16 Aug
|
AXS Australia and New Zealand
|
Melbourne
16 Aug
AXS Australia and New Zealand
Melbourne
AXS Australia and New Zealand – Melbourne VIC
AXS connects fans with the artists and teams they love. As a global ticketing provider and part of AEG Worldwide, each year we sell millions of tickets to thousands of incredible events – from concerts and festivals to sports and theatre – at some of the most iconic venues in the world.
AXS powers the world’s most iconic venues, including The O2 in London, Crypto.com Arena in Los Angeles, and T-Mobile Arena in Las Vegas.
With a track record that covers more than 1,600 of the most recognisable brands across sport and entertainment, AXS delivers for some of the world’s biggest events, including the LA28 Olympic and Paralympic Games and Coachella Music and Arts Festival.
In Australia and New Zealand, this has included components of Ed Sheeran’s Loop Stadium tour, Robbie Williams’ upcoming BRITPOP tour, and the entire upcoming Foo Fighters’ Australia/New Zealand tour.
From August 2026, AXS ANZ will also power Melbourne’s epicentre of live events– Melbourne Park.
The AXS ANZ team has quickly set a new benchmark across the region, driven by a distinct approach that combines exceptional people, strong and trusted client partnerships, and seamless, reliable technology.
Headquartered in Melbourne, with offices in Brisbane, Sydney, Tokyo and Singapore, AXS brings cutting-edge technology and deep industry expertise to deliver exceptional experiences for fans and clients.
JOIN THE AXS TEAM
Our team in the Asia Pacific region is growing.
We're looking for a curious, solutions-focused Security Engineer to join our team in Melbourne and play a key role in protecting AXS technology, data and infrastructure across Australia, Singapore and Japan.
This is a hands‑on security engineering role focused on cloud and infrastructure security, vulnerability management, threat detection, incident response and the automation of security controls. You will work across AWS and on‑premises environments, partnering closely with technology, infrastructure and development teams to identify risk, strengthen controls and build security into the way we design, deploy and operate our platforms.
In this role, you will architect, implement and support security‑focused tools and controls; integrate security checks into CI/CD pipelines; use infrastructure‑as‑code to enforce secure cloud configurations; and develop scripts and serverless automation to identify and respond to anomalies, misconfigurations and threats.
You will also support security incident investigations, vulnerability remediation and compliance initiatives, including PCI and SOC activities, while ensuring logging, audit trails and monitoring data meet policy and audit requirements. Working across multiple markets, you will communicate clearly with stakeholders and help embed practical, scalable security practices throughout the business.
To be successful, you will bring 3–5 years of professional cybersecurity experience, strong hands‑on knowledge of cloud and infrastructure security, and experience with security technologies including SIEM, EDR, identity management, vulnerability management and application security tooling. You will be comfortable scripting and automating security processes and working collaboratively in a fast‑paced technology environment.
WHAT YOU’LL DO
Architect, design, implement,
support and evaluate security tools and controls to meet security and compliance requirements across the business.
Develop and maintain security policies and guidelines and support their implementation across systems , with a strong focus on AWS services including CloudTrail, EKS, AWS Inspector, EC2, EMR, S3, AWS Identity Center, RDS, Security Hub and GuardDuty.
Integrate security checks into CI/CD pipelines to support continuous compliance and shift‑left security practices .
Use Terraform, CloudFormation and related infrastructure‑as‑code tooling to build, deploy and enforce secure and compliant cloud infrastructure .
Apply security controls across networking, including VPCs, firewalls and transit gateways, as well as container security and encryption.
Build scripts in Python and Bash and serverless functions using AWS Lambda to alert on anomalies, misconfigurations and threats, including automated response where appropriate.
Support threat management and security incident handling , including coordinating investigations and reporting security incidents to management.
Partner with internal teams and external assessors on PCI and SOC compliance initiatives.
Ensure security is considered in the evaluation, selection and configuration of hardware, applications and software.
Review audit trails, system logs and monitoring data to support security policies, audit requirements and legal or regulatory compliance efforts.
