Cloud Security Engineer

Blackbook Recruitment

City of Melbourne

On-site

AUD 140,000 - 190,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Blackbook Recruitment is seeking a Cloud Security Engineer to own AWS security across a complex multi-account environment in East Melbourne. You will design and maintain security controls, work with software teams to embed security in the development lifecycle and drive DevSecOps practices.

The role focuses on cloud and application security, with hands-on responsibilities implementing guardrails, IAM, GuardDuty, Security Hub and more, while enabling secure CI/CD pipelines and threat modelling.

Qualifications

  • 5+ years in Cloud Security, Application Security, DevSecOps or similar role.
  • Hands-on AWS security across multi-account environments.
  • Experience with IAM, GuardDuty, Security Hub, WAF, Cognito and AWS Organizations.
  • Strong understanding of application security, OWASP, secure code review and SAST/DAST tooling.
  • Experience securing multi-account AWS environments.
  • Infrastructure as Code using CloudFormation, AWS SAM or similar.
  • Integrating security into CI/CD pipelines using GitHub Actions, GitLab CI or similar.
  • Working knowledge of Python, Go or Rust.

Responsibilities

  • Own and mature the AWS security environment across a multi-account setup.
  • Design and implement AWS security guardrails, policies and compliance controls.
  • Manage AWS security services including IAM, Identity Center, GuardDuty, Security Hub, WAF, Cognito, SCPs and Inspector.
  • Conduct security assessments, threat modelling and vulnerability analysis across cloud and application environments.
  • Work closely with software engineers on secure code reviews and vulnerability remediation.
  • Embed SAST, DAST, dependency and container scanning into CI/CD pipelines.
  • Implement security controls as code using CloudFormation and/or AWS SAM.
  • Support secure AWS IoT Core integration between cloud and edge-based systems.
  • Contribute to network security architecture across VPC, Transit Gateway, VPN and Route53.
  • Support security incidents, investigations and remediation activities.
  • Drive DevSecOps practices and security awareness across engineering teams.
  • Continuously improve security monitoring, detection and the organisation's overall security posture.

Skills

AWS security
Application security
DevSecOps
CI/CD pipelines
SAST/DAST
Threat modelling
Security auditing
Python/Go/Rust

Tools

CloudFormation
AWS SAM
GitHub Actions
GitLab CI

Job description

Cloud Security Engineer
East Melbourne
Permanent

Secure a complex AWS environment, driving cloud security, DevSecOps, and application security across a growing engineering team.

The Opportunity

An exciting opportunity has become available for a Cloud Security Engineer to take ownership of AWS security across a complex, multi-account cloud environment.

Role

You will be responsible for designing, implementing and maintaining AWS security controls while working closely with software engineering teams to embed security throughout the development lifecycle.

This is a hands-on engineering position suited to someone who enjoys getting into the detail of cloud security, application security and DevSecOps, while also having the opportunity to shape security practices across the wider engineering team.

Key Responsibilities
  • Own and mature the AWS security environment across a multi-account setup.
  • Design and implement AWS security guardrails, policies and compliance controls.
  • Manage AWS security services including IAM, Identity Center, GuardDuty, Security Hub, WAF, Cognito, SCPs and Inspector.
  • Conduct security assessments, threat modelling and vulnerability analysis across cloud and application environments.
  • Work closely with software engineers on secure code reviews and vulnerability remediation.
  • Embed SAST, DAST, dependency and container scanning into CI/CD pipelines.
  • Implement security controls as code using CloudFormation and/or AWS SAM.
  • Support secure AWS IoT Core integration between cloud and edge-based systems.
  • Contribute to network security architecture across VPC, Transit Gateway, VPN and Route53.
  • Support security incidents, investigations and remediation activities.
  • Drive DevSecOps practices and security awareness across engineering teams.
  • Continuously improve security monitoring, detection and the organisation's overall security posture.
About You

We're looking for a hands-on Security Engineer with strong AWS experience, ideally coming from an internal engineering or product environment where you've had ownership of cloud security and worked closely with software development teams.

  • 5+ years' experience in Cloud Security, Application Security, DevSecOps or a similar engineering-focused security role.
  • Strong hands-on experience across AWS security services.
  • Experience with IAM, Identity Center, GuardDuty, Security Hub, WAF, Cognito and AWS Organizations.
  • Strong understanding of application security, OWASP, secure code review and SAST/DAST tooling.
  • Experience securing multi-account AWS environments.
  • Experience with Infrastructure as Code using CloudFormation, AWS SAM or similar.
  • Experience integrating security into CI/CD pipelines using GitHub Actions, GitLab CI or similar.
  • Working knowledge of Python, Go or Rust.
  • Understanding of AWS networking including VPC, Transit Gateway, VPN and Route53.
  • Experience with threat modelling, security assessments or security compliance frameworks.
  • AWS IoT Core experience will be highly regarded.
  • AWS Security Specialty, CISSP, OSCP or similar certification will be highly regarded.
What’s on Offer
  • Permanent, full-time opportunity.
  • Take ownership of AWS security across a growing engineering environment.
  • Work directly with software engineering teams to embed DevSecOps and application security practices.
  • Opportunity to shape security architecture, processes and engineering standards.
  • Work across complex cloud and edge-based technology.
  • Join a fast-paced engineering environment where you can have a genuine impact.

If this opportunity seems like a fit, please reach out to Eimear Hunt on 0408589593.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cloud Security Engineer
Cloud Security Engineer

Technology CII • City of Knox

On-site
AUD 110,000 - 170,000
Cloud Security Engineer
Cloud Security Engineer

Aspirante • City of Melbourne

On-site
AUD 150,000 - 190,000
Cloud Security Engineer
Cloud Security Engineer

MPAU Technology • City of Knox

On-site
AUD 140,000 - 190,000
Cloud Security Engineer
Cloud Security Engineer

Emmbr • City of Melbourne

On-site
AUD 166,000 - 240,000
AWS Security Solution and Engineering Specialist
AWS Security Solution and Engineering Specialist

Clicks IT Recruitment • City of Melbourne

Hybrid
Cyber Security Specialist
Cyber Security Specialist

Logical • City of Melbourne

On-site
AUD 120,000 - 190,000
Cloud Security Engineer
Cloud Security Engineer

Michael Page Australia • City of Knox

On-site
AUD 140,000 - 200,000
Security Engineering Lead, AWS Security
Security Engineering Lead, AWS Security

Amazon Web Services (AWS) • Council of the City of Sydney

On-site
AUD 180,000 - 240,000
Senior Cloud Engineer
Senior Cloud Engineer

Aspirante • City of Melbourne

On-site
AUD 120,000 - 160,000
Competitive salary
On-site barista
Daily lunches
+1
Security Engineer
Security Engineer

Showtime Consulting • Australian Capital Territory

On-site
AUD 120,000 - 180,000