Cybersecurity Engineer
Atlanta, GA · On-site
... intel). You will not be expected to be the deepest security specialist in the room; you will ... Working knowledge of core cybersecurity practices - identity and access, secrets and key management ...
Atlanta, GA · On-site
... intel). You will not be expected to be the deepest security specialist in the room; you will ... Working knowledge of core cybersecurity practices - identity and access, secrets and key management ...
Atlanta, GA · On-site
... intel). You will not be expected to be the deepest security specialist in the room; you will ... Working knowledge of core cybersecurity practices - identity and access, secrets and key management ...
Threat Intel & Cyber Defense Analyst Location: Atlanta, GA Threat Intel & Cyber Defense Analyst ... cybersecurity incident responder * Ability to apply analytical expertise and critical thinking to ...
Threat Intel & Cyber Defense Analyst Location: Atlanta, GA Threat Intel & Cyber Defense Analyst ... cybersecurity incident responder * Ability to apply analytical expertise and critical thinking to ...
Threat Intel & Cyber Defense Analyst Location: Atlanta, GA Threat Intel & Cyber Defense Analyst ... cybersecurity incident responder * Ability to apply analytical expertise and critical thinking to ...
Threat Intel & Cyber Defense Analyst Location: Atlanta, GA Threat Intel & Cyber Defense Analyst ... cybersecurity incident responder * Ability to apply analytical expertise and critical thinking to ...
Threat Intel & Cyber Defense Analyst Location: Atlanta, GA Threat Intel & Cyber Defense Analyst ... cybersecurity incident responder * Ability to apply analytical expertise and critical thinking to ...
Threat Intel & Cyber Defense Analyst Location: Atlanta, GA Threat Intel & Cyber Defense Analyst ... cybersecurity incident responder * Ability to apply analytical expertise and critical thinking to ...
Threat Intel & Cyber Defense Analyst Location: Atlanta, GA Threat Intel & Cyber Defense Analyst ... cybersecurity incident responder * Ability to apply analytical expertise and critical thinking to ...
Threat Intel & Cyber Defense Analyst Location: Atlanta, GA Threat Intel & Cyber Defense Analyst ... cybersecurity incident responder * Ability to apply analytical expertise and critical thinking to ...
The Information Security Analyst - Intel and Email will focus on processing cyber security intelligence and will assist the Email Security Architect. #emcor Essential Duties & Responsibilities
The Information Security Analyst - Intel and Email will focus on processing cyber security intelligence and will assist the Email Security Architect. #emcor Essential Duties & Responsibilities
The Information Security Analyst - Intel and Email will focus on processing cyber security intelligence and will assist the Email Security Architect. #emcor Essential Duties & Responsibilities
The Information Security Analyst - Intel and Email will focus on processing cyber security intelligence and will assist the Email Security Architect. #emcor Essential Duties & Responsibilities
The Information Security Analyst - Intel and Email will focus on processing cyber security intelligence and will assist the Email Security Architect. #emcor * Monitor the external threat environment ...
The Information Security Analyst - Intel and Email will focus on processing cyber security intelligence and will assist the Email Security Architect. #emcor * Monitor the external threat environment ...
Senior CyberSecurity Specialist - Engineer (SIEM/SOAR) Location: Remote Reports To: Senior Manager ... Develop AI-assisted triage workflows that classify alerts, enrich cases with threat intel, and ...
Senior CyberSecurity Specialist - Engineer (SIEM/SOAR) Location: Remote Reports To: Senior Manager ... Develop AI-assisted triage workflows that classify alerts, enrich cases with threat intel, and ...
Atlanta, GA · On-site
Senior CyberSecurity Specialist - Engineer (SIEM/SOAR) Location: Remote Reports To: Senior Manager ... Develop AI-assisted triage workflows that classify alerts, enrich cases with threat intel, and ...
Atlanta, GA · On-site
Senior CyberSecurity Specialist - Engineer (SIEM/SOAR) Location: Remote Reports To: Senior Manager ... Develop AI-assisted triage workflows that classify alerts, enrich cases with threat intel, and ...
Atlanta, GA · On-site
Senior CyberSecurity Specialist - Engineer (SIEM/SOAR) Location: Remote Reports To: Senior Manager ... Develop AI-assisted triage workflows that classify alerts, enrich cases with threat intel, and ...
