Source description
About the role
Role Summary The AWS Security Engineer (AI & Automation) will carry the full scope of the AWS Security Engineer role and additionally lead the design and delivery of AI-driven automation, dashboards, and agentic tooling to accelerate USANA's cybersecurity operations and upskill the in-house team. The role includes: Security Automation & Orchestration • Design and build security automation and orchestration workflows using AWS-native services (Lambda, EventBridge, Step Functions) and SOAR patterns. • Automate repetitive security operations tasks to reduce manual effort and rework. • Develop and maintain reusable automation components and runbooks. • should have True Foundry experience AI-Driven Dashboards & Reporting • Build dashboards against cybersecurity tool sets – incidents, threat intelligence, and vulnerability data – to give the cyber team actionable, consolidated visibility. • Replace manual, ad-hoc dashboard building with maintainable, automated reporting pipelines. • Iterate on dashboards based on stakeholder feedback and evolving operational needs. Agentic & GenAI Tooling for Security Operations • Design and build AI agents and assistants (using approved enterprise tools such as Claude Enterprise) to support alert triage, summarization, and investigation acceleration. • Enforce strict entitlement and access controls per dataset for any conversational agent querying sensitive cyber data, ensuring least-privilege access aligned with USANA's data sensitivity requirements. • Validate agent outputs and guardrails before operational use. AIOps & ML-Based Anomaly Detection • Apply AIOps and machine-learning techniques to detect anomalies and surface high-priority signals across security telemetry. • Tune models and detection logic to reduce noise and improve fidelity. Event-Driven Auto-Remediation & Guardrails • Implement event-driven auto-remediation and preventive guardrails for common cloud security misconfigurations and policy violations. • Ensure automated actions operate within approved change-control and safety boundaries. Detection-as-Code & CI/CD Security Automation • Implement detection-as-code practices and embed automated security checks into CI/CD pipelines. • Version-control detections, automations, and guardrails for auditability and repeatability. Security Telemetry Data Pipelines • Build and maintain data pipelines that aggregate security telemetry for analytics, dashboards, and AI workflows. • Ensure data quality, normalization, and access governance across pipeline stages. Team Enablement & Upskilling • Upskill USANA's cyber team on AI-assisted security tooling, automation practices, and dashboard development. • Document tooling, share best practices, and reduce dependency on manual processes.
More at Techdoquest