Technical Business Analyst (DevSecOps) - Contract

NCS

Sydney

On-site

AUD 110,000 - 140,000

Full time

4 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

NCS is seeking a Technical Business Analyst with deep DevSecOps experience for a 6-month contract in Sydney. The role bridges application security, software engineering squads, and enterprise governance, embedded within engineering and security teams to translate security requirements into actionable technical specs.

You will shape DevSecOps workflows, support automated scanning, and help governance through runbooks and stakeholder workshops, driving secure software delivery.

Qualifications

  • Technical Business Analyst with experience in complex software engineering, cloud, or cybersecurity environments.
  • Strong knowledge of DevSecOps, CI/CD, and automated testing.

Responsibilities

  • DevSecOps process mapping to shift left security into the SDLC.
  • Translate security policies and compliance standards into technical user stories and acceptance criteria.
  • Support implementation of automated code scanning (SAST/DAST) and pipeline security gates.
  • Document runbooks and guidance for secure platform adoption.
  • Facilitate workshops with Security Architects, DevOps leads and product owners to align roadmaps with security goals.
  • Demonstrate practical appsec exposure and familiarity with OWASP Top 10 and code security tools.
  • Write technical user stories and manage backlogs within Agile/Scrum delivery squads.
  • Communicate security risks effectively to non-technical partners.

Skills

DevSecOps
CI/CD pipelines
Agile delivery
Stakeholder management
Technical BA background
Security concepts

Tools

SAST
SCA
DAST

Job description

Technical Business Analyst (DevSecOps) - Contract
  • Full-time
  • Department: Digital Resilience

At NCS Australia, we believe in doing technology services better. Our commitment to quality, focus on people, and willingness to challenge traditional thinking set us apart. Our team brings this belief to life by partnering with our clients and communities to make tomorrow together.

We are committed to creating an environment that prioritises innovation, collaboration, and purposeful work. Our diverse team is empowered to make a meaningful impact with curiosity, creativity and resilience to shape better outcomes. Join us and accept the challenge of creating a better tomorrow.

We are seeking a Technical Business Analyst with deep DevSecOps experience for an initial 6-month contract in Sydney to bridge the gap between application security, software engineering squads, and enterprise governance.

In this high-visibility delivery role, you will work embedded within engineering and security teams to translate enterprise security requirements into clear, actionable technical specifications. You will play a key role in integrating security controls, code scanning standards, and automated compliance directly into modern CI/CD software delivery pipelines.

Key Responsibilities

DevSecOps Process Mapping: Analyze current software development workflows to identify security bottlenecks, gaps, and opportunities to "shift left" security controls into the SDLC.

Requirements & User Stories: Translate complex application security policies, vulnerability management SLAs, and compliance standards into technical user stories, engineering epics, and acceptance criteria.

Security Tooling Integration: Partner with DevSecOps Engineers to scope and support the implementation of automated code scanning (SAST, SCA, DAST) and pipeline security gatekeepers.

Governance & Runbooks: Document DevSecOps frameworks, technical runbooks, operational support models, and developer guidance materials to ensure seamless platform adoption.

Stakeholder Alignment: Facilitate workshops between Security Architects, DevOps leads, Product Owners, and engineering squads to align delivery roadmaps with security posture goals.

Technical BA Background: Proven track record as a Business Analyst working within complex software engineering, cloud, or cybersecurity environments.

DevSecOps Knowledge: Strong understanding of DevSecOps principles, CI/CD pipelines, automated testing, and software security concepts.

AppSec Exposure: Practical familiarity with application security standards (e.g., OWASP Top 10) and code security scanning tools (SAST, SCA, DAST).

Agile Delivery: Experience writing technical user stories, managing backlogs, and working inside cross-functional Agile/Scrum delivery squads.

Communication & Collaboration: Outstanding stakeholder management skills with the ability to articulate technical security risks to non-technical business partners.

Why NCS?

This is a place for people who like to get stuck in, bring ideas to life and make things happen. You'll work alongside experienced people who care about what they do, contribute to meaningful work and have the support to keep learning and grow your career. Whether you want to deepen your expertise, explore something new or take your career in a different direction, there's room to make it your own. We value Adventure, Excellence, Integrity, Ownership and Unity - bringing curiosity, collaboration and accountability to the way we work with our clients and each other.

Ready to make extraordinary happen?

We'd love to hear from you.

We celebrate diversity and inclusion

We value different perspectives, experiences and strengths our people bring. We're committed to an inclusive workplace where everyone has the opportunity to contribute, grow and succeed, and to providing equal employment opportunities and reasonable adjustments throughout the recruitment process.

Applicants will need valid Australian work rights and may be required to undergo relevant background, probity and police checks.

Agencies

NCS accepts candidate submissions only from agencies on our preferred supplier panel through the NCS Agency Portal.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Technical Business Analyst (DevSecOps) - Contract
Technical Business Analyst (DevSecOps) - Contract

NCS Australia • Sydney

On-site
AUD 140,000 - 190,000
Lead DevSecOps & AI Security Specialist - Contract
Lead DevSecOps & AI Security Specialist - Contract

NCS • Sydney

Hybrid
AUD 180,000 - 240,000
DevSecOps SME - Contract
DevSecOps SME - Contract

NCS Australia • Sydney

Hybrid
AUD 140,000 - 200,000
Security Analyst - Contract
Security Analyst - Contract

NCS Australia • Sydney

On-site
AUD 120,000 - 180,000
Senior Technical Business Analyst (Customer Identity & Access Management)
Senior Technical Business Analyst (Customer Identity & Access Management)

NCS Australia • Sydney

On-site
AUD 140,000 - 180,000
Tech Lead - Contract or Permanent
Tech Lead - Contract or Permanent

NCS Group Australia • City of Brisbane

On-site
AUD 120,000 - 150,000
Paid parental leave
Health insurance discounts
Career development programs
Senior Consultant - Exposure Management & Asset Visibility
Senior Consultant - Exposure Management & Asset Visibility

NCS Australia • City of Melbourne

On-site
AUD 140,000 - 190,000
Senior Consultant - Exposure Management & Asset Visibility
Senior Consultant - Exposure Management & Asset Visibility

NCS • City of Melbourne

On-site
AUD 150,000 - 190,000
AI DevSecOps Governance SME - Contract
AI DevSecOps Governance SME - Contract

NCS Australia • Sydney

On-site
AUD 150,000 - 190,000
12-month contract
Sydney on-site
Professional development
Senior Full Stack Engineer- .Net/Angular& Azure - Initial 6-Month Contract
Senior Full Stack Engineer- .Net/Angular& Azure - Initial 6-Month Contract

NCS Australia • City of Melbourne

On-site
AUD 120,000 - 180,000
Learning program
Mentoring