Stand out for this role — generate a tailored resume and cover letter in about a minute.
Sestra People is seeking an AWS DevSecOps Engineer to join a consulting team building a new enterprise AI platform for a major Australian organisation. The role focuses on embedding security, governance, and automated controls into the platform from day one.
You will build and automate cloud security controls with Terraform, integrate security into CI/CD workflows, and work with IAM, SCPs, and Policy as Code while collaborating with platform, SRE/DevSecOps, and engineering teams.
Sestra People is a boutique, female-founded talent provider dedicated to rewriting the narrative around recruitment. At Sestra People, we believe your next best hire isn't just a CV — it's a human being with quirks, flaws, talent, and a story.
We champion values of Kindness, Transparency, and Professional Results, without compromising on a family-feel, bringing back a sense of "humanness" to recruitment.
Sestra People is a boutique, female-founded talent provider dedicated to rewriting the narrative around recruitment. At Sestra People, we believe your next best hire isn't just a CV — it's a human being with quirks, flaws, talent, and a story.
We champion values of Kindness, Transparency, and Professional Results, without compromising on a family-feel, bringing back a sense of "humanness" to recruitment.
We’re looking for an AWS DevSecOps Engineer to join a consulting team building a new enterprise AI platform for a major Australian organisation.
This is a greenfield environment designed to give teams a secure, self-service way to build and deploy AI solutions on AWS.
Rather than security being something checked at the end, the focus is on building security, governance and automated controls directly into the platform from day one.
You’ll work as part of a small engineering squad responsible for building the underlying cloud and security foundations of the AI platform.
Your role will bring the security lens to the team — understanding what controls need to exist, identifying gaps within AWS environments, and then helping translate those requirements into automated, scalable engineering solutions.
Day to day, you’ll be involved in:
Reviewing AWS environments and identifying required security controls
Building and automating cloud security controls using Terraform / Infrastructure as Code
Embedding security into CI/CD and self-service deployment workflows
Working with IAM, authentication, credentials and access controls
Translating security requirements into technical controls and Policy as Code
Working with AWS Service Control Policies (SCPs)
Supporting secure provisioning through GitHub Actions and/or Azure DevOps
Reviewing new AI services and determining how they should be securely deployed
Working alongside platform, SRE/observability and DevSecOps engineers
Advising the wider squad on security considerations as new capabilities are built
You don’t need to tick every box.
The strongest candidates will likely come from cloud security, DevSecOps or security engineering and have enough cloud engineering experience to be genuinely hands-on.
Ideally, you’ll bring:
Strong commercial AWS experience
DevSecOps or cloud security experience
Terraform / Infrastructure as Code
CI/CD experience
AWS IAM and cloud access/security controls
Security automation experience
Understanding of AWS SCPs and/or Policy as Code
GitHub Actions and/or Azure DevOps
Scripting capability
Ability to assess an environment, identify security requirements and help implement the solution
Strong communication skills and the ability to work within a client-facing consulting environment
Experience with AWS landing zones would be advantageous.
You don't need years of AI experience.
You do need to be curious about it.
The platform will support enterprise AI workloads, with the initial engagement involving AWS AI services including Amazon Bedrock and AgentCore.
We’d love to speak with engineers who are already exploring these technologies — whether commercially, through side projects, labs or their own learning — and who are interested in the emerging challenge of securing AI infrastructure and services at enterprise scale.
This isn't a traditional security role focused on reviewing controls after something has already been built.
You'll be joining at the beginning of a new AI platform build, working alongside engineers to determine how security should be designed into the environment from the outset.
The consultancy is also building this capability for the longer term, with similar cloud, security and AI skillsets expected to be required across future client engagements.
If your background sits somewhere between AWS engineering, cloud security and DevSecOps, we'd be keen to hear from you — even if you don't match every technology listed above.