Cybersecurity Automation Developer
FirstEnergy
Cybersecurity Automation Developer
FirstEnergy at a Glance
We are a forward-thinking electric utility powered by a diverse team of employees committed to making customers' lives brighter, the environment better and our communities stronger.
FirstEnergy (NYSE: FE) is dedicated to safety, reliability, and operational excellence. Headquartered in Akron, Ohio, FirstEnergy includes one of the nation's largest investor-owned electric systems, more than 24,500 miles of transmission lines that connect the Midwest and Mid-Atlantic regions, and a regulated generating fleet with a total capacity of 3,780 megawatts.
This position is within FirstEnergy Service Co., a subsidiary of FirstEnergy Corp.
This position is in Akron, Ohio, reporting to the Supv of Threat Hunting, but has remote work opportunities while the person must be able to reach the FirstEnergy HQ facility based on business need within one hour travel time. This position may, subject to conditions and availability, qualify to be filled under the same terms but reporting to a regional office in Greensburg PA, Reading PA, Fairmont WV, Holmdel NJ, or Holland (Toledo) OH.
The Cybersecurity Automation Developer is responsible for designing, developing, and maintaining automated solutions that scale and mature the organization's security operations. This role enhances threat detection and accelerates incident response. A primary focus will be reducing manual workloads through automation, standardized playbooks, and repeatable engineering practices.
This role designs and implements automation frameworks functions including alert triage, incident response and threat hunting. The Cybersecurity Automation Developer will develop and maintain playbooks and workflows within the SOAR, integrating tools including SIEM and EDR into cohesive automated pipelines.
The Cybersecurity Automation Developer will lead initiatives to streamline security monitoring and remediation, create scalable scripting and orchestration solutions using Python, PowerShell, and JavaScript, and leverage APIs and data pipelines to normalize and correlate telemetry from multiple security sources.
The Cybersecurity Automation Developer will analyze complex security datasets to identify gaps and opportunities, tune automated processes to reduce false positives, and support advanced detection through analytics and emerging technologies.
Additionally, this position provides technical leadership by defining an automation strategy, mentoring junior developers, supporting vendor relationships, and contributing to architecture and lifecycle decisions. Strong communication skills, sound engineering judgment, and the ability to translate technical requirements into practical, scaled solutions are essential for success.
Responsibilities Include
- Design, develop, and maintain automated security workflows that streamline SOC and Threat Hunting operations, reduce manual effort, and accelerate incident detection, response, and remediation
- Lead expert-level development, tuning, and lifecycle management of SOAR playbooks to automate alert triage, enrichment, containment, and response processes
- Identify, troubleshoot, and remediate playbook failures, integration issues, and automation errors, performing break-fix and tuning activities prior to production deployment
- Architect and maintain integrations between SOAR, SIEM, EDR, and third-party security tools using APIs and custom scripting to ensure reliable data ingestion and orchestration
- Develop custom automation scripts and integrations in Python and JavaScript to extend platform capabilities and address unique SOC and enterprise security requirements
- Create and maintain dashboards, reports, and metrics to provide visibility into automation performance and effectiveness
- Install, validate, and deploy content packs and updates, following change management best practices to promote stable releases from development through production
- Serve as the primary subject matter expert (SME) for the SOAR and security automation platforms, providing technical guidance, troubleshooting, and consulting support to the SOC, and Threat Hunting teams.
