Automation Engineer (AI-Driven Code Security)
Hi,Our client is looking for Automation Engineer (AI-Driven Code Security & Remediation Framework) in New York below is the detailed requirements.Job Title: Automation Engineer (AI-Driven Code Security & Remediation Framework)Location: New YorkJob Description:Bachelor's degree or Maters Degree in Computer science, or a related field, with 12+ Years of relevant experience.Programming: Strong Python (scanners, orchestration, API integration); basic Bash for CI/CD glueSource & Artifact Systems: GitHub (Actions, Advanced Security, PR workflows) and JFrog Artifactory/Xray; ability to scale across multi-repo, multi-language codebasesScanning Tools: Hands-on with Snyk, Xray, CodeQL / Dependabot, Trivy, or Semgrep; understanding of CVE/CVSS scoring and EOL-detection sources (e.g., endoflife.date)AI-Driven Remediation: Building agentic workflows (LLM-based) that interpret findings, generate patch PRs, run tests, and summarize fixes; prompt engineering for code-editing agentsCI/CD & Orchestration: Integrating scan-and-fix pipelines into GitHub Actions/Jenkins; Docker for isolated fix-testing; scheduling via Airflow/cronReporting: Structuring findings (JSON/SQL) into dashboards for tracking coverage and trendsSupporting SkillsSecurity fundamentals (injection, auth flaws, supply-chain/SBOM risk)Risk-based prioritization beyond raw CVSS scoresSemantic versioning awareness for safe auto-upgradesTesting discipline — regression validation before auto-mergeCommunication SkillsTranslating vulnerability data into concise, risk-framed leadership updates (exposure counts, MTTR, fix-rate trends)Writing clear status emails on scan coverage and outstanding critical itemsBuilding the business case (time saved, risk reduced) for non-technical stakeholdersContinuous LearningTracking emerging agentic/AI remediation tools and evaluating fit before firm-wide adoption