Company

Torch Professional ServicesSee more

addressAddressSydney, NSW
CategoryHealthcare

Job description

We are looking for a result oriented, energetic Cyber Security Engineer – DevSecOps, who will be responsible for architecting and implementing DevSecOps pipelines, including legacy software product migration strategies. The position provides secure development engineering advice, guidance, and assurance for projects both on prem and cloud.

Key Responsibilities

  • Designing and implementing robust security architectures for digital systems, ensuring the confidentiality, integrity, and availability of data.
  • Identifying and mitigating potential security threats through in-depth analysis of intrusion attempts, proactive threat research, and the implementation of countermeasures.
  • Developing and refining incident response processes to ensure swift and effective action in the event of security incidents, minimising impact, and downtime.
  • Scrutinising code bases to eliminate common coding vulnerabilities, ensuring secure application development and deployment.
  • Deploying and managing advanced security tools to systematically identify and resolve security issues across a spectrum of systems and applications.
  • Ensuring adherence to industry-specific compliance standards and regulations in all security initiatives.
To be successful in the role, a Cyber Security Engineer – DevSecOps must have:
  • Minimum 3 years of hands-on experience in Cyber Security, showcasing a deep understanding of Security Engineering principles, cyber threats, and associated risks.
  • Proficient knowledge of relevant information security frameworks and standards, including ACSC ISM, ISO27001/2, NIST 800-53, NIST CSF, and other NIST best practices within the sector.
  • Demonstrated expertise in evaluating current and emerging technologies, assessing their relevance, potential value, and associated risks for the organisation.
  • Preferable experience in both Windows and Linux environments, providing a comprehensive skill set.
  • Exceptional presentation, analytical, and interpersonal skills with meticulous attention to detail
  • Proven ability to view existing processes and procedures as opportunities for enhancement, tuning, and improvement.
  • Highly desirable qualification: IRAP (Information Security Registered Assessor Program), emphasising a commitment to excellence in information security practices.
  • Hands-on experience with Cloud Technologies in various environments.
  • Proficient in Secure Development Lifecycle Principles, with demonstrated expertise in software security frameworks, requirements, and threat analysis, including OWASP tools and strategies.
  • Proven ability to drive a shift-left approach to security and work in DevSecOps environments.
  • Expertise in architecting and implementing DevSecOps pipelines, including legacy software product migration strategies.
  • Experienced in securing REST APIs, microservices, and cloud-native applications, with a solid understanding of Azure, OpenShift, or AWS—relevant cloud certifications are a plus.
  • Familiarity with container deployment, orchestration, and management technologies, including Docker and Kubernetes.
  • Knowledgeable about modern web and mobile application frameworks and their security requirements.
  • Proficient in Threat Modelling techniques and automated testing frameworks for API, UI, and Product Security.
  • Up-to-date knowledge and hands-on application of current and emerging software development practices.
  • Extensive experience in code review, recognising code smells and implementing DevSecOps tooling such as SAST, DAST, RASP, RAST (e.g., IBM AppScan, Veracode, Synk, Coverity, SonarQube, Twistlock).
  • Proficient in GitHub, GitHub actions, and GitHub workflow.
  • Strong scripting skills (Python, Bash, Golang, PowerShell) for building automation tools within pipelines.
  • Proficiency in one or more programming languages, with a preference for C#/.NET, JavaScript, React, PowerShell, Bash, and Python (3-5 years).
  
APPLY NOW! Attach your resume in WORD format and we will contact you should your skills be deemed suited.
Australian Permanent Residents or Citizens are eligible to apply.
  
  
Thank you, Torch Professional Services appreciates your interest.
 
Additional information
  • Are you excellent in architecting and implementing DevSecOps pipelines?
  • Established government organisation
  • Best in class remuneration
Refer code: 1997207. Torch Professional Services - The previous day - 2024-04-08 05:41

Torch Professional Services

Sydney, NSW
Jobs feed

Finance and Administrative Assistant

Drug Education Network

Hobart, TAS

Regional Sales Manager - Cleaning

Michael Page

Brisbane, QLD

Reservations Sales Agent

Marriott International

Surfers Paradise, QLD

Regional Manager (Sydney), RSL LifeCare

Orchard Talent Group

Sydney, NSW

AHPRA Registered Nurse I Aged Care

Elderly Care

Pimpama, QLD

Chiropractic Assistant

Dr Brett Crawford

East Launceston, TAS

NSW Regional Manager

Aje.

Sydney, NSW

State Manager | Retail Banking | Metropolitan Victoria

Bendigo & Adelaide Bank

Melbourne, VIC

Health Manager - Regional Assessment Service (RAS) - Ballina

Northern Nsw Local Health District

Ballina, NSW

Sales Guru - Sporting Apparel & Footwear

Frontline Retail

Fyshwick, ACT

Share jobs with friends

Related jobs

Cyber Security Engineer (Devsecops)

Senior Network Engineer - Cyber Security (GuardRails | CISCO)

Professional Recruitment Australia

Sydney, NSW

7 hours ago - seen

Cyber Security Engineer (Network)

Clicks It Recruitment

New South Wales

17 hours ago - seen

Cyber Security Engineer

Commonwealth Superannuation Corporation

Sydney, NSW

yesterday - seen

Cyber Security Engineer (Network)

Clicks It Recruitment

Sydney, NSW

yesterday - seen

Cyber Security Applications Engineer - Identity

Nine For Brands

North Sydney, NSW

yesterday - seen

Cyber Security Systems Engineer Lead, NSW, 1 Month

Infopeople

Sydney, NSW

yesterday - seen

Cyber Security Applications Engineer - Identity

Nine For Brands

North Sydney, NSW

3 days ago - seen

Cyber Security Engineer (Automation/SOAR)

Balance Recruitment

Permanent

Sydney, NSW

2 weeks ago - seen

Cyber Security Applications Engineer - Identity

Nine

Permanent

North Sydney, NSW

2 weeks ago - seen

DevOps Engineer, Cyber Security

Singtel

Permanent

Macquarie Park, NSW

2 weeks ago - seen

Cyber Security Infrastructure Engineer

Nine

Permanent

North Sydney, NSW

2 weeks ago - seen

Cyber Security Applications Engineer - Identity

Nine

North Sydney, NSW

2 weeks ago - seen

Cyber Security Infrastructure Engineer

Nine

North Sydney, NSW

2 weeks ago - seen

Cyber Security Support Engineer - DLP

Nine

North Sydney, NSW

2 weeks ago - seen

Cyber Security Support Engineer

Nine

North Sydney, NSW

2 weeks ago - seen

Cyber Security Cloud Engineer

Nine For Brands

North Sydney, NSW

3 weeks ago - seen

Cyber Security Support Engineer

Nine For Brands

North Sydney, NSW

3 weeks ago - seen