Secure sensitive data and user access through least‑privilege principles, credential management and appropriate activity monitoring.
Proactively identify security risks, vulnerabilities and weaknesses across applications , cloud environments and networks, and work with technology teams to develop and implement remediation and mitigation plans.
Prepare clear security reporting and metrics , including attempted attacks, identified findings and actions taken.
Promote information security awareness and stay current with emerging security technologies, vulnerabilities and threats.
WHAT YOU’LL BRING
3–5 years’ qualified cybersecurity experience and software development , with a tertiary qualification in Computer Science, Cybersecurity or a related technical discipline preferred.
Hands‑on experience with cloud security, particularly AWS, and securing both cloud and on‑premises environments.
Experience with IDS/IPS, file integrity monitoring, penetration testing, vulnerability testing and log aggregation technologies.
Experience with SIEM, MDR, EDR, DLP, identity management, WAF, web application security, incident response and attack surface management.
Development and scripting experience used to build security automation, including Python, Bash, AWS Lambda, Terraform, CloudFormation and API integrations.
A robust understanding of the software development lifecycle and CI/CD pipelines, including SAST and DAST practices.
Knowledge of networking security, container security, encryption and vulnerability management.
The ability to proactively identify weaknesses through audits, penetration tests,
vulnerability assessments and security reviews, and translate findings into practical remediation plans.
Strong written and verbal communication skills, with the ability to prepare security metrics and reports and explain technical risks clearly to stakeholders.
A demonstrated ability to learn new technologies quickly, take initiative and remain accountable while managing priorities in a fast‑paced environment.
THE MINDSET YOU’LL BRING
We’re looking for people who bring this mindset, this energy, and this standard every day:
Culture & Values Alignment
You’re all in, bringing integrity, accountability and a team‑first mindset every day. You contribute to a high‑performing, collaborative culture, embrace feedback, share knowledge and help create an environment where people and ideas can thrive.
Curiosity & Security Thinking
You are naturally curious about how systems work and where risk can emerge. You investigate root causes, stay current with evolving threats and technologies, and develop practical security solutions that strengthen our platforms without losing sight of business and customer outcomes.
You take responsibility for your work, stay calm when responding to security issues and proactively identify opportunities to improve controls, automation, processes and documentation. You are comfortable working independently while knowing when to bring others in.
You build strong relationships across technology and business teams, communicate security risks clearly and work constructively with stakeholders to improve security practices. You understand that effective security is a shared responsibility and enable teams to make sound, risk‑informed decisions.
AND YOU’LL REALLY GET OUR ATTENTION IF
You bring deep hands‑on experience securing AWS environments at scale, including EKS and cloud‑native security services, and have used infrastructure‑as‑code and automation to improve security outcomes. Experience supporting PCI and SOC compliance programs, working in high‑volume digital or customer‑facing technology environments, or within ticketing, live entertainment, sports or events will be highly regarded. A CISSP or comparable security certification is also viewed favourably.
IT’S ALSO IMPORTANT THAT YOU KNOW
This position is based in Melbourne and supports AXS operations across Australia, Singapore and Japan. Collaboration across regional and global teams may occasionally require flexibility across time zones.
This job description is not intended to be all‑inclusive. Our staff may be required to perform other related duties as assigned.
The role may require occasional travel to support our operations across the region.
You will need to be able to complete applicable background screening relevant to the role and the markets supported.
MOST IMPORTANTLY
AXS celebrates challenge.
We are a collective of achievers reimagining our products and practices to help people do what they love in new ways. We are bonded by curiosity, nurturing solutions for a growing and increasingly diverse global footprint.
Unwavering in our commitment to cultivate and preserve a culture of inclusion, the investment in our people makes us stronger and the varied perspectives makes us wiser.
AXS is proud to be an equal opportunity employer.
To learn more about AXS, please visit
#J-18808-Ljbffr
📌 Security Engineer (Melbourne)
🏢 AXS Australia and New Zealand
📍 Melbourne