06 Oct
|
Michael Page
|
Sydney
06 Oct
Michael Page
Sydney
Job Description
n
- Long-term opportunity on transformation project
n
nn
- Hybrid environment and flexible working
n
- Long-term opportunity on transformation project
n
About Our Client n
Our client is a leading global technology consulting and services organisation that partners with enterprises to deliver large-scale digital transformation, cloud, cybersecurity, and technology modernisation initiatives. They offer a collaborative and innovative environment, providing opportunities to work on complex enterprise programs leveraging modern technologies and best-practice delivery frameworks.
Job Description n
Key responsibilities:
n
n
- Lead the implementation and onboarding of Secure Code Scanning platforms such as Snyk, Fortify, Checkmarx, or Veracode across the software development lifecycle.
n
- Design and implement integrations with GitHub, GitLab and CI/CD pipelines to enable automated security scanning and policy enforcement.
n
- Collaborate with development, DevOps, and security teams to define scanning strategies, remediation workflows, quality gates, and secure coding controls.
n
- Proactively identify implementation challenges, integration dependencies, developer adoption issues, and performance impacts, and provide practical solutions to mitigate risks.
n
- Establish vulnerability management processes, including triage, risk prioritisation, exception handling, SLA definition, and remediation tracking.
n
- Develop technical standards, deployment procedures, operational runbooks,
and governance processes to support long-term platform adoption.
n
- Provide hands‑on support during implementation, testing, rollout, and post‑go‑live stabilization activities while mentoring development teams on secure coding practices.
n
The Successful Applicant n
A successful Senior Application Security Engineer should have:
n
n
- Proven experience as an Application Security Engineer or DevSecOps Engineer in enterprise environments.
n
- Hands‑on experience implementing SAST tools such as Snyk, Fortify, Checkmarx, or Veracode.
n
- Solid knowledge of secure coding practices, application security, and SSDLC principles.
n
- Experience integrating security tooling into GitHub, GitLab, and CI/CD pipelines.
n
- Expertise in vulnerability management, remediation workflows, and risk prioritisation.
n
- Strong stakeholder engagement skills with the ability to work across Security, Development, and DevOps teams.
n
- Excellent problem‑solving abilities and a practical, delivery‑focused approach.
n
- Experience driving adoption of security controls and DevSecOps practices across development teams.
n
- Demonstrate experience implementating similar Application Security and Secure Coding solutions in larger enterprise environments
n
- Excellent communication skills to collaborate with technical teams.
n
What's on Offer nn
- Transformation project
n
- Hybrid environment and flexible working
n
- Long‑term opportunity with project
n
- Ability to upskill and work with security and AI
n
Quote job ref: JN- #J-18808-Ljbffr
📌 Senior Application Security Engineer (Sydney)
🏢 Michael Page
📍 Sydney