Application Security Engineer (AU) at DroneShield
Sydney, New South Wales, Australia -
Full Time


Start Date

Immediate

Expiry Date

14 Apr, 26

Salary

0.0

Posted On

14 Jan, 26

Experience

2 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Application Security, Threat Modelling, Automation, Web App Security, Cloud Security, CI/CD, SAST, DAST, SCA, Python, Go, RESTful APIs, gRPC APIs, Software Engineering Best Practices, Vulnerability Management, Red Teaming, Embedded Security

Industry

Defense and Space Manufacturing

Description
About the role DroneShield is seeking an Application Security Engineer with relevant experience to join the Product Security team in Sydney, NSW. The Product Security team is responsible for improving the security of all DroneShield products. Our product suite includes hardware, firmware, web apps, cloud and AI. As a small team, we need to focus on initiatives that scale our work: eliminating entire bug classes, automating security controls, and working in partnership with other engineering teams. Key responsibilities include assuring the security of Production Applications and Platforms, enhance our secure SDLC, CI/CD platform and reduce toil for Engineers. The role also involves managing multiple concurrent projects. The ideal candidate will have strong communication skills, web app & cloud security knowledge and experience with automation. They should have demonstrated experience in application security in high-stakes environments, and deep technical expertise in modern app security and application architectures. This position offers the opportunity to contribute to the security of a platform with complex threat models. There will also be opportunities for Red Teaming and exposure to Hardware and Embedded security. Responsibilities, Duties and Expectations Contribute to secure SDLC practices and help integrate security into CI/CD pipelines Perform application security reviews and threat modelling Identify and remediate vulnerabilities in web apps, APIs, and cloud environments Develop automation scripts and tools to improve security processes Collaborate with engineering teams to improve developer experience and reduce security toil Assist in security testing (SAST, DAST, SCA) and vulnerability management Support continuous improvement and knowledge sharing within the team Qualifications, Experience and Skills BS degree in Computer Science, Information Technology or similar technical field of study or equivalent practical experience Demonstrated experience working in application security in high-stakes environments On-the-tools engineering experience – must be hands-on Minimum 3 years’ experience in related roles. Roles could include: Security Engineer Application Security Engineer Software Engineer Knowledge of the following would also be essential: Comfortable on the command line in a Linux first environment Application Security Reviews and Threat Modelling Can write software (Python, Go, etc.) and peer review code / implementation / automation scripts Familiarity with RESTful and gRPC APIs Modern app security and application architectures Strong expertise in software engineering best practices Experience finding security bugs in web apps, mobile apps and cloud Working within production environments and understanding security risks in CI/CD SAST, DAST, SCA Knowledge of the following would also be desirable: Red Teaming, reverse engineering, security research Cloud Security (Azure/AWS) Developing and implementing automated security testing tools Hardware and Embedded Security Note for recruitment agencies: We do not accept unsolicited candidates from external recruiters unless specifically instructed.
Responsibilities
The Application Security Engineer will contribute to secure SDLC practices, perform application security reviews, and identify and remediate vulnerabilities. They will also collaborate with engineering teams to enhance security processes and reduce toil for engineers.
Loading...