- Design and maintain scalable automation frameworks and data pipelines to normalize, correlate, and enrich security telemetry across enterprise and cloud environments
- Monitor and manage platform health, internal databases, and system performance to ensure reliability, data integrity, and continuous availability of automation services
- Lead vendor engagement and support activities, including ticket management, platform optimization discussions, and roadmap alignment with Customer Success Engineers
- Continuously evaluate and improve automation processes to reduce false positives, eliminate repetitive tasks, and increase efficiency and response quality
- Document standards, playbook designs, troubleshooting procedures, and best practices to promote knowledge sharing and operational consistency across the team
- Educate and mentor threat hunters and analysts on automation tools, workflows, and best practices to elevate overall SOC effectiveness
- Support metrics collection, reporting, and operational communications to leadership and stakeholders
Qualifications
- Bachelor's degree in computer science, Information Security, or similar discipline is required with 3 years of experience
- Industry standard certifications will be considered such as OSCP, GIAC (GCTI, GCIH, GREM, GCFA, GPYC, GASAE, GCSA), CISSP and HTB CPTS
- A bachelor's degree in another field with 4 years relevant industry experience in cyber/information security will be considered
- In lieu of a degree, 7 years of related experience is required
- Related experience includes but is not limited to: SOC (Security Operations Center) experience, IT Security experience in detection, triage, investigation, and remediation of security incidents within a network and cyber automation engineer
- Understanding of adversarial techniques (i.e., MITRE ATT&CK framework)
- Strong understanding of programming/scripting code (Python, PowerShell, Bash. C#, JavaScript)
- Hands-on administration and engineering experience with SOAR (e.g., Cortex XSOAR, Splunk SOAR, Sentinel) platforms including advanced playbook design, integration management, and production support
- Experience troubleshooting and remediating automation failures, playbook errors, and platform performance issues in production environments
- Experience integrating security technologies (SIEM, EDR, IAM, firewalls, cloud tools) through REST APIs and automated data pipelines
- Ability to create, detect, and enhance security content
- Ability to develop and maintain automation playbooks and workflows
- Ability to handle, protect and preserve highly confidential information
- Understanding of networking concepts and technologies
- Basic understanding of statistics
- Must be organized and comfortable with ongoing changes in priorities
- Must be able to work independently with minimal supervision and within a team environment
- Strong foundation in cyber security
- Understanding of both Linux and Windows operating systems
- Demonstrate strong communication skills, both verbal and written
- Demonstrate creative problem solving and solutioning
- ...Automation Developer (Power BI Focused) Evolver is a cybersecurity and digital transformation company supporting national defense, federal civilian agencies, and Fortune 500 organizations. We help customers secure critical systems, modernize enterprise technology, and...SuggestedFlexible hours
$143.9k - $215.8k
...Join the Clean Energy Revolution Become an\u00a0 Automation Developer at Southern California Edison (SCE) and build a better tomorrow... ...the protection of all its physical, financial and cybersecurity assets, and properly accessing and managing private customer...SuggestedRemote workRelocation- ...Threat Intelligence Automation Developer Salesforce is the #1 AI CRM, where humans with agents drive customer success together. Here,... ...Qualifications A minimum of three years within the cybersecurity domain, including at least one year dedicated to security...SuggestedRemote work
- ...Job Description Job Description The Cyber Automation Database Developer will evaluate DISA's cybersecurity tools and processes to identify and implement automation opportunities, focusing on improving the efficiency and effectiveness of J-9 HaC services. This role...SuggestedFull timeTemporary workWork experience placementWork at office
$100k - $125k
...and become part of our family! The Automation team at Charter Casting is hiring a Digital... ...Mentor engineers and develop team capabilities Drive adoption of... ...enterprise architectures Experience with cybersecurity principles and practices in OT and IT environments...SuggestedFull timeRelocationVisa sponsorshipWork visaRelocation package$96.8k - $137k
...Security Test Automation Engineer Established in 1806 as a small soap and candle business... ...Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or related field.... ...: Our journey begins with our people—developing strong talent with diverse backgrounds...Hourly payLocal areaWorldwide- A cybersecurity and IT consulting firm seeks a Mid-Senior level SOAR Automation Engineer to design, implement, and scale security automation for a federal agency. This fully remote role involves using Splunk Phantom to enhance security operations and integrate AI services...Remote work
- ...small business is seeking a Cyber Tool Integration Engineer to design and implement integrations between cybersecurity tools and systems. The ideal candidate will automate security data processes and will have 5+ years of relevant experience. A Bachelor's degree in a...
- ...Certificate Automation Specialist Responsible for advancing and scaling certificate automation across the enterprise with a primary... ...lifecycle automation, with emphasis on the "last mile" deployment. Develop and maintain automation frameworks using such tools as Ansible...Full timePart timeWork experience placementWork at office
- ...A cybersecurity firm is looking for a Remote SOAR Developer/Engineer to automate SOC processes, develop custom applications, and integrate SOAR platforms with existing tools. Candidates should have at least 2 years of relevant experience, a bachelor's degree in Computer...Remote work
- ...Cybersecurity Automation Engineer 1 year contract Work and interview is on site in Charlotte NC (must be local, no exceptions... ...for enhancing our cybersecurity infrastructure, developing automation tools, REST API development and testing, and ensuring...Contract workLocal area
- ...Team Profile Morgan Stanley is seeking a Senior Cyber Automation Engineer to join the Firm's Cyber Incident Response Team (CIRT... ...and host-based forensics. What You will do in the role: Develop, implement, and maintain automated playbooks and workflows in...Temporary workLocal areaWorldwideFlexible hours
- ...Sum Theory, Inc. is seeking a Senior Cybersecurity Engineer to lead endpoint management services. This remote part-time role involves designing... ...overseeing operational excellence in endpoint security and automation. The successful candidate will collaborate with various teams...Part timeRemote work
- ...Chipright is looking for a Systems Cybersecurity Test Engineer to work on innovative cybersecurity solutions in the automotive sector. Candidates should possess a Bachelor's degree in Electronic or Computer Engineering and have a strong understanding of complex systems...
