Security Testing Lead Specialist - Australia (New South Wales)

Security Testing Lead Specialist - Australia (New South Wales)

15 Aug
|
AYAN INFOTECH
|
New South Wales

15 Aug

AYAN INFOTECH

New South Wales

Ayan Infotech are looking for a Security Testing Lead Specialist for a short term contract to start with (possibly extend) and can be performed from any capital cities of Australia.
All applicants must have full unrestricted work rights in Australia.
Title: Security Testing Lead Specialist
Location: Australia-wide (Hybrid)
Type: Contract (initially to end of Dec 26, may extend)
Key Accountabilities Include
Lead and deliver high-complexity, high-assurance security assessments across systems, including advanced penetration testing, vulnerability assessments, and source code security reviews, focusing on real-world exploitability and attack path development.
Provide authoritative technical leadership as a subject matter expert in security testing and secure development, acting as the primary escalation point for complex vulnerabilities, assessments, and adversary emulation activities.
Evaluate the effectiveness of systems in protecting organisational data and maintaining intended functionality, and provide strategic recommendations to improve security posture and resilience.
Identify and validate critical vulnerabilities, exploit paths, and attack vectors, including analysing scan outputs and manual testing results to assess risk and impact accurately.
Translate technical findings into transparent, actionable business risk insights, supporting informed decision making and prioritised remediation.
Drive the evolution of security testing strategy, methodologies, and standards, ensuring alignment with industry best practices and continuous improvement across the function.




Collaborate with the Security Testing - Senior Lead and broader cyber security teams to shape capability development, resourcing, and operational direction.
Assess existing security controls and practices against expected standards, and recommend improvements to address gaps and uplift security maturity.
Ensure delivery of high-quality security assessment reports, clearly articulating risks, impacts, and recommended mitigations.
Provide mentorship and technical guidance to uplift capability across both senior and junior team members.
Apply a pragmatic, risk-based approach to all activities, balancing security requirements with business objectives, timelines, and operational constraints.
Fulfil Health, Safety, and Environment (HSE) responsibilities in accordance with organisational policies and regulatory requirements.
Essential Experience
A minimum of 8 years' experience in a Security Testing role.
Experience and exposure to a variety of software delivery models, including DevOps and Waterfall.
Significant experience in performing complex security assessments across a range of domain areas in a large corporate environment.




Significant experience in implementing automated security assessment tools into CI/CD pipelines.
Exceptional working knowledge of Security Assessment toolsets, such as Vulnerability Scanners, Static Code Analysis and Software Composition Analysis tools.
Ability to review and provide guidance and feedback on security assessment reports.
Strong understanding of application security architecture principles including transport security, authentication, authorisation, threat modelling, and logging and monitoring.
Experience in training and developing people.
Demonstratable skillset exceeding that expected of a person holding OSCE/OSWE or CREST - Certified qualifications for domain areas in scope for the position.
Highly Desirable
Prior experience as a developer / software engineer is a significant advantage.
Experience in developing security policy, standards, and development guidelines
Significant experience in other domain areas of Cyber Security
A strong understanding of adjacent security dependencies including endpoints, application platforms, databases, network security technologies, development frameworks.
Current industry certification, including but not limited to: OSCP, OSCE3, OSWE; CREST (CCT, CCSC, CCSAS, CCSAM); SANS (GPEN, GAWN, GWAPT, GXPN); (ISC)2 CISSP, CCSP
Experience in managing engagements with external security vendors.
Demonstrable history of developing exploits and zero-day discovery.
Contact: ************ for more details.

#J-*****-Ljbffr

📌 Security Testing Lead Specialist - Australia (New South Wales)
🏢 AYAN INFOTECH
📍 New South Wales

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: security testing lead specialist - australia (new south wales) / new south wales

Subscribe to this job alert:

Get the latest job offers by email for: security testing lead specialist - australia (new south wales) / new south wales