26 Sep
|
Important Group
|
Sydney
26 Sep
Important Group
Sydney
Job description: Senior Application Security Engineer – Secure Code Scanning
Implementation
- Lead the implementation and onboarding of Secure Code Scanning
platforms such as Snyk, Fortify, Checkmarx, or Veracode across the
software development lifecycle.
- Design and implement integrations with GitHub, GitLab and CI/CD
pipelines to enable automated security scanning and policy enforcement.
- Collaborate with development, DevOps, and security teams to define
scanning strategies, remediation workflows, quality gates, and secure
coding controls.
- Proactively identify implementation challenges, integration dependencies,
developer adoption issues, and performance impacts, and provide practical
solutions to mitigate risks.
- Establish vulnerability management processes, including triage,
risk prioritization,
exception handling, SLA definition, and remediation
tracking.
- Develop technical standards, deployment procedures, operational
runbooks, and governance processes to support long-term platform adoption.
- Provide hands-on support during implementation, testing, rollout,
and post-go-live stabilization activities while mentoring development
teams on secure coding practices.
- Demonstrated experience implementing similar Application Security
and Secure Coding solutions in large enterprise environments, with solid
knowledge of SAST, vulnerability management, SDLC, and DevSecOps
practices.
📌 Senior Application Security Engineer (Sydney)
🏢 Important Group
📍 Sydney