- ...global company redefining the future of cybersecurity. The company’s comprehensive, open, and... ...through artificial intelligence, automation, and analytics to empower over 50,000 business... ...test engineer responsible for developing and maintaining production test routines...Contract workFlexible hours
$40 per hour
...We are looking for experienced cybersecurity professionals to join our team to help train AI models. In this role, you will evaluate AI-generated security content, solve technical cybersecurity problems, and provide feedback to improve how AI systems reason about real-...Hourly payFull timePart timeRemote work- ...Flexibility/Remote: 100% J ob Title: AI Automation Specialist Location: Remote Customer:... ...candidate will be responsible for designing, developing, and implementing AI‑driven systems to... ...: Exposure to network security or cybersecurity Key Responsibilities Solution Design &...Full timeContract workRemote work
- ...personal growth, working with employees to develop a defined career path and helping them... ...Jersey.Position SummaryThe Security Automation Engineer will work with customer(s) supporting... ...current security threatsExperience in cybersecurity incident responseDetailed technical...Work at officeRemote workWork from home
$86.8k - $198k
...Job Number: R0237658 Enterprise Cybersecurity Automation Engineer The Opportunity: Cyber threats are everywhere, and the adversary's tradecraft... ...the company and its clients? The answer is you, help us develop security automation solutions that provide immense scale...Full timeContract workPart timeWork at officeLocal areaRemote work$86.8k - $198k
...VA,US Share job via: Share Enterprise Cybersecurity Automation Engineer The Opportunity: Cyber threats are everywhere... ...the company and its clients? The answer is you, help us develop security automation solutions that provide immense scale and...Full timeContract workPart timeWork at officeLocal areaRemote work- ...currently looking for a talented Security Automation Engineer. This position is responsible... ...SOC maturity level and R&D efforts. ~Develop and maintain documentation on new... ...initiatives focused on applying Generative AI in cybersecurity, including detection engineering,...Local areaRemote workWorldwideFlexible hours
$209.66k - $220.7k
...expanding our capabilities in security automation and vulnerability management, integrating... ...Scanning) into our CI/CD pipelines. Develop and maintain automation scripts and... ...). You possess a strong passion for cybersecurity and have transitioned or are keen to focus...Remote workWorldwideHome office- ...Cyber Detection & Automation Engineer We are an innovative performance apparel company... ...our people. About This Team The cybersecurity team enables us to conduct its global operations... ...will be responsible for designing, developing, and maintaining advanced threat...
$120k - $150k
...human expertise to make advanced real-time cybersecurity accessible for all organizations by... ...platforms, security orchestration and automation tools, network detection and response systems... ...capabilities and best practices. Develop and maintain comprehensive technical...Temporary workWork at office- ...depend on. We are looking for a Security Automation Engineer to join our mission to create... ...you will be primarily responsible for developing automation solutions for rollout, configuration... ...that provides natively integrated cybersecurity, data protection, and endpoint...Worldwide
- ...and career path. Position: Security Automation Engineer Client: Direct Client... ...Engineering & Development • Design and develop secure software components, APIs, and microservices... ..., or equivalent). • Knowledge of cybersecurity fundamentals and secure coding...
- ...Integrator Giant We have a Process Automation Engineer position open in Calabasas, CA... ...operation and data exchange Develops custom control strategies, logic, and sequences... ...virtualization, managed networks and cybersecurity, and domain authentication May act as...Full timeContract workWork at office
$100k - $180k
...Job Description Job Description Process Automation Engineer Thousand Oaks, CA Direct/ Salaried role, $100k-$180k, Full Bene... ...per GMP • client/ server virtualization, managed networks, cybersecurity, domain authentication REQUIRED SKILLS AND EXPERIENCE...Full time- Job Summary: Sr. QA / Test Automation Engineer Job Summary North Stone is seeking a Senior... ...: Job Duties and Responsibilities Develop and execute automated and manual software... ...supporting RMF accreditation or cybersecurity compliance efforts. Experience supporting...Contract workFor contractorsFor subcontractor
$112.7k - $193.2k
...Optum is seeking a Cybersecurity Engineer to design and implement endpoint security solutions. This role requires 7+ years of experience in the cybersecurity field and expertise in EDR and antivirus solutions. The position offers remote work flexibility but requires some...Work at officeRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cybersecurity Automation Developer. Be the first to apply!
- manufacturing automation engineer United States
- automation specialist United States
- robotic process automation rpa developer United States
- marketing automation specialist United States
- robotic process automation engineer United States
- automation maintenance engineer United States
- senior software test automation engineer United States
- junior qa automation engineer United States
- automation engineer intern United States
- autonomous systems engineer United States



