Cybersecurity Engineer

Posted 3 Days Ago
Be an Early Applicant
3 Locations
In-Office
118K-210K Annually
Entry level
Cloud • Fintech • HR Tech
The Role
Build cybersecurity automation applications, agent scaffolds, evaluation harnesses, schemas, data contracts, and internal UIs. Integrate security tools including SIEM, SOAR, vulnerability scanners, ticketing, and identity platforms. Translate ambiguous partner needs into reliable production systems with testing, observability, runbooks, tracing, and operational readiness. Apply Python, AI/LLM tooling, cloud platforms, and secure software engineering practices to improve detection, response, and threat-intelligence workflows.
Summary Generated by Built In

Your work days are brighter here.

We’re obsessed with making hard work pay off, for our people, our customers, and the world around us. As a Fortune 500 company and a leading AI platform for managing people, money, and agents, we’re shaping the future of work so teams can reach their potential and focus on what matters most. The minute you join, you’ll feel it. Not just in the products we build, but in how we show up for each other. Our culture is rooted in integrity, empathy, and shared enthusiasm. We’re in this together, tackling big challenges with bold ideas and genuine care. We look for curious minds and courageous collaborators who bring sun-drenched optimism and drive. Whether you're building smarter solutions, supporting customers, or creating a space where everyone belongs, you’ll do meaningful work with Workmates who’ve got your back. In return, we’ll give you the trust to take risks, the tools to grow, the skills to develop and the support of a company invested in you for the long haul. So, if you want to inspire a brighter work day for everyone, including yourself, you’ve found a match in Workday, and we hope to be a match for you too.

About the Team

Security Automation & Integration Engineering (SecAIE) transforms cybersecurity operations by architecting intelligent automation that turns manual processes into scalable, decision-accelerating systems. We're the engineering excellence partner within Cybersecurity and Trust - building the unified data foundation, intelligent automation, and decision support tools that enable security teams to make precise, data-driven decisions at machine speed.
We partner closely with Security Leadership, Operational Teams, Engineering Teams, and Governance/Risk Teams to deliver platforms that multiply their effectiveness. Our current charter contributes directly to Workday's Active Defense pivot - building the reliable data and platform substrate that lets security teams execute at machine speed and out-adapt AI-driven threats.
We're a small, high-impact team that values curiosity, pragmatism, and collaboration. We believe working solutions beat perfect designs, unified context beats massive datasets, and partner success is our success. Leveraging AI to augment how we do security engineering is an active opportunity for the team, and one we expect this role to help lean into.

About the Role

We're looking for a Cybersecurity Engineer to join SecAIE and take primary ownership of the agent, eval, and application work that Workday's Active Defense charter runs on. You'll spend most of your time engineering the layer partners actually use - eval harnesses, agent scaffolds, schemas, and application UIs on top of security data - so detection, response, and threat-intel teams can move from a vague ask to a working system. This role is ideal for someone who loves turning messy operational problems into clean, reusable software, who can walk into an ambiguous ask and come back with a proposal, and who treats AI tooling as a force multiplier rather than a novelty.
You will bring working knowledge of cybersecurity concepts and best practices from day one - enough to reason about identity and access, secrets handling, and the shape of common security data (vulnerabilities, incidents, identity, threat intel, detections). You will not be expected to be the deepest security specialist in the room; you will partner with domain experts across our security organization and build the agents, eval, and applications that make their work faster, more reliable, and more measurable.
Responsibilities:
- Own agent-adjacent application work: eval harnesses, agent scaffolds, and the UIs that security partners use to inspect and act on results
- Design, build, and evolve schemas and data contracts so agents and humans share the same objects rather than one-off payloads
- Take partner requests from vague to shipped: scope the problem, propose approaches, choose one, and drive it through design, review, rollout, and operational readiness (eval, tracing, runbooks)
- Build and maintain integrations across security tools and enterprise platforms - SOAR, SIEM, vulnerability scanners, ticketing - when the application or agent needs them
- Raise the team's AI-augmented engineering floor: shared skills, reusable scaffolds, a review discipline for AI-generated code, and eval that catches drift
- Iterate quickly: prototype, test, ship, learn, improve - and bring the team with you

