Security Automation & Orchestration Engineer

Cognizant

Bismarck (ND)

On-site

USD 115,000 - 134,000

Full time

6 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Medical/Dental/Vision/Life Insurance
Paid holidays plus Paid Time Off
401(k) plan and contributions
Long-term/Short-term Disability
Paid Parental Leave
Employee Stock Purchase Plan

Job summary

Cognizant is seeking an Automation / Orchestration / Security Engineer to design, build, and maintain security automation solutions that improve response efficiency. You will work with SOC, Incident Response, IT, and Cloud teams to integrate tools and automate workflows.

Qualifications include 3+ years in related roles, strong Python/PowerShell/JavaScript, and hands-on API/webhook experience. Visa sponsorship is not available for this role.

Qualifications

  • 3+ years in Automation Engineering or related roles.
  • Strong Python/PowerShell/JavaScript skills.
  • Experience with automation/orchestration platforms such as Ansible/Itential/VMware Aria.
  • Hands-on with REST APIs, JSON, webhooks, OAuth2, token-based auth, mutual TLS.
  • Knowledge of SIEM concepts, IAM, endpoint security, and cloud security fundamentals.
  • Experience with Git workflows, code reviews, and testing practices.
  • Excellent documentation and communication skills.

Responsibilities

  • Design and deliver security automation to improve response times and efficiency.
  • Develop and maintain SOAR playbooks for alert triage and containment.
  • Build integrations with SIEM, EDR/XDR, IAM, vulnerability management, and cloud security tools via APIs/webhooks.
  • Create reusable automation components with logging, monitoring, and error handling.
  • Automate SOC procedures and runbooks with approval gates where required.
  • Implement governance controls: RBAC, change management, audit logging, documentation.
  • Collaborate with infra/engineers to automate security controls and policy-as-code.
  • Support incident response with automation for evidence collection and containment.
  • Ensure secure coding practices to prevent misuse of automation.

Skills

Python
PowerShell
JavaScript
REST APIs
JSON
Webhooks
OAuth2
Mutual TLS
SIEM
IAM
Cloud security basics
Git workflows
Documentation

Tools

Ansible
Itential
VMware Aria Orchestrator

Job description

Practice - CIS - Cloud, Infrastructure, and Security Services

About Cloud Infrastructure & Security Services: Cognizant’s Cloud, Infrastructure, and Security Services Practice (CIS), is all about embracing digital transformation by driving core modernization holistically across layers. We help customers transform infrastructure and workplace to meet the rapidly evolving needs of the digital era. Our holistic approach delivers key results for our customers by achieving cloud driven modernization and workplace and operational transformation to run the business in a secure environment.

Job Summary

The Automation / Orchestration / Security Engineer is responsible for designing, building, and maintaining security automation and orchestration solutions to improve security operations, reduce manual effort, and enhance response efficiency. The role works closely with Security Operations, Incident Response, IT, and Cloud/Platform teams to integrate tools, automate workflows, and implement scalable, auditable security processes.

Please note, this role is not able to offer visa transfer or sponsorship now or in the future

In this role, you will:
  • Design and deliver security automation and orchestration capabilities to improve response times and operational efficiency.
  • Develop and maintain SOAR playbooks for alert triage, enrichment, containment, remediation, and response workflows.
  • Build integrations with security tools including SIEM, EDR/XDR, IAM, vulnerability management, ticketing platforms, and cloud security solutions using APIs, webhooks, and event-driven architectures.
  • Create reusable automation components such as scripts, libraries, and templates with proper logging, monitoring, error handling, and observability.
  • Work with SOC and Incident Response teams to automate operational procedures and runbooks while implementing approval gates where required.
  • Implement governance controls including RBAC, change management, audit logging, and documentation.
  • Collaborate with infrastructure and engineering teams to automate security controls, compliance checks, policy-as-code, system hardening, and configuration drift remediation.
  • Support incident response activities through automation for evidence collection, containment, and remediation while maintaining logging and chain-of-custody requirements.
  • Ensure secure coding practices and implement safeguards to prevent misuse of automation workflows.
  • Create and maintain documentation, operating procedures, runbooks, and knowledge transfer materials.
What you need to have to be considered
  • 3+ years of experience in Automation Engineering, Security Engineering, Security Operations Engineering, or related roles.
  • Strong programming/scripting experience with Python (preferred), PowerShell, or JavaScript.
  • Experience with automation and orchestration platforms such as Ansible, Itential, VMware Aria Orchestrator, or similar tools.
  • Hands-on experience with REST APIs, JSON, webhooks, OAuth2, token-based authentication, and mutual TLS.
  • Working knowledge of SIEM concepts including log ingestion, correlation, querying, and SOC operations such as incident triage, escalation, and response.
  • Strong understanding of IAM, endpoint security, network security, vulnerability management, and cloud security fundamentals.
  • Experience with Git workflows, code reviews, branching strategies, and software testing practices.
  • Strong documentation and communication skills with both technical and non-technical stakeholders.
Preferred Qualifications
  • Experience with vulnerability management automation, remediation tracking, workflow automation, exception handling, and SLA reporting.
  • Cloud security experience across AWS, Azure, and/or GCP.
  • Familiarity with container and Kubernetes security.
  • Experience integrating and automating actions within EDR/XDR platforms, including endpoint isolation, process termination, and quarantine operations.
  • Experience with ITSM and workflow tools such as ServiceNow and Jira.
  • Knowledge of structured change management processes.

