SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
CSC Generation is seeking a SecOps Engineer to build AI-aware security defenses across cloud infrastructure and codebases. The threat landscape has shifted—autonomous AI agents are probing infrastructure at machine speed, chaining misconfigurations, and adapting in real time. This role requires an engineer who can architect and implement security tooling before threats materialize.
You will write code, stand up pipelines, and integrate with observability stacks to turn raw security signals into actionable insights across AWS infrastructure. Within 6–12 months, you will have production security tooling running in CI/CD, real-time threat detection correlated through ELK and Grafana, and AI-powered perimeter monitoring actively protecting the cloud footprint.
Key Responsibilities:
- Build and run analysis tools that scan codebases for security vulnerabilities and produce clear, actionable remediation guidance for engineering teams.
- Integrate automated security scanning into GitHub Workflows (CI/CD) so every commit and PR is continuously reviewed for new vulnerabilities.
- Design and build threat detection tools that work alongside observability platforms (ELK, Grafana) to correlate signals and identify active security threats in real time.
- Build or deploy AI-powered tools that monitor the AWS cloud perimeter for anomalous or malicious activity and drive automated or semi-automated response.
- Own the full lifecycle of security tooling from prototype to production, including monitoring for reliability and false-positive rates.
- Partner with engineering teams to help them understand and act on findings, and iterate on tooling based on feedback.
- Translate security findings into specific, understandable remediation steps for engineers without deep security backgrounds.
This is a lean team where you will own significant scope, move fast, and make decisions with full end-to-end responsibility. Your tooling will touch every engineering team across the portfolio, securing codebases, pipelines, and cloud infrastructure at scale.
Requirements:
- Hands-on experience with AWS infrastructure (IAM, VPC, networking/security groups, common compute/storage services) and knowledge of common misconfigurations and attack vectors.
- Experience working with GitHub Workflows / GitHub Actions and building CI/CD-integrated tooling.
- Practical experience using AI/LLM tools to build analysis or automation tooling (code review, log analysis, anomaly detection, classification).
- Strong understanding of common application and infrastructure vulnerability classes (OWASP Top 10, cloud misconfigurations, supply chain risks).
- Comfort working with observability/monitoring platforms such as ELK and Grafana, including building dashboards, alerts, or custom data pipelines.
- Solid software engineering skills—comfortable writing production-quality code (Python, Go, or similar) to build tools, not just configure existing ones.
- Ability to communicate security findings clearly and translate vulnerabilities into concrete remediation steps.
Preferred Qualifications:
- Offensive security experience (penetration testing, red teaming, exploit development), especially using AI/LLM-based tools to attack or stress-test infrastructure.
- Experience with SIEM/SOAR platforms and building automated response playbooks.
- Relevant certifications (OSCP, GCIH, AWS Security Specialty, or similar).
- Experience with infrastructure-as-code (Terraform, CloudFormation) from a security-review perspective.
- Familiarity with container/Kubernetes security.