Gelato - Automation Engineer (Information Security)
Requirements
• 2–4 years of experience in software engineering, automation/DevOps, security engineering, or a related hands-on building role — including internships, apprenticeships, or equivalent practical exposure. • Strong scripting and programming skills, particularly in Python, with a track record of building integrations against APIs. • Experience building automation workflows — whether through SOAR platforms, CI/CD, or workflow orchestration tools (e.g. n8n, Tines, Zapier). • AI-native working style — practical, hands-on experience building with LLMs (APIs, prompt engineering, and ideally agents), not just using them as a chat assistant. • Comfortable working in cloud environments, particularly AWS — you understand IAM, logging, and serverless or container-based deployment. • A solid grasp of core security concepts (the incident response lifecycle, common vulnerability classes, attack frameworks such as MITRE ATT&CK), or the curiosity and drive to ramp up quickly. • Clear written and verbal communication in English; able to document systems and decisions for both technical and non-technical audiences. • Experience with SOAR or workflow-automation platforms (Tines, Torq, n8n, or similar). • Hands-on experience deploying AI agents or LLM-powered applications in production. • Familiarity with security tooling such as SIEM, EDR, WAF, or vulnerability scanners (Semgrep, SonarQube, Coana, etc.). • Experience with infrastructure-as-code (Terraform), containers, and CI/CD pipelines. • Familiarity with compliance frameworks such as ISO 27001, SOC 2, or NIST CSF. • Relevant certifications — cloud (AWS), security (CompTIA Security+, CySA+), or equivalent; though we consider demonstrated experience over credentials. • Degree in Computer Science, Information Security, or a related field — though we value demonstrated experience over credentials. • WHAT IT'S LIKE TO WORK AT GELATO • We are a customer-obsessed team with the ambition to change the world by connecting technology to the printing industry and making it much more sustainable. Everyone who joins our team must feel genuinely intrigued and motivated by our mission. We expect a lot. We are a driven team with big goals, so we seek individuals who are genuinely passionate about their work and possess an entrepreneurial spirit. Our culture is unique and we live by our values, so it's worth learning more about our culture and how we work before presenting your application. • At Gelato, we pride ourselves on our global presence with 14 offices worldwide, fostering a dynamic and diverse work environment. Rooted in a culture that values collaboration, creativity, and camaraderie, we actively cultivate a company culture that thrives on shared experiences. We encourage team members to embrace this culture by working from our inspiring office spaces at least three days a week, allowing for meaningful connections and collective growth. • Lastly, we ask that you please upload your CV in English, regardless of which country you are applying from.
Responsibilities
• SECURITY AUTOMATION ENGINEERING • Design, build, and maintain automation that removes manual toil across detection, triage, response, and reporting. • Integrate security tooling (SIEM, EDR, IAM, cloud, ticketing) into seamless, reliable automated workflows. • Build and maintain SOAR-style playbooks and pipelines for enrichment, containment, and response. • Own the deployment, monitoring, and reliability of the automation you ship. • AI AND AGENT DEVELOPMENT • Build LLM-powered tools and autonomous agents for alert triage, threat summarisation, runbook generation, and incident documentation. • Develop and refine prompts, guardrails, and evaluations to make AI workflows safe and dependable in production. • Prototype, test, and ship AI-assisted approaches to threat hunting, log analysis, and security operations. • TOOLING AND INTEGRATIONS • Develop integrations and APIs that connect security tools to internal systems and data sources. • Write clean, maintainable, well-tested code. • Maintain and improve internal libraries, documentation, and shared automation infrastructure. • COLLABORATION AND ENABLEMENT • Partner with the security team to identify the highest-leverage automation opportunities. • Document workflows clearly so the team can operate, trust, and extend what you build. • Automate evidence collection and control testing for compliance frameworks including ISO 27001, SOC 2, and NIST CSF.
Apply in one click
Upload My Resume
Drop here or click to browse · Tap to choose · PDF, DOCX, DOC, RTF, TXT