16 Sep
|
NCS Australia
|
Sydney
16 Sep
NCS Australia
Sydney
Job Description
We are seeking a Technical Business Analyst with deep DevSecOps experience for an initial 6-month contract in Sydney to bridge the gap between application security, software engineering squads, and enterprise governance.
In this high-visibility delivery role, you will work embedded within engineering and security teams to translate enterprise security requirements into transparent, actionable technical specifications. You will play a key role in integrating security controls, code scanning standards, and automated compliance directly into modern CI/CD software delivery pipelines.
Key Responsibilities
- DevSecOps Process Mapping: Analyze current software development workflows to identify security bottlenecks, gaps, and opportunities to "shift left" security controls into the SDLC.
- Requirements & User Stories: Translate complex application security policies,
vulnerability management SLAs, and compliance standards into technical user stories, engineering epics, and acceptance criteria.
- Security Tooling Integration: Partner with DevSecOps Engineers to scope and support the implementation of automated code scanning (SAST, SCA, DAST) and pipeline security gatekeepers.
- Governance & Runbooks: Document DevSecOps frameworks, technical runbooks, operational support models, and developer guidance materials to ensure seamless platform adoption.
- Stakeholder Alignment: Facilitate workshops between Security Architects, DevOps leads, Product Owners, and engineering squads to align delivery roadmaps with security posture goals.
📌 Technical Business Analyst (DevSecOps) - Contract (Sydney)
🏢 NCS Australia
📍 Sydney