
Senior Security Automation Engineer – SOAR
Bank of America
full-time
Posted on:
Location Type: Hybrid
Location: Chicago • Colorado, District of Columbia, Illinois • 🇺🇸 United States
Visit company websiteSalary
💰 $156,500 - $230,000 per year
Job Level
Senior
Tech Stack
AWSAzureCloudCyber SecurityGoogle Cloud PlatformPythonSplunk
About the role
- Architect, implement, and maintain advanced automation workflows using Tines.
- Collaborate with SOC and IR teams to identify high-impact use cases for automation.
- Integrate Tines with enterprise systems including EDR, SIEM, threat intelligence platforms, and cloud services.
- Lead secure integration of Tines with SSO, credential vaults, and external repositories.
- Design and configure secure connectivity solutions (e.g., Cloudflare tunnels, VPNs) for hybrid environments.
- Develop and maintain orchestration stories across platforms such as:
- CrowdStrike, Tanium, Splunk, Anvilogic, ThreatQ, AWS, and Azure.
- Write, test, and debug Python-based automation logic.
- Analyze Tines logs and metrics to optimize performance and reliability.
- Create and maintain technical documentation, runbooks, and architectural diagrams.
- Engage with stakeholders across security, infrastructure, and application teams to gather requirements and align automation efforts with business goals.
- Ensure all automation workflows adhere to enterprise security policies and change management processes.
Requirements
- 8+ years of experience in cybersecurity, with at least 3+ years in a security automation or engineering role.
- Proven experience working with SOC and/or Incident Response teams to operationalize automation.
- Hands-on experience with Tines or similar SOAR platforms (e.g., Splunk SOAR, Palo Alto XSOAR).
- Strong programming skills in Python; experience with Git and CI/CD pipelines.
- Deep understanding of REST APIs, webhooks, and secure API integrations.
- Experience with cloud platforms (AWS, Azure, or GCP), including automation and security architecture.
- Familiarity with AI/ML integrations (e.g., AWS Bedrock, OpenAI APIs) is a plus.
- Experience configuring secure tunnels (e.g., Cloudflare, SSH, VPN) for hybrid environments.
- Strong knowledge of security frameworks and best practices (e.g., NIST, MITRE ATT&CK).
- Excellent communication skills and ability to translate technical concepts for non-technical stakeholders.
- Experience with Agile/Scrum methodologies and tools like Jira and Confluence.
Benefits
- This role is currently benefits eligible.
- We provide industry-leading benefits, access to paid time off, resources and support to our employees so they can make a genuine impact and contribute to the sustainable growth of our business and the communities we serve.
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
automation workflowsPythonREST APIswebhookssecure API integrationscloud automationsecurity architectureAI/ML integrationssecure tunnelssecurity frameworks
Soft skills
communication skillscollaborationstakeholder engagementrequirement gatheringtechnical documentationproblem-solvingleadershiporganizational skillsadaptabilitytranslating technical concepts