Solidigm

Senior Security Application Engineer - Automation & Detection

Solidigm
Apply
2 months ago
Zapopan, MexicoSenior

Responsibilities

  • Define and own SOC and product security detection coverage strategy, standards, naming conventions, quality criteria, ATT&CK mappings, heatmaps, and operational KPIs.
  • Build and ship detections-as-code, automated triage, agentic response workflows, and supervised automations across the detection lifecycle.
  • Architect AI agent identity, scoped delegation, audit logging, kill-switch controls, guardrails, and human-oversight mechanisms.
  • Support and enhance code-signing and cryptographic infrastructure for firmware signing, device identity, attestation, unlocking, HSM monitoring, certificate management, and access provisioning.
  • Develop automation and tooling for signing pipelines, PQC adoption, cryptographic telemetry, KPI dashboards, audit logging, and anomaly detection.
  • Embed with firmware, CI/CD, manufacturing, and operations teams to integrate SAST, SBOM, attestation, supply-chain, and security controls.
  • Perform adversary emulation and purple team exercises, close detection and control coverage gaps, and strengthen governance controls.
  • Lead security program components, define technical standards, influence roadmap and architecture decisions, and mentor analysts, engineers, and firmware personnel.
  • Develop runbooks, training materials, and knowledge documentation and participate in operational, KPI, CISO, and Cryptographic Architecture Board governance rhythms.

Requirements

  • Bachelor’s degree in Information Security, Cybersecurity, Computer Science, Software Engineering, or a related field.
  • 4–6+ years of relevant hands-on experience.
  • Advanced English proficiency is mandatory.
  • Software development proficiency with Python preferred, API integration, infrastructure-as-code, and CI/CD pipeline development.
  • Hands-on security engineering experience with detection engineering, Microsoft Sentinel and/or Splunk, incident response workflows, and end-to-end detection lifecycle ownership.
  • Deep MITRE ATT&CK and MITRE ATLAS experience, including TTP mapping, coverage analysis, adversarial ML threat modeling, and AI-agent attack vectors.
  • Production experience building AI agents, agent frameworks, RAG pipelines, or agentic orchestration, plus knowledge of NIST AI RMF and OWASP AI security controls.
  • Working knowledge of HSM operations, certificate lifecycle management, code-signing pipelines, PKI, CA hierarchies, certificate policies, and key management.
  • Ability to lead technical decisions, influence adjacent domains, align outcomes with business requirements, embed with partner teams, and coach across technical levels.
  • Preferred experience with Entrust nShield, Fortanix DSM, EJBCA, KeyFactor, Venafi, COSE/CBOR, Authenticode, SBOM signing, attestation, ML-DSA, LMS/LMOD, hybrid cryptography, CNSA, NIST PQC, ISO 27001, SOX ITGC, Defender XDR, Security Copilot, Logic Apps, KQL, Azure, Splunk SPL, MCP, LangChain, Entra Workload Identities, Okta, or comparable platforms.
  • Prior FDE, solutions engineering, detection engineering, or product security engineering experience in enterprise manufacturing or hardware product environments is preferred.

Benefits

  • The role embeds with firmware, CI/CD, manufacturing, and operations teams and operates across Solidigm’s global technology organization.
  • The position includes participation in daily, weekly, monthly, and quarterly governance activities, including CISO reviews and the Cryptographic Architecture Board.

Tech Stack

Categories

Solidigm

About Solidigm

1,001-5,000 employees
Contact me