23 Sep
|
Humm BNPL
|
Sydney
We Dream. We Design. We Deliver.
Join
hummgroup
, one of Australasia's most successful and enduring non-bank financial services institutions. We specialise in fast, easy finance with a market-leading range of business asset finance, credit cards and point of sale payment plan solutions designed around the core needs of today's businesses and retail consumers. Come join our team and be a part of our next chapter of innovation and growth.
What's so exciting about this role?
This is a high-impact role where you'll help shape and strengthen cloud and application security across AWS and Azure. Working closely with engineering, infrastructure, SRE, and security teams, you'll embed security by design, drive Zero Trust initiatives, and proactively manage risk. It's a hands-on opportunity to influence DevSecOps practices, support incident response, and play a key role in advancing the organisation's overall cyber resilience.
What Does An Average Day Look Like?
No day is average at humm but here's an idea of what you can expect to do in this role:
Partner with engineering, product, and infrastructure teams to embed security by design and drive continuous cybersecurity improvements
Proactively identify, assess, and remediate security risks across cloud, applications and platforms
Support incident response, root cause analysis, and preventative measures to strengthen cyber resilience
Implement and monitor security controls, tools, and platforms to ensure effective protection and reporting of security posture
Contribute to cybersecurity strategy and roadmap, including cloud security posture and exposure management, vendor risk management, emerging technology reviews (e.g. AI), and capability uplift across teams
Who will thrive in this role?
You're a hands-on Senior Security Engineer with a strong background in AWS security, DevSecOps, and incident response, and a passion for strengthening security across modern cloud environments.
We're also looking for someone who brings:
Solid hands-on expertise in AWS security (essential) across services like IAM, KMS, CloudTrail, GuardDuty, WAF, and Security Hub, with some exposure to Azure (e.g. Entra ID, PIM)
Solid grounding in cloud, application, and data security principles, with the ability to apply them in modern, distributed environments
Experience working with infrastructure-as-code and containerised environments (e.g. Terraform, Ansible, Kubernetes)
Familiarity with DevSecOps practices, including embedding security into CI/CD pipelines (SAST, DAST, SCA)
Skilled in using security tooling such as SIEM, XDR, CSPM, and threat exposure management platforms
Experience with Zero Trust initiatives, with financial services or regulated industry exposure highly regarded
Experience with PCI DSS compliance and security frameworks such as ISO *****, NIST CSF
Working at hummgroup
We embrace flexible working arrangements, ensuring a genuine work-life balance and a fun, vibrant inclusive culture that embraces diverse perspectives and values the unique contributions of each of our team through our behaviours Leadership - Accountability - Collaboration - Commerciality.
We invite candidates of all gender expressions, ethnicities, ages, and other culturally diverse groups to apply. We are committed to making reasonable adjustments to provide a positive, barrier-free recruitment process and welcoming and supportive environment where all our people can thrive.
If this sounds like the opportunity, you have been looking for then
apply today
!
📌 Senior Cloud Security Engineer (Sydney)
🏢 Humm BNPL
📍 Sydney