Skip to content

Senior Security Automation Engineer, Web & Edge Security

Adobe

Seattle

The Opportunity

Your mandate is to find security problems that don't scale and engineer them away.

As a Senior Security Automation Engineer, you will build automation and AI-assisted frameworks to scale Adobe's web application protection across a diverse edge-security environment. You will pinpoint critical security workflows that remain manual, fragmented, or tough to scale. Afterward, you will re-engineer these into reliable systems, including vulnerability response, WAF policy validation, coverage assessment, multi-vendor automation, and enabling product teams to serve themselves.

This is a build role for a senior engineer who combines strong software engineering skills and security judgment. You will help identify where AI can significantly improve security engineering. You will build systems and evaluation frameworks needed to use AI safely. You will also turn security expertise into capabilities that scale across Adobe.

What you'll Do

  • Develop production-ready automation and AI-supported systems for web and edge security processes across various WAF/CDN platforms.
  • Recognize repetitive or high-friction security processes and transform them into scalable services, APIs, pipelines, and self-service options for product teams.
  • Develop vulnerability-response automation, incorporating AI-assisted analysis and WAF rule creation — alongside validation, evaluation, regression testing, and secure deployment.
  • Build automation around vulnerability intelligence, control coverage, policy lifecycle, configuration drift, and measurement of control effectiveness.
  • Develop abstractions and integrations that reduce the operational complexity of supporting multiple WAF vendors.
  • Build evaluation frameworks for AI-assisted security workflows and outputs — measuring correctness, consistency, behavioral drift, false-positive and false-negative rates, and readiness for production use.
  • Partner with security architects and product teams to translate security requirements into reusable engineering capabilities.
  • Raise the engineering bar through architecture, testing, CI/CD, observability, documentation, and mentoring.
  • Proactively identify where AI and automation can meaningfully improve the team's effectiveness — and where human security judgment should stay in the loop.

What you need to succeed

  • 6+ years in software engineering, security engineering, or security automation, with production code you've shipped, not just vendor tooling you've configured.
  • Strong proficiency in Python, TypeScript, or a comparable language, with experience building production-quality services and automation.
  • Proven experience designing, building, and operating production services, APIs, or automation systems at scale, including observability, reliability measurement, controlled rollout and rollback, and ownership of production failures.
  • Strong systems-design judgment, the ability to decide when to build abstractions, when to integrate existing platforms, and when automation would add complexity rather than remove it.
  • Solid fundamentals in web, application, and edge security – you understand how web applications face threats and protections, and can apply that knowledge to engineering choices.
  • Experience developing AI/LLM-assisted systems, or demonstrated ability to apply contemporary AI engineering approaches, structured outputs, evaluation, regression testing, and human-in-the-loop controls, to production workflows.
  • Ability to work independently on unstructured problems and make defensible, risk-based decisions.
  • Strong written and verbal communication; you can detail system logic and explain technical decisions, risks, and tradeoffs to engineers and non-technical collaborators.

Preferred

  • Deep production experience with LLM-integrated or agentic systems, including agent orchestration, prompt/context engineering, or autonomous multi-step workflows.
  • Hands-on experience with one or more major WAF/CDN technologies, such as AWS WAF, Cloudflare, Akamai, Fastly, or Mod Security/CRS, at a configuration or rule-authoring level.
  • Deep understanding of HTTP parsing, normalization, and protocol edge cases — including encoding discrepancies, request smuggling, and header ambiguity — and how they affect WAF efficacy and false-positive/false-negative behavior.
  • Experience with vulnerability intelligence data (EPSS, CISA KEV, CVSS) and how it should -and shouldn't - drive prioritization.
  • Experience building self-service security capabilities or platform tooling adopted by other teams.

About Adobe

Adobe empowers everyone to create through innovative platforms and tools that unleash creativity, productivity and personalized customer experiences. Adobe’s industry-leading offerings including Adobe Acrobat Studio, Adobe Express, Adobe Firefly, Creative Cloud, Adobe Experience Platform, Adobe Experience Manager, and GenStudio enable people and businesses to turn ideas into impact, powered by AI and driven by human ingenuity.

Our 30,000+ employees worldwide are creating the future and raising the bar as we drive the next decade of growth. We’re on a mission to hire the very best and believe in creating a company culture where all employees are empowered to make an impact. At Adobe, we believe that great ideas can come from anywhere in the organization. The next big idea could be yours.

Let’s Adobe together

At Adobe, we believe in creating a company culture where all employees are empowered to make an impact. Learn more about Adobe life, including our values and culture, focus on people, purpose and community, Adobe for All, comprehensive benefits programs, the stories we tell, the customers we serve, and how you can help us advance our mission of empowering everyone to create.

Adobe is proud to be an Equal Employment Opportunity employer. We do not discriminate based on gender, race or color, ethnicity or national origin, age, disability, religion, sexual orientation, gender identity or expression, veteran status, or any other protected characteristic. Learn more.

Adobe aims to make our Careers website and recruiting process accessible to any and all users. If you have a disability or special need that requires accommodation to navigate our website or complete the application process, email [email protected].

AI Use Guidelines for Interviews: Our interviews are designed to reflect your own skills and thinking. The use of AI or recording tools during live interviews is not permitted unless explicitly invited by the interviewer or approved in advance as part of a reasonable accommodation. If these tools are used inappropriately or in a way that misrepresents your work, your application may not move forward in the process.

At Adobe, we empower employees to innovate with AI — and we look for candidates eager to do the same. As part of the hiring experience, we provide clear guidance on where AI is encouraged during the process and where it’s restricted during live interviews. See how we think about AI in the hiring experience.

Expected Pay Range:

Our compensation reflects the cost of labor across several U.S. geographic markets, and we pay differently based on those defined markets. The U.S. pay range for this position is $144,800 -- $261,450 annually. Pay within this range varies by work location and may also depend on job-related knowledge, skills, and experience. Your recruiter can share more about the specific salary range for the job location during the hiring process.


In Washington, the pay range for this position is $170,900 - $247,550


At Adobe, for sales roles starting salaries are expressed as total target compensation (TTC = base + commission), and short-term incentives are in the form of sales commission plans. Non-sales roles starting salaries are expressed as base salary and short-term incentives are in the form of the Annual Incentive Plan (AIP).

In addition, certain roles may be eligible for long-term incentives in the form of a new hire equity award.

State-Specific Notices:

California:

Fair Chance Ordinances

Adobe will consider qualified applicants with arrest or conviction records for employment in accordance with state and local laws and “fair chance” ordinances.

Colorado:

Application Window Notice

If this role is open to hiring in Colorado (as listed on the job posting), the application window will remain open until at least the date and time stated above in Pacific Time, in compliance with Colorado pay transparency regulations. If this role does not have Colorado listed as a hiring location, no specific application window applies, and the posting may close at any time based on hiring needs.

Massachusetts:

Massachusetts Legal Notice

It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

Seen 2 hours ago · Adobe postings close after a median of 22 days.

Original posting on Adobe's site ↗

Posting text belongs to the employer. Removal requests: contact us.

One job at a time

One posting. One CV. $25.

Pick the job you actually want and we write for it.

Get my CV for this job