14 Sep
|
Hastha Solutions
|
New South Wales
14 Sep
Hastha Solutions
New South Wales
Job Description
DevSecOps Security Consultant / Engineer - Contract - Sydney
n
Sydney, Australia | Posted on 09/11/2026
n
Urgentrequirement of DevSecOps Security Consultant / Engineer - Contract - Sydney
n
Requirements
n
Experience:
n
n
8+ relevant experience in Cyber Security, Cloud Security, Application Security, or DevSecOps engineering roles.
n
n
Key Responsibilities:
n
n
Conduct comprehensive DevSecOps security discovery, assessment, and risk evaluation activities across cloud platforms, applications, and development environments.
n
Perform security posture reviews using Orca Security and GitHub Advanced Security to identify vulnerabilities, misconfigurations, exposed assets, code security issues, and compliance gaps.
n
Analyse cloud workloads, repositories, infrastructure configurations, and application architectures to assess security risks and recommend mitigation strategies.
n
Partner with DevOps, engineering, and application teams to integrate security controls and secure-by-design principles throughout the software development lifecycle (SDLC).
n
Implement and enhance security capabilities within CI/CD pipelines, including automated security testing, code scanning, secret detection, dependency analysis, and policy enforcement.
n
Review and validate security findings, prioritize risks based on business impact, and provide actionable remediation guidance to stakeholders.
n
Track remediation efforts and security improvements across cloud environments, containerised workloads, and source code repositories.
n
Support vulnerability management activities, including identification, reporting, risk assessment, and remediation verification.
n
Contribute to the development of DevSecOps standards, security baselines, governance frameworks, and operational procedures.
n
Collaborate with cross‐functional teams to improve cloud security architecture, compliance readiness, and security monitoring capabilities.
n
Prepare assessment reports, security dashboards, executive summaries, and technical recommendations for management and project teams.
n
n
Required Skills and Experience:
n
n
Solid hands‐on experience with Orca Security and GitHub Advanced Security.
n
Practical knowledge of DevSecOps methodologies, security automation, and secure software development practices.
n
Experience securing CI/CD platforms and integrating security controls into development pipelines.
n
Strong understanding of cloud security concepts, including identity and access management, network security, data protection, and workload security.
n
Experience with vulnerability management, risk assessment, and remediation tracking.
n
Knowledge of application security principles, code security testing, and software supply chain security.
n
Familiarity with cloud platforms such as AWS, Microsoft Azure, and Google Cloud Platform (GCP).
n
Understanding of container security, Kubernetes security, and Infrastructure as Code (IaC) security practices.
n
Strong analytical, troubleshooting, and problem‐solving skills.
n
Excellent communication and stakeholder management capabilities.
n
n
Preferred Qualifications:
n
n
Relevant cloud security or cybersecurity certifications.
n
Experience working in enterprise‐scale DevSecOps and cloud transformation programs.
n
Knowledge of regulatory compliance frameworks and industry security standards.
n
n
Education:
n
n
Bachelor's degree in computer science, Information Security, Information Technology, Engineering, or a related field.
n
n
Duration: 03 Monthsandpossible extension
n
Eligibility:
Australian/NZCitizens/PR
Holders only
📌 Devsecops Security Consultant / Engineer - Contract - Sydney (New South Wales)
🏢 Hastha Solutions
📍 New South Wales