ML Engineer

AgileGrid Solutions

United States

On-site

USD 140,000 - 190,000

Full time

6 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Health insurance
Retirement plans
Paid time off

Job summary

Optimum seeks a Senior SOC Engineer specialized in AI and Automation to design and maintain AI-driven detection and automation within the SOC. You will drive incident response, lead complex investigations, and guide improvements across on-prem and cloud environments.

You will apply strong Python programming, AI/ML experience, and knowledge of MITRE ATT&CK, NIST standards, and SOAR platforms to elevate detection capabilities and response efficiency.

Qualifications

  • Bachelor’s degree in Computer Science, Engineering, or related field, or equivalent experience.
  • 7+ years of combined experience in security operations, incident response, and software engineering.
  • Hands-on incident response and digital forensics experience with major security incidents.
  • Strong Python programming and software engineering practices (version control, CI/CD, automated testing).
  • Experience with AI/ML models, LLMs, prompt engineering, and retrieval-augmented generation.
  • Familiarity with SOAR platforms, detection engineering, and security data pipelines.
  • Knowledge of SOC operations, MITRE ATT&CK, NIST incident response standards, and cloud security.
  • Awareness of AI/LLM security risks and OWASP LLM Top 10; ability to communicate concepts to technical and non-technical stakeholders.

Responsibilities

  • Design, develop, and maintain AI/ML and automation-driven capabilities for detection, triage, and response.
  • Build and manage SOAR automations and detection-as-code pipelines with proper version control and testing.
  • Integrate LLMs and agentic AI tools into SOC workflows; develop prompts and evaluation frameworks.
  • Benchmark and optimize AI models for security use cases; improve precision and MTTR metrics.
  • Develop data pipelines and feature engineering using security telemetry data.
  • Implement MLOps practices including versioning, monitoring, and retraining of models.
  • Establish data governance, guardrails against prompt injection, and privacy safeguards.
  • Collaborate with detection engineers, analysts, and responders to operationalize AI tools.
  • Serve as escalation point during complex incidents and lead incident response.
  • Lead forensic investigations across on-prem and cloud environments; provide expert guidance.
  • Conduct post-incident reviews and translate findings into improved detection and playbooks.
  • Develop incident response playbooks and tabletop exercises.
  • Define and monitor detection and incident metrics like MTTD/MTTR.

Skills

Python
Incident response
Forensics
SOAR platforms
AI/ML models
Prompt engineering
Data pipelines
CI/CD
Automated testing
Cloud security
Cross-team communication
Security operations

Education

Bachelor's degree in CS

Tools

SOAR platforms
ML frameworks

Job description

About The Company

Optimum is a pioneering leader in the connectivity industry, committed to delivering reliable, high-speed internet and communication solutions that empower individuals, businesses, and communities. With a focus on innovation and customer satisfaction, Optimum continually strives to enhance digital experiences through cutting-edge technology and exceptional service. Our company values integrity, collaboration, and a forward-thinking approach, fostering a dynamic environment where talent can thrive and make a meaningful impact. As we expand our reach and capabilities, we remain dedicated to building lasting relationships and driving progress in the digital age.



About The Role

We are seeking a highly skilled and innovative Senior SOC Engineer specializing in AI and Automation to join our Security Operations Center team. In this pivotal role, you will be responsible for designing, developing, and maintaining advanced AI-driven detection and automation capabilities that enhance our security posture. Your expertise will bridge security operations with software engineering, enabling the SOC to proactively identify, analyze, and respond to security threats with precision and efficiency. As a senior member, you will lead complex investigations, serve as an escalation point during major incidents, and contribute to continuous improvement initiatives. Your work will directly impact the organization’s ability to detect and mitigate sophisticated cyber threats, ensuring the safety and integrity of our digital environment.



Qualifications

The ideal candidate will possess a bachelor’s degree in Computer Science, Engineering, or a related field, or equivalent professional experience. You should have over seven years of combined experience in security operations, incident response, and software engineering. Hands-on experience in incident response and digital forensics, especially in managing complex and major security incidents, is highly preferred. Strong programming skills, particularly in Python, along with sound software engineering practices such as version control, CI/CD, and automated testing, are essential. Experience with AI/ML models, including large language models, prompt engineering, retrieval-augmented generation, and agentic frameworks, is required. Familiarity with SOAR platforms, detection engineering, and data pipelines is also necessary. Candidates should have a working knowledge of SOC operations, incident lifecycle frameworks such as MITRE ATT&CK, NIST incident response standards, and familiarity with cloud security environments. Awareness of AI and LLM security risks, including prompt injection and OWASP LLM Top 10, is important. The ability to effectively communicate technical concepts between security and engineering stakeholders is crucial.