About You

You're a curious engineer who owns problems rather than tickets. You're drawn to ambiguous, messy asks and you enjoy learning a domain deeply enough to propose the right solution, not just implement one that was handed to you. You bring high agency: you can move a partner's rough problem statement to a shipped, operational answer without waiting to be told each next step. You're comfortable turning a partner's Slack thread into a written proposal, and comfortable when the answer to "whose ticket is this?" is "nobody's yet - I'll draft one." You know when to escalate and when to just close the loop yourself. You default to reusable components over copy-paste, eval over vibes, and reliable defaults over one-off heroics. You use AI tooling deliberately and can articulate where it accelerates you and where it does not. You communicate clearly, ask good questions, and genuinely enjoy collaborating across teams to solve hard problems.

Basic Qualifications:

  • Strong Python skills with hands-on experience shipping production software (APIs, services, batch jobs, or application backends), including code review, testing, and operational follow-through
  • Hands-on experience building or evaluating LLM / agent systems (harnesses, eval, tracing, or agentic pipelines) or strong software-engineering fundamentals plus demonstrated AI-augmented development (Copilot, coding agents) with a point of view on where they help
  • Comfort designing or evolving schemas / data contracts and application UIs that sit on real data - not mock-only prototypes
  • Working knowledge of core cybersecurity practices - identity and access, secrets handling, secure-by-default configuration, and reasoning over common security data (vulnerabilities, incidents, identity, threat intel) - so you can build for security outcomes.
  • Comfortable owning what you ship (runbooks, basic observability, eval that still runs after you merge)

Other Qualifications:

  • Agent / eval - LangChain, LangGraph, LangSmith, or similar; LLM-as-judge or offline eval; tracing and observability for agent runs
  • Application / UI - frontend (React or similar) for internal tools; watchlist / dashboard / workflow UIs on security data
  • Security domain - hands-on with security tools or data for triage and investigation (SIEM, vulnerability scanners, identity systems, orchestration platforms such as Tines); curiosity about detection-engineering workflows
  • Data / schema - comfort reasoning about shared schemas or data contracts that span team boundaries, treating what / who / state as a first-class artifact
  • Cloud / platform familiarity - working AWS fluency (enough to ship and operate); IaC (Terraform/Docker) is useful but not the daily job
  • Comfort operating in ambiguous problem spaces where you help define the solution, not just implement it

Workday Pay Transparency Statement

The annualized base salary ranges for the primary location and any additional locations are listed below.  Workday pay ranges vary based on work location. As a part of the total compensation package, this role may be eligible for the Workday Bonus Plan or a role-specific commission/bonus, as well as annual refresh stock grants. Recruiters can share more detail during the hiring process. Each candidate’s compensation offer will be based on multiple factors including, but not limited to, geography, experience, skills, job duties, and business need, among other things. For more information regarding Workday’s comprehensive benefits, please click here.

Primary Location: USA.VA.Reston


 

Primary Location Base Pay Range: $130,200 USD - $195,400 USD


 

Additional US Location(s) Base Pay Range: $117,800 USD - $210,000 USD

Additional Considerations:

If performed in Colorado, the pay range for this job is $124,000 - $186,000 USD based on min and max pay range for that role if performed in CO.

The application deadline for this role is the same as the posting end date stated as below:
 

10/16/2026

Our Approach to Flexible Work
 

With Flex Work, we’re combining the best of both worlds: in-person time and remote. Our approach enables our teams to deepen connections, maintain a strong community, and do their best work. We know that flexibility can take shape in many ways, so rather than a number of required days in-office each week, we simply spend at least half (50%) of our time each quarter in the office or in the field with our customers, prospects, and partners (depending on role). This means you'll have the freedom to create a flexible schedule that caters to your business, team, and personal needs, while being intentional to make the most of time spent together. Those in our remote "home office" roles also have the opportunity to come together in our offices for important moments that matter.

Pursuant to applicable Fair Chance law, Workday will consider for employment qualified applicants with arrest and conviction records.

Workday is an Equal Opportunity Employer including individuals with disabilities and protected veterans.


