Application Security Engineer
Whizdom ·whizdom.shazamme.com
Apply direct
Senior Application Security Engineer
This opportunity will suit a hands-on Application Security professional with strong experience implementing enterprise security platforms and embedding secure coding controls throughout the software development lifecycle.
About the Role
You will lead the implementation and onboarding of a Secure Code Scanning platform, integrating automated security testing into source-control systems and CI/CD pipelines.
Working closely with development, DevOps and security teams, you will establish scanning strategies, remediation workflows, quality gates and vulnerability-management processes. You will also support implementation, testing, rollout and post-go-live stabilisation while helping development teams adopt secure coding practices.
Key Responsibilities
To be successful in this role, you will have:
Apply today or reach out for a confidential discussion:
Katrina Gabriel | 0489 923 756 | katrinag@whizdom.com.au
Candidates will need to be willing to undergo pre-employment screening checks, which may include identity and work rights checks, security clearance verification and any other client-requested checks
- Sydney, NSW
- 6-Month Contract
This opportunity will suit a hands-on Application Security professional with strong experience implementing enterprise security platforms and embedding secure coding controls throughout the software development lifecycle.
About the Role
You will lead the implementation and onboarding of a Secure Code Scanning platform, integrating automated security testing into source-control systems and CI/CD pipelines.
Working closely with development, DevOps and security teams, you will establish scanning strategies, remediation workflows, quality gates and vulnerability-management processes. You will also support implementation, testing, rollout and post-go-live stabilisation while helping development teams adopt secure coding practices.
Key Responsibilities
- Lead the implementation and onboarding of Secure Code Scanning platforms such as Snyk, Fortify, Checkmarx or Veracode.
- Integrate security-scanning capabilities with GitHub, GitLab and CI/CD pipelines.
- Establish automated scanning, policy enforcement and secure coding controls across the software development lifecycle.
- Collaborate with development, DevOps and security teams to define scanning strategies and remediation workflows.
- Implement quality gates, exception-handling processes and vulnerability-remediation SLAs.
- Establish vulnerability triage, risk-prioritisation and remediation-tracking processes.
- Identify integration dependencies, developer-adoption challenges and potential performance impacts.
- Develop technical standards, deployment procedures, operational runbooks and governance processes.
- Provide hands-on support throughout implementation, testing, rollout and post-go-live stabilisation.
- Mentor development teams and promote secure coding and DevSecOps best practices.
To be successful in this role, you will have:
- Demonstrated experience implementing Application Security or Secure Code Scanning solutions within large enterprise environments.
- Strong hands-on experience with one or more platforms such as Snyk, Fortify, Checkmarx or Veracode.
- Strong knowledge of Static Application Security Testing (SAST) and vulnerability-management practices.
- Experience integrating security tools with GitHub, GitLab and CI/CD pipelines.
- Sound understanding of secure software development lifecycle principles and DevSecOps practices.
- Experience establishing vulnerability triage, risk-prioritisation and remediation processes.
- Ability to identify implementation risks, integration dependencies and developer-adoption challenges.
- Experience producing technical standards, deployment documentation, runbooks and governance processes.
- Strong stakeholder engagement skills and the ability to collaborate across development, DevOps and security teams.
- The ability to mentor technical teams and promote practical secure coding practices.
Apply today or reach out for a confidential discussion:
Katrina Gabriel | 0489 923 756 | katrinag@whizdom.com.au
Candidates will need to be willing to undergo pre-employment screening checks, which may include identity and work rights checks, security clearance verification and any other client-requested checks
Frequently asked questions
Who is hiring for the Application Security Engineer role?
Whizdom is hiring for the Application Security Engineer position, a Shazamme client. Apply directly on the employer's career site.
Where is the Application Security Engineer job located?
The Application Security Engineer role with Whizdom is based in Sydney, NSW, AU.
What does the Application Security Engineer role pay?
Whizdom lists the Application Security Engineer role at AUD 100–125 per hour.
Is the Application Security Engineer role full-time or contract?
This is a full time position at Whizdom.
What experience level is the Application Security Engineer role?
The Application Security Engineer position is aimed at mid-level candidates.
How do I apply for the Application Security Engineer role at Whizdom?
Apply directly on Whizdom's career page via the Apply button on this listing. ZammeJobs links straight through to the employer's ATS — no third-party form, no resume database.