Lead Security Analyst - SOAR
Open Text is a global leader in information management, where innovation, creativity, and collaboration are the key components of our corporate culture. As a member of our team, you will have the opportunity to partner with the most highly regarded companies in the world, tackle complex issues, and contribute to projects that shape the future of digital transformation.
AI-First. Future-Driven. Human-Centered.At Open Text, AI is at the heart of everything we do—powering innovation, transforming work, and empowering digital knowledge workers. We are hiring talent AI can't replace to help us shape the future of information management. Join us.
- Must be eligible to obtain and maintain a Government of Canada Secret security clearance. Eligibility requirements for the clearance are established by the Government of Canada and may include Canadian citizenship.
Global Information Security (GIS) leverages our people, processes and technology to develop new digitalization efforts that ensure our enterprise systems’ reliability, minimize staff interaction, and most importantly, protect our customers’ data. Companies are recognizing the need to digitize information and manage alternative work scenarios in today’s changing reality. With this in mind, we work tirelessly to drive improvements across our security services and accelerate our customers’ digital journey in a safe and trusted environment.
YourImpact
The Lead Security Analyst - SOAR is a senior technical lead responsible for designing, building, and supporting security orchestration, automated response, and AI-enabled security workflows. This role develops reliable automation using Python, Jinja, REST APIs, and security orchestration platforms to reduce manual incident response effort and improve security operations efficiency.
The role works closely with security analysts, incident responders, detection engineers, and security tool owners to identify automation opportunities, guide playbook design, support responsible AI-enabled automation, and ensure workflows are reliable, maintainable, and ready for production use.
WhatThe Role Offers As a Lead Security Analyst, you will:
- Design, develop, and maintain automated security playbooks for alert triage, enrichment, investigation, response, notification, and ticketing.
- Build custom integrations, parsers, and data transformation routines using Python and Jinja to enable scalable security automation.
- Integrate SIEM, EDR, threat intelligence, firewall, case management, and ticketing platforms through REST APIs and supported connectors.
- Monitor, troubleshoot, test, and optimize security automation workflows to improve reliability, performance, and alert handling efficiency.
- Collaborate with security analysts and operational teams to identify, streamline, and automate manual security processes.
- Debug code, enhance workflow execution, and maintain automation logic aligned with operational and incident response requirements.
- Support the responsible adoption of AI and agentic AI capabilities for triage, enrichment, recommendations, analyst productivity, and human-reviewed response actions
- Drive automation best practices through consistent playbook design, testing, documentation, runbooks, change management, and support for SOC, incident response, threat intelligence, detection engineering, and vulnerability management workflows.
- Strong hands-on experience developing security automation using Python, Jinja, REST APIs, and structured data formats.
- Experience integrating security orchestration, monitoring, endpoint security, network security, threat intelligence, ticketing, and case management platforms.
- Solid understanding of TCP/IP, DNS,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).