Application Security Engineer
Melbourne, VIC, AU
Application Security Engineer
ABOUT THE ROLE:
Join our Information Security team and play a pivotal role in driving the Application Security function at Wilson Group. In this role, you will support the Information Security Manager by addressing application security-related issues, ensuring seamless assistance for Wilson staff, and maintaining the health and performance of our cyber security detection and prevention technologies and processes.
You will also contribute to fostering a strong cyber security culture, managing cyber risks, and enhancing the overall cyber resilience of Wilson Group. This is your opportunity to make a significant impact in a dynamic and supportive environment.
- Location: Melbourne CBD or Essendon Fields
- Full-Time Role
- Monday-Friday
- Potential earnings up to $160k plus super
DUTIES & RESPONSIBILITIES:
Key Accountabilities and Responsibilities
- Develop and maintain comprehensive software application security policies, procedures, and documentation.
- Provide technical guidance and direction to application development teams to ensure secure coding practices.
- Design, implement, and maintain software application security controls for digital and security solutions.
- Integrate enterprise-level DAST (Dynamic Application Security Testing) and SAST (Static Application Security Testing) capabilities into the development lifecycle.
- Identify and address security vulnerabilities through technical solutions that mitigate risks and strengthen systems.
- Analyse system services, identifying and resolving issues in code, networks, and applications.
- Follow and promote security best practices across all tasks and projects.
Skills and Expertise Required
- Strong understanding of web and mobile application security, including threat modelling and analysis.
- Proficiency in programming languages and secure coding techniques.
- Hands-on experience with security testing tools and automation enablement.
- In-depth knowledge of common threats, attacks, and mitigation strategies.
- Familiarity with security protocols, standards, database encryption, and cloud security.
- Experience with the software development life cycle and integration of security practices at each stage.
WHO WE ARE LOOKING FOR:
- A minimum of 3 years of experience in Application Security or related fields, particularly in digital and mobile channels.
- Proven ability to collaborate with senior management across multiple departments.
- Demonstrated success working in fast-paced, project-oriented environments.
- Strong organizational skills with the ability to prioritize, execute tasks, and manage multiple responsibilities simultaneously.
- Experience handling sensitive and confidential information with discretion.
- Excellent analytical and problem-solving skills.
- Knowledge and expertise in:
- OWASP Top 10
- Securing cloud environments (Azure & AWS)
- Web and Mobile Application Security
Desirable
- Active certifications in information systems, cyber security operations, or management.
- A university degree or diploma in Information Technology, Computer Science, or a related discipline.
- Additional expertise in:
- DevSecOps
- DAST (Dynamic Application Security Testing) and SAST (Static Application Security Testing)
- Advanced Web and Mobile Application Security
If you are interested in this opportunity, click on apply and submit your resume today!