01 Oct
|
Michael Page Australia
|
Melbourne
01 Oct
Michael Page Australia
Melbourne
Job Description
n
n
Hybrid environment and flexible working
n
Long-term opportunity on transformation project
n
About Our Client n
Our client is a leading global technology consulting and services organisation that partners with enterprises to deliver large-scale digital transformation, cloud, cybersecurity, and technology modernisation initiatives. They offer a collaborative and innovative environment, providing opportunities to work on complex enterprise programs leveraging modern technologies and best-practice delivery frameworks.
Job Description n
Key responsibilities:
n
n
Lead the implementation and onboarding of Secure Code Scanning platforms such as Snyk, Fortify, Checkmarx, or Veracode across the software development lifecycle.
n
Design and implement integrations with GitHub, GitLab and CI/CD pipelines to enable automated security scanning and policy enforcement.
n
Collaborate with development, DevOps, and security teams to define scanning strategies, remediation workflows, quality gates, and secure coding controls.
n
Proactively identify implementation challenges, integration dependencies, developer adoption issues, and performance impacts, and provide practical solutions to mitigate risks.
n
Establish vulnerability management processes, including triage, risk prioritisation, exception handling, SLA definition, and remediation tracking.
n
Develop technical standards, deployment procedures, operational runbooks, and governance processes to support long-term platform adoption.
n
Provide hands-on support during implementation, testing, rollout, and post-go-live stabilization activities while mentoring development teams on secure coding practices.
n
The Successful Applicant n
A successful Senior Application Security Engineer should have:
n
n
Proven experience as an Application Security Engineer or DevSecOps Engineer in enterprise environments.
n
Hands-on experience implementing SAST tools such as Snyk, Fortify, Checkmarx, or Veracode.
n
Strong knowledge of secure coding practices, application security, and SSDLC principles.
n
Experience integrating security tooling into GitHub, GitLab, and CI/CD pipelines.
n
Expertise in vulnerability management, remediation workflows, and risk prioritisation.
n
Strong stakeholder engagement skills with the ability to work across Security, Development, and DevOps teams.
n
Excellent problem-solving abilities and a practical, delivery-focused approach.
n
Experience driving adoption of security controls and DevSecOps practices across development teams.
n
Demonstrate experience implementating similar Application Security and Secure Coding solutions in larger enterprise environments
n
Excellent communication skills to collaborate with technical teams.
n
What's on Offer n
n
Transformation project
n
Hybrid environment and versatile working
n
Long-term opportunity with project
n
Ability to upskill and work with security and AI
n
n
#J-*****-Ljbffr
📌 Senior Application Security Engineer (Melbourne)
🏢 Michael Page Australia
📍 Melbourne