Workday is committed to providing reasonable accommodations for qualified individuals during our application process, in order to perform one or more essential functions of their job, as well as regarding the use of AI tools for employment decision-making to any degree. Please see below for more details including how to request an accommodation as a qualified veteran, due to a disability or for religious reasons, or as otherwise provided under applicable law.


Workday prohibits taking adverse action against any candidate or employee for reporting a possible violation of this policy, requesting one or more work accommodations, exercising a privacy right, or cooperating in an investigation in accordance with applicable law. Any employee who retaliates against a candidate or employee for doing so may be subject to disciplinary action, up to and including termination of employment, to the fullest extent allowable under applicable law.


If you require a reasonable accommodation, you may email [email protected], as far in advance as possible.


Are you being referred to one of our roles? If so, ask your connection at Workday about our Employee Referral process!

At Workday, we value our candidates’ privacy and data security.  Workday will never ask candidates to apply to jobs through websites that are not Workday Careers. 

  

Please be aware of sites that may ask for you to input your data in connection with a job posting that appears to be from Workday but is not.

  

In addition, Workday will never ask candidates to pay a recruiting fee, or pay for consulting or coaching services, in order to apply for a job at Workday.

Skills Required

  • Strong Python skills and hands-on experience shipping production software, including APIs, services, batch jobs, or application backends
  • Experience with code review, testing, and operational follow-through
  • Hands-on experience building or evaluating LLM or agent systems, or strong software-engineering fundamentals with demonstrated AI-augmented development experience
  • Experience with schemas or data contracts and application UIs using real data
  • Working knowledge of cybersecurity practices including identity and access, secrets handling, secure-by-default configuration, and common security data
  • Ability to own shipped work, including runbooks, basic observability, and maintained evaluations
  • Experience with LangChain, LangGraph, LangSmith, LLM-as-judge, offline evaluation, tracing, or agent-run observability
  • Frontend experience with React or similar technologies for internal tools
  • Hands-on experience with SIEM, vulnerability scanners, identity systems, orchestration platforms, or security triage and investigation data
  • Curiosity about detection-engineering workflows
  • Experience with shared schemas or data contracts spanning team boundaries
  • Working AWS fluency
  • Experience with Terraform or Docker
  • Comfort operating in ambiguous problem spaces and helping define solutions

Workday Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Workday and has not been reviewed or approved by Workday.

  • Healthcare Strength Health coverage is positioned as broad and well-supported, with multiple medical carrier options, virtual care access, and some locations offering onsite clinic/pharmacy services. Mental health support is described as notably strong, including therapy sessions and confidential support availability for household members.
  • Parental & Family Support Family-related benefits are portrayed as extensive, including paid bonding and caregiver leave alongside fertility, adoption, and surrogacy reimbursement. Added support like parenting resources, milk-shipping/lactation assistance during travel, and backup child/elder care is explicitly outlined.
  • Strong & Reliable Incentives Equity participation and savings-oriented programs are presented as meaningful components of total rewards, including an ESPP discount with a lookback feature. Additional programs like a student-loan pathway to earn the 401(k) match are included as financial-support enhancements.

Workday Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Pleasanton, CA
14,894 Employees
Year Founded: 2005

What We Do

Workday is a leading provider of enterprise cloud applications for finance, HR, and planning. Founded in 2005, Workday delivers financial management, human capital management, and analytics applications designed for the world’s largest companies, educational institutions, and government agencies. Organizations ranging from medium-sized businesses to Fortune 50 enterprises have selected Workday.

Similar Jobs

In-Office
Alexandria, VA, USA
2062 Employees

CACI International Inc Logo CACI International Inc

Cybersecurity Engineer

Information Technology • Consulting • Defense
In-Office
Alexandria, VA, USA
17673 Employees
121K-266K Annually

General Dynamics Information Technology Logo General Dynamics Information Technology

Cybersecurity Engineer

Aerospace • Information Technology • Professional Services • Security • Software
In-Office
2 Locations
21625 Employees
170K-230K Annually

Trident Logo Trident

Cybersecurity Engineer

Aerospace • Defense
In-Office
Fairfax, VA, USA
258 Employees
70K-101K Annually

Similar Companies Hiring

Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Kepler  Thumbnail
Artificial Intelligence • Fintech • Software
New York, New York
9 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account