Allstate logo
Allstate

National General Insurance, a division of Allstate, describes itself as one of the largest insurers in the United States. The company provides personal and commercial auto, recreat

Cybersecurity Automation Engineer

Location

United States

Posted

50 days ago

Salary

$75.1K - $126K / year

Seniority

Mid Level

Job Description

Cybersecurity Automation Engineer

Allstate

At Allstate, great things happen when our people work together to protect families and their belongings from life’s uncertainties. And for more than 90 years, our innovative drive has kept us a step ahead of our customers’ evolving needs. From advocating for seat belts, air bags and graduated driving laws, to being an industry leader in pricing sophistication, telematics, and, more recently, device and identity protection. Job Description We are looking for a hands-on Cybersecurity Automation Engineer to design and build software that enables and scales cybersecurity operations across Allstate. This role sits within the Automation Enablement team in Cyber Operations. The mission of this team is to turn security requirements and manual processes into reliable, secure, automated services that improve incident response, integrate security tooling, and strengthen cloud-first security operations. This is an engineering-first role. You will write and maintain production code, build secure services and APIs, and partner closely with incident response, threat intelligence, IAM, and platform teams to deliver automation that is used every day. The internal job title is a Security Engineer Senior Consultant II. Key Responsibilities What You Will Do Build Secure Software & Automation Design, develop, test, and maintain production-grade security services, APIs, and automation Build internal tools and integrations that support incident response, detection, and cyber operations Treat security tooling as software products: versioned, tested, monitored, and maintained Apply Security Engineering Best Practices Design secure APIs using authentication and authorization standards (OAuth 2.0, OIDC, SAML, JWT) Apply secure software design principles including least privilege, secrets management, and defense-in-depth Use cryptographic concepts appropriately (hashing, encryption, key management via managed services) Automate & Integrate Across Platforms Integrate security controls and validation into CI/CD pipelines Build automation that connects cloud platforms, security tools, and internal services Partner with cloud and platform teams to ensure solutions are scalable, resilient, and secure Support Cyber Operations Collaborate with incident response, threat intelligence, and SOC teams to identify automation opportunities Improve consistency and speed of response through repeatable, reliable automation Participate in incident follow-ups and help turn lessons learned into system improvements Essential Qualifications - 3+ years of professional software development experience - Strong proficiency in at least one backend language (Python or Java preferred) - Experience designing and building secure APIs or services - Practical knowledge of secure coding practices and common application vulnerabilities - Experience with IAM and authentication concepts (OAuth 2.0, OIDC, SAML, JWT) - Experience contributing to or working with CI/CD pipelines - Hands-on experience with cloud platforms (Azure, AWS, or equivalent Desirable Qualifications - Experience with infrastructure or automation tooling (Terraform, Jenkins, GitHub Actions, etc.) - Experience working with containers (Docker; Kubernetes exposure a plus) - Experience integrating or extending SIEM/SOAR platforms (Microsoft Sentinel, Defender, Splunk, etc.) - Exposure to incident response or security operations workflows - Experience in regulated or large enterprise environments - Relevant certifications such as Security+, AZ-104, or AWS Associate What Success Looks Like You build automation that security teams rely on Manual security tasks become repeatable services Secure defaults are enforced through code, not documentation Cloud-based security controls are easier to use and harder to misuse Experience • 3 or more years of experience (Preferred) Supervisory Responsibilities • This job does not have supervisory duties. #LI-MF1 Skills Application Programming Interface (API), Authentication, Automation, Encryption, Information Security Engineering, IT Security Operations, Risk Management, Secure Coding, Secure Coding Practices, Security Controls, Security Engineering, Security Software, Security Tools, Software Automation, Splunk, Stakeholder Engagement Compensation Compensation offered for this role is 75,100.00 - 126,325.00 annually and is based on experience and qualifications. The candidate(s) offered this position will be required to submit to a background investigation. Joining our team isn’t just a job — it’s an opportunity. One that takes your skills and pushes them to the next level. One that encourages you to challenge the status quo. One where you can shape the future of protection while supporting causes that mean the most to you. Joining our team means being part of something bigger – a winning team making a meaningful impact. Allstate generally does not sponsor individuals for employment-based visas for this position. Effective July 1, 2014, under Indiana House Enrolled Act (HEA) 1242, it is against public policy of the State of Indiana and a discriminatory practice for an employer to discriminate against a prospective employee on the basis of status as a veteran by refusing to employ an applicant on the basis that they are a veteran of the armed forces of the United States, a member of the Indiana National Guard or a member of a reserve component. For jobs in San Francisco, please click “here” for information regarding the San Francisco Fair Chance Ordinance. For jobs in Los Angeles, please click “here” for information regarding the Los Angeles Fair Chance Initiative for Hiring Ordinance. To view the “EEO Know Your Rights” poster click “here”. This poster provides information concerning the laws and procedures for filing complaints of violations of the laws with the Office of Federal Contract Compliance Programs. To view the FMLA poster, click “here”. This poster summarizing the major provisions of the Family and Medical Leave Act (FMLA) and telling employees how to file a complaint. It is the Company’s policy to employ the best qualified individuals available for all jobs. Therefore, any discriminatory action taken on account of an employee’s ancestry, age, color, disability, genetic information, gender, gender identity, gender expression, sexual and reproductive health decision, marital status, medical condition, military or veteran status, national origin, race (include traits historically associated with race, including, but not limited to, hair texture and protective hairstyles), religion (including religious dress), sex, or sexual orientation that adversely affects an employee's terms or conditions of employment is prohibited. This policy applies to all aspects of the employment relationship, including, but not limited to, hiring, training, salary administration, promotion, job assignment, benefits, discipline, and separation of employment.

