
Lead Security Automation Engineer, AI & Cybersecurity
- |6 years of exp
- |Full Time
In office
Not Available
About the job
Location: Miramar, Florida — Onsite
Employment Type: Full-Time
Work Authorization: This position is not eligible for work authorization sponsorship.
Journey with us!
Combine your career goals and sense of adventure by joining the Royal Caribbean Group team. We offer a competitive compensation and benefits package, career development opportunities, and the chance to be part of a company that helps create unforgettable vacation experiences around the world.
Royal Caribbean Group is the vacation-industry leader behind global brands including Royal Caribbean International, Celebrity Cruises, and Silversea Cruises. With innovative fleets, private destinations, and talented teams, we are focused on turning the vacation of a lifetime into a lifetime of vacations for our guests.
The Global Information Security Team has an exciting opportunity for a Lead Security Automation Engineer, AI & Cybersecurity. This role reports to the Senior Manager, Cybersecurity Counter Threat Management and is based onsite in Miramar, Florida.
Position Summary
We are looking for a hands-on technical leader who can help us use AI, automation, and security engineering to improve how we detect, investigate, and respond to cyber threats.
In this role, you will design and build automation solutions that support our cybersecurity teams, reduce manual work, and help improve response times across the enterprise. You will work closely with SOC analysts, incident responders, security engineers, and technology teams to create AI-driven workflows, integrate security tools, and strengthen our overall security operations.
This is a great opportunity for someone who enjoys working with AI/LLMs, Python or Node.js, security platforms, APIs, and automation in a fast-moving enterprise environment.
What You’ll Do
- Design, build, and deploy AI-powered automation workflows for cybersecurity use cases such as threat detection, incident response, vulnerability triage, and compliance monitoring.
- Develop and maintain production-ready AI agents and automation pipelines that connect with key security tools such as SIEM, EDR, SOAR, firewalls, identity platforms, and ticketing systems.
- Build LLM-based solutions that help with log analysis, alert enrichment, and natural language search or querying of security data.
- Lead integrations with platforms such as CrowdStrike, Splunk, ServiceNow, cloud security tools, and other enterprise security systems.
- Partner with SOC analysts and incident response teams to identify manual or repetitive work that can be automated.
- Measure the impact of automation efforts, including improvements to response time, efficiency, and overall security operations.
- Help define secure standards for AI and automation, including least privilege access, secrets management, audit logging, and protection against prompt injection and data leakage.
- Research and evaluate new AI models, agentic frameworks, and cybersecurity tools to help shape the team’s future roadmap.
- Mentor junior engineers and provide technical guidance to security and engineering teams.
What We’re Looking For
- 6+ years of experience in software engineering, cybersecurity engineering, automation engineering, or a related technical field.
- 2+ years of hands-on experience building or supporting AI/LLM solutions in a production environment.
- Strong experience with Python and/or Node.js for building integrations, automation, APIs, and scalable workflows.
- Experience working with LLM APIs and AI platforms such as OpenAI, Anthropic, AWS Bedrock, or similar technologies.
- Familiarity with agentic frameworks such as LangChain, CrewAI, Mastra, or similar tools.
- Hands-on experience integrating with cybersecurity platforms such as SIEM, SOAR, EDR, firewalls, identity tools, ticketing systems, and cloud security platforms.
- Strong understanding of REST APIs, event-driven architecture, messaging queues, and automation patterns.
- Knowledge of cybersecurity concepts such as MITRE ATT&CK, threat intelligence, IAM, vulnerability management, and incident response.
- Experience helping secure AI/LLM systems against risks such as prompt injection, model abuse, unauthorized access, and data leakage.
- Familiarity with query languages such as Splunk SPL, KQL, or similar tools used for security data analysis.
- Experience in one or more of the following areas is helpful: SOC operations, MSSP environments, detection engineering, threat hunting, red team activities, or enterprise security operations.
- Security certifications such as CySA+, CISSP, AWS Security Specialty, OSCP, or similar are a plus.
Agency and Third-Party Submissions: Please note this is a direct search by the Company, and applications through agencies and other third parties will not be accepted, nor will fees be paid for unsolicited resumes. Any unsolicited resumes will be considered the Company's property.
We know there's a lot to consider. As you go through the application process, our recruiters will be glad to provide guidance, and more relevant details to answer any additional questions. Thank you again for your interest in Royal Caribbean Group. We'll hope to see you onboard soon!
It is the policy of the Company to ensure equal employment and promotion opportunity to qualified candidates without discrimination or harassment on the basis of race, color, religion, sex, age, national origin, disability, sexual orientation, sexuality, gender identity or expression, marital status, or any other characteristic protected by law. Royal Caribbean Group and each of its subsidiaries prohibit and will not tolerate discrimination or harassment.
About the company
Similar Jobs




