CallTek logo

Automation Engineer

Posted 27 days ago

RemotePhilippines

The Automation Engineer supports the Team by designing and developing automation that improves vulnerability management, reporting, evidence generation, and recurring technical validations. This role is deliverable-based and focused on creating reusable scripts, dashboards, integrations, and documentation that remain useful. Will work under the supervision of the Team Manager and coordinate with the Jr. Purple Teamer for operational requirements.

Key Responsibilities:

Qualys API Reporting Automation:

  • Develop scripts to extract vulnerability data from the Qualys API.
  • Automate exports of Critical and High vulnerabilities by BPO, asset group, severity, age, owner, status, and remediation SLA.
  • Generate recurring reports for vulnerability aging, overdue findings, remediation progress, reopening rate, and scan coverage.
  • Support automated identification of unauthenticated scans, stale assets, missing agents, and inactive hosts.

SLA Aging and Remediation Tracking:

  • Build automation to calculate SLA aging based on severity, detection date, remediation due date, and current status.
  • Generate exception lists for overdue Critical and High vulnerabilities.
  • Create outputs that can be used by IT, GRC, and the Team for weekly follow-up.
  • Support integration with ticketing workflows where technically feasible and approved.

Agent Coverage and Asset Health Automation:

  • Automate reporting of Qualys agent coverage, inactive agents, duplicate assets, and assets missing authenticated scan data.
  • Compare Qualys data with approved sources such as CMDB, EDR, Endpoint Management, or cloud inventory tools where access is granted.
  • Produce asset coverage summaries by BPO, environment, operating system, asset type, and business owner where data exists.

Vulnerability Management Dashboard Prototype:

  • Build a dashboard prototype showing vulnerability exposure, Critical/High trends, MTTR, SLA aging, top vulnerable assets, top recurring vulnerabilities, and BPO-level risk indicators.
  • Include views for executive summary, operational remediation, compliance evidence, and technical drill-down.
  • Design the dashboard to support future integration with Qualys, Wiz, ticketing platforms, CMDB, EDR, and other approved security data sources.
  • Provide documentation so the internal team can maintain and expand the dashboard.

Wiz Integration Research and Tooling Improvement:

  • Explore integration options between Qualys and Wiz for cloud exposure, vulnerability correlation, asset context, internet exposure, toxic combinations, and prioritization.
  • Identify how Wiz data could improve vulnerability management prioritization and asset risk scoring.
  • Evaluate other tools or data sources that may improve the current vulnerability management process, such as CMDB, EDR, SIEM, EndpointCentral, CrowdStrike, Wazuh, Jira, ServiceNow, or Power BI.
  • Provide a short technical recommendation document with feasible integrations, required access, expected value, limitations, and implementation effort.

URL Validation Automation:

  • Develop a controlled URL validation script or workflow to support technical reviews of client-requested URLs.
  • Automate checks for DNS resolution, TLS certificate validity, certificate expiration, HTTP security headers, redirects, reputation indicators where approved, exposed login pages, and screenshot capture where appropriate.
  • Produce standardized output that can be reviewed by the Team Manager before approval or rejection.
  • Ensure the script does not perform intrusive scanning unless explicitly approved.

Gold Image Checklist Automation:

  • Develop automation to support Gold Image validation against approved security baselines.
  • Check for required security agents, hardening indicators, local configuration, GPO-related controls, endpoint protection presence, logging configuration, and approved software lists where technically feasible.
  • Produce a pass/fail checklist format with evidence and exceptions.
  • Ensure the automation supports review but does not replace Manager approval.

Evidence Package Automation:

  • Create scripts or templates to generate structured evidence folders for vulnerability scans, retests, segmentation tests, URL validations, Gold Image reviews, and audit requests.
  • Standardize filenames, timestamps, metadata, screenshots, exports, and summary files.
  • Reduce manual evidence preparation for PCI, ISO 27001, SOC2, and HIPAA reviews.

Secure Development and Handover:

  • Store all code in the approved corporate repository.
  • Document setup instructions, dependencies, API permissions, usage examples, and maintenance procedures.
  • Avoid hardcoded credentials, secrets, API tokens, or sensitive data in scripts.
  • Provide knowledge transfer sessions to the Team Manager and Jr. Analyst.

Requirements

  • Bachelor’s degree in Computer Science, Information Technology, Engineering, or related field.
  • Strong Python scripting experience.
  • Experience with REST APIs, JSON, CSV, authentication tokens, pagination, error handling, and scheduled jobs.
  • Experience with Qualys API or comparable vulnerability management APIs.
  • Working knowledge of vulnerability management metrics, CVSS, asset inventory, and remediation workflows.
  • Experience building dashboards using Power BI, Grafana, Looker Studio, Excel/Power Query, or similar tools.
  • Familiarity with Wiz, cloud security posture management, exposure management, or vulnerability correlation is highly preferred.
  • Knowledge of Windows, Linux, networking, TLS, DNS, HTTP headers, and endpoint security controls.
  • Familiarity with secure coding, secrets handling, Git, and documentation.
Job details
Workplace
Remote
Location
Philippines

For more than two decades, CallTek has been a global leader in delivering secure, compliant, and reliable white-label technical support services. As a Managed Service Provider (MSP), we offer 24/7 engineering, software development, field service, and customer support to technology operators and service providers worldwide. Our team of over 10,000 skilled professionals manages more than 20,000 buildings and one million enterprise network appliances globally. We are dedicated to security and privacy, adhering to the highest industry standards, including PCI-DSS, ISO 27001, SOC 2, and GDPR. This commitment ensures that our partners' data is protected, and their operations are compliant with global regulations. CallTek combine our expertise as an MSP with innovative technology. We’ve developed proprietary platforms such as Odyssey CX , powered by artificial intelligence (AI) and natural language processing (NLP), to provide advanced solutions that integrate seamlessly with your existing systems to provide you deep customer insights. Our dedication to excellence extends to our 24/7 Live Customer Support and Field Service teams, who are available across 35,000 zip codes, including certified low-voltage Ekahau technicians ready to resolve break-fix jobs and perform Wireless Site Surveys. Headquartered in Irvine, CA, CallTek has a global footprint with offices in nine countries, including the Dominican Republic, Colombia, Egypt, Guatemala, Honduras, India, Mexico, the Philippines, and the United States. Recognized for our unwavering commitment to security, privacy, and innovation, CallTek was named one of the Best Employers by The Philippine Daily Inquirer in 2023 and 2004. For more information on how CallTek can securely support your business with cutting-edge solutions, visit calltekinc.com.

Employees
518
Industry
IT Services and IT Consulting
Headquarters
Irvine, California
Founded
2004
Company location
4605 BARRANCA PKWY STE 101G, Irvine, California 92604, US

Key team members

Ahmed El Sayed

Ahmed El Sayed

Shirlene Shelley Zamora Tabernero

Shirlene Shelley Zamora Tabernero

Kevin Spruill CECP

Kevin Spruill CECP

Joshua Bergen CHAE, CHTP

Joshua Bergen CHAE, CHTP

Apply smarter with Jobr

Jobr aggregates jobs directly from company career portals — no middlemen. Our team applies on your behalf with AI-tailored resumes, reviewed by a human before submission.

Direct from company career pages
AI-personalised cover letters
Human review before every submit
Application tracking & follow-ups