Threat Intelligence Automation Engineer

The Planet Group

Exton (PA)

Hybrid

USD 103,320 - 117,096

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

The Planet Group is seeking a hands-on cybersecurity engineer in Malvern, PA to modernize CTI capabilities by building automated pipelines, API integrations, and threat data workflows across security operations.

You will automate intel collection, enrich and distribute IOCs, integrate TIPs, SOAR, SIEM, EDR via REST APIs and webhooks, and collaborate with Incident Response and Detection Engineering to replace manual processes.

Qualifications

  • 6+ years of cybersecurity experience with a focus on Security Automation, Engineering, DevSecOps, or Software Development.

Responsibilities

  • Automate Intel: Build Python pipelines to collect, enrich, score, and distribute IOCs across enterprise security tools.

Skills

Python
REST APIs
CTI concepts
Security Automation
Threat Intelligence Platforms
SOAR/SIEM/EDR integration
Incident Response collaboration

Job description

This is a hands-on engineering position focused on modernizing CTI capabilities by building automated pipelines, API integrations, and streamlining threat data workflows across security operations.

  • Location: Malvern, PA ( 3 days onsite)
  • Duration: 12-Month Contract
  • Core Tech Stack: Python, REST APIs/Webhooks, TIP, SOAR, SIEM, EDR, STIX/TAXII
  • Pay : $75-85/hr
What You’ll Be Doing
  • Automating Intel: Build Python pipelines to collect, enrich, score, and distribute IOCs across enterprise security tools.
  • Integrations: Connect TIPs, SOAR, SIEM, EDR, and cloud platforms using REST APIs and webhooks.
  • Correlate Vulnerabilities: Automate processes linking vulnerability intel (CISA KEV, NVD) with exploit activity and asset exposure.
  • Cross-Team Collaboration: Work directly with Incident Response, Threat Hunting, and Detection Engineering to replace manual workflows.
What We’re Looking For
  • 6+ years of cybersecurity experience (with a focus on Security Automation, Engineering, DevSecOps, or Software Development).
  • Strong Python skills and deep experience with REST APIs & structured data (JSON/XML).
  • Solid grasp of CTI concepts and standards (STIX/TAXII, Threat Intelligence Platforms).
  • Prior experience integrating enterprise security stacks (SIEM, SOAR, EDR, Cloud).
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Threat Intelligence Automation Engineer
Threat Intelligence Automation Engineer

Compunnel, Inc. • Pennsylvania

On-site
USD 120,000 - 150,000
Threat Intel Automation Engineer – CTI Pipelines
Threat Intel Automation Engineer – CTI Pipelines

The Planet Group • Exton (PA)

Hybrid
Systems Engineer- Security
Systems Engineer- Security

Expert Technology Services • Malvern

On-site
USD 120,000 - 180,000
Threat Intelligence Engineer
Threat Intelligence Engineer

Entech • Malvern

Hybrid
USD 140,000 - 190,000
Health, Dental, Vision, 401(k)
Threat Intelligence Automation Engineer
Threat Intelligence Automation Engineer

Expert Technology Services • Malvern

On-site
USD 120,000 - 180,000
Cybersecurity Engineer – Security Infrastructure & Automation Lead
Cybersecurity Engineer – Security Infrastructure & Automation Lead

Charter Global • Atlanta (GA)

Hybrid
USD 100,000 - 130,000
Threat Intelligence Automation Specialist
Threat Intelligence Automation Specialist

Compunnel, Inc. • Pennsylvania

On-site
USD 120,000 - 150,000
Senior Automation & Cybersecurity Engineer
Senior Automation & Cybersecurity Engineer

Cinter Career • Plano (TX)

On-site
USD 140,000 - 190,000
Senior Automation, Cybersecurity Engineer
Senior Automation, Cybersecurity Engineer

Jobtailor • Plano (TX)

On-site
USD 140,000 - 190,000
Senior Research Engineer, Threat Intelligence
Senior Research Engineer, Threat Intelligence

Towards AI, Inc. • Washington

On-site
USD 140,000 - 150,000