Senior AI & Automation Engineer (Team) - 19795/19794
Veritaz is a leading IT staffing solutions provider in Sweden, committed to advancing individual careers and aiding employers in ensuring the perfect talent fit. With a proven track record of successful partnerships with top companies, we have rapidly grown our presence in the USA, Europe, and Sweden as a dependable and trusted resource within the IT industry.
Role Summary
An experienced AI & Automation Engineer is needed to make security operations faster, smarter and more consistent through production-grade automation and AI-assisted security workflows. The assignment spans security operations, identity and access management, vulnerability management, compliance and infrastructure security. The consultant will build secure, scalable automation capabilities and AI assistants that support security analysts while maintaining appropriate controls for privileged and high-risk actions.
The role involves automating the full security incident lifecycle, including alert triage, enrichment, investigation, containment, remediation and evidence collection. Solutions will use Generative AI, LLMs/SLMs, RAG and agentic RAG patterns, vector search, tool calling, MCP/A2A, and LLMOps/GenAIOps practices. Controlled self-healing capabilities and human approval workflows will be incorporated where required.
Key Responsibilities
Design, build and productionise security automation workflows across SecOps, IAM, vulnerability management, compliance and infrastructure security.
Automate alert triage, enrichment, investigation, containment, remediation and evidence collection.
Develop secure AI assistants and agents for security use cases using LLMs/SLMs, RAG, vector search, tool calling and agentic workflows.
Create reusable security playbooks supporting incident response, threat hunting, identity security and endpoint security.
Integrate security platforms through APIs, orchestration workflows, event-driven technologies and threat-intelligence integrations.
Implement infrastructure and security automation using Infrastructure as Code, policy-as-code and DevSecOps practices.
Develop CI/CD security controls, automated testing and secure deployment processes for automation and AI solutions.
Improve security observability through event correlation, anomaly detection, intelligent alert reduction and closed-loop response mechanisms.
Contribute to vulnerability and exposure management, security baseline implementation, compliance automation and Zero Trust initiatives.
Measure and improve operational outcomes, including MTTD, MTTR, false-positive reduction, automation coverage and analyst productivity.
Technical Stack & Requirements
Programming and scripting: Python, PowerShell, REST APIs, JSON, YAML and KQL.
Microsoft security ecosystem: Microsoft Sentinel, Defender XDR, Entra ID, Purview, Security Copilot and Azure security services.
Automation and Infrastructure as Code: Ansible Automation Platform, Terraform, security/policy-as-code, Azure Functions and Logic Apps.
DevOps tooling: Git, GitHub, GitLab, GitHub Actions and Azure DevOps.
Service management and orchestration: ServiceNow SecOps/ITSM, CMDB, Flow Designer and IntegrationHub.
Security platforms: SIEM/SOAR, XDR/EDR, IAM/PAM, vulnerability management and threat-intelligence platforms.
Cloud-native and integration technologies: Docker, Kubernetes, event-driven technologies and API gateways.
AI operations: LLMOps/GenAIOps, AIOps, RAG/Agentic RAG, vector search and secure AI agent development.
Qualifications & Experience
The ideal consultant has at least 10 years of experience in Cybersecurity, Security Engineering, SecOps, Detection Engineering or Security Automation. Strong hands-on experience building enterprise security automation and integrating security platforms through APIs, workflows and orchestration is required. Candidates should have practical experience with Microsoft Security and SIEM/SOAR environments and a demonstrated ability to take automation or AI solutions from proof of concept through production deployment.
A strong understanding of incident response, vulnerability management, IAM, cloud security and security controls is required. A bachelor's degree in Cybersecurity, Computer Science, Engineering, IT or equivalent professional experience is expected. Relevant Microsoft Security Operations, Cybersecurity Architect, Identity, Azure AI or Security certifications are advantageous, as are CISSP, CISM, GIAC, Security+, Red Hat Ansible and ServiceNow SecOps certifications. Experience with ITIL, Zero Trust, DevSecOps, AIOps, SRE and FinOps is preferred.
Findigo hittar jobben och fyller i ansökan. Du klickar Skicka.
Visa jobbet och ansökUrsprunglig annons: arbetsformedlingen.se