Security Platform Developer, Security Automation (Python, Splunk SOAR)

Sun LifeToronto, ON
CA$65,000 - CA$105,000Hybrid

About The Position

At Sun Life, we are driven by our Purpose: helping our Clients achieve lifetime financial security and live healthier lives. Our values shape how we work: caring, authentic, bold, inspiring, and impactful. When you join Sun Life, you'll work with passionate colleagues and empowering leaders who support your growth and celebrate your contributions, so you can make a meaningful difference in our Clients' lives. Discover how you can make a difference in the lives of individuals, families and communities around the world.

Requirements

  • Python development experience 2-3 years.
  • An Information Technology University degree/college diploma in related discipline(s) or equivalent work experience, and/or 5 years experience in Information Technology
  • 2-3+ years in security IT industry experience.

Nice To Haves

  • Professional designation in IT security (such as CISM, CISSP, CISA, GIAC, AWS or CompTIA) preferred.
  • Experience with SOAR tools (Splunk SOAR, Cortex XSOAR, etc)
  • Development experience 2-3 years (Python, YAML, etc)
  • Experience with Ansible development.
  • Experience planning, researching, and developing security policies, standards, and procedures.
  • Knowledge of one or more: end-point detection and response, intrusion detection, crypto technologies, certificate management, email security, web content filtering technologies, cloud security.
  • Knowledge of Security Information and Event Management platforms including log types.
  • Experience with Windows and Linux based operating systems.
  • Experience in deploying enterprise level technology via managed projects.
  • Knowledge of networking technologies, firewalls, web application firewalls and intrusion prevention systems.
  • Knowledge of cloud technologies.
  • Knowledge of disaster recovery, technologies, and methods.
  • Strong communicator spoken and written with the ability to communicate technical issues to peers and management.

Responsibilities

  • Develop playbooks (Python) in Splunk SOAR to triage, alert or otherwise automate manual processes.
  • Develop automated workflows (YAML) within the Ansible Automation Platform to manage accounts and certificates when new systems are built & deployed.
  • Triage and remediate errors within the automation environments.
  • Meet with stakeholders to help refine the requirements for new automation workflows.
  • Work on security initiatives and enterprise level projects performing proof of technology/concept asks, implementing new security controls and capabilities into existing technologies.
  • Be responsible to deploy, support and maintain new security technologies and platforms.
  • Be part of a 24x7 on-call support team and be required to join major incident management calls to provide support and consultation for technologies supported by the team.
  • Continuously improve upon operational and security platform process activities.
  • Smoothly transition and operationalize each project as the implementation phase ends, including developing roles & responsibilities (RACI) documents and educating the teams who will be performing BAU (Business as usual) the day-to-day work.
  • Document, update and maintain cyber security playbooks, policies and knowledge base articles used to support the established Incident Management and CSIRT processes.

Benefits

  • Wellness programs that support the three pillars of your health – mental, physical, and financial
  • The opportunity to move along a variety of career paths with amazing networking potential.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service