System One logo

Automation Lead

System One
  • Dallas, TX
  • $110,000 Per Year
  • Quick Apply
12 days ago
System One

Job Description

Automation Lead – DevSecOps & Vulnerability Management
Job ID: J0526-2181
Location: Cleveland, OH / Pittsburgh, PA / Dallas, TX
Work Model: Onsite at Client Site
Employment Type: Permanent Full-Time
Position Overview
We are seeking an experienced Automation Lead to support the development of a dedicated vulnerability management and security automation practice within a large U.S. banking environment.
This is a highly hands-on role focused on automating vulnerability remediation processes, building scalable DevSecOps automation pipelines, implementing policy-as-code, integrating enterprise security platforms, and enabling AI-driven vulnerability triage and remediation.
The Automation Lead will work closely with Solution Architects, AI/ML Engineers, security teams, and execution teams to build and maintain automation frameworks across vulnerability intake, remediation, CI/CD security, reporting, and intelligent automation.


Key Skills

  • DevSecOps
  • Automation Engineering
  • Vulnerability Management
  • Python
  • Ansible
  • Terraform
  • Jenkins
  • GitHub Actions
  • CI/CD
  • ServiceNow REST API
  • RITM Automation
  • Docker
  • Container Security
  • OPA / Conftest
  • Policy-as-Code
  • SAST / DAST / SCA
  • Container Scanning
  • IaC Scanning
  • REST APIs
  • Archer
  • Qualys / Tenable
  • Tanium
  • Sysdig
  • SecurityCenter
  • Imperva
  • Jira
  • LangChain
  • Azure OpenAI
  • AI/ML Automation
  • Vulnerability Triage
  • Infrastructure Automation
Automation Pipeline Development & Maintenance
  • Build, maintain, and enhance runbooks for L1 and L2 vulnerability remediation.
  • Automate OS patching, base image updates, SSL/TLS configuration, infrastructure configuration changes, and middleware updates.
  • Develop Python-based automation for vulnerability intake, deduplication, normalization, and routing.
  • Integrate vulnerability data from Archer, Tanium, Sysdig, SecurityCenter, and Imperva.
  • Build and maintain integrations with Jenkins and GitHub Actions.
  • Develop automated pull-request generation for container base image and library version updates.
  • Build automated ServiceNow RITM generation, routing, and status tracking.
  • Monitor automation pipelines and implement proactive alerting and self-healing mechanisms.
Policy-as-Code & Security Automation
  • Implement policy-as-code using OPA / Conftest or equivalent technologies.
  • Build automated security policy enforcement and risk-based gating within CI/CD pipelines.
  • Develop security scanning integrations including:
    • SAST
    • DAST
    • SCA
    • Container scanning
    • IaC scanning
    • Secrets detection
  • Build automated vulnerability feedback and retesting mechanisms.
  • Implement compliance automation and audit-ready evidence generation.
AI & Intelligent Automation
  • Integrate vulnerability feeds with a LangChain-based AI triage and scoring engine.
  • Build vulnerability deduplication and normalization across multiple security platforms.
  • Develop automated vulnerability routing based on risk score, asset criticality, and remediation pathway.
  • Build AI co-pilot integrations for automated L3 simple-fix PR generation.
  • Develop Python-based AI agent pipelines using LangChain and Azure OpenAI.
  • Build feedback loops to improve AI triage accuracy using remediation closure data.
Reporting & Dashboard Development
  • Build and maintain an Archer-based SLA compliance dashboard.
  • Track vulnerability status, MTTR, backlog burn-down, severity, and remediation progress.
  • Develop automated weekly SLA burn-down reports and monthly executive summaries.
  • Build Jira-based tracking and workflow integrations.
  • Develop data pipelines integrating Archer, ServiceNow, Jira, and vulnerability scanning platforms.
  • Build operational dashboards for automation efficiency, runbook execution rates, PR throughput, and AI triage accuracy.
Continuous Improvement
  • Identify recurring manual processes suitable for automation.
  • Monitor and optimize runbook execution performance.
  • Improve automation throughput and reduce failure rates.
  • Provide technical recommendations for continuous improvement of the automation framework.
  • Document automation scripts, runbooks, and integration patterns in Confluence.
  • Support knowledge transfer and adoption of new automation capabilities.
Required Qualifications
  • 8+ years of hands-on experience in DevSecOps, automation engineering, or infrastructure automation.
  • Strong hands-on Python scripting experience.
  • Strong Ansible and Terraform experience.
  • Experience building automation scripts, API integrations, and data pipelines.
  • Hands-on Jenkins and GitHub Actions experience, including pipeline development, maintenance, and troubleshooting.
  • Production experience with at least two security scanning areas:
    • SAST
    • DAST
    • SCA
    • Container scanning
    • IaC scanning
  • Strong ServiceNow REST API integration experience.
  • Experience automating ITSM workflows, RITM creation, routing, and status tracking.
  • Strong Docker and container operations experience.
  • Experience with base image management, Dockerfile optimization, and container security scanning.
  • Hands-on OPA / Conftest or equivalent policy-as-code experience.
  • Experience with vulnerability management or GRC platforms such as Archer, Qualys, or Tenable.
  • Strong REST API development and integration experience.
  • Strong Jira administration and workflow automation experience.
  • Excellent verbal and written communication skills.
  • Strong technical documentation and analytical skills.
  • Strong attention to detail.
Preferred / Valuable Experience
  • Vulnerability remediation automation
  • AI-driven vulnerability triage
  • LangChain
  • Azure OpenAI
  • AI agents / intelligent automation
  • Security orchestration
  • AIOps
  • Banking or financial-services environments
  • Vulnerability SLA management
  • Compliance automation
  • Automated PR generation
  • Multi-platform vulnerability normalization and deduplication
#M1
#DI-CB2