Related Categories

Related Job Pages

More Security Engineer Jobs

Ciklum logo

Senior Security Engineer

Ciklum

At Ciklum, we are always exploring innovations, empowering each other to achieve more, and engineering solutions that matter. With us, you’ll work with cutting-edge technologies, contribute to impactful projects, and be part of a One Team culture that values collaboration and progress. As one of Ukraine’s largest IT companies and a top employer recognized by Forbes, we’ve spent over 20 years delivering meaningful tech solutions. We proudly support diverse talent and military veterans, recognizing their unique skills and perspectives they bring to shaping the future.

Full TimeRemoteTeam 1,001-5,000

Ciklum is looking for a Senior Security Engineer to join our team full-time in Bulgaria. We are a custom product engineering company that supports both multinational organizations and scaling startups to solve their most complex business challenges. With a global team of over 4,000 highly skilled developers, consultants, analysts and product owners, we engineer technology that redefines industries and shapes the way people live. About the role: As a Senior Security Engineer, become a part of a cross-functional development team engineering experiences of tomorrow. Together, we will work on the project for a global leader in the leisure, travel and tourism sector, delivering secure and scalable technology that enables a high-quality end-to-end customer experience. The Senior Security Engineer is a practitioner and an advocate of state-of-the-art cloud engineering practices, with a strong DevSecOps mindset, able to tackle the whole software development cycle of designing, building, testing and deploying applications. Responsibilities: - Provide and support the content delivery and security platform at edge across multiple domains - Take over full responsibility for the platform, from design to operation, ensuring quality of work, proper documentation, and security aspects - Develop and run the content delivery network and associated platform as part of a team - Enable business development teams to work more efficiently by using expertise in developing and operating technical platforms - Help other teams adopt your platform through direct engagement - Ensure observability of your platform and service - Improve CI/CD and automation maturity and efficiency - Research, evaluate and test new approaches, processes and tools and help teams to use them effectively - Drive technical excellence, ownership, and self-organisation at team and personal level Requirements: - Proficient experience in working with CDN and WAF solutions like Akamai, AWS or Cloudflare. Bot detection, DDoS protection, cache optimisation - Deep knowledge and hands-on experience on Web technologies - RFC’s, request/response lifecycle, DNS, protocols, status codes, cookies, headers, proxies, certificates, browsers, caching, etc - Experience in front-end development is a huge plus - Advanced experience in designing secure, highly available, distributed applications in an Amazon Web Services (AWS) environment. EKS, Lamdba functions, Lambda@Edge, CloudFront, S3, API Gateways knowledge is preferable - Ability to understand and analyse complex security events as well as adjust the resulting ongoing security profiles - Monitoring experience - Datadog, Grafana. Trend analysis, deep investigation, issue tracking - Experience in defining, planning, implementing, maintaining, and upgrading security measures, guardrails and controls for WAF and CDN - Familiar with information security standards & practices and their practical implications - Experienced in securing APIs, REST API and GraphQL API using AWS AppSync - Deep automation skills, hands-on experience with agentic LLMs, experience with some scripting and programming languages such as Python - Advanced experience with CI/CD, preferably Gitlab CI - Experience with Infrastructure as a Code tools. Preferably Terraform, CloudFormation, AWS CDK - Being customer centric, passionate about delivering great digital products and services - Passionate about continuous improvement, collaboration and great teams - Strong problem-solving skills coupled with good communication skills - Understanding of social and ethical implications of software engineering - Open minded, inquisitive, life-long learner - Comfortable with ambiguity, highly autonomous What’s in it for you? - Regular salary reviews based on performance - Corporate events: webinars, offline parties, and meetups - Internal Mobility Program - Tailored education path (including full access to Udemy, certifications, etc.) - 25 paid days off: 20 business days of vacation per calendar year + 5 undocumented sick leave days - Additional health insurance - 100% company-covered Multisport card, with discounts available for family members About us: At Ciklum, we are always exploring innovations, empowering each other to achieve more, and engineering solutions that matter. With us, you’ll work with cutting-edge technologies, contribute to impactful projects, and be part of a One Team culture that values collaboration and progress. Since expanding to Bulgaria in 2022, we’ve been building a fast-growing team that thrives on learning, collaboration, and innovation. Join us on this exciting journey and help shape the future of our delivery center. Want to learn more about us? Follow us on Instagram, Facebook, LinkedIn. Explore, empower, engineer with Ciklum! Interested already? We would love to get to know you. Submit your application. We can’t wait to see you at Ciklum.

