Comcast logo
Comcast

Headquartered in Philadelphia, Pennsylvania, Comcast was established in 1963 as a single-system cable company. Over the years, Comcast experienced tremendous gr

Comcast Cybersecurity: Cyber Security Engineer - AI & Agentic Platforms

Security EngineerSecurity EngineerFull TimeRemoteSeniorTeam 10,000Since 1963Company Site

Location

Pennsylvania

Posted

12 days ago

Salary

$98.7K - $231.3K / year

Seniority

Senior

English

Job Description

Comcast Cybersecurity: Cyber Security Engineer - AI & Agentic Platforms

Comcast

Make your mark at Comcast -- a Fortune 30 global media and technology company. From the connectivity and platforms we provide, to the content and experiences we create, we reach hundreds of millions of customers, viewers, and guests worldwide. Become part of our award-winning technology team that turns big ideas into cutting-edge products, platforms, and solutions that our customers love. We create space to innovate, and we recognize, reward, and invest in your ideas, while ensuring you can proudly bring your authentic self to the workplace. Join us. You'll do the best work of your career right here at Comcast. (In most cases, Comcast prefers to have employees on-site collaborating unless the team has been designated as virtual due to the nature of their work. If a position is listed with both office locations and virtual offerings, Comcast may be willing to consider candidates who live greater than 100 miles from the office for the remote option.) Job Summary We build and design the tools of tomorrow to stop bad actors from harming our customers and our company. Our mission is to build, maintain, and advance the next generation capabilities that power Comcast's global cybersecurity operations. This team owns the Premonition platform, which manages, deploys, and composes agentic pipelines at scale-combining large language models, high-performance data systems, and modern cloud infrastructure to give our security teams a decisive edge. We work with technologies like Python, SQL, Rust, JavaScript, LLMs (via Ollama, Bedrock, SageMaker), AWS, EKS, open table formats (Iceberg, Delta, Hudi), and embedded engines such as DuckDB and LanceDB. Our culture is supportive, caring, competitive, high ownership, and deeply technical: we help each other grow, we care about people as much as outcomes, and we push ourselves to solve hard problems at scale. If you want to apply advanced LLMs and high-performance data engineering to real-world cybersecurity threats affecting millions of customers, this is the place to do it. Job Description As Cyber Security Engineer on the Cybersecurity AI & Data Platforms team, you will develop and maintain Premonition, Comcast's internal platform for managing, deploying, and composing agentic pipelines that power global cybersecurity operations. You will split your time between: - building a robust, scalable platform for LLM and agent driven workflows, and - optimizing the high-performance data layer supporting those workflows, including storage formats, compression, latency, and query performance across large datasets. This role sits at the intersection of applied AI and big data engineering. You will work with large language models, orchestration frameworks, and cyber focused agentic pipelines, while also owning the data and infrastructure foundations that make those systems fast, reliable, and cost-effective at Comcast scale. You'll partner closely with security operations, incident response, and threat hunting teams to translate real-world workflows into secure, composable, and observable agentic systems. Key Responsibilities - Design, build, and maintain the Premonition platform for managing, deploying, and monitoring agentic pipelines. - Develop composable building blocks-agents, tools, pipelines, evaluators, and configuration-to enable rapid workflow assembly and iteration. - Implement robust APIs, orchestration, and infrastructure integrations on AWS and EKS for reliable LLM and agent driven workloads. - Engineer and optimize the high performance data layer, including Iceberg/Delta/Hudi, compression, indexing, latency, and largescale query performance. - Work with embedded engines such as DuckDB and LanceDB to enable interactive, low latency analytics. - Collaborate with cybersecurity stakeholders (SOC, IR, threat hunters, engineers) to translate workflows into secure, automated, observable pipelines. - Experiment with and productionize LLM and agent patterns (RAG, tool use, multistep agentic workflows), including evaluation, safety, and guardrails. - Own the full lifecycle of Premonition services: design, implementation, testing, deployment, observability, performance tuning, and continuous improvement. - Contribute to and enforce standards and best practices for LLM/agent usage, data management, security, and governance. - Participate in design/code reviews and foster a supportive, caring, competitive, high ownership, deeply technical culture. Required Qualifications - Strong production experience with Python. - Solid SQL skills and experience working with large datasets. - Experience designing, building, and operating production APIs or microservices, including testing, observability, CI/CD. - Experience running workloads on AWS and Kubernetes/EKS. - Experience with high performance data engineering, including: - Iceberg, Delta, or Hudi; or - optimizing storage, compression, latency, and analytical query performance. - Ability to