21 Sep
|
Michael Page
|
Victoria
21 Sep
Michael Page
Victoria
Job Description
Working Arrangement: 5 days onsite (full-time office-based role)
n
n
Design, implement, and maintain security guardrails, policies, and compliance controls across multi-account AWS environments.
n
Own and mature our AWS security stack, including Identity Center, Security Hub, GuardDuty, WAF, Cognito, IAM, and SCPs.
n
Conduct security assessments, threat modelling, and vulnerability analysis across cloud and application environments.
n
Partner with software engineering teams to embed application security practices into the SDLC, including secure code review and remediation guidance.
n
Support secure AWS IoT Core integration for edge device communication and data flows.
n
Review and contribute to network security architecture (VPC, Transit Gateway, VPN, Route53) to ensure secure connectivity.
n
Implement security controls as code using CloudFormation and/or SAM.
n
Integrate security scanning and gates (SAST/DAST, dependency and container scanning) into CI/CD pipelines.
n
Drive DevSecOps practices and security awareness across engineering teams.
n
Manage identity and access strategy, including Cognito-based authentication and authorisation for applications.
n
Lead or support incident response, security investigations, and remediation efforts.
n
Monitor emerging threats and continuously improve our security posture and detection capabilities.
n
Support secure data workflows involving ingestion, transformation, and storage across cloud systems.
n
Stay up to date with AWS security services, emerging threats, and industry best practices.
n
Contribute to security documentation, standards, and knowledge sharing within the team.
n
n
Location: Scoresby, VIC
n
Working Arrangement: 5 days onsite (full-time office-based role)
n
n
Design, implement,
and maintain security guardrails, policies, and compliance controls across multi-account AWS environments.
n
Own and mature our AWS security stack, including Identity Center, Security Hub, GuardDuty, WAF, Cognito, IAM, and SCPs.
n
Conduct security assessments, threat modelling, and vulnerability analysis across cloud and application environments.
n
Partner with software engineering teams to embed application security practices into the SDLC, including secure code review and remediation guidance.
n
Support secure AWS IoT Core integration for edge device communication and data flows.
n
Review and contribute to network security architecture (VPC, Transit Gateway, VPN, Route53) to ensure secure connectivity.
n
Implement security controls as code using CloudFormation and/or SAM.
n
Integrate security scanning and gates (SAST/DAST, dependency and container scanning) into CI/CD pipelines.
n
Drive DevSecOps practices and security awareness across engineering teams.
n
Manage identity and access strategy, including Cognito-based authentication and authorisation for applications.
n
Lead or support incident response, security investigations, and remediation efforts.
n
Monitor emerging threats and continuously improve our security posture and detection capabilities.
n
Support secure data workflows involving ingestion, transformation, and storage across cloud systems.
n
Stay up to date with AWS security services, emerging threats,
and industry best practices.
n
Contribute to security documentation, standards, and knowledge sharing within the team.
n
n
Shape the future of autonomous mobilityOwn and influence the security strategy
n
n
5+ years' experience in Cloud Security, Application Security, or DevSecOps
n
Strong hands-on AWS security expertise including:n
n
IAM
n
Identity Center
n
Security Hub
n
GuardDuty
n
WAF
n
Cognito
n
AWS Organizations & SCPs
n
Inspector
n
n
Application Security experience, including:n
n
OWASP Top 10
n
Secure code reviews
n
Threat modelling
n
Vulnerability management
n
SAST/DAST tools
n
n
Experience securing AWS multi-account environments
n
Infrastructure as Code using CloudFormation and/or AWS SAM
n
Security integration within GitHub Actions and/or GitLab CI pipelines
n
Programming experience in Python, Golang, or Rust
n
Knowledge of networking security including VPCs, VPNs, Transit Gateway, and Route53
n
AWS IoT Core security experience highly desirable
n
AWS Security Specialty, CISSP, OSCP, or similar certifications advantageous
n
n
A pioneering Australian technology company developing software-defined, autonomous transport solutions for commercial mobility applications. Their focus is on creating safety-rated digital vehicle control systems and autonomous-ready platforms that enable smarter, more efficient, and sustainable transportation through advanced cloud, connectivity, and vehicle software technologies.
n
n
Join a company building the future of autonomous and connected transport technology.
n
Own and influence cloud security, AppSec, and DevSecOps strategy across a highly creative engineering environment.
n
📌 Cloud Security Engineer (Victoria)
🏢 Michael Page
📍 Victoria