SOAR Automation Engineer/GenAI Engineer
Kyndryl
**Who We Are**
At Kyndryl, we design, build, manage and modernize the mission-critical technology systems that the world depends on every day. So why work at Kyndryl? We are always moving forward – always pushing ourselves to go further in our efforts to build a more equitable, inclusive world for our employees, our customers and our communities.
**The Role**
**Key Responsibilities**
**1. SOAR Automation Development**
+ Design, build, and maintain **automation playbooks** in **Azure Logic Apps** for triage, enrichment, containment, and remediation workflows.
+ Integrate playbooks with **third-party tools** such as **ServiceNow, Jira, Microsoft Teams, Slack** , and **email gateways** for seamless orchestration.
+ Create **manual and automated triggers** for alerts and incidents originating from **Microsoft Sentinel** and related platforms.
+ Manage and refine **automation rules** to orchestrate **multi-step, conditional responses** across correlated analytics rules.
+ Develop **custom connectors and APIs** to extend automation capabilities across cloud and on-prem environments.
+ Maintain **source control, versioning, and documentation** for all playbooks and automation artifacts.
+ Collaborate with **SOC Analysts, Detection Engineers, and Platform Owners** to align automations with operational priorities and security SLAs.
**2. SOC Transformation & KPI Optimization**
+ Participate in **SOC transformation workshops** to identify automation opportunities, process bottlenecks, and SLA improvements.
+ Work with SOC leadership to **define and refine KPIs** related to Mean Time to Detect (MTTD), Mean Time to Respond (MTTR), ticket volume reduction, and manual intervention rates.
+ Contribute to **continuous improvement cycles** by analyzing automation performance, user adoption, and incident outcomes.
+ Support **audit and governance reviews** by maintaining compliance-ready automation documentation.
**3. Power BI Analytics & Visualization**
+ Design and maintain **real-time, interactive Power BI dashboards** providing **end-to-end visibility** into SOC operations, incident trends, and performance metrics.
+ Build **CXO-level and SOC lead dashboards** using **Power BI Service and Desktop** , integrating data from:
+ **Microsoft Sentinel (Incidents, Alerts)**
+ **Azure Monitor / Log Analytics**
+ **Kyndryl Bridge** , **ServiceNow** , and other telemetry sources.
+ Implement **predictive analytics** and **anomaly detection** layers using **GenAI and ML models** to forecast risk and detect outliers.
+ Automate **data refreshes, alerting, and scorecards** to support SLA and KPI tracking.
+ Collaborate with governance and operations teams to define **data models, DAX measures, and visual standards** for SOC reporting.
**4. GenAI Engineering & Intelligent Automation**
+ Design and embed **GenAI-powered workflows** into SOC processes for **incident summarization, automated RCA generation** , and **contextual threat response** .
+ Co-develop **AI-driven playbooks** and **prompt templates** that continuously learn and adapt based on incident data.
+ Use **Microsoft Copilot Studio** , **Copilot Agents** , and **Kyndryl Bridge AI services** to enable **autonomous detection and response orchestration** .
+ Develop **conversational interfaces** and **chatbot visual layers** within Power BI and SOC portals for interactive, AI-guided analytics.
+ Ensure AI systems follow **Responsible AI practices** , including explainability, fairness, and human-in-the-loop controls.
+ Work closely with **Data Scientists and AI Engineers** to align GenAI capabilities with SOC goals and regulatory standards.
**5. Collaboration & Governance**
+ Partner with **SOC Leads, Incident Managers, and Content Developers** to integrate automation with existing playbooks and IR procedures.
+ Collaborate with **Platform Engineers** to maintain high performance and availability of SOAR and analytics systems.
+ Contribute to **SOC governance meetings** , sharing insights on automation KPIs, GenAI outcomes, and CSI (Continual Service Improvement) recommendations.
+ Maintain alignment between **automation/AI initiatives** and **business objectives** , **cybersecurity frameworks** , and **compliance requirements** .
**Who You Are**
+ **6–10 years** of experience in **SOC Operations, Automation, or AI Engineering** , preferably in large-scale or MSSP environments.
+ Proven hands-on expertise in:
+ **Microsoft Sentinel SOAR** and **Azure Logic Apps**
+ **Power BI (Service, Desktop, DAX, and Power Query)**
+ **Azure Functions, REST APIs, and KQL (Kusto Query Language)**
+ **Microsoft Copilot** , **Azure OpenAI** , or **Kyndryl Bridge AI** for GenAI integrations
+ **ServiceNow / Jira / Teams / Slack APIs** for workflow automation
+ Experience with **incident lifecycle automation** , **SIEM-to-ITSM integration** , and **multi-step orchestration** .
+ Familiarity with **predictive analytics, anomaly detection, and GenAI prompt engineering** .
+ Strong understanding of **SOC metrics, SLAs, and KPI tracking** .
+ Knowledge of **data visualization, model monitoring, and AI ethics** principles.
**Being You**
Diversity is a whole lot more than what we look like or where we come from, it’s how we think and who we are. We welcome people of all cultures, backgrounds, and experiences. But we’re not doing it single-handily: Our Kyndryl Inclusion Networks are only one of many ways we create a workplace where all Kyndryls can find and provide support and advice. This dedication to welcoming everyone into our company means that Kyndryl gives you – and everyone next to you – the ability to bring your whole self to work, individually and collectively, and support the activation of our equitable culture. That’s the Kyndryl Way.
**What You Can Expect**
With state-of-the-art resources and Fortune 100 clients, every day is an opportunity to innovate, build new capabilities, new relationships, new processes, and new value. Kyndryl cares about your well-being and prides itself on offering benefits that give you choice, reflect the diversity of our employees and support you and your family through the moments that matter – wherever you are in your life journey. Our employee learning programs give you access to the best learning in the industry to receive certifications, including Microsoft, Google, Amazon, Skillsoft, and many more. Through our company-wide volunteering and giving platform, you can donate, start fundraisers, volunteer, and search over 2 million non-profit organizations. At Kyndryl, we invest heavily in you, we want you to succeed so that together, we will all succeed.
**Get Referred!**
If you know someone that works at Kyndryl, when asked ‘How Did You Hear About Us’ during the application process, select ‘Employee Referral’ and enter your contact's Kyndryl email address.
Kyndryl is committed to creating a diverse environment and is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, pregnancy, disability, age, veteran status, or other characteristics. Kyndryl is also committed to compliance with all fair employment practices regarding citizenship and immigration status.
Confirm your E-mail: Send Email
All Jobs from Kyndryl