#LI-EF1

#CB

#Ind123

Applications will be accepted until 8 Sep 2026.

Salary and Other Compensation:

The annual salary for this position is between $[114,500 - 134,000] depending on experience and other qualifications of the successful candidate.

This position is also eligible for Cognizant’s discretionary annual incentive program, based on performance and subject to the terms of Cognizant’s applicable plans.

Benefits
  • Medical/Dental/Vision/Life Insurance
  • Paid holidays plus Paid Time Off
  • 401(k) plan and contributions
  • Long-term/Short-term Disability
  • Paid Parental Leave
  • Employee Stock Purchase Plan

Cognizant is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Automation & Orchestration Engineer
Security Automation & Orchestration Engineer

Cognizant • Annapolis (MD)

On-site
USD 115,000 - 134,000
Medical/Dental/Vision/Life Insurance
Paid holidays plus PTO
401(k) plan and contributions
+3
Security Automation & Orchestration Engineer
Security Automation & Orchestration Engineer

Cognizant • New York (NY)

On-site
USD 115,000 - 134,000
Medical/Dental/Vision/Life Insurance
Paid holidays plus Paid Time Off
401(k) plan and contributions
+3
Cybersecurity Engineer – Threat Hunting & Security Validation
Cybersecurity Engineer – Threat Hunting & Security Validation

Cognizant • Blaine (MN)

On-site
USD 115,000 - 134,000
Medical/Dental/Vision/Life Insurance
Paid holidays + PTO
401(k) plan
Cybersecurity Project Manager
Cybersecurity Project Manager

Cognizant • Princeton (NJ)

On-site
USD 137,000 - 160,000
Medical/Dental/Vision/Life Insurance
Paid holidays plus PTO
Long-term/Short-term Disability
+1
Cybersecurity Engineer - Threat Management
Cybersecurity Engineer - Threat Management

Cognizant • New York (NY)

On-site
USD 115,000 - 134,000
Medical benefits
PTO & holidays
401(k) plan
+3
Vulnerability Management Engineer
Vulnerability Management Engineer

Cognizant • New York (NY)

On-site
USD 134,000 - 155,000
Medical/Dental/Vision/Life Insurance
Paid holidays and PTO
401(k) plan and contributions
+3
Security Automation & SOAR Engineer
Security Automation & SOAR Engineer

Cognizant • New York (NY)

On-site
USD 115,000 - 134,000
Medical/Dental/Vision/Life Insurance
Paid holidays plus Paid Time Off
401(k) plan and contributions
+3
Senior AI Security Architect
Senior AI Security Architect

Cognizant • Olympia (WA)

On-site
USD 160,000 - 185,000
Medical Insurance
Paid Holidays
401(k) Plan
+2
Data Security Delivery Lead
Data Security Delivery Lead

Cognizant • Charlotte (NC)

On-site
USD 137,000 - 160,000
Medical Insurance
Dental Insurance
Vision Insurance
+8
Senior AI Security Architect
Senior AI Security Architect

Cognizant • Fort Worth (TX)

On-site
USD 160,000 - 185,000
Medical/Dental/Vision/Life Insurance
Paid holidays plus Paid Time Off
401(k) plan and contributions
+3