#L1 - KB1

Ref: #404-IT Pittsburgh


Numbers & Facts

LocationDallas, TX
IndustryStaffing/Employment Agencies
Salary$110,000 Per Year
Company Size2,500 to 4,999 employees
Websitehttps://systemone.com

About Company

Every day, System One focuses on services and solutions that require a high degree of specialization, in-demand technical skills, and large-scale operational expertise. We are essential partners to those on the front lines of our nation’s most critical infrastructure, technology, and life sciences initiatives. 

Founded more than 40 years ago as a staffing partner to the engineering industry, today System One is a diversified organization operating in over 50 locations and putting more than 9,000 people to work in the United States, Canada, and the United Kingdom.

Skills

  • Analysis Skillsunmatched
  • Ansibleunmatched
  • Application Programming Interface (API)unmatched
  • Artificial Intelligence (AI)unmatched
  • Artificial Intelligence (AI) Agentsunmatched
  • Atlassian JIRAunmatched
  • Automationunmatched
  • Automation Engineeringunmatched
  • Banking Servicesunmatched
  • Communication Skillsunmatched
  • Computer Securityunmatched
  • Continuous Deployment/Deliveryunmatched
  • Continuous Improvementunmatched
  • Continuous Integrationunmatched
  • Data Managementunmatched
  • Detail Orientedunmatched
  • Dockerunmatched
  • Enterprise Protectionunmatched
  • Financial Servicesunmatched
  • GitHubunmatched
  • Home Automationunmatched
  • IT Service Management (ITSM)unmatched
  • Identify Issuesunmatched
  • Image Managementunmatched
  • Jenkinsunmatched
  • Knowledge Baseunmatched
  • Knowledge Transferunmatched
  • Microsoft Windows Azureunmatched
  • Middlewareunmatched
  • Multiplatform/Cross-Platformunmatched
  • Operating Systemsunmatched
  • Performance Tuning/Optimizationunmatched
  • Policy Developmentunmatched
  • Policy Implementationunmatched
  • Presentation/Verbal Skillsunmatched
  • Public/Media/Press/Analyst Relationsunmatched
  • Python Programming/Scripting Languageunmatched
  • REST (Representational State Transfer)unmatched
  • Reporting Dashboardsunmatched
  • Riskunmatched
  • SSL-TLS (Secure Socket Layer - Transport Layer Security)unmatched
  • Scalable System Developmentunmatched
  • Scripting (Scripting Languages)unmatched
  • Security Infrastructureunmatched
  • Security Policyunmatched
  • Service Level Agreement (SLA)unmatched
  • ServiceNowunmatched
  • Software Agentsunmatched
  • Software Patchesunmatched
  • Technical Writingunmatched
  • Vulnerability Scannersunmatched
  • Writing Skillsunmatched

Be found by employers

5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

Level up your application

Professional resume templates

Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

Free resume templates

Free resume builder

Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

Free resume builder