Back to Jobs

Senior AI & Automation Engineer (Team) - 19794/19795

CybersecuritySenior
Urgent
Sweden, SwedenFull-time · Remote Posted 29 September 2026 Expires 1 October 2026
Languages: EnglishMin. experience: 10 years

Huy Tran

HR Administrator

cv@veritaz.se

Required Skills

PythonTerraformPowerShellMicrosoft SentinelMicrosoft Entra IDMicrosoft Defender XDRAnsible Automation PlatformServiceNow SecOps

Job Overview

Role Summary

An experienced AI & Automation Engineer is needed to make security operations faster, smarter and more consistent through production-grade automation and AI-assisted security workflows. The assignment spans security operations, identity and access management, vulnerability management, compliance and infrastructure security. The consultant will build secure, scalable automation capabilities and AI assistants that support security analysts while maintaining appropriate controls for privileged and high-risk actions.

The role involves automating the full security incident lifecycle, including alert triage, enrichment, investigation, containment, remediation and evidence collection. Solutions will use Generative AI, LLMs/SLMs, RAG and agentic RAG patterns, vector search, tool calling, MCP/A2A, and LLMOps/GenAIOps practices. Controlled self-healing capabilities and human approval workflows will be incorporated where required.

Key Responsibilities

  • Design, build and productionise security automation workflows across SecOps, IAM, vulnerability management, compliance and infrastructure security.
  • Automate alert triage, enrichment, investigation, containment, remediation and evidence collection.
  • Develop secure AI assistants and agents for security use cases using LLMs/SLMs, RAG, vector search, tool calling and agentic workflows.
  • Create reusable security playbooks supporting incident response, threat hunting, identity security and endpoint security.
  • Integrate security platforms through APIs, orchestration workflows, event-driven technologies and threat-intelligence integrations.
  • Implement infrastructure and security automation using Infrastructure as Code, policy-as-code and DevSecOps practices.
  • Develop CI/CD security controls, automated testing and secure deployment processes for automation and AI solutions.
  • Improve security observability through event correlation, anomaly detection, intelligent alert reduction and closed-loop response mechanisms.
  • Contribute to vulnerability and exposure management, security baseline implementation, compliance automation and Zero Trust initiatives.
  • Measure and improve operational outcomes, including MTTD, MTTR, false-positive reduction, automation coverage and analyst productivity.

Technical Stack & Requirements

  • Programming and scripting: Python, PowerShell, REST APIs, JSON, YAML and KQL.
  • Microsoft security ecosystem: Microsoft Sentinel, Defender XDR, Entra ID, Purview, Security Copilot and Azure security services.
  • Automation and Infrastructure as Code: Ansible Automation Platform, Terraform, security/policy-as-code, Azure Functions and Logic Apps.
  • DevOps tooling: Git, GitHub, GitLab, GitHub Actions and Azure DevOps.
  • Service management and orchestration: ServiceNow SecOps/ITSM, CMDB, Flow Designer and IntegrationHub.
  • Security platforms: SIEM/SOAR, XDR/EDR, IAM/PAM, vulnerability management and threat-intelligence platforms.
  • Cloud-native and integration technologies: Docker, Kubernetes, event-driven technologies and API gateways.
  • AI operations: LLMOps/GenAIOps, AIOps, RAG/Agentic RAG, vector search and secure AI agent development.

Qualifications & Experience

The ideal consultant has at least 10 years of experience in Cybersecurity, Security Engineering, SecOps, Detection Engineering or Security Automation. Strong hands-on experience building enterprise security automation and integrating security platforms through APIs, workflows and orchestration is required. Candidates should have practical experience with Microsoft Security and SIEM/SOAR environments and a demonstrated ability to take automation or AI solutions from proof of concept through production deployment.

A strong understanding of incident response, vulnerability management, IAM, cloud security and security controls is required. A bachelor's degree in Cybersecurity, Computer Science, Engineering, IT or equivalent professional experience is expected. Relevant Microsoft Security Operations, Cybersecurity Architect, Identity, Azure AI or Security certifications are advantageous, as are CISSP, CISM, GIAC, Security+, Red Hat Ansible and ServiceNow SecOps certifications. Experience with ITIL, Zero Trust, DevSecOps, AIOps, SRE and FinOps is preferred.

Interested? Please share your updated CV at cv@veritaz.se to proceed further.

Interested in this position?

Send your application and we will get back to you shortly.

Apply Now