Atlanta, GA · On-site
Senior CyberSecurity Specialist - Engineer (SIEM/SOAR) Location: Remote Reports To: Senior Manager ... Develop AI-assisted triage workflows that classify alerts, enrich cases with threat intel, and ...
Atlanta, GA · On-site
$160K/yr
... intel capabilities. * Assist or oversee various security technologies, including SIEM/SOAR ... for cyber security investigations * Collaborate with product managers, designers, and other ...
Atlanta, GA · On-site
$160K/yr
... intel capabilities. * Assist or oversee various security technologies, including SIEM/SOAR ... for cyber security investigations * Collaborate with product managers, designers, and other ...
Atlanta, GA · Hybrid
$160K/yr
... intel capabilities. * Assist or oversee various security technologies, including SIEM/SOAR ... for cyber security investigations * Collaborate with product managers, designers, and other ...
Atlanta, GA · Hybrid
$160K/yr
... intel capabilities. * Assist or oversee various security technologies, including SIEM/SOAR ... for cyber security investigations * Collaborate with product managers, designers, and other ...
Atlanta, GA · Hybrid
$160K/yr
... intel capabilities. * Assist or oversee various security technologies, including SIEM/SOAR ... for cyber security investigations * Collaborate with product managers, designers, and other ...
Atlanta, GA · Hybrid
$160K/yr
... intel capabilities. * Assist or oversee various security technologies, including SIEM/SOAR ... for cyber security investigations * Collaborate with product managers, designers, and other ...
Help guide our intel-architecture requirements, working with engineers to shape the tooling ... What an ideal candidate offers * 5+ years in cybersecurity, with at least 3 in a dedicated threat ...
Help guide our intel-architecture requirements, working with engineers to shape the tooling ... What an ideal candidate offers * 5+ years in cybersecurity, with at least 3 in a dedicated threat ...
$48.1K - $58K
1% of jobs
$58K - $67.9K
4% of jobs
$67.9K - $77.8K
5% of jobs
$77.8K - $87.7K
9% of jobs
$93.2K is the 25th percentile. Wages below this are outliers.
$87.7K - $97.6K
11% of jobs
$97.6K - $107.5K
10% of jobs
The median wage is $111.4K / yr.
$107.5K - $117.4K
28% of jobs
$123.2K is the 75th percentile. Wages above this are outliers.
$117.4K - $127.3K
14% of jobs
$127.3K - $137.3K
11% of jobs
$137.3K - $147.2K
4% of jobs
$147.2K - $157.1K
4% of jobs
$48.1K
$112.3K
$157.1K
To thrive in an Intel Cyber Security role, you need a solid grounding in information security principles, threat analysis, and risk management, typically supported by a degree in cybersecurity, computer science, or a related field. Expertise with security information and event management (SIEM) tools, network monitoring systems, and certifications such as CISSP, CEH, or Security+ are commonly expected. Strong analytical thinking, problem-solving abilities, and effective communication skills stand out in this position. These competencies are vital for proactively identifying threats, coordinating response efforts, and safeguarding critical digital assets within dynamic business environments.
As a member of an Intel Cyber Security team, your daily responsibilities often include monitoring network activity, analyzing security incidents, investigating potential threats, and conducting vulnerability assessments. You may regularly collaborate with IT, engineering, and threat intelligence teams to design and implement security controls or respond to incidents. Projects can range from developing security policies and conducting penetration tests to researching emerging cyber threats and contributing to security awareness programs. The role is highly collaborative and frequently involves adapting to fast-changing security landscapes, keeping the work engaging and dynamic.
An Intel Cyber Security job involves protecting sensitive data, networks, and systems from cyber threats. Professionals in this field analyze threats, develop security measures, and respond to cyber incidents to safeguard critical information. They work with various security tools, encryption methods, and risk assessment strategies to ensure the integrity and confidentiality of data. The role may include tasks such as threat intelligence, penetration testing, and compliance enforcement. Strong analytical skills and knowledge of cybersecurity frameworks are essential for success in this position.

Full-time
This job post has expired 1 day ago. Applications are no longer accepted.
7.6
Based on 12 frontline employees who took The Breakroom Quiz
153rd of 242 rated software companies
Your work days are brighter here.
