Security Automation Engineer
Confirmed live in the last 24 hours
WPP
Job Description
WPP is the trusted growth partner for the world’s leading brands.
We unite cutting-edge media intelligence and data solutions, world-class creativity, next-generation production, transformative enterprise solutions and expert strategic counsel in a single company – powered by exceptional talent and our agentic marketing platform, WPP Open, to help our clients navigate change, capture opportunity and deliver transformational growth.
We have been building the world's most valuable brands for 50 years and have global reach across 100+ markets, with deep local expertise.
Our people are the key to our success. We're committed to fostering a culture of creativity, belonging and continuous learning, attracting and developing the brightest talent, and providing exciting career opportunities that help our people grow.
For more information, visit WPP.com.
Why we're hiring:
The Automation Engineer is responsible for designing, developing, and maintaining security automation solutions that enhance detection, response, workflow efficiency, and operational consistency across Operational Security. Working under the Automation Lead, this role builds high-quality SOAR playbooks, integrations, scripts, AI-assisted workflows, and orchestration pipelines to reduce manual workloads and support the Autonomic Security Operations (ASO) model.
What you'll be doing:
Core Responsibilities
Automation Engineering & Development
- Develop SOAR playbooks, workflows, and automations for alert triage, enrichment, containment, and remediation.
- Build scalable, reusable automation components, scripts, and integrations.
- Implement high-quality scripting using Python, PowerShell, and REST APIs.
- Ensure appropriate version control, QA, testing, and documentation of automation artefacts.
- Maintain reliability of automations by monitoring performance, exceptions, and system behaviour.
Platform Integration & Tooling Engineering
- Integrate SOAR with SIEM, EDR, TIP, cloud-native security tools, and case management systems.
- Engineer automation pipelines to support Microsoft and Google security ecosystems.
- Develop API integrations, webhooks, and event-driven automation triggers.
- Support data transformation, enrichment, and telemetry orchestration requirements.
AI / ML Automation Enablement
- Contribute to embedding AI/ML-driven enrichment and correlation logic into automated workflows.
- Support operationalisation of ML models for anomaly detection and decision support.
- Collaborate with data and detection teams to refine and enhance AI-enabled automation.
Workflow Engineering & Process Automation
- Translate SOPs, response runbooks, and detection workflows into automated processes.
- Identify automation opportunities to eliminate manual tasks across SecOps functions.
- Ensure automated processes remain consistent, auditable, and compliant with Operational Security standards.
Operational Collaboration & Support
- Work with Detection Engineering, Incident Response, Threat Hunting, and Threat Intelligence tea
Similar Jobs
Bill.com
Senior Database Reliability Engineer (Oracle & Automation Focus)
Twilio
Senior Engineer, Security Automation
Fastly
CSOC Engineer - Security Automation
NVIDIA
DevOps and Automation Engineer – ICPE
Salesforce
Network Automation Engineer
JetBrains