Bulgaria

Senior Information Security Engineer

UnitedHealth Group

UnitedHealth Group is a healthcare and well-being company that’s dedicated to improving the health outcomes of millions around the world. We are comprised of

Role Description Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. You will enjoy the flexibility to telecommute* from anywhere within the U.S. as you take on some tough challenges. - Serve as the functional subject matter expert for the TrendMicro EDR product - Communicate clearly and effectively during high pressure situations to identify root causes, assess impact, and drive timely resolution - Direct and oversee work activities of supervisors; empower architecture and infrastructure security staff in the successful performance of their tasks and responsibilities while encouraging innovation - Make critical decisions on enterprise security policies - Report and review the compliance status and take remediation actions - Determine the severity and complexity of issues pertaining to the security and protection of systems data - Collaborate with directors, managers, and other technical personnel to ensure mitigation of security risks - Prepare audit reports, memoranda, and other documents; make verbal presentations on audit findings/recommendations - Promote continued integration of technological advances to further enhance security and reduce risks - Oversee network security best practices and standards through auditing: change controls, process documentation, configurations, and monitoring - Evaluate analysis of suggested solutions and innovative approaches to complex issues - Plan, conduct, and respond to internal and external cyber security audits and questionnaires - Collaborate and offer managerial direction to other managers, project managers, architects, and technical leads - Define, implement, audit, and maintain firewall security policies - Promote the development of innovative approaches and solutions to complex problems - Mentor and coach cybersecurity team leads and other individuals - Leverage AI-assisted tools such as GitHub Copilot and Microsoft Copilot to increase development speed, accuracy, and overall productivity - Leverage enterprise-approved AI tools to streamline workflows, automate tasks, and drive continuous improvement Qualifications - High School Diploma/GED - 5+ years of relevant experience with TrendMicro Engineering - 5+ years of experience analyzing, auditing, researching, developing security policies; standards and procedures Requirements - Strong understanding principles and practices of cyber security audits and audit documentation - Demonstrate ability to anticipate and handle critical situations, negotiate solutions, resolve conflicts and drive projects to completion - Ability to manage and ensure compliance with IT structures/processes/technologies - Ability to collaborate with internal and external stakeholders, as well as communicate with high-level management - Extensive technical know-how of security network devices (switches, antivirus, proxies, IPSs, WAF, firewalls, cryptography, SIEM) - Ability to manage the identification and mitigation of risks and communicate business and technical risks to all levels of audience - Deep understanding of network security principles, including firewall configurations, network traffic analysis, and risk management - Ability to oversee the assessment and review of highly complex, technical situations within a matrixed organization - Outstanding organizational, communication, interpersonal and leadership skills - Broad knowledge of a wide range of Information Technology systems and a deep understanding of the inherent security risks associated with these technologies Benefits - Comprehensive benefits package - Incentive and recognition programs - Equity stock purchase - 401k contribution (all benefits are subject to eligibility requirements)

