Relomote
Remote JobsRelocation Jobs
Add companySaved
Relomote

Relomote is a job board for remote, hybrid, and relocation jobs — every listing AI-classified for the countries it actually hires from, or the visa and relocation support it offers.

LinkedInCrunchbase

Remote jobs by category

  • Remote Engineering & Development jobs
  • Remote Customer Support jobs
  • Remote Design jobs
  • Remote Marketing jobs
  • Remote Sales jobs
  • Remote Product jobs
  • Remote Data & Analytics jobs
  • Remote People & Talent jobs
  • Remote Writing & Content Creation jobs
  • Remote Finance jobs
  • Remote Legal & Compliance jobs
  • Remote Operations & Admin jobs
  • Remote Data Entry jobs
  • Remote Virtual Assistant jobs
  • Remote Education & Training jobs
  • Remote Healthcare & Nursing jobs
  • Remote Construction & Built Environment jobs
  • Remote Skilled Trades & Field Service jobs
  • Remote Research & Science jobs
  • Remote Real Estate & Property jobs
  • Remote Retail & Merchandising jobs
  • Remote Other jobs

Remote jobs by location

  • Work from anywhere jobs
  • Remote jobs in Africa
  • Remote jobs in Asia
  • Remote jobs in Europe
  • Remote jobs in Latin America
  • Remote jobs in Middle East
  • Remote jobs in North America
  • Remote jobs in Oceania
  • All remote jobs →

Relocation & visa sponsorship

  • Visa sponsorship jobs
  • Relocation package jobs
  • Relocate to Europe
  • Relocate to Germany
  • Relocate to Netherlands
  • Relocate to Spain
  • Relocate to Portugal
  • Relocate to Greece
  • Relocate to United Kingdom
  • Relocate to Canada
  • Relocate to Australia
  • Relocate to Sweden
  • Relocate to Switzerland
  • Relocate to Japan
  • Relocate to United Arab Emirates
  • All relocation jobs →

Relocation jobs by category

  • Engineering & Development relocation jobs
  • Customer Support relocation jobs
  • Design relocation jobs
  • Marketing relocation jobs
  • Sales relocation jobs
  • Product relocation jobs
  • Data & Analytics relocation jobs
  • People & Talent relocation jobs
  • Writing & Content Creation relocation jobs
  • Finance relocation jobs
  • Legal & Compliance relocation jobs
  • Operations & Admin relocation jobs
  • Data Entry relocation jobs
  • Virtual Assistant relocation jobs
  • Education & Training relocation jobs
  • Healthcare & Nursing relocation jobs
  • Construction & Built Environment relocation jobs
  • Skilled Trades & Field Service relocation jobs
  • Research & Science relocation jobs
  • Real Estate & Property relocation jobs
  • Retail & Merchandising relocation jobs
  • Other relocation jobs

Hiring data

Remote hiring by countryRelocation destinations by country

© 2026 RelomoteAboutPrivacyTermsLogos provided by Logo.dev

Contact mahmoud@relomote.com · Built by Mahmoud

Relomote
Remote JobsRelocation Jobs
Add companySaved
BL

Principal Security Engineer, Orchestration and Automation

Blackbaud
Posted 9 hours ago
🇺🇸United States🏠Remote💰$117.2K–$157.5K📁Engineering & Development
Is this job info correct?

