TransUnion
Lead Engineer, Cyber Defense Automation
Bengaluru
Get past the screening software and onto a recruiter's desk
hirly rewrites your resume for this job — matching the keywords and skills in the posting, moving your most relevant experience to the top, and writing a cover letter to fit. About 30 seconds.
- Keywords matched to this posting
- Fit score before you apply
- Cover letter included
Matched against 2.4M live jobs from 200,000+ employers in 200+ countries.
Tailor my resume for this job →Apply from your AI assistant
Connect hirly to Claude and ask it to apply to this job. hirly tailors your resume, fills the employer’s form and asks before sending. ChatGPT: manual setup today.
Some employer sites stop an application at a CAPTCHA or sign-in and hand it back with a link. Applying needs a paid plan. Works with any assistant that supports MCP.
hirly's read of this role
- Seniority
- Lead / management
- Country
- IN
- Work mode
- On-site / unstated
- First seen by hirly
- 21 Sept 2026
Derived automatically from the posting. Upload your resume above to see how the role scores against it.
the posting
TransUnion's Job Applicant Privacy Notice
Team Overview
- At TransUnion, we have a welcoming and energetic environment that encourages collaboration and
- innovation. We’re consistently exploring new technologies and tools. This environment gives our
- people the opportunity to hone current skills and build new capabilities, while discovering their
- genius.

This is a hybrid position and involves regular performance of job responsibilities virtually as well as in-person at an assigned TU office location for a minimum of two days a week.
- Role Overview And Core Responsibilities
What You'll Do:
- Design, build, and maintain security response automations on our agentic AI SOC platform, and help lead the migration of existing Splunk SOAR playbooks
- Build agentic workflows end to end: prompt and agent design, tool integration,
- guardrails, output evaluation, and human-in-the-loop review for AI-driven triage and response
- Develop and maintain integrations across the security stack (SIEM, EDR, threat intelligence, case management, ITSM) using REST APIs, webhooks, and event-driven patterns
- Build internal tools, services, and APIs, primarily in Python, that extend platform capability and reduce analyst toil
- Administer and improve the case management platform and its workflows
- Partner with detection engineering to operationalize new detections into automated response
- Contribute to shared engineering standards: Git-based workflows, code review, testing, and CI/CD
- Measure what you build: automation throughput, MTTR, false-positive burden, and analyst time saved
- Write clear documentation and runbooks; collaborate effectively across a global, distributed team
Required Knowledge And Experiences
What You'll Bring:
- 5+ years in security engineering, security automation, or software engineering with a strong security focus
- Strong Python in production settings, with solid command of REST
- APIs, JSON, webhooks, and authentication patterns (OAuth, API keys, secrets handling)
- Hands-on experience with SOAR or security automation platforms
- (Splunk SOAR, XSOAR, Tines, Torq, or similar)
- Experience building with modern LLM platforms (Anthropic Claude,
- OpenAI, Amazon Bedrock, or similar): using APIs, SDKs, and tool-use patterns to build tools, integrations, and agents, with practical prompt and agent design and evaluation of model output for reliability and safety
- Software engineering fundamentals: Git, code review, automated testing, CI/CD
- Working knowledge of SOC operations and incident response workflows; familiarity with MITRE ATT&CK
- Strong documentation habits and written communication; effective in a distributed global team
We'd Love to See:
- Experience with agentic AI security platforms, or building autonomous
- or semi-autonomous agent systems in production
- Fine-tuning, systematic evaluation (evals), or red-teaming of LLMs
- Comfort using AI-assisted development tools (Claude Code, Cursor,
- Copilot) as part of a disciplined engineering workflow
- Splunk Enterprise Security exposure (SPL, detection logic) or detec‐
- tion-as-code experience
- Case management or ITSM platform experience (ServiceNow or
- similar)
- Web service development (FastAPI, Flask, or similar); front-end expo‐
- sure a plus
- AWS, Docker/Kubernetes, Terraform; DevOps background
- Experience mentoring engineers or leading technical workstreams
TransUnion Overview:
At TransUnion, we encourage and are committed to creating a real, positive impact and shared sense of purpose within our Workforce for Good , which empowers our people to grow, innovate and contribute to a better future for our communities and customers. We strive to build an environment where our associates are in the driver’s seat of their professional development— while having access to help along the way. We recognize that success comes when our associates thrive both professionally and personally; that’s why we prioritize work/life flexibility and offer resources for our teams across the globe to collaborate and drive excellence.
Be a part of our Workforce for Good – you’ll work with great people, pioneering products and cutting-edge technology.
TransUnion Job Title
Lead Engineer, Cybersecurity
Similar jobs
- Lead Verification EngineerAMD · Hyderabad, Telangana, IndiaFirst seen today
- Senior Staff Interface IP Verification Engineer (Pre-Silicon- PCIe/CXL/DDR/Ethernet)Synopsys Inc · Bangalore, Karnataka, IndiaFirst seen today
- Deputy Manager – Manufacturing EngineerSchneider Electric · Vadodara, Gujarat, IndiaFirst seen today
- Sr.Manager-Equipment EngineeringSchneider Electric · Bangalore, Karnataka, IndiaFirst seen today
- Senior Electrical Commissioning Engineer - Data CentresFacility Performance Consulting Limited · Navi Mumbai, Maharashtra, IndiaFirst seen today
Browse similar roles
Want this one?
Upload your resume and hirly rewrites it for this job and writes the cover letter — in about thirty seconds, before you sign up.
Tailor my resume for this job