United States
$91.7K - $163.7K / year
Job Closed
Hitachi logo

Cybersecurity GRC Intern

Hitachi

Hitachi Social Innovation is POWERING GOOD

Full TimeRemoteTeam 10,001+Since 1910H1B Sponsor

Location: Remote - South Holland, Netherlands Job ID: R0121535 Date Posted: 2026-04-17 Company Name: HITACHI ENERGY THE NETHERLANDS B.V. Profession (Job Category): Administration & Facilities Job Schedule: Full time Remote: Yes Job Description: Job Title: Cybersecurity GRC Intern Location: The Netherlands Duration: 6 months with the possibility for extension About Us: Hitachi Energy is a global technology leader advancing a sustainable, flexible, and secure energy future. Operating in more than 140 countries, we deliver innovative grid technologies and digital solutions that enable the clean energy transition. Headquartered in Switzerland, we employ around 50,000 people worldwide and continue to invest in technologies that support reliable, efficient, and carbon‑neutral energy systems. Job Description: Responsibilities: - Assist in identifying, assessing, and mitigating cybersecurity risks across various systems and processes. - Support the development and implementation of risk management frameworks and policies. - Support the management and communication of issues deriving from internal and external audits. - Assist in the preparation of risk assessment reports and presentations for senior management. Qualifications: - Currently pursuing a degree in Cybersecurity, Information Technology, Computer Science, Security and Risk Management or a related field. - Basic understanding of ISO 27001:2022 Standard, cybersecurity principles, risk management as well as threat analysis. - Strong analytical and problem-solving skills. - Excellent communication and teamwork abilities. - Ability to work independently and manage multiple tasks effectively. Benefits: - Hands-on experience in cybersecurity risk management. - Mentorship and guidance from experienced professionals. - Opportunity to work on real-world projects and make a meaningful impact. - Networking opportunities within the industry. - Remote Working How to Apply: Interested candidates should submit their resume and a cover letter detailing their interest in the internship. Qualified individuals with a disability may request a reasonable accommodation if you are unable or limited in your ability to use or access the Hitachi Energy career site as a result of your disability. You may request reasonable accommodations by completing a general inquiry form on our website. Please include your contact information and specific details about your required accommodation to support you during the job application process. This is solely for job seekers with disabilities requiring accessibility assistance or an accommodation in the job application process. Messages left for other purposes will not receive a response.

Netherlands + 1 moreAll locations: Netherlands | Poland

Service Technician

ChemTreat

ChemTreat is a company that assists with industrial water treatment systems and processes and is passionate about "maximizing the power of water." The company s

Responsabilidades Principales: - Realizar actividades tratamiento fisicoquímico del agua para garantizar los resultados establecidos en el contrato establecido con el cliente - Visitar a los clientes, de acuerdo con el plan de trabajo y normas de seguridad, con el fin de medir los resultados al programa de tratamiento químico diseñado. - Realizar el control químico y dosificación de los productos de la compañía utilizados en las instalaciones de los clientes, para garantizar que los productos se encuentren dentro de los rangos establecidos y se estén dosificando en todo momento. - Detectar e informar fallas y / o problemas de productos cuando se encuentran fuera de los rangos establecidos, resolver problemas de manera eficiente y ofrecer alternativas rentables según sea necesario en materia de tratamiento químico del agua. - Realizar revisión de existencias de los productos en las instalaciones del cliente con el fin de suministrarlos dentro del tiempo acordado y reportar los inventarios de estos. - Realizar inspecciones de equipos para monitorear las condiciones y la calidad de la operación, emitiendo los informes correspondientes - Participar en reuniones con el equipo para mejorar el servicio al cliente. - Documentar y comunicar los resultados entregados al cliente, proporcionando claridad y valor. At Veralto, we value diversity and the existence of similarities and differences, both visible and not, found in our workforce, workplace and throughout the markets we serve. Our associates, customers and shareholders contribute unique and different perspectives as a result of these diverse attributes. Unsolicited Assistance We do not accept unsolicited assistance from any headhunters or recruitment firms for any of our job openings. All resumes or profiles submitted by search firms to any employee at any of the Veralto companies, in any form without a valid, signed search agreement in place for the specific position, approved by Talent Acquisition, will be deemed the sole property of Veralto and its companies. No fee will be paid in the event the candidate is hired by Veralto and its companies because of the unsolicited referral.

Mexico