Back to positions

[Remote] Senior Security Automation Engineer (SOAR) - Mid-Atlantic region (Remote)

Remote role Full-time Open position

Note: The job is a remote job and is open to candidates in USA. GuidePoint Security is a rapidly growing cybersecurity solutions provider that helps organizations minimize risks through trusted expertise and services. They are seeking a Senior Security Automation Engineer to design and build security automation workflows, enhancing operational efficiency in security operations. This role requires a deep understanding of security operations and automation platforms to optimize security posture for top organizations.

Responsibilities

  • 5+ years in security operations with a working understanding of how a SOC functions end to end (alert triage, escalation, incident response, case management)
  • 3+ years specifically designing and building security automation/orchestration workflows
  • Hands-on experience on at least one SOAR/automation platform; Tines, Torq, or Cortex XSOAR preferred
  • Proficiency integrating security and IT systems via REST APIs, webhooks, and JSON
  • Scripting ability, primarily Python, for custom logic, data transforms, and handling within automated workflows
  • Working knowledge of the tooling categories automations connect to: SIEM, EDR/XDR, ticketing (ServiceNow, Jira), threat intelligence, and email security
  • Ability to decompose a manual security process into a reliable automated workflow, including error handling, conditional logic, and secure runs
  • Familiarity using LLMs in a development and automation context, including AI assisted or agentic coding tools such as Claude Code or Codex; exposure to MCP based integrations is a plus
  • Ability to independently scope automation requirements with clients and translate them into a build plan
  • Platform or vendor certifications: Tines, Torq, Cortex XSOAR; or SIEM/EDR certs (such as Splunk, Microsoft Sentinel, CrowdStrike)
  • Cloud experience (AWS or Azure) and familiarity with cloud native security tooling
  • Prior delivery experience in a consulting, professional services, or MSSP environment
  • Detection engineering exposure in areas such as detections-as-code (DaC), Sigma, or similar
  • Version control and automation-as-code practices (Git or similar repo controls)

Skills

  • 5+ years in security operations with a working understanding of how a SOC functions end to end (alert triage, escalation, incident response, case management)
  • 3+ years specifically designing and building security automation/orchestration workflows
  • Hands-on experience on at least one SOAR/automation platform; Tines, Torq, or Cortex XSOAR preferred
  • Proficiency integrating security and IT systems via REST APIs, webhooks, and JSON
  • Scripting ability, primarily Python, for custom logic, data transforms, and handling within automated workflows
  • Working knowledge of the tooling categories automations connect to: SIEM, EDR/XDR, ticketing (ServiceNow, Jira), threat intelligence, and email security
  • Ability to decompose a manual security process into a reliable automated workflow, including error handling, conditional logic, and secure runs
  • Familiarity using LLMs in a development and automation context, including AI assisted or agentic coding tools such as Claude Code or Codex; exposure to MCP based integrations is a plus
  • Ability to independently scope automation requirements with clients and translate them into a build plan
  • Platform or vendor certifications: Tines, Torq, Cortex XSOAR; or SIEM/EDR certs (such as Splunk, Microsoft Sentinel, CrowdStrike)
  • Cloud experience (AWS or Azure) and familiarity with cloud native security tooling
  • Prior delivery experience in a consulting, professional services, or MSSP environment
  • Detection engineering exposure in areas such as detections-as-code (DaC), Sigma, or similar
  • Version control and automation-as-code practices (Git or similar repo controls)

Benefits

  • Remote workforce primarily (U.S. based only, some travel may be required for certain positions, working on-site may be required for Federal positions)
  • Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family). If you choose the High Deductible / HSA plan, GPS will contribute in 4 equal quarterly installments: ($850 per EE annually / $1750 per family annually (includes spouse/children/family options)
  • Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans
  • 12 corporate holidays and a Flexible Time Off (FTO) program
  • Healthy mobile phone and home internet allowance
  • Eligibility for retirement plan after 2 months at open enrollment
  • Pet Benefit Option

Company Overview

  • GuidePoint Security provides trusted cybersecurity expertise, solutions, and services that help organizations minimize risk. It was founded in 2011, and is headquartered in Reston, Virginia, USA, with a workforce of 1001-5000 employees. Its website is https://www.guidepointsecurity.com/.
  • Apply To This Job

    Further positions

    [Remote] Field Service Engineer II (Electron Microscopy) - Chandler, AZ

    Remote role Full-time

    [Remote] Senior Product Marketing Manager, Public Sector

    Remote role Full-time

    [Remote] Digital Strategist, Performance Marketing

    Remote role Full-time

    [Remote] Product, Performance Marketing

    Remote role Full-time

    [Remote] Performance Marketing Manager

    Remote role Full-time

    [Remote] Paralegal, Legal Operations Analyst

    Remote role Full-time

    [Remote] Small Business Account Executive

    Remote role Full-time

    [Remote] Digital Marketing Manager

    Remote role Full-time

    [Remote] Senior Data Engineer

    Remote role Full-time

    [Remote] Senior Product Manager, Navigator

    Remote role Full-time

    Drug Safety Case Intake Specialisty PVexp LP

    Remote role Full-time

    Workforce Management - Provider Scheduler

    Remote role Full-time

    Job Title: Remote Healthcare Call Center Customer Service Representative - Inbound/Outbound Support Specialist

    Remote role Full-time

    Client Success Associate (Bilingual Spanish / English Speaking)

    Remote role Full-time

    [Remote] Data & AI Mid-Market Sales Lead Qualification

    Remote role Full-time

    Sr. Business Development Manager, Commercial Oral Technologies

    Remote role Full-time

    Experienced Customer Service Representative – Remote Opportunity at arenaflex

    Remote role Full-time

    Remote Ticket & Gate Agent – Customer Service Representative – Flexible Shifts – $31/hr – arenaflex

    Remote role Full-time

    Senior Product Manager

    Remote role Full-time

    Senior Security Research Engineer - Microsoft Defender Experts Team

    Remote role Full-time