Job Title: Security Automation Engineer
Company: Coralogix (Snowbit)
Location: Gurgaon, India
About Snowbit:
At Snowbit, we are at the forefront of cybersecurity innovation, helping organizations protect their digital assets with cutting-edge solutions. Our team is committed to delivering world-class security automation services, enabling businesses to stay ahead of emerging threats and risks. We are looking for a highly motivated and experienced Security Automation Engineer to join our team.
Position Overview:
As a Security Automation Engineer at Snowbit, you will play a key role in designing, developing, and maintaining automated security solutions that strengthen our overall security posture. You will work closely with cross-functional teams to identify opportunities for automation, implement robust security processes, and streamline security workflows using scripting and programming.
Key Responsibilities:
- Develop and implement automated security solutions, focusing on security operations, incident response, and vulnerability management.
- Write scripts and automation tools to streamline routine security tasks, reducing manual intervention and improving efficiency.
- Collaborate with security analysts, engineers, and other teams to identify and automate security tasks and processes.
- Use programming languages like Python, and other relevant scripting languages to automate security tools, workflows, and processes.
- Continuously assess and improve the effectiveness and scalability of security automation scripts and tools.
- Stay up-to-date with the latest cybersecurity trends, tools, and best practices to integrate automation solutions effectively.
- Develop and maintain integrations with existing security platforms, such as SIEM, vulnerability scanners, and incident response tools.
- Troubleshoot and resolve issues with automated processes, providing technical support as needed.
- Document processes, automation workflows, and system configurations to ensure transparency and ease of understanding for other team members.
- Participate in security incidents and contribute to root cause analysis for security issues that may arise.
Required Qualifications:
- Strong experience in security automation, with a deep understanding of cybersecurity principles and methodologies.
- Proficient in Python and other scripting languages (e.g., Bash, PowerShell, etc.) for automation and tool development.
- Experience with security tools and technologies such as SIEMs, vulnerability scanners, IDS/IPS, firewalls, and endpoint security.
- Familiarity with APIs and integrations between various security tools and platforms.
- Hands-on experience with cloud security, including automation of cloud-native security controls (AWS, Azure, GCP).
- Understanding of common security vulnerabilities and risks (OWASP Top 10, CVEs, etc.).
- Knowledge of secure coding practices and familiarity with automation frameworks (e.g., Ansible, Terraform, etc.).
- Excellent troubleshooting and problem-solving skills, with a keen eye for detail.
- Strong communication skills and the ability to work effectively with cross-functional teams.
- Ability to work in a fast-paced, collaborative environment.
Preferred Qualifications:
- Experience with security orchestration and automation platforms (SOAR).
- Familiarity with container security, Kubernetes, and other DevOps-related tools.
- Certifications such as CISSP, CEH, or AWS Certified Security Specialty are a plus.