Principal Security Automation Engineer Job at ZipRecruiter, Mc Lean, VA

T3hYREVvWFl2SVNvN1VvSURvb21nZTQzWWc9PQ==
  • ZipRecruiter
  • Mc Lean, VA

Job Description

Job Description Company Overview ID.me is the next-generation digital wallet that simplifies how individuals securely prove their identity online. Consumers can verify their identity with ID.me once and seamlessly log in across websites without creating new credentials. Over 140 million users experience streamlined login and verification with ID.me at 20 federal agencies, 44 state government agencies, and 66 healthcare organizations. More than 600 consumer brands use ID.me to verify communities and user segments to honor service and build more authentic relationships. ID.me's technology meets federal standards for consumer authentication set by the Commerce Department and is approved as a NIST 800-63-3 IAL2 / AAL2 credential service provider by the Kantara Initiative. ID.me is committed to "No Left Behind" to enable all people to have a secure digital identity. To learn more, visit . Role Overview ID.me is seeking a Principal Security Automation Engineer to lead the development, integration, and optimization of security automation across our cloud and DevSecOps environments. This role requires deep expertise in security engineering, scripting, tool integration, and DevSecOps best practices, with a secondary focus on incident response for cloud and web application security. As the highest-level security automation expert, you will design, build, and optimize automated security workflows, custom tooling, and security orchestration solutions to improve ID.me's ability to detect, respond to, and mitigate security threats efficiently. Your expertise in coding (Python, Go, Bash), API integration, and security automation platforms (SOAR, XDR, SIEM, cloud tools) will drive security innovation and operational efficiency. Beyond automation engineering, you will collaborate with SOC, Threat Intelligence, and DevOps teams to ensure incident response playbooks, security tooling, and cloud security controls are integrated into CI/CD pipelines and DevSecOps workflows. Responsibilities Security Automation & Tool Integration Develop, integrate, and optimize security automation workflows to enhance detection, response, and remediation efficiency. Build custom security tools and scripts using Python, Go, Bash, and APIs to improve security operations. Automate repetitive security tasks such as threat intelligence ingestion, alert triage, IOC enrichment, vulnerability management, and remediation tracking. Integrate security tools into CI/CD pipelines, ensuring SAST, DAST, SCA, SBOM scanning, and infrastructure-as-code security are automated. Develop custom detection rules and response automations for SOAR, XDR, SIEM (Chronicle, Splunk), and cloud security platforms. Work with DevOps and Engineering teams to embed secure-by-design automation into application and infrastructure deployments. Optimize IAM, secrets management, and API security automation, ensuring strong access controls and cloud security posture management. Continuously evaluate and implement new security automation technologies to enhance scalability, efficiency, and real-time response. Incident Response & Cloud Security Support incident response teams by automating investigation, containment, and remediation workflows, reducing response times for cloud and web security incidents. Contribute to post-incident reviews and root cause analysis (RCA), driving improvements to prevent repeat incidents. Provide forensic and automation expertise during major cloud and web application security incidents, assisting SOC and IR teams in rapid mitigation. Refine incident response playbooks and adversary emulation techniques, ensuring automation is central to response strategies. DevSecOps & Continuous Security Improvement Drive security automation adoption across DevSecOps teams, integrating security best practices into software development. Automate compliance and security controls to meet frameworks like FedRAMP, SOC 2, ISO 27001, and NIST 800-53. Collaborate with Threat Intelligence and Security Operations teams to enhance real-time detection and automated response to emerging threats. Mentor security engineers, SOC analysts, and DevOps teams, fostering a culture of security automation and continuous learning. Minimum Qualifications 12+ years in cybersecurity, with 7+ years in security automation, scripting, and tool integration. Advanced programming skills in Python, Go, or Bash for security automation. Experience integrating security tools via APIs, webhooks, and cloud services. Hands-on experience with SOAR, SIEM, XDR, and security telemetry platforms (e.g., Chronicle, Splunk, AWS Security Hub, GCP Security Command Center). Strong background in DevSecOps, embedding security automation into CI/CD pipelines and cloud environments. Experience with Infrastructure as Code (Terraform, CloudFormation). Knowledge of threat intelligence automation, IOC enrichment, and detection engineering. Expertise in cloud security in AWS, GCP, Kubernetes, and containerized environments, automating security in serverless architectures. Understanding of incident response methodologies and security frameworks (MITRE ATT&CK, NIST CSF, Cyber Kill Chain, OWASP Top 10). Leadership and collaboration skills, capable of driving security automation strategies enterprise-wide. Preferred Qualifications Certifications such as CISSP, GCP Security Engineer, AWS Security Specialty, CKS, GCIH, GCFA, or OSCP. Experience with machine learning and AI-driven security automation. Familiarity with adversary emulation frameworks (Atomic Red Team, CALDERA, MITRE ATT&CK Evaluations). Experience in cloud security engineering, API security, and zero-trust architecture. Ideal Candidate Traits Obsessed with security automation, always seeking to eliminate manual processes. Skilled in building and integrating custom security solutions. Thrives in fast-paced, high-impact environments, fostering innovation. Strategic and operational thinker with strong security leadership. Values mentorship and knowledge sharing. Keeps ahead of emerging threats and technologies, pushing automation forward. Candidates must be located in the continental U.S. and available to work on site at McLean VA or Mountain View CA.

#LI-JS1

The annual base salary ranges from $203,183 to $255,000 in Mountain View, CA, and $241,098 to $278,738 in other locations. Compensation includes bonuses, equity, and benefits, based on experience and role. ID.me offers comprehensive benefits, including health insurance, 401(k), parental leave, unlimited PTO, and more. Final offers vary based on qualifications and location. We are committed to an inclusive, discrimination-free workplace and provide reasonable accommodations for employees with disabilities. For more information, see our Privacy Policy at id.me/privacy. ID.me participates in E-Verify. #J-18808-Ljbffr ZipRecruiter

Job Tags

Similar Jobs

Griswold Home Care for North Houston

In-Home Caregivers Job at Griswold Home Care for North Houston

Looking for great caregivers in the Montgomery and Magnolia areas!Full and Part-time availabilityPTOGriswold Home Care of North Houston is seeking highly qualified CNAs, HHAs, and Caregivers to provide personalized care to our clients in their homes, where you... 

Oracle

Consulting Technical Manager Job at Oracle

 ...human, you've come to the right place.As a Consulting Technical Manager in Oracle Health Government Services you will plan and direct...  ....We're committed to including people with disabilities at all stages of the employment process. If you require accessibility assistance... 

Porter Dental & Braces - a Benevis company

Part-Time Associate Dentist Job at Porter Dental & Braces - a Benevis company

 ...in this mission. Are you ready to help us create our next million smiles? We have the perfect opportunity for you! Position: Associate Dentist We are actively seeking an Associate Dentist to join our growing team. This is your chance to support our mission and... 

Impact Fire

District General Manager Job at Impact Fire

 ...healthcare, education and restaurants. Today, we operate over 30+ district offices and employ over 1,100 employees across multiple states...  ...1(k) company match+ Exceptional guidance and support from our managers+ Collaborative culture & environment+ Robust training... 

Elma Electronic

Product Management Intern Job at Elma Electronic

 ...advanced embedded computing solutions. Our products and integrated platforms are based on a...  ...customers and partners worldwide with sales, design, and manufacturing facilities across...  ...is seeking a motivated Product Management Intern to join our Marketing Department. We are...