Security Engineer

Cyera Cyera · Vertical AI · St. Louis, MO · Security

Security Engineer role focused on building and operating an agentic SOC environment, leveraging automation, AI-assisted workflows, and agent-based capabilities for improved detection, triage, response, and security visibility. Requires Python proficiency, AWS knowledge, SIEM experience, and familiarity with agentic concepts.

What you'd actually do

  1. Build, maintain, and improve security workflows, integrations, detection processes, and operational tooling within an agentic SOC.
  2. Work with automation, AI-assisted workflows, and agent-based capabilities that support alert triage, investigation, enrichment, and response.
  3. Help design, configure, maintain, and troubleshoot log ingestion flows into the SIEM from AWS, applications, infrastructure, endpoint tools, and security platforms.
  4. Create, tune, and maintain detection rules, alert logic, dashboards, playbooks, and investigation workflows.
  5. Develop Python scripts and automations for alert enrichment, data processing, reporting, workflow improvement, and security operations support.

Skills

Required

  • 2–3 years of experience in cybersecurity, SOC operations, security engineering, cloud security, detection engineering, or incident response.
  • Working knowledge of AWS services, cloud security fundamentals, logging, monitoring, IAM, and basic cloud architecture.
  • AWS entry-level certification required at minimum, such as AWS Certified Cloud Practitioner.
  • Hands-on proficiency with Python for scripting, automation, data processing, security tooling, or workflow development.
  • Experience working with SIEM platforms, including log ingestion, parsing, alerting, dashboards, and detection logic.
  • Experience building, maintaining, or troubleshooting log flows from applications, infrastructure, AWS services, endpoint tools, or security platforms into a SIEM.
  • Strong understanding of SOC workflows, alert triage, investigation, escalation, and incident response processes.
  • Ability to help develop, tune, and improve detections based on logs, threat behavior, and operational needs.
  • Familiarity with agentic concepts, agentic frameworks, AI-assisted workflows, autonomous or semi-autonomous agents, and practical security operations use cases.

Nice to have

  • Hands-on exposure to LLMs, AI agents, agentic workflows, or AI-assisted security operations.
  • Experience with Sigma, SPL, KQL, SQL, YARA, or similar detection/query languages.
  • Familiarity with Terraform, CloudFormation, CDK, or similar tools.
  • AWS Solutions Architect – Associate or AWS Security Specialty is a plus.

What the JD emphasized

  • agentic SOC
  • AI-assisted security operations
  • agent-based capabilities
  • agentic concepts
  • agentic frameworks
  • AI-assisted workflows
  • autonomous or semi-autonomous agents

Other signals

  • agentic SOC
  • AI-assisted security operations
  • automation
  • agent-based capabilities