AI Automation Engineer

Hybrid in New York, NY, US • Posted 5 days ago • Updated 19 hours ago
Contract Corp To Corp
Contract Independent
Contract W2
12 Months
No Travel Required
Hybrid
Depends on Experience
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • Python
  • Artificial Intelligence
  • GitHub
  • API
  • Bash
  • Docker
  • Jenkins
  • JSON
  • SQL
  • Snyk
  • Xray
  • LLM
  • Trivy
  • Semgrep

Summary

Position: Automation Engineer — AI-Driven Code Security & Remediation Framework

Location: NYC, NY (3 days onsite is must in person is must)

Duration: 12 Months 

Role Summary

Builds and operates a system that scans GitHub/Artifactory repos for vulnerabilities and EOL libraries, then uses AI-driven automation to remediate findings — cutting manual triage and patch time firm-wide.

 

atleast three years of experience in the relevant AI driven automation for code scanning and remediation matching the above skills 

Core Technical Skills

  • Programming: Strong Python (scanners, orchestration, API integration); basic Bash for CI/CD glue
  • Source & Artifact Systems: GitHub (Actions, Advanced Security, PR workflows) and JFrog Artifactory/Xray; ability to scale across multi-repo, multi-language codebases
  • Scanning Tools: Hands-on with Snyk, Xray, CodeQL / Dependabot, Trivy, or Semgrep; understanding of CVE/CVSS scoring and EOL-detection sources (e.g., endoflife.date)
  • AI-Driven Remediation: Building agentic workflows (LLM-based) that interpret findings, generate patch PRs, run tests, and summarize fixes; prompt engineering for code-editing agents
  • CI/CD & Orchestration: Integrating scan-and-fix pipelines into GitHub Actions/Jenkins; Docker for isolated fix-testing; scheduling via Airflow/cron
  • Reporting: Structuring findings (JSON/SQL) into dashboards for tracking coverage and trends

Supporting Skills

  • Security fundamentals (injection, auth flaws, supply-chain/SBOM risk)
  • Risk-based prioritization beyond raw CVSS scores
  • Semantic versioning awareness for safe auto-upgrades
  • Testing discipline — regression validation before auto-merge

Communication Skills

  • Translating vulnerability data into concise, risk-framed leadership updates (exposure counts, MTTR, fix-rate trends)
  • Writing clear status emails on scan coverage and outstanding critical items
  • Building the business case (time saved, risk reduced) for non-technical stakeholders

Continuous Learning

  • Tracking emerging agentic/AI remediation tools and evaluating fit before firm-wide adoption

 

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 91173765
  • Position Id: 9055375
  • Posted 5 days ago
Contact the job poster
VS

Vimal Sangam

Recruiter @ J-RAM IT Consulting Inc.
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

New York, New York

Today

Contract

USD 70.00 - 78.06 per hour

New York, New York

11d ago

Easy Apply

Contract, Third Party

Depends on Experience

Jersey City, New Jersey

Today

Full-time

USD 175,750.00 - 260,000.00 per year

Jersey City, New Jersey

Today

Full-time

USD 156,750.00 - 215,000.00 per year

Search all similar jobs