×
Register Here to Apply for Jobs or Post Jobs. X

Security Platform Engineer III, Security Automation

Job in Toronto, Ontario, M5A, Canada
Listing for: Randstad Canada
Seasonal/Temporary position
Listed on 2026-07-20
Job specializations:
  • IT/Tech
    Cybersecurity, Systems Engineer, Cloud Computing: Infrastructure & Operations, Network Security
Job Description & How to Apply Below
Position: Security Platform Engineer III, Security Automation- 1643
Our client, is seeking a high-caliber, automation-focused Exception Template - Technical to join their Cyber Security Engineering team.

In this highly technical role, you will lead the design, development, and deployment of security orchestration and infrastructure automation across the enterprise. Your core focus will be dual-faceted: building sophisticated automated incident response playbooks in Python within Splunk SOAR, and engineering infrastructure automation playbooks in YAML via the Ansible Automation Platform. Beyond development, you will drive proof-of-concept evaluations, enforce security guardrails on system builds, and support the operational cutover and runbook documentation for incoming security technologies.

Duration: 6-Month Contract

Timeline:
July 1, 2026 – December 31, 2026

Work Location:

Hybrid (Based out of the corporate office at 1 York Street, Toronto, ON)

Advantages
Tier-1 Financial Technical Scale:
Own security orchestration, automation, and response (SOAR) playbooks protecting a massive, highly visible banking infrastructure.

Modern Orchestration Environment:
Leverage cutting-edge automation ecosystems including Ansible Automation Platform and Python-driven SOAR frameworks to replace legacy, manual operations.

Full-Lifecycle Engineering:
Lead projects completely from original stakeholder requirement gathering and proof-of-concept (PoC) testing to final RACI mapping and operational handover.

Broad Domain Exposure:
Gain deep operational visibility into advanced network security controls, endpoint detection and response (EDR), cloud native architectures, and certificate/cryptographic infrastructures.

Responsibilities
Security Orchestration & Automation Engineering
SOAR Playbook Development:
Design, develop, test, and maintain robust, automated incident response and triaging playbooks using Python inside Splunk SOAR.

Ansible Infrastructure Automation:
Build and configure automated workflows using YAML within the Ansible Automation Platform to programmatically provision user accounts, rotate security certificates, and manage dependencies during system deployments.

Environment Maintenance:
Troubleshoot, debug, and remediate errors, platform bugs, and code anomalies within active automation and orchestrator runtime environments.

Strategic Implementation & Operational Readiness
Stakeholder Facilitation:
Meet with cross-functional technical teams and business partners to refine operational requirements for net-new automation streams.

Proof-of-Concept (PoC) Delivery:
Perform technical proof-of-technology tasks, evaluating and embedding new security capabilities into existing software stacks.

Operational Cutover (BAU):
Smoothly transition projects from active implementation into steady-state operations. Author detailed Responsibility Assignment Matrices (RACI documents) and train downstream business-as-usual (BAU) operational squads.

CSIRT & Incident Documentation:
Draft, update, and govern cybersecurity playbooks, platform policies, and knowledge-base runbooks utilized by the Incident Management and CSIRT teams.

Production Support Stability:
Participate actively within a 24x7 on-call technical rotation, joining critical major incident management calls to provide engineering consultation and rapid troubleshooting.

Qualifications

Experience:

Minimum 5+ years of progressive professional experience operating within the Information Technology sector, with at least 2–3+ years dedicated specifically to IT Security Engineering.

Splunk SOAR Fluency: 2 to 3 years of hands-on experience configuring and administering Splunk SOAR platforms.

Automation Programming Stack: 2 to 3 years of referenceable experience developing code within Python and YAML structures.

Ansible Domain Knowledge:
Proven experience developing workflows and system configurations using the Ansible Automation Platform.

OS & Infrastructure Literacy:
Solid foundational experience working with both Windows and Linux operating systems, along with a firm grasp of networking technologies (Firewalls, WAFs, IPS/IDS) and core cloud services.

Education:

University degree or college diploma in Information Technology, Computer Science, Cyber Security, or…
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary