Job Opportunities API

The Public Ledger of Openings

← Back to the ledger

SOAR and AI Engineer - Managed Security

ahead-gmbh
Companyahead-gmbh
CategoryEngineering
LocationCharleston, WV
RemoteRemote
EmploymentNot stated
LevelNot stated
SalaryNot stated by the employer
Posted9 Aug 2026
Last verified11 Aug 2026
SourceThe employer's own careers page (company_site)
Applications are handled by the employer, not by us.Apply on the employer's site →
Description
Job Title: SOAR and AI Engineer Location: Charleston, WV • Remote Company Overview AHEAD builds platforms for digital business, specializing in cloud infrastructure, automation, analytics, and software delivery. They prioritize a culture of belonging and are an equal opportunity employer. Position Overview The SOAR and AI Engineer is responsible for designing, implementing, and continuously improving automation capabilities for the Managed Security Team, focusing on security automation across SOAR, SIEM, case management, and AI-assisted workflows. This is a hands-on technical role requiring deep experience in security operations, SOAR engineering, scripting, systems integration, and applied AI. Roles and Responsibilities Design, develop, and maintain security automation workflows within the SOAR platform. Build and maintain automated playbooks for alert triage, enrichment, containment, escalation, evidence gathering, and case management. Partner with SOC analysts, SIEM engineers, and incident responders to identify and automate high-value workflows. Design and implement integrations between SOAR, SIEM, ticketing systems, and various security tools. Apply AI and machine learning to improve analyst efficiency, alert summarization, and operational reporting. Evaluate and operationalize AI-assisted security use cases with quality controls and validation. Create scripts in Python or similar languages to automate tasks and support integrations. Monitor platform health, perform workflow tuning, and build dashboards for automation metrics. Assist with incident response processes and participate in client-facing security meetings. Position Requirements Strong experience with SOAR platforms (preferably Swimlane and Palo Alto XSOAR). Experience in security automation, orchestration, and systems integration. Scripting skills in Python or similar languages. Experience with APIs, webhooks, JSON, and event-driven integrations. Familiarity with SIEM platforms and security operations workflows. Knowledge of AI-assisted operations and LLM-enabled workflows. Excellent verbal and written communication skills. Incident handling and response experience. 2–4 years of experience in Information Security, Incident Response, or related disciplines. Hands-on experience with security technologies (IDS, Firewall, SIEM, SOAR, EDR, IAM). Knowledge of security threats, attack vectors, and vulnerabilities. Preferred Qualifications Experience with Swimlane, Palo Alto XSOAR, Elastic. Experience building analyst-assist workflows or AI-powered enrichment pipelines. Familiarity with cloud environments (AWS, Azure, GCP). Experience integrating ServiceNow and case management systems. Education Bachelor’s Degree in Computer Science, Information Security, Engineering, or equivalent experience. Preferred certifications: CISSP, GCIH, GCIA, or relevant SOAR certifications. Compensation On-Target Earnings (OTE) range based on experience, qualifications, and location. Benefits Medical, Dental, and Vision Insurance, 401(k), paid company holidays, paid time off, paid parental and caregiver leave.