Information Security Engineer III

vor 3 Wochen


City of Melbourne, Österreich InComm Payments Vollzeit

Overview When you think of InComm Payments, think of Innovative Payments Technology. We were founded over 30 years ago and continue to be a pioneer in the payment (FinTech) industry. Since our inception, we have grown to be a team of over 3,000 employees in 35 countries around the world. We own over 400 global technical patents and a network that includes over 525,000 points of retail distribution that points to our industry expertise. InComm Payments works with the most recognized and valued brands in the world, and we are partnered with most of the world’s leading merchants. InComm Payments is highly focused on our people and their growth, and we work hard to make a career at InComm Payments meaningful and rewarding. We value innovation, quality, passion, integrity, and responsibility in all that we do, and we are looking for great people to join our team as we move forward towards a very bright future. You can learn more about InComm Payments by visiting our Website or connecting with us on LinkedIn, YouTube, Twitter, Facebook, or Instagram. About This Opportunity As an Information Security Engineer III, you will work on securing applications across InComm Payments by integrating security tools into CI/CD pipelines, conducting threat modeling, and supporting incident response. Ideally, you will have 5+ years of application security experience, strong scripting and cloud security skills (Azure, AWS, OCI), and hands‑on knowledge of SAST/DAST tools, WAFs, and penetration testing. The role also involves collaborating with development teams, leading security initiatives, and ensuring compliance with industry standards. Responsibilities Integrate SAST tooling into CI/CD pipelines, ensuring compatibility and efficient scanning within development workflows. Provide tailored SAST integration support for development teams at varying maturity levels with diverse toolsets and security requirements. Analyze application logs for anomalous patterns, communicate findings to leadership, and persuade them to take appropriate action. Participate in on‑call rotation in support of WAF incidents. Validate security vulnerabilities identified by automated tools and fine‑tune configurations to minimize false positives and reduce noise. Develop threat models with development teams to help expose risks in their deliverables. Conduct regular assessments of security configurations and controls within Azure, AWS, and OCI environments. Incident Response: Assist in investigating security incidents with CSOC and implementing corrective actions. Participate in application design and architectural reviews. Facilitate activities such as blue/red team events and bug bounty programs. Lead prioritization discussions to gain traction on important security issues. Act as a liaison with 3rd parties performing vulnerability scans and penetration testing to validate findings and inform priorities and strategies for remediation. Draft, evaluate, and monitor compliance with application and development security standards. Ensure development teams are validating for OWASP Top 10 and performing industry leading application security practices. Qualifications 5+ years of application security experience. Strong background with CI/CD processes and associated tooling, such as Jenkins, GitHub Actions, Azure Pipelines, or similar. Strong scripting experience – PowerShell, Python, etc. Extensive experience with SAST & DAST application scanning tools and knowledge of OWASP methodologies. Application security experience with high level programming languages (e.g., Java, C, C++, C#, VB, .NET, ASP.NET, ASP, PHP, J2EE, JSP). Experience with container technologies – Docker, Docker Swarm, Kubernetes. Experience in cloud security, specifically with Azure, AWS, and OCI, preferably in the Fintech or related sectors and multi‑cloud environments. Knowledge of Web Application Firewalls (WAF). Experience with Identity and Access Management security solutions and protocols (e.g., SAML, OpenID, and OAuth). Experience with performing web, API, and mobile manual penetration testing; preparing reports to document findings; and presenting the report to development teams. Familiarity with regulatory controls and industry best practices such as HIPAA, PCI, HiTrust, NIST etc. Conduct regular assessments of security configurations and controls within Azure, AWS, and OCI environments. Incident Response: Assist in investigating security incidents and implementing corrective actions. Communication skills to create documentation, videos and conduct training classes. Ability to manage multiple tasks simultaneously and meet established deadlines. Ability to collaborate with IT teams on security‑related tasks and projects. Ability to work productively while remote and communicate effectively in a virtual team environment. Ability to stay current with new technology. InComm provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, sexual orientation, gender identity or national origin, citizenship, veteran’s status, age, disability status, genetics or any other category protected by federal, state, or local law. *This position is eligible for the Employee Referral Bonus Program-Tier III #LI-WS1 #LI-Remote #J-18808-Ljbffr



  • Council of the City of Sydney, Österreich ING Australia Vollzeit

    Join to apply for the Information Security Engineer role at ING Australia Overview At ING Australia, you will have the chance to build a career as unique as you are, with the global scale, support, inclusive culture, and technology to become the best version of you. Reporting to the Senior Tech Operations Manager this role supports the development of secure...


  • City of Hobart, Österreich Mystatelimited Vollzeit

    We're looking for an experienced Information Security Engineer to join our Technology team About Us With the merger of MyState Bank and Auswide Bank, we're entering an exciting new chapter, combining over 120 years of banking experience and expanding our footprint across Australia's East Coast. This transformation brings bold opportunities to modernise...


  • City of Hobart, Österreich MyState Bank Vollzeit

    About Us With the merger of MyState Bank and Auswide Bank, we’re entering an exciting new chapter, combining over 120 years of banking experience and expanding our footprint across Australia’s East Coast. This transformation brings bold opportunities to modernise systems, simplify customer experiences, and build a stronger, more innovative organisation....


  • City of Hobart, Österreich MyState Limited Vollzeit

    About Us With the merger of MyState Bank and Auswide Bank, we’re entering an exciting new chapter, combining over 120 years of banking experience and expanding our footprint across Australia’s East Coast. This transformation brings bold opportunities to modernise systems, simplify customer experiences, and build a stronger, more innovative organisation....


  • Council of the City of Sydney, Österreich Leap Software Developments Vollzeit

    We're always on the hunt for exceptional peopleAvailable PositionsJunior Information Security EngineerInformation TechnologyInformation SecuritySydneyPermanent / Full Time27 / 2 / 2025SOC 2 Type 2 certifiedFlexible, Sydney-based hybrid roleAbout usLEAP Dev is the "Software House" powering LEAP Legal Software, the leading provider of Legal Practice...


  • City of Hobart, Österreich MyState Bank Vollzeit

    A major Australian bank is seeking an experienced Information Security Engineer to implement and maintain security controls across environments. The ideal candidate will have substantial experience in IT system administration and information security, particularly with firewalls and network security. You will work collaboratively to enhance security...


  • City of Hobart, Österreich Mystatelimited Vollzeit

    A leading financial institution in Hobart is seeking an experienced Information Security Engineer to implement and optimize security controls across cloud and on-premises environments. The successful candidate will manage security tools, support vulnerability management, and collaborate with IT to ensure compliance with security frameworks. This role...


  • City of Hobart, Österreich MyState Limited Vollzeit

    A leading financial services provider located in Tasmania is seeking an experienced Information Security Engineer to implement and manage security controls across on-premises and cloud environments. You will be responsible for deploying security tools, maintaining security configurations, and ensuring compliance with security frameworks. The ideal candidate...


  • Council of the City of Sydney, Österreich Bank of America Vollzeit

    Senior Network Security Engineer – Global Information Security, Sydney, Australia Bank of America invites applications for the Senior Network Security Engineer role in Sydney, Australia. This role is part of the Global Information Security team and focuses on researching, designing, engineering, implementing, and supporting network security solutions....


  • Council of the City of Sydney, Österreich CoStar Realty Information, Inc. Vollzeit

    A leading real estate information provider is seeking a Senior Systems Security Engineer to design and implement automation solutions across critical platforms such as networking, identity, and endpoint protection. The ideal candidate will have qualifications in Computer Science or related fields and strong knowledge of IAM and network security principles....