← Back to jobs

Apply for this job

Apply on the employer siteOpen original listing

Lead AI & Automation Engineer

  • Remote
  • Sweden
  • English
  • Posted 02.10.26 10:35

We are looking for a Senior AI & Automation Engineer for an exciting assignment within a large international organization. This is a senior and hands-on role at the intersection of Cyber Security, Security Operations, AI and Automation, with a strong focus on building solutions that create real impact in production.

You will be part of a security environment where automation and AI are increasingly used to improve how incidents are detected, investigated and handled. The overall goal is to reduce manual work, improve response times and create more scalable and consistent security operations.

About the Role

In this assignment, you will design and develop security automation across areas such as SecOps, identity, vulnerability management, compliance and infrastructure security. You will work with everything from alert triage and investigation to remediation, evidence collection and automated response.

An important part of the role is applying AI and LLM technologies within security operations. This can include developing AI-assisted investigation workflows, secure AI assistants and agent-based solutions that interact with approved enterprise tools, APIs and security services.

You will work with modern concepts such as Generative AI, Agentic AI, RAG, tool/function calling and MCP, while ensuring that solutions meet high requirements around security, reliability and governance.

Your responsibilities will include

Building production-grade security automation and orchestration workflowsAutomating security investigations, enrichment, response and remediationDeveloping AI and LLM-based solutions for security analysts and security operationsIntegrating security platforms, enterprise systems and APIsDeveloping reusable SIEM/SOAR playbooks and automated security processesTaking AI and automation solutions from POC through testing and into productionTechnical EnvironmentThe assignment is primarily based around the Microsoft security and Azure ecosystem, including Microsoft Sentinel, Defender XDR, Entra ID, Purview and Azure security services. You may also work with Security Copilot and other AI capabilities within the Microsoft environment.

Automation and integrations can involve technologies such as ServiceNow SecOps, Ansible Automation Platform and Terraform, together with APIs, event-driven workflows and Infrastructure-as-Code.

You will also work with security engineering areas such as incident response, vulnerability management, IAM, cloud security, threat intelligence and detection engineering.

Job Requirements

Requirements

We are looking for a highly experienced security engineer who combines a strong Cyber Security background with hands-on automation and development experience.

You should have

Around 10+ years of experience within Cyber Security, Security Engineering, SecOps, Detection Engineering or Security AutomationStrong hands-on experience building and supporting security automation in enterprise environmentsExperience with Python, PowerShell, REST APIs and KQLPractical experience with Microsoft Security technologies and SIEM/SOARExperience integrating security platforms through APIs, workflows and orchestrationExperience with technologies such as Ansible, Terraform, Git and CI/CDGood understanding of incident response, IAM, vulnerability management and cloud securityExperience taking technical solutions from concept or POC into stable productionExperience with AI/LLM development, Agentic AI, ServiceNow SecOps, Security Copilot, Kubernetes, Azure Functions or Logic Apps is considered highly valuable.

About You

You are a senior technical professional who enjoys solving complex security challenges and building solutions rather than only defining them. You are comfortable moving between architecture, development, integrations and production environments and taking ownership throughout the full lifecycle.

You are also curious about the possibilities of AI within Cyber Security, while understanding that automation in a security-critical environment requires strong controls, testing and governance.

You enjoy working across teams and can communicate complex technical topics clearly to both security specialists and other stakeholders.

Application procedure

A Maandag® recruiter will assess your application as soon as possible to determine whether you are suitable for an open position.

About the company If you are a good match, we would like to receive a CV in WORD format with motivation why you fit this assignment, your availability and any scheduled holidays.

Why Maandag Nordic? With us, you’ll get the chance to really put your ideas into action. We offer a work environment where you can grow and learn through hands-on experience - trying things out, making mistakes, and improving.

For more than 35 years, Maandag® has been at the forefront of empowering people and organisations. We not only help professionals get jobs, but also connect them with a future that matches their values, desires and ambitions. Because when people are truly in the right place, they can develop themselves, fulfil their dreams and go to work with fresh energy every day. The energy and power released in the process is a catalyst for growth for companies. We started in the Netherlands, but now we also help professionals and organisations in Belgium, Poland, Dubai and Sweden. Our extensive knowledge of different markets, coupled with our wide network, enables us to make perfect matches quickly.