Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
S&P Global

Senior Security Automation, SOAR Engineer

S&P Global

Senior Security Automation & SOAR Engineer focused on developing cloud-native orchestration playbooks. Working within the Cyber Fusion Center to enhance operational response efficiency through automation.

Posted 7/21/2026full-timeNew York City • Colorado, New York • 🇺🇸 United StatesSenior💰 $140,000 - $155,000 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in architecting and developing security automation solutions, with a strong focus on SOAR playbooks, incident response workflows, and cloud infrastructure deployment. Proficient in leveraging AI technologies and data analysis tools to enhance security operations and reporting.

Highest-signal resume keywords
SOAR Platform ExpertisePython ProgrammingIncident Response ExperienceCloud Infrastructure DeploymentSecurity Automation Solutions

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Security AutomationIncident ResponseAPI DevelopmentData AnalysisInfrastructure-as-CodeYARASIEM TechnologiesEDR SolutionsAutomation WorkflowsCloud Services
Soft Skills
Cross-Functional CollaborationLeadershipCommunication
Tools & Technologies
SplunkElasticSentinelPhantomXSOARSwimlaneCrowdStrikeSentinelOneMicrosoft DefenderTerraform
Industry Keywords
CybersecuritySecurity OrchestrationIncident TriageMean Time to ResponseAutomation Performance Metrics

Tech Stack

Tools & technologies
AWSCloudCyber SecurityElasticSearchPandasPythonSplunkSQLTerraform

About the role

Key responsibilities & impact
  • Architect and develop SOAR playbooks and automated workflows to streamline incident triage, containment, and remediation processes, directly improving SOC efficiency and reducing mean time to response.
  • Build and maintain secure integrations across a comprehensive ecosystem of security, IT, and business platforms including security tools, identity systems, cloud services, network infrastructure, ticketing systems, and communication platforms using APIs and custom code to support end-to-end incident response workflows.
  • Lead cross-functional collaboration with SOC, Detection Engineering, and Incident Response teams to identify automation opportunities and translate operational needs into technical solutions.
  • Deploy cloud-based security infrastructure using infrastructure-as-code practices, managing role-based access controls and supporting disaster recovery initiatives.
  • Incorporate cutting-edge AI technologies including Agentic AI and Large Language Models into security workflows to enhance decision-making and contextual understanding.
  • Produce executive-level reporting on automation performance metrics and ROI, presenting program effectiveness to leadership while supporting strategic security initiatives.

Requirements

What you’ll need
  • Bachelor's degree in Computer Science, Cybersecurity, or related field, or equivalent professional experience in security automation and orchestration.
  • 5+ years of proven experience designing and implementing security automation solutions in enterprise environments with hands-on SOAR platform expertise and demonstrated leadership in automation initiatives.
  • Strong hands-on incident response experience with demonstrated ability to translate response procedures into scalable automated workflows.
  • Strong proficiency in Python programming and experience with detection technologies such as YARA, along with REST API development and third-party service integrations.
  • Deep technical expertise across security platforms including SIEM technologies (such as Splunk, Elastic, or Sentinel), SOAR platforms (such as Phantom, XSOAR, or Swimlane), and EDR solutions (such as CrowdStrike, SentinelOne, or Microsoft Defender).
  • Hands-on experience with cloud infrastructure deployment particularly in AWS environments, using infrastructure-as-code tools (such as Terraform, CloudFormation, or Pulumi).
  • Experience with data manipulation and analysis tools (such as Pandas, SQL, or Elasticsearch) for processing high-volume security telemetry and creating sophisticated automation triggers.

Benefits

Comp & perks
  • Health & Wellness: Health care coverage designed for the mind and body.
  • Flexible Downtime: Generous time off helps keep you energized for your time on.
  • Continuous Learning: Access a wealth of resources to grow your career and learn valuable new skills.
  • Invest in Your Future: Secure your financial future through competitive pay, retirement planning, a continuing education program with a company-matched student loan contribution, and financial wellness programs.
  • Family Friendly Perks: It’s not just about you. S&P Global has perks for your partners and little ones, too, with some best-in class benefits for families.
  • Beyond the Basics: From retail discounts to referral incentive awards—small perks can make a big difference.