work in a deeply technical, high ownership environment and collaborate effectively across functions. - Strong communication skills with the ability to work closely with security stakeholders and translate workflows into technical designs. Preferred Qualifications - Demonstrated experience building LLM based applications or agentic workflows (not just prompt tinkering). - Hands on experience with agentic workflows: agents, tools, orchestration, multistep pipelines. - Experience with LLM platforms: Ollama, Amazon Bedrock, SageMaker. - Familiarity with orchestration frameworks: LangChain, LlamaIndex, or equivalent internal tooling. - Production experience with Iceberg, Delta Lake, or Hudi. - Experience with DuckDB or LanceDB. - Experience with Rust and/or JavaScript/TypeScript. - Experience with workflow/orchestration tools: Airflow, Temporal, Argo. - Prior exposure to cybersecurity domains (SOC, IR, threat hunting, security engineering). - Experience in largescale enterprise or telecom environments with high security/reliability/compliance requirements. Employees at all levels are expected to: - Understand our Operating Principles; make them the guidelines for how you do your job. - Own the customer experience - think and act in ways that put our customers first, give them seamless digital options at every touchpoint, and make them promoters of our products and services. - Know your stuff - be enthusiastic learners, users and advocates of our game-changing technology, products and services, especially our digital tools and experiences. - Win as a team - make big things happen by working together and being open to new ideas. - Be an active part of the Net Promoter System - a way of working that brings more employee and customer feedback into the company - by joining huddles, making call backs and helping us elevate opportunities to do better for our customers. - Drive results and growth. - Support a culture of inclusion in how you work and lead. - Do what's right for each other, our customers, investors and our communities. Disclaimer: - This information has been designed to indicate the general nature and level of work performed by employees in this role. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications. Comcast is an equal opportunity workplace. We will consider all qualified applicants for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, disability, veteran status, genetic information, or any other basis protected by applicable law. Comcast will consider for employment applicants with arrest or conviction records in accordance with the requirements of applicable law, including the San Francisco Fair Chance Ordinance, the Los Angeles Fair Chance Initiative for Hiring Ordinance, the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act. Please note that federal state, or local laws and regulations may restrict or prohibit Comcast from hiring individuals convicted of certain crimes. Additionally, an applicant's criminal history may have a direct, adverse, and negative relationship on the job duties of this position, which may result in the withdrawal of a conditional offer of employment. Skills: Amazon Web Services (AWS); Structured Query Language (SQL); Python (Programming Language); Big Data Engineering Salary: National Pay Range: $98,678.80 USD-$231,278.44 USD Illinois Pay Range: $104,846.23 USD - $203,525.03 USD Colorado Pay Range: $111,013.65 USD - $212,776.16 USD Hawaii Pay Range: $129,515.93 USD - $194,273.89 USD Washington DC Pay Range: $141,850.78 USD - $212,776.16 USD Maryland Pay Range: $117,181.08 USD - $212,776.16 USD Minnesota Pay Range: $111,013.65 USD - $194,273.89 USD New York Pay Range: $117,181.08 USD - $231,278.44 USD Washington Pay Range: $111,013.65 USD - $222,027.30 USD New Jersey Pay Range: $123,348.50 USD - $222,027.30 USD Vermont Pay Range: $117,181.08 USD - $185,022.75 USD Massachusetts Pay Range: $123,348.50 USD - $222,027.30 USD California Pay Range: $111,013.65 USD - $205,580.83 Comcast intends to offer the selected candidate base pay within this range, dependent on job-related, non-discriminatory factors such as experience. The application window is 30 days from the date job is posted, unless the number of applicants requires it to close sooner or later. The application window is 30 days from the date job is posted, unless the number of applicants requires it to close sooner or later. Base pay is one part of the Total Rewards that Comcast provides to compensate and recognize employees for their work. Most sales positions are eligible for a Commission under the terms of an applicable plan, while most non-sales positions are eligible for a Bonus. Additionally, Comcast provides best-in-class Benefits to eligible employees. We believe that benefits should connect you to the support you need when it matters most, and should help you care for those who matter most. That's why we provide an array of options, expert guidance and always-on tools, that are personalized to meet the needs of your reality - to help support you physically, financially and emotionally through the big milestones and in your everyday life. Please visit the compensation and benefits summary on our careers site for more details. Education Bachelor's Degree While possessing the stated degree is preferred, Comcast also may consider applicants who hold some combination of coursework and experience, or who have extensive related professional experience. Relevant Work Experience 7-10 Years

