- What You'll Be DoingLead platform security initiatives across cloud and on-premises environments, including risk assessment, infrastructure hardening and secure access.
- Own and define the security standard for a Managed Kubernetes Service supporting high-performance computing workloads.
- Apply Kubernetes security best practices.
- Build and strengthen Kubernetes supply chain security, including image signing, vulnerability scanning and policy enforcement.
- Embed security into infrastructure-as-code pipelines.
- Evaluate and introduce AI/ML-powered security tooling.
- Partner across engineering and technology teams.
- What You'll Bring5+ years’ experience across Platform Security, DevSecOps, SRE or a closely related discipline.
- Strong hands-on expertise securing Kubernetes environments.
- Experience with Kubernetes supply chain security: tools such as Cosign, Trivy and/or Kyverno.
- Experience implementing IaC security and automated scanning, with tools such as Checkov or Snyk.
- Understanding of secrets management and identity security.
- Familiar with security standards, frameworks and secure engineering principles.
- Competent scripting or programming ability.
- Fundamentals across Linux, networking and distributed systems.
- A hands-on mindset with the ability to operate strategically.
Bonus points for: experience working within a high-growth technology or startup environment.
Bottom line, if you have strong Kubernetes experience and a solid understanding of secure engineering principles, I’d love to hear from you.
- Why Apply?Build, don't inherit shape the security foundations of a growing technology platform.
- Technical challenge: work deeply across Kubernetes, cloud, infrastructure and distributed systems.
- Influence: define security standards and engineering practices across a critical platform.
- Career growth: join a heavily funded technology business entering an exciting phase of expansion.
📍 Sydney location, CBD office🏢 Hybrid: 2 days per week in the office💰 $200–240K base + super (roughly) 🧑 💻 Full-time🎯 2–3 stage interview process, including a technical assignment
Interested?Apply directly or reach out to me at harry@decipherbureau.com
Incase you would like to apply to this job directly from the source, please click here