Security Automation Engineer (Python)

    United States
    Full-Time
    Mid (3-6 yrs)
    Engineering & Development
    Posted on July 21, 2026

    Marlabs, a global AI and Digital Solutions Consulting firm, delivers intelligent solutions across AI, data, analytics, and product engineering. Since 2000, we have partnered with some of the largest healthcare, life sciences, financial services, and government organizations worldwide. As we continue to expand our global footprint, we have an exciting opportunity for a highly skilled Security Automation Engineer (Python) to join our innovative and dynamic team.

    Security Automation Engineer (Python) | About You

    As a Security Automation Engineer (Python), you will design, build, and maintain production-grade automation solutions that enhance security operations and improve engineering efficiency across the organization. The ideal candidate is a hands-on software engineer with recent experience building and supporting cloud-native solutions on AWS, developing security tool integrations, authoring Infrastructure as Code, and implementing secure software development practices. You will work closely with Security, Engineering, and Operations teams to automate security workflows, integrate enterprise platforms, and build scalable solutions that improve visibility, compliance, and risk management.

    Security Automation Engineer (Python) | Day-to-Day

    • Design, develop, and maintain Python-based automation solutions, APIs, data pipelines, and workflow orchestration supporting security and cloud operations.
    • Build and maintain integrations with enterprise security platforms including SAST, DAST, CNAPP/CSPM, SIEM, secrets management, vulnerability management, and ticketing systems using REST APIs.
    • Develop and support cloud-native applications and automation workflows on AWS leveraging services such as Lambda, ECS/Fargate, S3, IAM, and API Gateway.
    • Author, maintain, and enhance reusable Terraform modules and Infrastructure as Code solutions across multiple environments to support scalable and secure cloud deployments.
    • Design, implement, and troubleshoot end-to-end CI/CD pipelines using GitHub Actions, incorporating automated testing, security validation, deployment automation, and operational monitoring.
    • Implement secure software development practices including code reviews, SAST, dependency scanning (SCA), secure container builds, input validation, secrets management, and security gates within CI/CD pipelines.
    • Automate security processes including vulnerability remediation workflows, compliance reporting, security findings management, and operational metrics to improve efficiency and reduce manual effort.
    • Collaborate with cross-functional stakeholders to translate security and business requirements into scalable, reliable, and maintainable software solutions.

    Security Automation Engineer (Python) | Skills & Experience

    • 5+ years of professional software development experience, including strong Python expertise building production-grade applications, automation frameworks, API integrations, and data processing solutions.
    • Recent hands-on AWS experience, with a proven track record building, deploying, and operating production workloads using Lambda, ECS/Fargate, S3, IAM, API Gateway, and related cloud services.
    • Proven experience authoring and maintaining Terraform modules, managing Terraform state across multiple environments, and implementing Infrastructure as Code for enterprise cloud platforms.
    • Hands-on experience designing, owning, and troubleshooting GitHub Actions CI/CD pipelines, including automated testing, deployment automation, security controls, and release management.
    • Experience integrating enterprise security tools through APIs, including SAST, DAST, CNAPP/CSPM, SIEM, secrets management, vulnerability management, GRC, ITSM, or related security platforms.
    • Strong understanding of secure software development practices, including vulnerability management, patch management, source code reviews, dependency scanning (SCA), static code analysis (SAST), secure containerization, pre-commit controls, input validation, secrets management, and least-privilege IAM principles.
    • Excellent communication and collaboration skills with the ability to work effectively across Security, Engineering, Cloud Operations, and business teams.

    Company:  Onebridge

    Provides IT consulting services specializing in data and digital transformation.
    51-200 employees
    Consulting & Strategy
    HQ: United States