Related Categories

Related Job Pages

More Security Engineer Jobs

Tonal logo

Director, IT and Security

Tonal

Meet the Ultimate Strength Studio. Tonal's expert coaching and advanced digital weight allow you to #BeYourStrongest.

Full TimeRemoteTeam 501-1,000H1B Sponsor

Director, IT and Security Location Austin, TX Employment Type Full time Location Type Remote Department Operations - Business Technology & PMO - Business Technology Compensation - $178K – $220K Overview Tonal is the world's most intelligent strength training system, combining hardware, software, AI, computer vision, and world-class content to help people build strength and live healthier. Tonal is now expanding into healthcare and clinical applications, connecting strength training technology with providers, employers, and payers to deliver measurable health outcomes — raising the bar for what our IT and security function needs to deliver. We're looking for a Director of IT & Security to own this function end-to-end. This role carries the highest privileges across our most sensitive systems and direct accountability for IT and security outcomes company-wide. You'll report to the VP of Business Technology and work closely with senior leadership. The ideal candidate has a start-up mentality — comfortable moving fast in a lean, resource-constrained environment, while never losing sight of the security and compliance discipline a healthcare-adjacent company requires. What You Will Do - Own end-to-end IT operations, including device lifecycle, onboarding/offboarding, SaaS administration, identity and access management, help desk, and office infrastructure across all locations. - Lead the technical controls side of Tonal's HIPAA compliance program, implementing the safeguards required by the HIPAA Security Rule and HITECH Act — encryption, SIEM, MDM/EDR, and role-based access. - Own and execute Tonal's security program: penetration testing remediation, security policy, tabletop exercises, vendor security reviews, and incident response. - Govern Tonal's AI tool ecosystem, including licensing, spend, API key governance, corporate AI policy, and DLP and prompt injection protections. Drive AI training and best practices across the organization. - Administer Tonal's SaaS portfolio, owning contract renewals, license optimization, and vendor negotiations across critical platforms. - Drive automation and identity governance maturity, including Okta Identity Governance, expanding SCIM-based provisioning, building & enforcing RBAC frameworks, and driving workflow automation and system integration. - Lead and grow the IT & Security team, managing engineers and administrators, overseeing the virtual CISO engagement, owning the budget and aligning org structure to Tonal’s needs. - Own IT documentation and process improvement, maintaining runbooks and closing gaps in onboarding, offboarding, and incident response, and driving overall automation. - Manage global physical infrastructure — networking, Wi-Fi, AV, and physical access — across a distributed, multi-office footprint. - Serve as a trusted operator on Tonal's most sensitive matters, from executive access provisioning to security incidents and legal holds. - Report regularly to senior leadership and the C-suite, translating IT & Security roadmap priorities, progress, technical risk and incident management into clear, actionable narratives. Who You Are - 10+ years in IT and security leadership, with full functional ownership and experience across identity and access management, endpoint security, SaaS administration, network infrastructure, and security program management. - Hands-on HIPAA compliance implementation experience, beyond writing policies - Track record of building a security program from the ground up: policy, penetration testing, and real incident response - Broad expertise across identity and access management, endpoint security, SaaS administration, and network infrastructure - Equally comfortable configuring technical systems and presenting security risk to executive leadership - A start-up mindset: thrives in fast-moving, resource-constrained environments without cutting corners on security - Proven ability to prioritize with a lean team and limited budget, with outcomes to show for it. - Experience managing a large SaaS portfolio, including contract renewals, vendor negotiation, and license governance - Strong people leadership skills, setting clear expectations and developing team members - High standards of trust, integrity, and discretion, given access to the company's most sensitive systems Extra Credit - HIPAA compliance roll-out and execution, owning the technical controls end-to-end. - Experience with SOC 2 Type II, NIST CSF, or HITRUST in a hands-on implementation capacity - Background in healthcare technology, digital health, or clinical-grade software environments At Tonal, we believe that the unique and varied lived experiences of our teammates contribute to our overall strength. We don’t just appreciate differences, we celebrate them, and we always seek people that represent a wide variety of backgrounds. We’re dedicated to adding new perspectives to the team and designing employee experiences that contribute to your growth as much as you do to ours. If your experience aligns with what we’re looking for (even if you don’t check every single box), send us your application. We would love to hear from you! Tonal is committed to meeting the diverse needs of people with disabilities in a timely manner that is consistent with the principles of independence, dignity, integration, and equality of opportunity. Should you have any accommodation requests, please reach out to us via our confidential email. All requests will be addressed and responded to in accordance with Tonal’s Accessibility Policy and local legislation.

