Security Engineer

Cyera

New York (NY)

On-site

USD 120,000 - 170,000

Full time

5 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Cyera is seeking a Security Engineer to join our agentic SOC where you will grow beyond traditional analyst duties and dive into security engineering, automation, cloud security, detection engineering, and AI-assisted security operations.

You will help build and operate a modern SOC that uses automation, AI-assisted investigations, and agent-based workflows to improve detection, triage, response, and security visibility.

Qualifications

  • 2–3 years of cybersecurity experience and a strong SOC foundation.
  • Hands-on AWS knowledge, Python proficiency, and experience with SIEM data and log pipelines.
  • Familiarity with agentic concepts and AI-assisted security operations.

Responsibilities

  • Build, operate, and improve a modern SOC with automation, agentic workflows, and AI-assisted investigation.
  • Design, configure, and maintain log ingestion and SIEM workflows from AWS, applications, and infrastructure.
  • Develop and tune detections, alert logic, dashboards, and playbooks for security operations.
  • Assist with incident investigations, containment, remediation, and post-incident improvements.
  • Collaborate with security, cloud, IT, and engineering teams to improve visibility and reduce risk.

Skills

Security engineering
Python
AWS
SIEM
Automation
Detection engineering
Cloud security
Incident response
AI-assisted security
Agentic SOC
Log pipelines

Education

AWS entry-level certification (Cloud Practitioner)

Tools

Terraform
CloudFormation
CDK

Job description


  • Join our team as a Security Engineer working within an agentic SOC environment. This role is designed for someone who is ready to grow beyond traditional analyst responsibilities and move deeper into security engineering, automation, cloud security, detection engineering, and AI-assisted security operations

  • You will help build, operate, and improve a modern SOC that uses automation, agentic workflows, AI-assisted investigation, and security engineering practices to improve detection, triage, response, and overall security visibility. This is a hands-on role for someone who enjoys solving technical problems, improving systems, and building security capabilities rather than only monitoring alerts

  • Security Engineering: Build, maintain, and improve security workflows, integrations, detection processes, and operational tooling within an agentic SOC

  • Agentic SOC Operations: Work with automation, AI-assisted workflows, and agent-based capabilities that support alert triage, investigation, enrichment, and response

  • SIEM Log Flow Development: Help design, configure, maintain, and troubleshoot log ingestion flows into the SIEM from AWS, applications, infrastructure, endpoint tools, and security platforms

  • Detection Engineering: Create, tune, and maintain detection rules, alert logic, dashboards, playbooks, and investigation workflows

  • Python Automation: Develop Python scripts and automations for alert enrichment, data processing, reporting, workflow improvement, and security operations support

  • Cloud Security Monitoring: Support cloud security logging, monitoring, IAM reviews, and cloud detection use cases

  • SOC Operations: Review, analyze, and correlate security alerts and logs to identify suspicious activity and support investigations

  • Incident Response Support: Assist with security event investigations, escalation, containment, remediation, and post-incident improvements

  • Process Improvement: Help improve SOC processes, playbooks, detection coverage, documentation, and response workflows

  • Cross-Functional Collaboration: Partner with security, cloud, IT, and engineering teams to improve visibility, reduce risk, and strengthen security operations


The ideal candidate has 2–3 years of cybersecurity experience, a strong SOC foundation, hands-on AWS knowledge, Python proficiency, and experience working with SIEM data and log pipelines. We are looking for someone motivated, curious, and eager to grow into a stronger security engineer within a modern, engineering-driven SOC modelAWS Certification: AWS entry-level certification required at minimum, such as AWS Certified Cloud Practitioner. AWS Solutions Architect – Associate or AWS Security Specialty is a plusAWS Knowledge: Working knowledge of AWS services, cloud security fundamentals, logging, monitoring, IAM, and basic cloud architecturePython Proficiency: Hands-on proficiency with Python for scripting, automation, data processing, security tooling, or workflow developmentDetection Knowledge: Ability to help develop, tune, and improve detections based on logs, threat behavior, and operational needsLog Pipeline Experience: Experience building, maintaining, or troubleshooting log flows from applications, infrastructure, AWS services, endpoint tools, or security platforms into a SIEMAgentic SOC Familiarity: Familiarity with agentic concepts, agentic frameworks, AI-assisted workflows, autonomous or semi-autonomous agents, and practical security operations use casesSIEM Experience: Experience working with SIEM platforms, including log ingestion, parsing, alerting, dashboards, and detection logicSOC Foundation: Strong understanding of SOC workflows, alert triage, investigation, escalation, and incident response processesExperience: 2–3 years of experience in cybersecurity, SOC operations, security engineering, cloud security, detection engineering, or incident responseInfrastructure as Code: Familiarity with Terraform, CloudFormation, CDK, or similar toolsDetection Languages: Experience with Sigma, SPL, KQL, SQL, YARA, or similar detection/query languagesAgentic/AI Security Use Cases: Hands-on exposure to LLMs, AI agents, agentic workflows, or AI-assisted security operations

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

IT Security Engineer
IT Security Engineer

Pike Corporation • Fort Mill (SC)

On-site
USD 120,000 - 180,000
Security Operations Lead
Security Operations Lead

New York Technology Partners • Chicago (IL)

On-site
USD 120,000 - 190,000
Cyber Security Engineer -- EX35495922860
Cyber Security Engineer -- EX35495922860

Compunnel Inc. • Richmond (VA)

On-site
USD 140,000 - 210,000
Sr. Analyst - Security Operations
Sr. Analyst - Security Operations

Solomon Page • Village of Great Neck (NY)

On-site
USD 120,000 - 140,000
Security Operations Center (SOC) Analyst
Security Operations Center (SOC) Analyst

10xTalents • Washington

On-site
USD 80,000 - 110,000
Sr. Security Engineer - SIEM, Automation & Elastic Security
Sr. Security Engineer - SIEM, Automation & Elastic Security

Red Lobster, Inc. • Orlando (FL)

On-site
USD 90,000 - 130,000
Senior Automation & Cybersecurity Engineer
Senior Automation & Cybersecurity Engineer

Cinter Career • Plano (TX)

On-site
USD 140,000 - 190,000
Agentic SOC Analyst
Agentic SOC Analyst

Arcitix Security • United States

On-site
USD 75,000 - 95,000
Security Operations Lead
Security Operations Lead

Segment (Twilio) • Foster City (CA)

On-site
USD 140,000 - 210,000
Health, Dental, Vision
401(k)
Paid time off
+2
Senior Automation & Cybersecurity Engineer
Senior Automation & Cybersecurity Engineer

Cinter Career Services, LLC • Plano (TX)

On-site
USD 130,000 - 180,000