Job Search and Career Advice Platform

Enable job alerts via email!

Security Automation Engineer

Insight Global

Toronto

Hybrid

CAD 90,000 - 120,000

Full time

15 days ago

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A leading staffing firm is seeking a Security Automation Engineer for a hybrid role in Toronto on a 6-month contract. The successful candidate will join the automation engineering team to design and implement automation processes while collaborating with core product teams. This role requires strong experience in automation tools, including Splunk SOAR and Python, alongside a background in agile environments. Candidates must demonstrate effective communication skills and a proven ability to enhance security measures through automation.

Qualifications

  • 5-7 years experience in automation engineering.
  • Strong experience with Splunk SOAR, Python, and Power Automate.
  • Experience integrating third-party systems and APIs.
  • Hands-on experience with GitHub Actions or Azure DevOps.
  • Familiarity with CyberArk PAM or equivalent security tools.

Responsibilities

  • Design and deliver automation initiatives.
  • Integrate automation processes with new products.
  • Monitor reliability of automation initiatives.
  • Create playbooks with pipelines and tests.

Skills

Automation Engineering
Splunk SOAR (Phantom)
Python
Power Automate
API Integration (REST/JSON)
GitHub Actions
Azure DevOps (ADO)
Communication Skills

Tools

Falcon Telemetry
CyberArk PAM
VS Code
Job description
Overview

Insight Global is looking for a Security Automation Engineer to join a large banking client on a 6 month contract hybrid 1 day/week in Toronto. The successful candidate will join the automation engineering team to design and ship automation while integrating automation processes with new products. The candidate should have experience with build/integrating automation with core platforms, engineering/reverse-engineering, and system design of automation platforms in agile environments.

We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com. To learn more about how we collect, keep, and process your private information, please review Insight Global\'s Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/.

Responsibilities
  • Design and ship automation initiatives; integrate automation processes with new products.
  • Build/integrate automation with core platforms; engage in engineering/reverse-engineering and system design of automation platforms in agile environments.
  • Instrument automations for reliability—monitor success rates, latency, error taxonomies, and run health; use signals to improve.
  • Treat detections/playbooks as code with pipelines, linting, tests, and approvals (Within Splunk SOAR).
Qualifications
  • 5-7 years experience working in automation engineering for medium-large sized organizations.
  • Strong automation experience with Splunk SOAR (Phantom), Python, and Power Automate (or similar workflow tools).
  • Strong experience integrating API/third‑party systems (REST/JSON, OAuth/JWT), including ServiceNow (SNOW); able to reverse‑engineer integrations without official SDKs.
  • Ability to write and optimize SPL, Lucene or KQL and familiarity with CIM, correlation searches, and creating automation‑ready outputs.
  • Experience using Falcon telemetry and querying in LogScale to enrich investigations and drive automated decisions.
  • Hands‑on experience with GitHub Actions or Azure DevOps (ADO); Git branching strategies, PR reviews, test automation - any automation tool.
  • Experience designing and operating secure secret/credential patterns in automation (CyberArk PAM or equivalent).
  • Experience treating detections/playbooks as code with pipelines, linting, tests, and approvals; within Splunk SOAR.
  • Previous experience working in an agile environment, attending sprint ceremonies, backlog hygiene, and solid documentation in Confluence/SharePoint/OneDrive.
  • Experience with VS Code; experience with GitHub Copilot for accelerated, high‑quality development.
  • Familiarity with aligning playbooks and automations to ATT&CK techniques/sub‑techniques.
  • Strong communication skills and demonstrated ability to prototype, evaluate options, and land creative solutions; prior experience in SOC, Incident Response (IR), or Red Team.
  • Experience with security tools (EDR, email, IAM, network security) and ticketing/case management patterns.
  • Experience establishing automation KPIs (coverage, time‑to‑complete, failure classes) and aligning them to MTTR and analyst throughput.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.