Job Title: Secure Automation Engineer
Experience Level: Level 4 (advanced): 7-15 years
Location: Montreal (Day 1 onboarding onsite/in office presence 3x/week)
We are seeking an experienced Secure Automation Engineer with advanced scripting and secure-engineering skills to join the Productivity and Collaboration fleet within Workforce Technology.
We are modernizing and strengthening the security of the tooling and services used by employees across the firm. As an engineer in the Productivity and Collaboration fleet, the successful candidate will automate the analysis and improvement of code across our internal repositories, modernize legacy components and help raise our secure transport and engineering standards. The candidate will be involved in all phases of the software development lifecycle and will collaborate with other squad members to deliver measurable value to our stakeholders.
Build and run automation in Python to analyse, improve and harden code across internal repositories
Migrate and modernize legacy Perl code into supported, maintainable languages
Implement and enforce secure transport standards across services, including SSH certificates and TLS protocols
Apply AI coding assistants and automated refactoring tools to accelerate code improvement at scale
Enhance the team’s use of automation for security testing and deployment within CI/CD pipelines
Perform code reviews and contribute to secure-by-design standards, patterns and guidance
8+ years or more of software development or engineering experience
Advanced hands-on expertise in Python
Working knowledge of Perl for legacy code migration
Experience implementing secure transport standards
SSH certificates and TLS protocols
Hands on experience with AI coding assistants and automated refactoring tools
Hands on experience with Continuous Integration/Continuous Delivery
Hands on experience with Agile development (Scrum, Kanban)
Hands on experience with Jira or other issue-tracking systems
Experience with secrets management and certificate lifecycle automation
Familiarity with recognised application security standards (e.g. OWASP)
Static and dynamic application security testing (SAST/DAST) tools
Cross-platform scripting across Windows and Linux environments
Interested in this role?