5 days ago
New York, NY, USAMid Level
Base Salary
$115k - $134k/yr
Responsibilities
- Design and deliver security automation and orchestration capabilities to improve response times and operational efficiency.
- Develop and maintain SOAR playbooks for alert triage, enrichment, containment, remediation, and response workflows.
- Integrate SIEM, EDR/XDR, IAM, vulnerability management, ticketing, and cloud security tools using APIs, webhooks, and event-driven architectures.
- Create reusable automation components with logging, monitoring, error handling, and observability.
- Automate SOC and incident response procedures, runbooks, evidence collection, containment, and remediation while preserving chain-of-custody requirements.
- Implement governance controls including RBAC, change management, audit logging, documentation, and approval gates.
- Automate security controls, compliance checks, policy-as-code, system hardening, and configuration drift remediation.
- Maintain operating procedures, runbooks, documentation, and knowledge-transfer materials.
Requirements
- At least 3 years of experience in Automation Engineering, Security Engineering, Security Operations Engineering, or related roles.
- Strong programming or scripting experience with Python, PowerShell, or JavaScript.
- Experience with automation and orchestration platforms such as Ansible, Itential, or VMware Aria Orchestrator.
- Hands-on experience with REST APIs, JSON, webhooks, OAuth2, token-based authentication, and mutual TLS.
- Working knowledge of SIEM concepts and SOC operations including log ingestion, correlation, querying, incident triage, escalation, and response.
- Understanding of IAM, endpoint security, network security, vulnerability management, and cloud security fundamentals.
- Experience with Git workflows, code reviews, branching strategies, and software testing practices.
- Strong documentation and communication skills with technical and non-technical stakeholders.
- Preferred qualifications include vulnerability management automation, remediation tracking, exception handling, SLA reporting, and cloud security across AWS, Azure, and/or GCP.
- Familiarity with container and Kubernetes security, EDR/XDR action automation, ServiceNow, Jira, and structured change management processes.
Benefits
- Medical, dental, vision, and life insurance.
- Paid holidays and paid time off.
- 401(k) plan and contributions.
- Long-term and short-term disability coverage.
- Paid parental leave.
- Employee Stock Purchase Plan.
- Eligible for Cognizant’s discretionary annual incentive program based on performance and applicable plan terms.
Tech Stack
Categories
About Cognizant
Cognizant (Nasdaq: CTSH) is an AI Builder and technology services provider, bridging the gap between AI investment and enterprise value. We build full-stack AI solutions powered by deep industry, process and engineering expertise — embedding an organization's unique context into technology systems that amplify human potential and drive tangible outcomes. From strategy to deployment, we help global enterprises move from AI ambition to AI impact and stay ahead in a fast-changing world. See how at cognizant.ai | Follow us @cognizant