Texas
$178K - $220K / year

Network Security Architect

Redolent, Inc

ERM - Rina María Cabrera / Capgemini | North América External Resource Manager Tel.: +1 888 229 2961 Email: rina.cabrera@capgemini.com

Role Description The role involves providing subject matter expertise in the analysis, design, implementation, troubleshooting, and preparation of technology solutions to meet business needs. The candidate should have expert-level hands-on and design experience in various security technologies. - Hands-on experience with Palo Alto firewall, Fortigate Firewall, ClearPass, and Zscaler (Zscaler Internet Access, Zscaler Private Access). - Experience in implementing zero trust. - Recommends components for solutions that work well across business domains. - Accountable for timely and cost-effective delivery of projects/applications/infrastructure. - Expert level knowledge in implementing PCI4.0. - Perform Root Cause Analysis for Major P1/P2 incidents following ITIL process. - Ensures project artifacts are developed and documented properly. - Facilitates the creation of communication plans among key stakeholders. - Develops complete and robust test plans, cases, and scripts. - Acts as a communication point for infrastructure, application, and data changes. - Ensures integration of assigned business areas against critical business processing. - Thorough understanding of business strategy, operations, markets, and key stakeholders. - Reviews business processes to identify capability gaps and opportunities. - Recommends innovations and simplifications in business processes/systems. - Builds close relationships with function heads and their teams. - Works as 3rd level support to resolve issues within the area of responsibility. - Maintains a high level of individual contribution and professional growth. Qualifications - Expert-level hands-on experience with security technologies. - Strong understanding of business strategy and operations. - Ability to develop communication plans and test strategies. Requirements - Proven experience with Palo Alto and Fortinet Firewalls. - Experience with HPE Aruba Clearpass and Zscaler technologies. - Knowledge of PCI4.0 implementation. - Experience in ITIL processes. Benefits - 100% Remote work opportunity. - Flexible working hours.

