Summary
The AI Cyber Lead is the technical and strategic expert for AI-driven security capabilities within the CSIRT. This role designs and operationalizes secure agentic AI solutions to improve detection, investigation, and incident response, while advancing responsible AI adoption across security teams.
Responsibilities
- Lead the design and implementation of AI enhancements across Cortex XSIAM and other security platforms, including automated triage, threat hunting, investigation, and response workflows.
- Architect secure agentic AI systems with appropriate guardrails, human oversight, auditability, and least-privilege controls.
- Coordinate with CSIRT, Threat Hunting, Threat Intel, Red Team, Forensics, and security technology teams to align AI solutions and roadmaps.
- Assess AI use cases and risks, evaluate emerging tools, and establish secure patterns, standards, and governance.
- Mentor analysts, document best practices, and report on AI capability maturity, performance, and risk.
Requirements
- Bachelor's degree in a relevant technical field or equivalent practical experience; a master's degree is preferred.
- At least 3 years of experience in technology or advanced engineering, preferably in cybersecurity, security operations, detection engineering, or AI/ML engineering.
- Practical expertise in agentic AI, LLMs, RAG, multi-agent orchestration, and tool-using agents, including securing and governing production systems.
- Experience with security operations platforms such as Cortex XSIAM/XDR, SIEM, SOAR, or equivalent tools, and a strong understanding of SOC and incident response workflows.
- Knowledge of AI security risks and mitigations, strong analytical and communication skills, and ability to influence technical and executive stakeholders.
- Based in New York and able to work in a hybrid model; occasional travel may be required.