Responsibilities


  • Design, develop, and maintain AI/ML and automation-driven capabilities for alert enrichment, correlation, summarization, triage, and prioritization to enhance detection accuracy and response efficiency.

  • Build and manage SOAR automations and detection-as-code pipelines, ensuring they are version-controlled, thoroughly tested, and peer-reviewed for reliability.

  • Integrate large language models and agentic AI tools into SOC workflows, including developing prompts, guardrails, and evaluation frameworks to ensure safe and effective deployment.

  • Evaluate, benchmark, and optimize AI models and tools for security use cases, focusing on improving precision, recall, reducing false positives, and decreasing mean time to detect and respond (MTTD/MTTR).

  • Develop data pipelines and perform feature engineering using security telemetry data to support detection and machine learning initiatives.

  • Implement MLOps practices such as model versioning, monitoring, drift detection, and retraining to maintain the integrity and performance of AI models in production.

  • Ensure responsible AI usage by establishing data governance, defenses against prompt injection, privacy safeguards, and output validation mechanisms.

  • Collaborate with detection engineers, SOC analysts, and incident responders to operationalize AI tools and incorporate lessons learned into detection models and automation workflows.

  • Serve as a senior escalation point and incident commander during complex security incidents, coordinating cross-functional teams and directing technical response efforts.

  • Lead forensic investigations and incident response activities across on-premises and cloud environments, providing expert guidance and hands-on support.

  • Conduct post-incident reviews and root cause analyses, translating findings into improved detection strategies, automation, and playbooks.

  • Develop and execute incident response playbooks and tabletop exercises to validate organizational readiness and improve response capabilities.

  • Define, monitor, and report key detection and incident metrics such as MTTD and MTTR to measure SOC effectiveness and identify areas for improvement.

  • Mentor and train SOC analysts and engineers, fostering a culture of continuous learning and promoting an AI-first approach within security operations.



Benefits

Optimum offers a comprehensive benefits package designed to support our employees’ health, well-being, and professional growth. Our package includes competitive salary structures, health and dental insurance, retirement plans, and paid time off. We also provide opportunities for ongoing training, certifications, and career development to ensure our team remains at the forefront of industry advancements. Our flexible work arrangements and a collaborative, inclusive culture foster a positive work environment. Additionally, employees have access to wellness programs, employee assistance programs, and various recognition initiatives aimed at promoting work-life balance and acknowledging individual contributions.



Equal Opportunity

Optimum is an Equal Opportunity Employer committed to fostering an inclusive environment where all employees and applicants are treated with respect and fairness. We do not discriminate based on gender, race, color, creed, national origin, religion, age, marital status, pregnancy, physical or mental disability, sexual orientation, gender identity, military or veteran status, or any other protected characteristic under federal, state, or local law. We believe diversity enriches our community and drives innovation, and we are dedicated to providing equal employment opportunities to all qualified individuals. Our hiring, promotion, and

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior ML Engineer - Cyber Security
Senior ML Engineer - Cyber Security

Optimum • Bethpage (NY)

On-site
USD 100,000 - 165,000
Senior ML Engineer - Cyber Security
Senior ML Engineer - Cyber Security

Optimum Communications Inc. • Norwalk (CT)

On-site
USD 100,000 - 165,000
Senior ML Engineer - Cyber Security
Senior ML Engineer - Cyber Security

Optimum • Norwalk (CT)

On-site
USD 100,000 - 165,000
Senior ML Engineer - Cyber Security
Senior ML Engineer - Cyber Security

Optimum Communications Inc. • Bethpage (NY)

On-site
USD 100,000 - 165,000
SOC Incident Responder
SOC Incident Responder

Optimum Communications Inc. • Norwalk (CT)

On-site
USD 90,000 - 120,000
Senior SOC AI & Automation Engineer
Senior SOC AI & Automation Engineer

Optimum • Norwalk (CT)

On-site
USD 100,000 - 165,000
SOC Incident Commander
SOC Incident Commander

Optimum • Norwalk (CT)

On-site
USD 130,000 - 180,000
Senior ML Engineer, AI Security & Automation Lead
Senior ML Engineer, AI Security & Automation Lead

Optimum Communications Inc. • Norwalk (CT)

On-site
USD 100,000 - 165,000
SOC Incident Commander
SOC Incident Commander

Optimum Communications Inc. • Norwalk (CT)

On-site
USD 130,000 - 170,000
Senior AI/ML & SOC Automation Engineer
Senior AI/ML & SOC Automation Engineer

Optimum Communications Inc. • Bethpage (NY)

On-site
USD 100,000 - 165,000