25 Sep
|
Rightship
|
Melbourne
25 Sep
Rightship
Melbourne
Interested? Please apply here: https://job-boards.eu.greenhouse.io/rightship/jobs/(phone hidden)
About the role
We're looking for a Security Engineer to work closely with our Head of Technology and Security to build and shape the security roadmap at RightShip. This is a hands-on senior role with genuine scope. You'll be a trusted voice on platform, infrastructure and application security, and you'll help mature a security function that is still being built out. You'll spend your time solving real technical problems rather than administering someone else's controls, and you'll have direct access to the leaders making investment decisions. It suits someone who enjoys depth across a broad set of security technologies, is comfortable owning outcomes end to end, and wants their work to visibly improve the organisation's security posture.
Key responsibilities
- Work alongside the Head of Technology and Security to build the security roadmap, set standards, and advise on posture and investment priorities
- Build and maintain a formal risk register covering vulnerabilities, remediation progress and residual risk
- Translate technical risk into explicit, decision-ready advice for senior leadership
- Assess and improve cloud security configuration, including network architecture, IAM policies, secrets management, audit logging and posture management tooling
- Work with DevOps and platform engineers to harden infrastructure, and review infrastructure-as-code and CI/CD pipelines
- Design and implement security controls across enterprise and production environments, spanning identity, endpoint, network and data protection
- Lead vulnerability assessments and drive remediation with engineering teams,
including managing third-party penetration test engagements
- Support application security across the OWASP Top 10, contributing to code review and secure SDLC guidance for development teams
- Lead incident detection, investigation and response across the platform, including escalation-level incidents and root cause analysis
- Drive security automation to improve detection, response and reporting, and reduce manual effort
About you
- 5+ years of hands-on cyber security experience, with depth in both application and infrastructure security
- Solid cloud security knowledge covering IAM, network security, logging, secrets management and posture tooling
- Practical experience with enterprise security tooling such as EDR, IAM, firewalls, SASE, SIEM or vulnerability management platforms
- Proven ability to identify and remediate vulnerabilities in production environments
- Experience with security risk management: building a risk register, prioritising remediation, and communicating risk to non-technical stakeholders
- Exposure to cyber security frameworks such as Essential Eight, Soc2, ISO 27001 or similar
- Clear communication skills, able to translate technical risk for leadership and turn security requirements into practical guidance for engineers
- Sound judgement and the ability to work independently across competing priorities
- Industry-recognised certifications such as OSCP, CISSP, CISM, CRISC, GIAC or cloud security certifications preferred
- Tertiary qualification in Cyber Security, Information Technology, Computer Science or a related discipline, or equivalent practical experience preferred
Compelled to find out more? Please apply here: https://job-boards.eu.greenhouse.io/rightship/jobs/(phone hidden)
📌 Security Engineer (Melbourne)
🏢 Rightship
📍 Melbourne