We're obsessed with making hard work pay off, for our people, our customers, and the world around us. As a Fortune 500 company and a leading AI platform for managing people, money, and agents, we're shaping the future of work so teams can reach their potential and focus on what matters most. The minute you join, you'll feel it. Not just in the products we build, but in how we show up for each other. Our culture is rooted in integrity, empathy, and shared enthusiasm. We're in this together, tackling big challenges with bold ideas and genuine care. We look for curious minds and courageous collaborators who bring sun-drenched optimism and drive. Whether you're building smarter solutions, supporting customers, or creating a space where everyone belongs, you'll do meaningful work with Workmates who've got your back. In return, we'll give you the trust to take risks, the tools to grow, the skills to develop and the support of a company invested in you for the long haul. So, if you want to inspire a brighter work day for everyone, including yourself, you've found a match in Workday, and we hope to be a match for you too.
About the Team
Security Automation & Integration Engineering (SecAIE) transforms cybersecurity operations by architecting intelligent automation that turns manual processes into scalable, decision-accelerating systems. We're the engineering excellence partner within Cybersecurity and Trust - building the unified data foundation, intelligent automation, and decision support tools that enable security teams to make precise, data-driven decisions at machine speed.About the Role
We're looking for a Cybersecurity Engineer to join SecAIE and take primary ownership of the infrastructure, automation, and platform reliability that Workday's Active Defense charter runs on. You'll spend most of your time engineering the substrate - the reliable data pipelines, cloud infrastructure, CI/CD, and cross-tool integrations - that turns security data into a dependable foundation for AI-driven execution and decision-making. This role is ideal for someone who loves turning messy operational problems into clean, self-serve infrastructure, who can walk into an ambiguous ask and come back with a proposal, and who treats AI tooling as a force multiplier rather than a novelty.
You will bring working knowledge of cybersecurity concepts and best practices from day one - enough to reason about identity and access, secrets and key management, secure-by-default cloud configuration, and the shape of common security data (vulnerabilities, incidents, identity, threat intel). You will not be expected to be the deepest security specialist in the room; you will partner with domain experts across our security organization and build the plumbing that makes their work faster, more reliable, and more measurable.
Responsibilities:
Own the infrastructure-as-code and platform substrate that our security data and automation services run on - from tuning existing services to landing net-new modules and multi-environment rollouts
Design, build, and operate the automations and data pipelines that ingest, transform, and route security data reliably at scale
Extend and harden our continuous delivery and cloud-security posture so every service is deployable, observable, and secure by default
Take partner requests from vague to shipped: scope the problem, propose approaches, choose one, and drive it through design, review, rollout, and operational readiness
Build and maintain integrations across security tools and enterprise platforms - SOAR, SIEM, EDR, vulnerability scanners, ticketing - to accelerate response and reduce toil
Raise the team's AI-augmented engineering floor: shared skills, reusable scaffolds, and a review discipline for AI-generated code
Iterate quickly: prototype, test, ship, learn, improve - and bring the team with you
About You
You're a curious engineer who owns problems rather than tickets. You're drawn to ambiguous, messy asks and you enjoy learning a domain deeply enough to propose the right solution, not just implement one that was handed to you. You bring high agency: you can move a partner's rough problem statement to a shipped, operational answer without waiting to be told each next step. You're comfortable turning a partner's Slack thread into a written proposal, and comfortable when the answer to "whose ticket is this?" is "nobody's yet - I'll draft one." You know when to escalate and when to just close the loop yourself. You default to automation over toil, shared components over copy-paste, and reliable defaults over one-off heroics. You use AI tooling deliberately and can articulate where it accelerates you and where it does not. You communicate clearly, ask good questions, and genuinely enjoy collaborating across teams to solve hard problems.