Cyber Detection & Response Automation Engineer The Cyber Detection & Response Automation Engineer is responsible for building the automation, orchestration, and AI-driven capabilities that power the organization's detection and response function. This role treats the SIEM as one component in a broader automation ecosystem — the primary focus is designing workflows, integrations, and intelligent tooling that reduce manual analyst effort, accelerate response, and scale detection coverage. The ideal candidate is an automation/orchestration engineer with a security background: comfortable building integrations and pipelines across multiple tools, applying AI/ML or LLM-assisted techniques to triage and enrichment, and engineering detection logic. This person will also maintain a working level of SIEM platform administration — data onboarding, health, and configuration — to support the automation and detection layers built on top of it, and will partner closely with Security Operations and the Detection Engineering Lead. What you'll be doing: Design, build, and maintain orchestration workflows and SOAR playbooks that automate triage, enrichment, containment, and response actions across the security tool stack. Apply AI/ML and LLM-assisted techniques (e.g., automated alert summarization, natural-language investigation assistance, anomaly scoring) to reduce analyst workload and speed decision-making. Develop and maintain Python-based integrations and APIs connecting the SIEM, SOAR, EDR, ticketing, threat intel, and cloud platforms into unified automated workflows. Design, build, and tune SIEM correlation rules, alerts, and detection use cases mapped to MITRE ATT&CK, with an eye toward which detections can be paired with automated response. Own core SIEM administration tasks needed to support automation and detection: data source onboarding, index/data model health, log ingestion monitoring, and configuration management. Build and maintain custom field extractions, parsers, and content packs to ensure new data sources are automation- and detection-ready. Continuously tune detections and automation logic to improve signal-to-noise ratio, reduce false positives, and reduce mean-time-to-respond (MTTR). Create dashboards and reporting that measure automation coverage, orchestration reliability, AI-assisted triage accuracy, and detection effectiveness. Apply CI/CD and infrastructure-as-code practices to manage detection content, playbooks, and integrations as versioned, testable code. Evaluate and pilot new automation, orchestration, and AI tooling to expand the detection and response automation footprint. What we'll want you to have: 5+ years building automation, orchestration, or SOAR playbooks in a cyber security or SOC environment. 3+ years of SIEM engineering or administration experience - data onboarding, correlation rule development, platform configuration. Strong Python (or comparable scripting) skills; experience building APIs/integrations across security and IT tooling. Hands-on experience with AI/ML or LLM-based tooling applied to security use cases - triage, summarization, enrichment, and/or anomaly detection; experience building such capability strongly preferred. Working knowledge of MITRE ATT&CK and experience mapping detections/automation to adversary tactics and techniques. Experience with a SOAR or security orchestration platform (e.g., NG-SIEM Fusion, Splunk SOAR, Palo Alto XSOAR, Tines, or similar). Cloud security experience (AWS, Azure, or GCP), including automation for ingesting and processing security data from cloud sources. Experience with CI/CD, infrastructure-as-code, and version-controlling detection/automation content. Familiarity with containerized and serverless environments and their automation/logging considerations. SIEM, SOAR, or security automation platform certification preferred. Regulatory compliance experience a plus. Stay up to date on everything Blackbaud, follow us on Linkedin , Twitter , Instagram , Facebook and YouTube ​ Blackbaud powers social impact through purpose‑driven technology and responsible AI. Guided by our Intelligence for Good® vision, we’re building a culture where innovation, trust, and human expertise come together to help organizations make a greater difference in the world. Blackbaud is proud to be an equal opportunity employer and is committed to maintaining a diverse and inclusive work environment. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, physical or mental disability, age, or veteran status or any other basis protected by federal, state, or local law. The starting base pay is $117,200.00 to $157,500.00. Blackbaud may pay more or less based on employee qualifications, market value, Company finances, and other operational considerations. Benefits Include: Medical, dental, and vision insurance Remote-flexible workforce Wellness Programs 401(k) program with employer match Flexible paid time off Generous Parental Leave Donations for Doers Pet insurance, legal and identity protection Tuition reimbursement program

Similar jobs

Related searches

Remote Engineering & Development Jobs in United StatesRemote Jobs in United States

Similar jobs

Blackbaud logo

Principal Security Engineer, Orchestration and Automation

Blackbaud

🇺🇸United States1 weeks ago
Decisionpointcorp logo

Zero Trust Automation & Orchestration Engineer

Decisionpointcorp

🇺🇸United StatesJul 28, 2026, 6:53 PM UTC
GE

Sr. Automation Engineer

Generalmotors

🇺🇸United States43 minutes ago
Yum! logo

Automation Engineer

Yum!

🇺🇸United States1 hour ago
Plaid logo

Senior Machine Learning Engineer - Infra/Ops - Fraud

Plaid

🇺🇸United States1 hour ago
Plaid logo

Senior Machine Learning Engineer (Research Scientist) - Fraud

Plaid

🇺🇸United States1 hour ago