14 sep
|
Novanta
|
Barcelona
Overview
In this role you design and implement automated security workflows and AI-driven tooling to strengthen Novanta's integral security operations. You will build SOAR playbooks, detection pipelines, and AI-assisted investigations, partnering with Security and R&D; to embed security into development. You’ll scale incident response, vulnerability management, and threat detection while ensuring compliance and data protection. This is a hands-on, cross-functional role that fuses security, automation, and software development at scale.
Responsabilidades
- Design, develop, and maintain security automation workflows and SOAR playbooks for alert triage, containment, and remediation
- Build detection-as-code pipelines for SIEM and EDR platforms
- Develop AI-assisted investigation tools that correlate signals across security platforms
- Automate vulnerability management workflows including scan orchestration and remediation tracking
- Serve as security SME on R&D; CI/CD pipelines and embed security into development lifecycle
- Identify opportunities to shift security left in CI/CD pipelines
- Build API-level integrations between security tools and platforms
- Collaborate with IT, R&D;, Cloud, and DevOps to align security automation with broader strategies
- Provide security automation expertise to management and leadership
- Create and improve security automation documentation, runbooks, and procedures
- Evaluate emerging AI and automation technologies and lead PoC initiatives
- Support incident response and threat hunting activities as needed
Requisitos principales
- 3–5 years of experience in security operations, security engineering, or DevSecOps
- Strong proficiency in Python; experience with PowerShell, Bash, or other scripting languages
- Hands-on experience with CI/CD platforms (GitHub Actions, Azure DevOps Pipelines, Jenkins) and Git
- Experience with SIEM, EDR, and SOAR platforms; familiarity with DLP and IAM tools a plus
- Cloud platforms knowledge (AWS, Azure, or GCP) and infrastructure-as-code concepts
- Experience building and consuming RESTful APIs for tool integration
- Familiarity with AI/ML concepts in cybersecurity; AI frameworks a plus
- Knowledge of security frameworks (NIST, MITRE ATT&CK;, CIS) and GDPR implications
- Relevant certifications such as GIAC, PCSAE, AWS Security Specialty (preferred)
- Dealing with ambiguity
- Analytical mindset
- Collaboration & communication across global teams
- Python
- PowerShell or Bash
- GitHub Actions, Azure DevOps Pipelines, Jenkins
📌 Security Automation & AI Engineer - barcelona
🏢 Novanta
📍 Barcelona