Senior SecOps Automation Engineer – Consumer FinTech

Remote from
LATAM flag
LATAM
Annual salary
Undisclosed
Salary information is not provided for this position. Check our Salary Directory to estimate the average compensation for similar roles.
Department
Cybersecurity
Employment type
Full Time,
Job posted
Apply before
12 Jul 2026
Experience level
Senior
Views / Applies
23 / 2

About Truelogic

Accelerate Your Digital Transformation

Actively Hiring
Verified job posting
This job post has been manually reviewed for authenticity and compliance.

AI Summary

This remote senior/staff-level role involves building a brand-new incident response automation program for a leading consumer FinTech company. The position requires extensive experience with SOAR platforms, SIEM detection engineering, and Python scripting, along with the ability to design workflows and integrate tools via APIs. The candidate must operate autonomously, collaborate with cross-functional teams, and leverage AI/LLM to accelerate security operations. This is a builder-focused, high-impact role in a dynamic scaling environment.

Role DNA

Job Complexity
Easy Hard
Pace & Pressure
Relaxed Fast-paced
Autonomy Level
Guided Full Ownership
Communication Load
Independent Highly Collaborative
AI Insight The role demands building a new program from scratch, requiring deep expertise in SOAR, SIEM, APIs, and AI/LLM, along with strong stakeholder management. The combination of technical complexity and strategic scope makes it challenging.

Salary Analysis

Median Highly Competitive
$160,000
US Market
$130k – 190k
0 $209k
AI Insight The salary range was not provided but based on US market data for a Senior SecOps Automation Engineer in FinTech, the median is approximately $160,000. This is competitive for a senior-level role with such specialized requirements.

Key Skills

SecOps SOAR SIEM Automation Python AI/LLM Cybersecurity Incident Response DLP API Integration

Dear Hiring Manager,

I am excited to apply for the Senior SecOps Automation Engineer position at your company. With over 8 years of experience in security operations and automation, I specialize in designing and scaling incident response programs from the ground up. I have deep hands-on expertise with SOAR platforms like Torq and Tines, SIEM tuning, and Python scripting, and I have successfully integrated AI/LLM tools to streamline workflows.

At my previous role, I built a complete automation pipeline that reduced mean time to respond by 70%. I thrive in autonomous, fast-paced environments and enjoy collaborating with cross-functional teams to define effective controls. I am eager to bring my builder mindset and technical vision to your team.

Thank you for considering my application. I look forward to the possibility of contributing to your security operations.

Sincerely,
[Your Name]

Describe a time you built an incident response automation program from scratch. What steps did you take and what challenges did you face?
I started by assessing existing manual workflows and identifying high-volume, repeatable tasks. I then selected a SOAR platform, designed playbooks for common incidents, and integrated SIEM alerts to trigger automated responses. Key challenges included gaining stakeholder buy-in and ensuring data quality. I addressed these by demonstrating quick wins and iterating based on feedback.
How would you design a SOAR workflow to handle a phishing attack automatically?
I would start by defining triggers from email security tools or user reports. The workflow would extract indicators, check them against threat intel, and automatically contain the threat by disabling accounts or blocking URLs. It would also create a ticket for SOC review, with escalation if critical. I'd ensure the playbook includes fallback steps for false positives.
Explain how you would tune SIEM rules to reduce false positives while maintaining detection efficacy.
I would analyze historical alerts to identify patterns causing false positives, then adjust thresholds, exclude known benign sources, or use contextual fields like user behavior. I'd implement a feedback loop where analysts can rate alerts, and I'd continuously refine rules based on that data. Regular testing with attack simulations ensures we don't miss real threats.
How have you integrated AI/LLM tools into security operations? Provide an example.
I used a language model to automate the enrichment of incident tickets by summarizing threat intelligence reports and suggesting remediation steps. For example, an LLM would parse a malware analysis report and generate a human-readable summary for the SOC, saving analysts 15 minutes per incident. I also explored using AI to assist in playbook creation by generating code snippets.
In a FinTech environment, how would you ensure DLP controls align with incident response automation?
I'd work with compliance and legal teams to classify sensitive data and define policies. The DLP solution would feed alerts into the SOAR platform, which could automatically quarantine data or revoke access. Automation would handle low-risk incidents, while high-risk ones escalate with full context. Regular reviews ensure controls stay effective as regulations evolve.

About Truelogic

At Truelogic we are a leading provider of nearshore staff augmentation services headquartered in New York. For over two decades, we’ve been delivering top-tier technology solutions to companies of all sizes, from innovative startups to industry leaders, helping them achieve their digital transformation goals.

Our team of 600+ highly skilled tech professionals, based in Latin America, drives digital disruption by partnering with U.S. companies on their most impactful projects. Whether collaborating with Fortune 500 giants or scaling startups, we deliver results that make a difference.

By applying for this position, you’re taking the first step in joining a dynamic team that values your expertise and aspirations. We aim to align your skills with opportunities that foster exceptional career growth and success while contributing to transformative projects that shape the future.

Our Client

Leading, remote-first consumer personal finance platform dedicated to providing financial clarity and empowering individuals and small businesses. Known for their inclusive, award-winning culture and strong corporate social responsibility initiatives, they invest heavily in their communities and their team’s professional growth.

Job Summary

We are seeking a senior or staff-level SecOps Automation Engineer to architect and build a brand-new incident response automation function from the ground up. This is a builder-focused role tailored for an autonomous professional who excels at designing SOAR workflows, tuning high-fidelity SIEM detections, and modernizing manual security operations into an agile, automated ecosystem. The ideal candidate brings practical vision, strong stakeholder collaboration skills, and the technical confidence to connect disparate tools and establish effective controls in a dynamic, rapidly scaling environment.

 

Responsibilities

  • Architect and scale a brand-new incident response automation program from scratch, navigating ambiguity with a high degree of autonomy.

  • Modernize manual security workflows into an agile, automated, and secure operational ecosystem.

  • Design and build hands-on incident response workflows and playbooks utilizing low-code/no-code SOAR platforms.

  • Integrate disparate security tools via APIs and leverage Python and AI / LLM tools to drastically accelerate workflow efficiency.

  • Engineer and tune high-fidelity SIEM alerts designed to trigger seamless, automated containment pipelines.

  • Partner with cross-functional stakeholders to design DLP controls, define incident escalation pathways, and support on-call security operations.

Qualifications and Job Requirements

  • Extensive senior-level experience in SecOps, SOAR, or Security Automation.

  • Proven track record of building and maturing an incident response automation program from the ground up.

  • Deep, hands-on experience designing and implementing SOAR workflows; specific expertise in Torq, Tines, or similar platforms is highly preferred.

  • Strong background in SIEM detection engineering, encompassing the design, build, and tuning phases.

  • Demonstrated ability to seamlessly integrate complex security tools utilizing APIs.

  • Proficiency in basic scripting for automation; strong programming skills in Python are a significant plus.

  • Practical experience utilizing AI and LLM tools within security operational workflows.

  • Excellent stakeholder communication and alignment skills, with the ability to define effective controls across diverse teams.

  • Exceptional ability to operate with autonomy and confidently navigate ambiguous technical challenges.

  • Previous experience designing and tuning DLP controls is preferred.

  • Prior participation in on-call rotations is a plus.

  • Experience working within FinTech or a similarly regulated industry is highly advantageous.

  • A staff-level security engineering background is a strong plus.

What We Offer

  • 100% Remote Work: Enjoy the freedom to work from the location that helps you thrive. All it takes is a laptop and a reliable internet connection.

  • Highly Competitive USD Pay: Earn an excellent, market-leading compensation in USD, that goes beyond typical market offerings.

  • Paid Time Off: We value your well-being. Our paid time off policies ensure you have the chance to unwind and recharge when needed.

  • Work with Autonomy: Enjoy the freedom to manage your time as long as the work gets done. Focus on results, not the clock.

  • Work with Top American Companies: Grow your expertise working on innovative, high-impact projects with Industry-Leading U.S. Companies.

Why You’ll Like Working Here

  • A Culture That Values You: We prioritize well-being and work-life balance, offering engagement activities and fostering dynamic teams to ensure you thrive both personally and professionally.

  • Diverse, Global Network: Connect with over 600 professionals in 25+ countries, expand your network, and collaborate with a multicultural team from Latin America.

  • Team Up with Skilled Professionals: Join forces with senior talent. All of our team members are seasoned experts, ensuring you’re working with the best in your field.

Apply now!

Apply now >

This job listing has been manually reviewed by the Jobicy Trust & Safety Team for compliance with our posting guidelines, including verification of the company's legitimacy, accuracy of job details, clarity of remote work policy, and absence of misleading or fraudulent content.

How to apply

Did you apply? Let us know, and we’ll help you track your application.

See a few more

Similar Cybersecurity remote jobs

Job Search Safety Tips

Here are some tips to help you search and apply for jobs safely:
Watch out for suspicious jobs Don't apply for jobs that offer high pay for little work or offer to hire you without an interview. Read more ›
Check the employer's profile Make sure you're applying for a trustworthy job by visiting the employer's profile and learning more about them. Read more ›
Protect your information Don't share personal details like your bank account or government-issued ID on suspicious websites or messengers. Read more ›
Report jobs that feel unsafe If you see a job that seems misleading, inappropriate or discriminatory, report it for going against our policies and we'll review it.

Share this job

Jobicy+ Subscription

Jobicy

614 professionals pay to access exclusive and experimental features on Jobicy

Free

USD $0/month

For people just getting started

  • • Unlimited applies and searches
  • • Access on web and mobile apps
  • • Weekly job alerts and digest
  • • Access to additional tools like Bookmarks, Applications, and more

Plus

USD $8/month

Everything in Free, and:

  • • Ad-free experience
  • • Daily job alerts and digest
  • • Personal career consultant
  • • AI-powered job advice
Go to account ›