Lead Security Engineer

vor 1 Tag


Council of the City of Sydney, Österreich Xero Vollzeit

Lead Security Engineer (Application Security & Vulnerability Management) Join to apply for the Lead Security Engineer (Application Security & Vulnerability Management) role at Xero The role and its impact As a seasoned Lead Engineer/Tech Lead, you will be an acknowledged authority on application security & vulnerability management, solving engineering problems beyond your own team and influencing others to make changes. This role will act as a technical hands‑on leader, driving the implementation of secure software development practices across the organisation. You will play a pivotal role in embedding security into our software development lifecycle, ensuring vulnerabilities are identified, prioritised, and remediated efficiently. By advocating for secure‑by‑design principles, you will help us move from reactive remediation to proactive prevention. Your work will involve uplifting security capabilities and automating controls to enable engineering teams to deliver secure, scalable products without compromising agility. You will balance security with developer experience, leading initiatives to improve our security posture across software and cloud environments while acting as a mentor to foster a culture of shared security responsibility. We’re looking for somebody with a passion for security automation and security‑as‑code, who can leverage tools to improve efficiency. Coupled with a growth mindset, continuously learning and adapting to emerging threats and security trends. The Team & How They Connect You will work across multiple teams, acting as a trusted advisor on complex security challenges and championing secure engineering enablement. Collaborating closely with engineering, platform, and cloud teams, you will foster a culture where security is a shared responsibility rather than a blocker. Initially, you will focus on Embedding automated security testing (SAST, DAST, SCA) and runtime tools into CI/CD pipelines to drive "shift‑left" security. Developing and refining automated vulnerability detection processes using our tech stack which includes AWS, GCP, and Terraform. Leading threat modeling exercises to proactively assess and mitigate risks before deployment. Supporting software development with a security focus, utilising languages such as .NET, Python, Java, or JavaScript. Where And How You Can Work Our team is split across Australia & New Zealand; this role can be based anywhere on the East Coast of Australia. We champion a diverse and inclusive working environment. We offer flexible working arrangements that allow you to balance your work and personal life. Whether you prefer working from home, in our beautiful offices, or a mix of both, we support the way you work best. Here are some of the things we are looking for You bring deep expertise in Application Security and Vulnerability Management, specifically within cloud‑native applications and modern architectures. A strong understanding of DevSecOps practices is essential, particularly regarding automated security testing and container security. You are comfortable influencing without authority, aligning security priorities with business needs while collaborating across engineering teams. Experience driving vulnerability management programs, including risk assessment and remediation strategies, will be key to your success. You possess a solid grasp of modern software delivery practices and can code in languages like .NET, Python, Java, or JavaScript. Passionate about developer enablement, you thrive on making security accessible and empowering engineers to write secure code. Apply even if your experience isn't a perfect match At Xero, we hire based on your skills, passion, and the unique perspective you can bring to enhance our culture and team. Seniority level: Mid‑Senior level Employment type: Full‑time Job function: Information Technology Industries: Software Development #J-18808-Ljbffr



  • Council of the City of Sydney, Österreich Marcus Lavalle-Smith - Cyber Security Vollzeit

    A global trading firm is seeking a Security Engineer or Security Analyst to lead security initiatives independently. This role emphasizes autonomy and problem-solving, requiring 3-5 years of hands-on cybersecurity experience and familiarity with modern security tools. Ideal candidates will be self-motivated and pragmatic, with an understanding of systems and...

  • Security Engineer

    vor 2 Wochen


    Council of the City of Sydney, Österreich Marcus Lavalle-Smith - Cyber Security Vollzeit

    About the Role Are you a Security Engineer or Security Analyst with several years of experience, seeking greater autonomy? Do you enjoy shaping security practices in a company that values action over bureaucracy and prefers problem-solving with tools rather than waiting for instructions? If so, this opportunity might be for you. What We Offer $k + super and...

  • Team Leader

    vor 4 Wochen


    Council of the City of Sydney, Österreich Certis Security Vollzeit

    Certis Security Australia is one of Australia's leading security service provider with over 3,000 employees nationwide, providing our clients with industry leading security services with our state-of-the-art technology and highly qualified staff. As part of the Certis Group, SNP Security and BRI Security deliver integrated security solutions including...


  • Council of the City of Sydney, Österreich Centorrino Technologies Vollzeit

    A leading technology firm in Sydney is seeking a passionate Senior Security Systems Engineer to strengthen security across diverse environments for government clients. You will design and implement security solutions, develop documentation, and lead workshops. The ideal candidate has over 7 years of experience and the ability to work independently or...


  • Council of the City of Sydney, Österreich HBF Health Vollzeit

    A leading health organization is seeking an experienced Cyber Security Engineer to enhance their security strategy. The ideal candidate has expert knowledge of Microsoft 365 security products and will lead the delivery of cyber security projects. This role offers benefits including corporate discounts and additional leave days. Apply now to join a dedicated...


  • Council of the City of Sydney, Österreich Xero Vollzeit

    A software development company in New South Wales is seeking a Lead Security Engineer to manage application security and vulnerability assessments. This mid-senior level role involves implementing security practices across the software development lifecycle, focusing on automation, and mentoring engineers. Candidates should possess experience in cloud-native...


  • Council of the City of Sydney, Österreich Ausiex Vollzeit

    Senior Cyber Security Engineer We are AUSIEX AUSIEX is a leading provider of equities execution, clearing & settlement services, and equities administration for financial intermediaries. With over 25 years of experience in the local market and a partnership with Nomura Research Institute (NRI), we blend global technology capability with local expertise....

  • Security Engineer

    vor 3 Wochen


    Council of the City of Sydney, Österreich Nuage Technology Group Vollzeit

    Get AI-powered advice on this job and more exclusive features. We are working with a global leader in the financial services industry to find security engineers with expertise in ForgeRock & Ping Identity solutions. These roles will play a key part in delivering enterprise scale Identity and Access Management solutions for customers across Australia. What...


  • Council of the City of Sydney, Österreich Government Communications Security Bureau Vollzeit

    A government agency is seeking a strategic leader for the position of Deputy Director-General Cyber Security. This role requires extensive leadership experience in security operations, focusing on enhancing national cyber security resilience and safeguarding critical systems. Ideal candidates should possess exceptional communication skills and the ability to...

  • Security Engineer

    vor 4 Wochen


    Council of the City of Sydney, Österreich Diraq Vollzeit

    A leading quantum computing company in Sydney is seeking an IT Security Engineer / Analyst to enhance its security posture and support IT operations. The role involves conducting risk assessments, implementing security measures, and providing IT support. Ideal candidates will have a strong background in managing Linux and Windows servers, network security...