Przejdź do treści
co.brick Talents

AI Agent Developer

co.brick Talents Zobacz wszystkie oferty
Gliwice
17 godzin temu

W skrócie

AI Agent Developer (Cybersecurity/SOC) for an Energy Sector project. Design, build, and deploy AI agents on Azure AI Foundry, integrated with ADX/Sentinel. Automate SOC workflows, threat hunting, and investigations. Requires Python/C#/TypeScript, KQL, ADX, Sentinel, SOC knowledge, and B2+/C1 English. Remote.

Skrót przygotowany przez AI na podstawie treści ogłoszenia.

co.brick talents — powered by AI, powered by people. AI Agent Developer (Cybersecurity / SOC) – Azure AI Foundry

  • Location: Remote Industry: Energy Sector
  • Start Date: ASAP
  • About the RoleWe are looking for an experienced AI Agent Developer to join a high-impact Enterprise SOC (Security Operations Center) project for a global leader in the Energy sector.

In this role, you will design, build, and deploy intelligent AI agents leveraging the Microsoft Azure AI Foundry platform, integrated with Azure Data Explorer (ADX) and Microsoft Sentinel. Your work will directly transform security operations by automating complex investigations, accelerating threat hunting, reducing alert fatigue, and significantly lowering MTTD (Mean Time to Detect) and MTTR (Mean Time to Respond).

Key ResponsibilitiesAI Agent Development & Deployment: Design, build, and deploy custom AI agents that automate SOC workflows, enrich security events with context/threat intelligence, correlate cross-source data, and generate actionable recommendations for security analysts.

Continuous Enhancement: Iterate on and optimize existing AI agents to continuously improve functional accuracy, execution speed, reliability, and security metrics.

KQL & Data Integration: Enable AI agents to generate, optimize, and execute KQL (Kusto Query Language) queries across Microsoft Sentinel and ADX environments.

Multi-Platform Integration: Connect AI agents with the broader security ecosystem, including Microsoft Defender, Entra ID, and third-party security log sources.

Documentation & Governance: Produce complete technical and operational documentation for each agent (architecture, APIs, security considerations, known limitations, and operational runbooks).

Maintenance & L3 Support: Monitor agent performance via operational dashboards and provide timely bug fixes/workarounds during business hours (9:00–16:00) with defined SLAs (2-hour reaction time; 6-hour workaround window for critical incidents).

RequirementsAI & Agentic Frameworks: Hands-on experience developing AI agents and agentic workflows, specifically using Microsoft Azure AI Foundry (or Azure OpenAI Service).

Data & Security Tech Stack: Proficiency in KQL (Kusto Query Language) and practical experience working with Azure Data Explorer (ADX) and Microsoft Sentinel.

Security Operations Knowledge: Solid understanding of SOC processes, incident response lifecycles, security alert handling, and threat hunting concepts.

Microsoft Security Ecosystem: Familiarity with Microsoft Defender, Entra ID, and cloud security architectures.

Software Engineering: Strong proficiency in modern programming languages used for AI/cloud integrations (e.g., Python, C#, or TypeScript).

Languages: B2+/C1 level English (fluent written and spoken communication for technical documentation and collaboration).

Availability: Ready to start ASAP.

Nice to Have

Relevant Microsoft certifications (e.g., Microsoft Certified: Security Operations Analyst Associate (SC-200) or Azure AI Engineer Associate).

Prior experience in enterprise-grade SOC automation or large-scale energy/critical infrastructure environments.

Opublikowana 2026-09-21
Wygasa 2026-12-12
Źródło