identify repetitive tasks for automation and simplification.
  • Build dashboards, SLA trackers, and operational reporting workflows.
  • Collaborate with SOC, SIEM, EDR, IT, and customer teams to ensure practical, maintainable automations.

Skills

Python
PowerShell
Bash
JavaScript
REST APIs
JSON
Scripting

Tools

Microsoft Sentinel
Cortex XSIAM
CrowdStrike
ServiceNow
ITSM platforms

Job description

Summary

The Security Automation Engineer is responsible for developing, maintaining, and improving automation workflows that support SOC operations, SIEM engineering, EDR integrations, incident enrichment, alert routing, reporting, and customer onboarding. This role focuses on reducing manual effort, improving consistency, and enabling scalable operations across platforms such as Microsoft Sentinel, Cortex XSIAM, CrowdStrike, ServiceNow, and related security tools.

The Security Automation Engineer is responsible for developing, maintaining, and improving automation workflows that support SOC operations, SIEM engineering, EDR integrations, incident enrichment, alert routing, reporting, and customer onboarding. This role focuses on reducing manual effort, improving consistency, and enabling scalable operations across platforms such as Microsoft Sentinel, Cortex XSIAM, CrowdStrike, ServiceNow, and related security tools.

Key Responsibilities
  • Develop and maintain automation workflows, playbooks, runbooks, and scripts supporting SOC and platform engineering operations.
  • Build integrations between SIEM, SOAR, EDR, ITSM, ticketing, identity, email security, cloud, and threat intelligence platforms.
  • Support automation for alert enrichment, escalation routing, case creation, customer notification, and reporting.
  • Assist with Sentinel Logic Apps, XSIAM playbooks, API integrations, and reusable automation components.
  • Maintain GitHub repositories, version control practices, deployment templates, and documentation.
  • Create and maintain parameterized onboarding templates for new customers, log sources, detections, and workflows.
  • Support automation testing, validation, error handling, and operational handoff.
  • Partner with SOC analysts to identify repetitive tasks that can be automated or simplified.
  • Build dashboards, SLA trackers, and operational reporting workflows.
  • Collaborate with SOC, SIEM, EDR, IT, and customer teams to ensure automations are practical, maintainable, and aligned to operational needs.
Required Qualifications
  • 6-10 years of hands-on experience with security automation, scripting, platform engineering, or SOC tooling.
  • Experience with Python, PowerShell, Bash, JavaScript, or similar scripting languages.
  • Familiarity with REST APIs, JSON, webhooks, authentication methods, and integration patterns.
  • Basic understanding of SIEM, SOAR, EDR, ITSM, and incident response workflows.
  • Experience working with Microsoft Sentinel, Cortex XSIAM, CrowdStrike, ServiceNow, or similar platforms preferred.
  • Strong documentation, troubleshooting, and process improvement skills.
Preferred Certifications
  • Microsoft SC-200 Security Operations Analyst
  • Microsoft AZ-204 Azure Developer Associate
  • Microsoft Power Platform certification
  • CompTIA Security+
  • Palo Alto Cortex XSIAM/XSOAR certification
  • CrowdStrike Falcon certification

We are an equal opportunity employer committed to fair and ethical hiring practices. We do not charge any fees or accept any payment from candidates at any stage of the recruitment process.

SIEM, Infosec

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Flex XSIAM / EDR / Automation Engineer
Flex XSIAM / EDR / Automation Engineer

Lumen Technologies India • Dadri

On-site
INR 1,500,000 - 2,800,000
Security Automation Engineer
Security Automation Engineer

AlphaSense Oy • Pune District

On-site
INR 1,800,000 - 3,200,000
Security Automation Engineer
Security Automation Engineer

AlphaSense Oy • Bengaluru

On-site
INR 2,500,000 - 5,000,000
Security Automation Engineer
Security Automation Engineer

AlphaSense Oy • Delhi

On-site
INR 1,500,000 - 2,500,000
Sr. Security Operations Analyst
Sr. Security Operations Analyst

Simfluent • Dadri

On-site
INR 1,200,000 - 1,800,000
Assoc. Manager, IT Security
Assoc. Manager, IT Security

KFC Corporation • India

Hybrid
INR 1,500,000 - 2,800,000
Security Engineer
Security Engineer

Saint-Gobain India Private Limited • Mumbai

On-site
INR 900,000 - 1,500,000
Assoc. Manager, IT Security
Assoc. Manager, IT Security

Yum! Brands • Gurugram District

On-site
INR 3,000,000 - 6,000,000
Technical Consultant - SIEM, Sentinel
Technical Consultant - SIEM, Sentinel

Computacenter • Bengaluru

On-site
INR 3,500,000 - 7,500,000
Walk-in | SIEM - XSOAR Engineer
Walk-in | SIEM - XSOAR Engineer

Deloitte Shared Services India • Bengaluru

On-site
INR 1,800,000 - 2,800,000