30 Aug
|
Xpt Software Australia
|
Victoria
30 Aug
Xpt Software Australia
Victoria
Job Description
XPT Software Australia Pty Ltd | Contract
n
Security Testing - Lead Specialist
n
Melbourne, Australia | Posted on 08/28/2026
n
n
XPT SoftwareAustralia PTY Ltd, incorporated in ****, is a Software Services company
n
XPT works with topclients across Australia in Banking, Insurance, Telecom,Retail, Energy, Mining and
Manufacturingdomains
n
We have 120+technocrats in Australia working at our clientlocations
n
XPT SoftwareAustralia is part of group companies which has globalpresence across India & Europe
n
We have served100+ clients globally, fulfilling their onsite-offshoreneeds
n
n
Job Description
n
JD – Security Testing -Lead Specialist:
n
Minimum of 8 years'experience in a Security Testing role
n
MustHave
n
n
Leadand deliver high-complexity, high-assurance security assessments acrossCustomer's systems, including advanced penetration testing,
vulnerabilityassessments,
and source code security reviews, focusing on real-
worldexploitability
and attack path development.
n
Provideauthoritative
technical leadership as a subject matter expert in securitytesting and secure development, acting as the primary escalation point forcomplex vulnerabilities, assessments, and adversary emulation activities.
n
Evaluatethe effectiveness of systems in protecting organisational data andmaintaining intended functionality, and provide strategic recommendations to improve security posture and resilience.
n
Identifyand validate critical vulnerabilities, exploit paths, and attack vectors,including analysing scan outputs and manual testing results to assess riskand impact accurately.
n
Translatetechnical findings into transparent,
actionable business risk insights, supportinginformed decision-making and prioritised remediation.
n
Drivethe evolution of security testing strategy, methodologies, and standards,ensuring alignment with industry best practices and continuous improvementacross the function.
n
Collaboratewith the Security Testing – Senior Lead and broader cyber security teams toshape capability development, resourcing, and operational direction.
n
Assessexisting security controls and practices against expected standards, andrecommend improvements to address gaps and uplift security maturity.
n
Ensuredelivery of high-quality security assessment reports, clearly articulatingrisks, impacts, and recommended mitigations.
n
Providementorship and technical guidance to uplift capability across both senior andjunior team members.
n
Applya pragmatic, risk-based approach to all activities, balancing
securityrequirements
with business objectives, timelines, and
operationalconstraints.
n
FulfilHealth, Safety, and Environment responsibilities in accordance withorganisational policies and regulatory requirements.
n
n
Additionalinformation
n
n
Providetechnical leadership across the domain, including performing and leadingcomplex assessments across multiple technical domains,
and responding toescalated incidents and engagements.
n
Provideinput into Customer's Penetration Testing, Vulnerability Assessment andSecure Code processes, methodologies, standards, and corresponding roadmapsand enhancement plans.
n
Developand deliver training for junior team members and the broader Customercommunity to uplift security capability.
n
Promote"shift-left" practices to enable the delivery of secure, high-quality code atspeed.
n
Provideguidance on application security architecture and secure
designconsiderations.
n
Developscripts and contribute to automation initiatives to improve the efficiencyand effectiveness of security testing activities.
n
Refineand define engagement processes, secure code artefacts, security criteria,and use cases.
n
Collaboratewith third parties, including vendors and newly acquired entities, to assessand uplift their security and development practices.
n
Conductquality assurance reviews of deliverables produced within the Secure Codeteam to ensure high technical standards.
n
Operateeffectively in environments with ambiguous or conflicting
requirements,consistently
delivering high-quality outcomes aligned with Cyber
Securityexpectations
n
Translatetechnical vulnerabilities into business risk for stakeholders in a timelymanner, leveraging insights from the broader Cyber Security function.
n
Applya pragmatic approach to security testing, balancing business
objectives,standards
alignment, cost, time, and risk considerations.
n
n
Currentindustry certification, including but not limited to:
n
OffensiveSecurity – OSCP, OSCE3, OSWE
📌 Security Testing - Lead Specialist (Victoria)
🏢 Xpt Software Australia
📍 Victoria