Basic Qualifications:
Strong Python skills with hands-on automation and integration experience (APIs, Lambdas, batch jobs, workflow glue), including code review, testing, and shipping to production
Deep hands-on experience with infrastructure-as-code (Terraform) and CI/CD (Jenkins, GitHub Actions, or similar), including production ownership
Working fluency across a broad AWS surface (Lambda, ECS, S3, IAM, KMS, VPC, and at least one compute service such as EMR, Batch, Glue, or EKS)
Experience with containerization (Docker) and modern deployment patterns
Working knowledge of core cybersecurity practices - identity and access, secrets and key management, secure-by-default cloud configuration, and reasoning over common security data (vulnerabilities, incidents, identity, threat intel) - so you can build for security outcomes, not just infrastructure ones
Comfortable owning on-call and operational readiness (runbooks, alarms, SLOs) for services you deliver
Other Qualifications:
Security domain depth - hands-on with security tools or data for triage and investigation (SIEM, vulnerability scanners, identity systems, cloud security posture, secrets management); working knowledge of vulnerability data and workflows (scoring, prioritization, at least one scanner in practice); familiarity with security orchestration platforms as an integration target; curiosity about deception and adversary-emulation tooling
DevOps / platform depth - contributing to shared platform components (reusable Terraform modules, internal libraries, developer tooling); observability tooling (metrics, logs, traces) for services you own; building Slack bots, workflow automations, or enterprise tool integrations (Jira, PagerDuty, ServiceNow, etc.)
Data engineering depth - distributed data technologies (Spark, Trino, Hive, S3-as-datalake) and SQL; comfort reasoning about shared schemas or data contracts that span team boundaries, treating what / who / state as a first-class artifact rather than fields on a table
AI-augmented engineering depth - hands-on use of AI-augmented development workflows (Copilot, coding agents, LLM-driven code review, agentic pipelines) with a point of view on where they help; experience contributing to LLM-based systems moving toward production (agent frameworks, tracing and observability for agent runs, offline evaluation of prompts and tool calls)
Comfort operating in ambiguous problem spaces where you help define the solution, not just implement it
Workday Pay Transparency Statement
The annualized base salary ranges for the primary location and any additional locations are listed below. Workday pay ranges vary based on work location. As a part of the total compensation package, this role may be eligible for the Workday Bonus Plan or a role-specific commission/bonus, as well as annual refresh stock grants. Recruiters can share more detail during the hiring process. Each candidate's compensation offer will be based on multiple factors including, but not limited to, geography, experience, skills, job duties, and business need, among other things. For more information regarding Workday's comprehensive benefits, please click here.
Primary Location: USA.VA.RestonAdditional Considerations:
If performed in Colorado, the pay range for this job is $124,000 - $186,000 USD based on min and max pay range for that role if performed in CO.The application deadline for this role is the same as the posting end date stated as below:
Our Approach to Flexible Work
With Flex Work, we're combining the best of both worlds: in-person time and remote. Our approach enables our teams to deepen connections, maintain a strong community, and do their best work. We know that flexibility can take shape in many ways, so rather than a number of required days in-office each week, we simply spend at least half (50%) of our time each quarter in the office or in the field with our customers, prospects, and partners (depending on role). This means you'll have the freedom to create a flexible schedule that caters to your business, team, and personal needs, while being intentional to make the most of time spent together. Those in our remote "home office" roles also have the opportunity to come together in our offices for important moments that matter.
Pursuant to applicable Fair Chance law, Workday will consider for employment qualified applicants with arrest and conviction records.
Workday is an Equal Opportunity Employer including individuals with disabilities and protected veterans.
At Workday, we are committed to providing an accessible and inclusive hiring experience where all candidates can fully demonstrate their skills. If you require assistance or an accommodation at any point, please email accommodations@workday.com.
Are you being referred to one of our roles? If so, ask your connection at Workday about our Employee Referral process!
At Workday, we value our candidates' privacy and data security. Workday will never ask candidates to apply to jobs through websites that are not Workday Careers.
Please be aware of sites that may ask for you to input your data in connection with a job posting that appears to be from Workday but is not.
In addition, Workday will never ask candidates to pay a recruiting fee, or pay for consulting or coaching services, in order to apply for a job at Workday.
Sourced by ZipRecruiter
Workday's journey began with a transformative idea generated during a breakfast conversation between its founders in sunny California. What set us apart from the start was our people-centric culture, driven by the core value of prioritizing our employees. At Workday, the happiness, growth, and contributions of every team member are at the heart of who we are. Our collaborative and employee-focused culture is the key ingredient for our business success. We not only care for our people but also for the communities and the environment, all while maintaining profitability. Embrace your uniqueness, as we encourage our Workmates to shine brightly in their authentic selves. Our passion and energy make us distinct, and we are inspired to create a brighter workday for everyone.
Software development
10,000+ Employees
Pleasanton, CA, US
2005