Company

Torch Professional Services Pty LtdSee more

addressAddressSydney, NSW
type Form of workPermanent
CategoryHealthcare

Job description

Seeking for an experienced Cyber Security Engineer - DevSecOps, who will be responsible for architecting and implementing DevSecOps pipelines

We are looking for a result oriented, energetic Cyber Security Engineer – DevSecOps, who will be responsible for architecting and implementing DevSecOps pipelines, including legacy software product migration strategies. The position provides secure development engineering advice, guidance, and assurance for projects both on prem and cloud.
Key Responsibilities
  • Designing and implementing robust security architectures for digital systems, ensuring the confidentiality, integrity, and availability of data.
  • Identifying and mitigating potential security threats through in-depth analysis of intrusion attempts, proactive threat research, and the implementation of countermeasures.
  • Developing and refining incident response processes to ensure swift and effective action in the event of security incidents, minimising impact, and downtime.
  • Scrutinising code bases to eliminate common coding vulnerabilities, ensuring secure application development and deployment.
  • Deploying and managing advanced security tools to systematically identify and resolve security issues across a spectrum of systems and applications.
  • Ensuring adherence to industry-specific compliance standards and regulations in all security initiatives.
To be successful in the role, a Cyber Security Engineer – DevSecOps must have:
  • Minimum 3 years of hands-on experience in Cyber Security, showcasing a deep understanding of Security Engineering principles, cyber threats, and associated risks.
  • Proficient knowledge of relevant information security frameworks and standards, including ACSC ISM, ISO27001/2, NIST 800-53, NIST CSF, and other NIST best practices within the sector.
  • Demonstrated expertise in evaluating current and emerging technologies, assessing their relevance, potential value, and associated risks for the organisation.
  • Preferable experience in both Windows and Linux environments, providing a comprehensive skill set.
  • Exceptional presentation, analytical, and interpersonal skills with meticulous attention to detail
  • Proven ability to view existing processes and procedures as opportunities for enhancement, tuning, and improvement.
  • Highly desirable qualification: IRAP (Information Security Registered Assessor Program), emphasising a commitment to excellence in information security practices.
  • Hands-on experience with Cloud Technologies in various environments.
  • Proficient in Secure Development Lifecycle Principles, with demonstrated expertise in software security frameworks, requirements, and threat analysis, including OWASP tools and strategies.
  • Proven ability to drive a shift-left approach to security and work in DevSecOps environments.
  • Expertise in architecting and implementing DevSecOps pipelines, including legacy software product migration strategies.
  • Experienced in securing REST APIs, microservices, and cloud-native applications, with a solid understanding of Azure, OpenShift, or AWS—relevant cloud certifications are a plus.
  • Familiarity with container deployment, orchestration, and management technologies, including Docker and Kubernetes.
  • Knowledgeable about modern web and mobile application frameworks and their security requirements.
  • Proficient in Threat Modelling techniques and automated testing frameworks for API, UI, and Product Security.
  • Up-to-date knowledge and hands-on application of current and emerging software development practices.
  • Extensive experience in code review, recognising code smells and implementing DevSecOps tooling such as SAST, DAST, RASP, RAST (e.g., IBM AppScan, Veracode, Synk, Coverity, SonarQube, Twistlock).
  • Proficient in GitHub, GitHub actions, and GitHub workflow.
  • Strong scripting skills (Python, Bash, Golang, PowerShell) for building automation tools within pipelines.
  • Proficiency in one or more programming languages, with a preference for C#/.NET, JavaScript, React, PowerShell, Bash, and Python (3-5 years).

APPLY NOW! Attach your resume in WORD format and we will contact you should your skills be deemed suited.
Australian Permanent Residents or Citizens are eligible to apply.


Thank you, Torch Professional Services appreciates your interest.
Refer code: 1978451. Torch Professional Services Pty Ltd - The previous day - 2024-04-07 01:55

Torch Professional Services Pty Ltd

Sydney, NSW
Popular Cyber Security Engineer jobs in top cities

Share jobs with friends

Related jobs

Cyber Security Engineer (Devsecops)

MS Engineer (L4): Cyber Security

Ntt Ltd Group Services Uk Limited

Sydney, NSW

24 hours ago - seen

Junior Cyber Security Engineer

Bizcover

$65,000-80,000 per year

Sydney, NSW

3 days ago - seen

Cyber Security Engineer

Cerebral Palsy Alliance

Permanent

Allambie Heights, NSW

3 days ago - seen

Junior Cyber Security Engineer

Bizcover

Sydney, NSW

5 days ago - seen

Cyber Security Operations Engineer

Elcom

Sydney, NSW

6 days ago - seen

Cyber Security Engineer

Collabera

Sydney, NSW

6 days ago - seen

Senior Cyber Security Engineer (Network)

Peoplebank

Glebe, NSW

6 days ago - seen

Cyber security engineer

Collabera Digital

Sydney, NSW

6 days ago - seen

Junior Cyber Security Engineer

Bizcover

Sydney, NSW

6 days ago - seen

Cyber security engineer

Ncs

Sydney, NSW

6 days ago - seen

DevOps Engineer, Cyber Security

Singapore Telecommunications

Sydney, NSW

6 days ago - seen

Expression of Interest - Cyber Security Engineer

Ncs Australia Group

Sydney, NSW

2 weeks ago - seen

DevOps Engineer, Cyber Security

Optus

Macquarie Park, NSW

2 weeks ago - seen

Senior Cyber Security Engineer - $150k base + super + bonus

Allura Partners

Sydney, NSW

2 weeks ago - seen

Cyber Security Engineer

Ethos Beathchapman

Sydney, NSW

2 weeks ago - seen

Cyber Security Engineer - Splunk

Balance Recruitment

Permanent

Sydney, NSW

3 weeks ago - seen