21 Sep
|
Michael Page
|
Victoria
21 Sep
Michael Page
Victoria
Job Description
Working Arrangement: 5 days onsite (full-time office-based role)
n
n
- Design, implement, and maintain security guardrails, policies, and compliance controls across multi-account AWS environments.
n
- Own and mature our AWS security stack, including Identity Center, Security Hub, GuardDuty, WAF, Cognito, IAM, and SCPs.
n
- Conduct security assessments, threat modelling, and vulnerability analysis across cloud and application environments.
n
- Partner with software engineering teams to embed application security practices into the SDLC, including secure code review and remediation guidance.
n
- Support secure AWS IoT Core integration for edge device communication and data flows.
n
- Review and contribute to network security architecture (VPC, Transit Gateway, VPN, Route53) to ensure secure connectivity.
n
- Implement security controls as code using CloudFormation and/or SAM.
n
- Integrate security scanning and gates (SAST/DAST, dependency and container scanning) into CI/CD pipelines.
n
- Drive DevSecOps practices and security awareness across engineering teams.
n
- Manage identity and access strategy, including Cognito-based authentication and authorisation for applications.
n
- Lead or support incident response, security investigations, and remediation efforts.
n
- Monitor emerging threats and continuously improve our security posture and detection capabilities.
n
- Support secure data workflows involving ingestion, transformation, and storage across cloud systems.
n
- Stay up to date with AWS security services, emerging threats, and industry best practices.
n
- Contribute to security documentation, standards, and knowledge sharing within the team.
n
n
Location: Scoresby, VIC
n
Working Arrangement: 5 days onsite (full-time office-based role)
n
n
- Design, implement,
and maintain security guardrails, policies, and compliance controls across multi-account AWS environments.
n
- Own and mature our AWS security stack, including Identity Center, Security Hub, GuardDuty, WAF, Cognito, IAM, and SCPs.
n
- Conduct security assessments, threat modelling, and vulnerability analysis across cloud and application environments.
n
- Partner with software engineering teams to embed application security practices into the SDLC, including secure code review and remediation guidance.
n
- Support secure AWS IoT Core integration for edge device communication and data flows.
n
- Review and contribute to network security architecture (VPC, Transit Gateway, VPN, Route53) to ensure secure connectivity.
n
- Implement security controls as code using CloudFormation and/or SAM.
n
- Integrate security scanning and gates (SAST/DAST, dependency and container scanning) into CI/CD pipelines.
n
- Drive DevSecOps practices and security awareness across engineering teams.
n
- Manage identity and access strategy, including Cognito-based authentication and authorisation for applications.
n
- Lead or support incident response, security investigations, and remediation efforts.
n
- Monitor emerging threats and continuously improve our security posture and detection capabilities.
n
- Support secure data workflows involving ingestion, transformation, and storage across cloud systems.
n
- Stay up to date with AWS security services, emerging threats,
and industry best practices.
n
- Contribute to security documentation, standards, and knowledge sharing within the team.
n
n
Shape the future of autonomous mobilityOwn and influence the security strategy
n
n
- 5+ years' experience in Cloud Security, Application Security, or DevSecOps
n
- Strong hands-on AWS security expertise including:n n
- IAM
n
- Identity Center
n
- Security Hub
n
- GuardDuty
n
- WAF
n
- Cognito
n
- AWS Organizations & SCPs
n
- Inspector
n
n
- Application Security experience, including:n
n
- OWASP Top 10
n
- Secure code reviews
n
- Threat modelling
n
- Vulnerability management
n
- SAST/DAST tools
n
n
- Experience securing AWS multi-account environments
n
- Infrastructure as Code using CloudFormation and/or AWS SAM
n
- Security integration within GitHub Actions and/or GitLab CI pipelines
n
- Programming experience in Python, Golang, or Rust
n
- Knowledge of networking security including VPCs, VPNs, Transit Gateway, and Route53
n
- AWS IoT Core security experience highly desirable
n
- AWS Security Specialty, CISSP, OSCP, or similar certifications advantageous
n
n
A pioneering Australian technology company developing software-defined, autonomous transport solutions for commercial mobility applications. Their focus is on creating safety-rated digital vehicle control systems and autonomous-ready platforms that enable smarter, more productive, and sustainable transportation through advanced cloud, connectivity, and vehicle software technologies.
n
n
- Join a company building the future of autonomous and connected transport technology.
n
- Own and influence cloud security, AppSec, and DevSecOps strategy across a highly innovative engineering environment.
n
📌 Cloud Security Engineer (Victoria)
🏢 Michael Page
📍 Victoria