24 Sep
|
Michael Page
|
Port Phillip City
24 Sep
Michael Page
Port Phillip City
Working Arrangement: 5 days onsite (full-time office-based role)
Design, implement, and maintain security guardrails, policies, and compliance controls across multi-account AWS environments.
Own and mature our AWS security stack, including Identity Center, Security Hub, GuardDuty, WAF, Cognito, IAM, and SCPs.
Conduct security assessments, threat modelling, and vulnerability analysis across cloud and application environments.
Partner with software engineering teams to embed application security practices into the SDLC, including secure code review and remediation guidance.
Support secure AWS IoT Core integration for edge device communication and data flows.
Review and contribute to network security architecture (VPC, Transit Gateway, VPN, Route53) to ensure secure connectivity.
Implement security controls as code using CloudFormation and/or SAM.
Integrate security scanning and gates (SAST/DAST, dependency and container scanning) into CI/CD pipelines.
Drive DevSecOps practices and security awareness across engineering teams.
Manage identity and access strategy, including Cognito-based authentication and authorisation for applications.
Lead or support incident response, security investigations, and remediation efforts.
Monitor emerging threats and continuously improve our security posture and detection capabilities.
Support secure data workflows involving ingestion, transformation, and storage across cloud systems.
Stay up to date with AWS security services, emerging threats, and industry best practices.
Contribute to security documentation, standards, and knowledge sharing within the team.
Location: Scoresby, VIC
Working Arrangement: 5 days onsite (full-time office-based role)
Design, implement,
and maintain security guardrails, policies, and compliance controls across multi-account AWS environments.
Own and mature our AWS security stack, including Identity Center, Security Hub, GuardDuty, WAF, Cognito, IAM, and SCPs.
Conduct security assessments, threat modelling, and vulnerability analysis across cloud and application environments.
Partner with software engineering teams to embed application security practices into the SDLC, including secure code review and remediation guidance.
Support secure AWS IoT Core integration for edge device communication and data flows.
Review and contribute to network security architecture (VPC, Transit Gateway, VPN, Route53) to ensure secure connectivity.
Implement security controls as code using CloudFormation and/or SAM.
Integrate security scanning and gates (SAST/DAST, dependency and container scanning) into CI/CD pipelines.
Drive DevSecOps practices and security awareness across engineering teams.
Manage identity and access strategy, including Cognito-based authentication and authorisation for applications.
Lead or support incident response, security investigations, and remediation efforts.
Monitor emerging threats and continuously improve our security posture and detection capabilities.
Support secure data workflows involving ingestion, transformation, and storage across cloud systems.
Stay up to date with AWS security services, emerging threats, and industry best practices.
Contribute to security documentation, standards, and knowledge sharing within the team.
Shape the future of autonomous mobilityOwn and influence the security strategy
5+ years' experience in Cloud Security, Application Security, or DevSecOps
Strong hands-on AWS security expertise including:
IAM Identity Center Security Hub GuardDuty WAF Cognito AWS Organizations & SCPs Inspector
Application Security experience, including:
OWASP Top 10 Secure code reviews Threat modelling Vulnerability management SAST/DAST tools
Experience securing AWS multi-account environments
Infrastructure as Code using CloudFormation and/or AWS SAM
Security integration within GitHub Actions and/or GitLab CI pipelines
Programming experience in Python, Golang, or Rust
Knowledge of networking security including VPCs, VPNs, Transit Gateway, and Route53
AWS IoT Core security experience highly desirable
AWS Security Specialty, CISSP, OSCP, or similar certifications advantageous
A pioneering Australian technology company developing software-defined, autonomous transport solutions for commercial mobility applications. Their focus is on creating safety-rated digital vehicle control systems and autonomous-ready platforms that enable smarter, more efficient, and sustainable transportation through advanced cloud, connectivity, and vehicle software technologies.
Join a company building the future of autonomous and connected transport technology.
Own and influence cloud security, AppSec, and DevSecOps strategy across a highly cutting-edge engineering environment.
#J-18808-Ljbffr
📌 Cloud Security Engineer (Port Phillip City)
🏢 Michael Page
📍 Port Phillip City