United States
Map Ssg logo

Founding Security Engineer

Map Ssg

A venture-backed startup building a modern data platform for the real estate industry, enabling automation, analytics, and AI-powered workflows for real estate operators. The team includes engineers and leaders from companies such as major fintech, cloud, and consumer technology platforms, and is focused on solving complex infrastructure and data challenges in a large, underserved industry.

Role Description This is the company’s first dedicated security hire. You will define and build the company’s security program from scratch, working directly with a security-minded co-founder. This role spans product security, application security, corporate security, compliance, incident response, and detection. Over time, this person may build and lead the security function. - Own the company’s security posture across product, infrastructure, and internal systems - Lead security reviews, threat modeling, and secure design work - Build foundational security systems such as secrets management, audit logging, vulnerability management, and certificate infrastructure - Drive compliance programs such as SOC 2, ISO 27001, GDPR, and CCPA - Define incident response processes and detection capabilities - Partner closely with engineering to embed security into product development - Help shape security culture across a small, high-caliber team Qualifications - 5+ years of security engineering experience - Strong application security background - Experience with secure SDLC, threat modeling, vulnerability management, and security architecture - Experience contributing to or running security programs - Compliance experience, ideally SOC 2, ISO 27001, GDPR, or similar - Backend or systems engineering fluency; Go experience is a plus - Ability to operate with high ownership in an early-stage environment - Low-ego, collaborative mindset and willingness to wear multiple hats Nice to Have - First or second security hire experience at a startup - Detection engineering experience - Identity, access management, enterprise IT, or security software background - Kubernetes, GCP, cloud security, or infrastructure security experience - Published security research, talks, or open-source security work

United States
$180K - $230K / year
Bayview Asset Management logo

IT Security Database Engineer

Bayview Asset Management

Founded in 1993, Bayview Asset Management is an investment management firm focused on investments in mortgage and consumer credit, including whole loans, asset-backed securities, mortgage servicing rights, and other credit-related assets.

Full TimeRemoteTeam 1,001-5,000

Role Description The Database Security Engineer is responsible for securing and protecting the organization’s enterprise databases, database platforms, and related data assets. This role combines database administration expertise with information security best practices to ensure the confidentiality, integrity, and availability of sensitive company and customer data. The role is part of the Security Engineering team and will work closely with Infrastructure, Application Development, Information Security, Compliance, and business stakeholders to: - Implement database security controls - Monitor database activity - Support regulatory compliance initiatives - Reduce organizational risk The ideal candidate will have a strong background in database administration (DBA) along with hands-on experience in: - Database security - Auditing - Vulnerability management - Data protection technologies in on-premise data center and public cloud environments The candidate must be familiar with a variety of database technologies, security concepts, practices, and procedures. Qualifications - BA/BS in Computer Science, Computer Engineering, Information Systems, or equivalent experience - 7+ years of experience in database administration, database engineering, or database security - Strong hands-on experience administering enterprise database platforms such as SQL Server, Oracle, PostgreSQL, or MySQL - Experience implementing database security controls including encryption, auditing, access controls, and privileged access management - Experience with database vulnerability scanning, monitoring, and remediation processes - Experience in highly regulated environments, preferably Financial Services or similar industries - Experience supporting cloud database technologies and security best practices in AWS, Oracle and/or Azure Requirements - Strong understanding of database architecture, database administration, backup/recovery, and performance concepts - Knowledge of methods to secure databases, applications, and sensitive data assets - In-depth knowledge of data protection engineering principles, DLP, encryption, masking, and tokenization - Strong research and troubleshooting skills - Strong verbal and written communication skills - Skill with SQL, Python, Bash, or PowerShell scripting Benefits - This role will be remote based anywhere in the US - The base compensation will be based on experience - There will be an opportunity for an incentive-based bonus Certifications, Licenses, and/or Registration - Preferred: CISSP, CISA, Security+, Microsoft Certified: Azure Database Administrator Associate, Oracle Database Security Certified Implementation Specialist, AWS Certified Security – Specialty, GIAC certifications, Microsoft SQL certifications, or equivalent database/security certifications

United States