Job Purpose:
The Senior Cyber Security Specialist is responsible for designing, implementing and managing security technology solutions globally. Leads or serves as experienced technical resource in multi-discipline IT security projects intended to continually improve the security infrastructure and operating procedures. Keeps abreast of the latest technologies and identifies opportunities to leverage them to improve TD SYNNEX's cyber protection, detection and response capabilities. The responsibilities include reviewing our current security measures and processes in all geographies TD SYNNEX operates in, identifying and addressing areas of weakness through penetration testing and red teaming, and responding promptly to possible security breaches. Continuously improves core processes in identity & access management, threat hunting and analysis, vulnerability management, security monitoring and incident response both on-premise and in the cloud. Documents operating procedures and run books and trains the support team(s).
ABOUT THE TEAM:
The Security Automation Engineering pod is the full-stack security engineering function of the future. It blends SIEM mastery, SOAR automation, detection craft, and AI/ML fluency into a single high-velocity pod — building, automating, and detecting across every layer of the security operations stack with intelligent systems as its force multiplier. Unlike other engineering pods where AI is an enhancement opportunity, this pod treats AI as a native, first-class capability woven into every workflow: these engineers don't just use AI tools — they build, tune, and govern them. The team supports a 25,000-employee enterprise.
POSITION SUMMARY
A full-stack security engineer who operates fluidly across SIEM administration, playbook development, detection rule creation, and AI system implementation. Owns a domain focus area while maintaining cross-functional capability across all disciplines.
KEY RESPONSIBILITIES
- Develop and deploy AI-powered detection rules using ML anomaly models, LLM-generated Sigma/SPL/KQL, and behavioral analytics.
- Build intelligent SOAR playbooks that leverage LLM reasoning for dynamic decision-making and adaptive response.
- Implement and tune AI-driven alert triage systems — automated scoring, enrichment, and routing based on ML classifiers.
- Manage SIEM platform components: index optimization, search performance, and data model maintenance.
- Design prompt engineering frameworks and evaluation harnesses for security-focused LLM applications.
- Build RAG (Retrieval-Augmented Generation) pipelines using internal security knowledge bases, runbooks, and threat intel.
- Conduct AI-augmented threat hunting — using LLMs to generate hypotheses and ML to identify anomalous patterns at scale.
- Develop and maintain CI/CD pipelines for detection rules, playbooks, and ML model deployments.
Responsibilities:
- Technical design, implementation, enhancement and ongoing support for security technologies (30%)
- Executes and continually improves core security processes such as vulnerability management, threat analysis, security monitoring and incident response, identity and access management (10%)
- AppSec reviews, penetration testing and red teaming activities to identify gaps and weaknesses. Utilize red team learnings to improve detection capabilities and response automation (20%)
- Process automation, orchestration for improving team efficiency, documentation and training (20%)
- Data analytics and KPI reporting for ensuring operational effectiveness and controls health (10%)
- Collects, processes, preserves, analyzes, and presents computer-related evidence in support of breaches, vulnerability mitigation and/or criminal, fraud, counterintelligence, or law enforcement investigations. (10%)
Knowledge, Skills and Experience:
- Bachelor's Degree with IT field of study required.
- 8 to 10 Years of relevant work experience.
- 5+ years in security engineering with demonstrated cross-domain experience (SIEM + SOAR or SIEM + Detection).
- Proficiency in SIEM query languages (SPL, KQL) AND SOAR playbook development (Python, low-code platforms).
- Experience building or integrating AI/ML models for security use cases.
- Strong Python skills with familiarity in ML frameworks (scikit-learn, PyTorch) and LLM APIs.
- Detection engineering experience: Sigma rules, MITRE ATT&CK mapping, rule tuning methodology.
- Git-based workflow proficiency for detection-as-code and infrastructure-as-code.
- Other Education / Certifications: selection of security and technology certifications and/or equivalent proven work experience
- Able to recognize and attend to important details with accuracy and efficiency.
- Able to communicate clearly and convey necessary information.
- Able to converse and write effectively in English and local language.
- Able to create and conduct formal presentations.
- Able to interact effectively with all levels of management
- Possesses strong multi-cultural interpersonal skills.
- Possesses strong leadership skills with a willingness to lead, create new ideas, and be assertive.
- Possesses strong organizational and time management skills, driving tasks to completion.
- Able to constructively work under stress and pressure when faced with high workloads and deadlines.
- Able to maintain and promote social, ethical, and organizational standards in conducting internal and external business activities.
- Able to work independently with minimum supervision.
- Able to exhibit ability to be sensitive to the needs, concerns, and feelings of others.
- Able to quickly learn new systems and technology.
- Able to use relevant computer system applications at an advanced level.
Working Conditions:
- Occasional non-standard work hours or overtime as business requires.
- On-call availability required as necessary.
- Some travel required.
At TD SYNNEX, our values guide everything we do: Together, We Own It, We Dare to Go, We Grow and Win, and above all, We Do the Right Thing. These principles shape how we work with each other, our partners, and our communities as we drive innovation and create lasting impact.
What’s In It For You?
- Elective Benefits: Our programs are tailored to your country to best accommodate your lifestyle.
- Grow Your Career: Accelerate your path to success (and keep up with the future) with formal programs on leadership and professional development, and many more on-demand courses.
- Elevate Your Personal Well-Being: Boost your financial, physical, and mental well-being through seminars, events, and our global Life Empowerment Assistance Program.
- Diversity, Equity & Inclusion: It’s not just a phrase to us; valuing every voice is how we succeed. Join us in celebrating our global diversity through inclusive education, meaningful peer-to-peer conversations, and equitable growth and development opportunities.
- Make the Most of our Global Organization: Network with other new co-workers within your first 30 days through our onboarding program.
- Connect with Your Community: Participate in internal, peer-led inclusive communities and activities, including business resource groups, local volunteering events, and more environmental and social initiatives.
Don’t meet every single requirement? Apply anyway.
At TD SYNNEX, we’re proud to be recognized as a great place to work and a leader in the promotion and practice of diversity, equity and inclusion. If you’re excited about working for our company and believe you’re a good fit for this role, we encourage you to apply. You may be exactly the person we’re looking for!
Seen 1 hour ago · TD SYNNEX Public Sector postings close after a median of 28 days.
Original posting on TD SYNNEX Public Sector's site ↗
Posting text belongs to the employer. Removal requests: contact us.
Nearby
Live postings like this one
Same employer first, then the same role elsewhere.
- 1h ago
- 8h ago
- 8h ago
- 8h ago
- 8h ago
VP, Global Security, Networking and Communications
Remote, Florida, United States
Remote8h ago- 8h ago
- 8h ago
One job at a time
One posting. One CV. $25.
Pick the job you actually want and we write for it.