Security Automation & AI SOC Engineer

Job Title: Security Automation & AI SOC Engineer
Location: London (2 days per week onsite)
Remuneration: Up to 750 per day
Contract Details: Temporary, Initial 6 Months (strong likelihood of extension)

Overview:
Join our client's dynamic team as a Security Automation & AI SOC Engineer and help reshape the future of Security Operations! This isn't your typical SOAR engineering position. You'll be at the forefront of designing and embedding scalable operational processes and automation frameworks, while integrating AI in a meaningful way. If you have a passion for security automation and a knack for AI adoption, this is the role for you!

Responsibilities:
Security Automation

  • Design, develop, and maintain security automation workflows using hyperautomation platforms like Torq, Tines, Swimlane, and Cortex XSOAR.
  • Identify and automate manual, repetitive SOC activities to enhance efficiency.
  • Develop automated triage, enrichment, and response workflows that make a difference.
  • Improve integrations across security tools and collaboration systems.
  • Establish best practises and governance for automation development.

AI-Enabled Security Operations

  • Assess and introduce AI capabilities safely into SOC operations.
  • Design AI-assisted investigation and triage processes to support analysts.
  • Create governance models for AI workflows and measure their effectiveness.
  • Define the future operational model for analysts working with automation and AI.

SOC Strategy & Transformation

  • Develop a comprehensive Security Automation and AI roadmap.
  • Determine the balance between human-led and automated activities.
  • Build scalable frameworks while ensuring operational quality.
  • Collaborate with SOC analysts and stakeholders to drive adoption and change.

Continuous Improvement

  • Measure automation outcomes and identify further optimisation opportunities.
  • Support knowledge sharing and capability uplift within the Security Operations team.
  • Stay updated on emerging industry practises around Security Automation and AI SOCs.

Essential Experience:

  • Strong background in Security Operations, Incident Response, Detection Engineering, or Security Engineering.
  • Hands-on experience with automation solutions and platforms (Tines, Swimlane, Cortex XSOAR, etc.).
  • Proven track record of improving SOC processes and workflows.
  • Practical experience with AI capabilities within a SOC environment.
  • Excellent analytical and problem-solving skills.

Desirable Experience:

  • Experience designing an AI adoption strategy for a SOC.
  • Familiarity with Microsoft Sentinel, Splunk, Azure, AWS, or GCP security technologies.
  • Knowledge of detection engineering and automation metrics.

What Success Looks Like:

  • Deliver meaningful reductions in manual analyst effort through automation.
  • Establish a sustainable model where analysts, automation, and AI capabilities work in harmony.
  • Improve SOC productivity while enhancing security outcomes.

If you're an innovative thinker with a passion for transforming Security Operations through automation and AI, we'd love to hear from you! Join us in making a significant impact in the cybersecurity landscape. Apply today!

Pontoon is an employment consultancy. We put expertise, energy, and enthusiasm into improving everyone's chance of being part of the workplace. We respect and appreciate people of all ethnicities, generations, religious beliefs, sexual orientations, gender identities , and more. We do this by showcasing their talents, skills, and unique experience in an inclusive environment that helps them thrive.

We use generative AI tools to support our candidate screening process. This helps us ensure a fair, consistent, and efficient experience for all applicants. Rest assured, all final decisions are made by our hiring team, and your application will be reviewed with care and attention.

Job Details

Company
Pontoon
Location
London, United Kingdom
Employment Type
Contract
Salary
GBP Annual
Posted