AppSec Engineer
Contract Type
Permanent
Location
New South Wales, Sydney
Industry
IT
Specialisation
Security
Salary
AU$190000.00 - AU$200000.00 per annum + incl Super
Contact Name
Harvey McIntosh
Contact Email
harvey@talenza.com.au
Date published
02-10-2026
Job Reference
BBBH22749
Description
- Leading Australian financial services organisation trusted by millions of customers.
- Significant investment in cyber security, cloud technologies, and modern engineering practices.
- Collaborative, purpose-driven culture with a strong focus on innovation, customer outcomes, and continuous improvement.
This role sits at the intersection of security and engineering, partnering closely with development teams to strengthen application security across multiple technology domains. You'll lead the triage, prioritisation, and governance of application security findings while driving secure SDLC practices and helping engineering teams remediate risk efficiently.
- Demonstrated experience in Application Security or Security Engineering.
- Strong knowledge of SAST, DAST, SCA, API security, secrets management, container security, and infrastructure-as-code security.
- Solid understanding of OWASP Top 10, OWASP API Security Top 10, common CWEs, and software supply chain risks.
- Experience implementing and assessing secure SDLC controls throughout the software development lifecycle.
- Strong GitHub security and repository governance experience.
- Excellent stakeholder engagement and communication skills, with the ability to translate technical findings into practical remediation actions.
- Analyse, validate, and prioritise application security findings across a range of security tooling and platforms.
- Drive remediation outcomes through close collaboration with engineering teams and technology stakeholders.
- Establish and govern secure SDLC controls across design, development, testing, deployment, and maintenance activities.
- Manage and enhance GitHub security controls, repository standards, and security integrations.
- Monitor remediation progress, provide risk reporting, and coordinate security exception processes where required.
- Hybrid working model with flexibility and work-life balance.
- Opportunity to influence security practices across large-scale engineering environments.
- Join a high-performing cyber security function with strong executive support and ongoing investment.