Systems Engineer- Security

Expert Technology Services

Malvern (Chester County)

On-site

USD 120,000 - 180,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Expert Technology Services in Malvern, PA is seeking a Threat Intelligence Platform Engineer to design and maintain automation workflows for intelligence collection, enrichment, analysis, dissemination, and reporting. You will build integrations across TIP, SOAR, SIEM, and cloud environments, and act as the technical owner for TIP, ensuring performance, data quality, and scalable automation.

The role requires 3+ years in cybersecurity with hands-on automation, strong Python skills, and

Qualifications

  • Minimum 3 years of cybersecurity experience, with at least 1 year in security engineering, automation, DevSecOps, or software development.
  • Strong proficiency in Python and developing automation workflows/APIs.
  • Experience integrating systems via REST APIs, webhooks, and handling structured/unstructured data (JSON, XML, CSV).
  • Familiarity with threat intelligence concepts, methodologies, and platforms (TIPs), and standards such as STIX and TAXII.

Responsibilities

  • Design and implement automation workflows for intelligence collection, enrichment, analysis, dissemination, and reporting.
  • Build integrations between Threat Intelligence Platforms (TIP), SOAR, SIEM, cloud environments, and security tools.
  • Serve as a primary technical owner for TIP, ensuring performance, integration, automation, and data quality.
  • Identify and implement improvements for platform scalability and user experience.
  • Develop pipelines to collect, normalize, enrich, and correlate vulnerability intelligence from multiple sources (e.g., NVD, CISA, vendor advisories).
  • Build workflows that link vulnerabilities to threat actor activity and technology exposure.
  • Collaborate with Incident Response, Detection Engineering, Threat Hunting, and Vulnerability Management teams.
  • Automate intelligence-driven workflows and improve operational collaboration and information sharing.
  • Develop and maintain data ingestion, normalization, transformation, and enrichment processes.
  • Lead intelligence collections engineering and data integration initiatives.
  • Identify and implement opportunities to automate manual processes and enhance efficiency.
  • Evaluate and adopt emerging technologies, including AI-enabled solutions.
  • Establish metrics to measure automation effectiveness and operational outcomes.

Skills

Python
Automation workflows
APIs
REST APIs
JSON
XML
CSV
Threat intelligence concepts
STIX
TAXII

Job description

Job Summary (List Format):
Develop and Maintain Threat Intelligence Automation:
  • Design and implement automation workflows for intelligence collection, enrichment, analysis, dissemination, and reporting.
  • Build integrations between Threat Intelligence Platforms (TIP), SOAR, SIEM, cloud environments, and security tools.
Threat Intelligence Platform Engineering:
  • Serve as a primary technical owner for TIP, ensuring performance, integration, automation, and data quality.
  • Identify and implement improvements for platform scalability and user experience.
Vulnerability Intelligence Automation:
  • Develop pipelines to collect, normalize, enrich, and correlate vulnerability intelligence from multiple sources (e.g., NVD, CISA, vendor advisories).
  • Build workflows that link vulnerabilities to threat actor activity and technology exposure.
Security Operations Integration:
  • Collaborate with Incident Response, Detection Engineering, Threat Hunting, and Vulnerability Management teams.
  • Automate intelligence-driven workflows and improve operational collaboration and information sharing.
Collections and Data Engineering:
  • Develop and maintain data ingestion, normalization, transformation, and enrichment processes.
  • Lead intelligence collections engineering and data integration initiatives.
Innovation and Continuous Improvement:
  • Identify and implement opportunities to automate manual processes and enhance efficiency.
  • Evaluate and adopt emerging technologies, including AI-enabled solutions.
  • Establish metrics to measure automation effectiveness and operational outcomes.
Technical Requirements:
  • Minimum 3 years of cybersecurity experience, with at least 1 year in security engineering, automation, DevSecOps, or software development.
  • Strong proficiency in Python and developing automation workflows/APIs.
  • Experience integrating systems via REST APIs, webhooks, and handling structured/unstructured data (JSON, XML, CSV).
  • Familiarity with threat intelligence concepts, methodologies, and platforms (TIPs), and standards such as STIX and TAXII.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Threat Intelligence Automation Engineer
Threat Intelligence Automation Engineer

Compunnel, Inc. • Pennsylvania

On-site
USD 120,000 - 150,000
Threat Intelligence Automation Engineer
Threat Intelligence Automation Engineer

The Planet Group • Exton (PA)

Hybrid
Threat Intelligence Automation Engineer
Threat Intelligence Automation Engineer

Expert Technology Services • Malvern

On-site
USD 120,000 - 180,000
Senior Automation, Cybersecurity Engineer
Senior Automation, Cybersecurity Engineer

Jobtailor • Plano (TX)

On-site
USD 140,000 - 190,000
Cybersecurity Engineer – Security Infrastructure & Automation Lead
Cybersecurity Engineer – Security Infrastructure & Automation Lead

Charter Global • Atlanta (GA)

Hybrid
USD 100,000 - 130,000
Security Automation Engineer – Security Engineering
Security Automation Engineer – Security Engineering

Jobtailor • Greensboro (NC)

On-site
USD 110,000 - 160,000
Sr. Automation & Cybersecurity Engineer
Sr. Automation & Cybersecurity Engineer

Toyota Tsusho Systems US, Inc. • Plano (TX)

On-site
USD 120,000 - 180,000
Cyber Security Threat Intelligence Analyst II
Cyber Security Threat Intelligence Analyst II

The Intersect Group • Phoenix (AZ)

On-site
USD 90,000 - 120,000
Senior Automation & Cybersecurity Engineer
Senior Automation & Cybersecurity Engineer

Cinter Career • Plano (TX)

On-site
USD 140,000 - 190,000
Cybersecurity Threat Intelligence Analyst
Cybersecurity Threat Intelligence Analyst

Jobtailor • Washington

On-site
USD 90,000 - 130,000