18
March
Appsec Security Engineer
Commonwealth Bank - Canberra, ACT
IT
Source: uWorkin
JOB DESCRIPTION
- Be a part of a high profile Security Program
- Implement best practice in to development
- Opportunity to work on greenfield projects
- Tooling & Automation: Embedding security tools and automation into the SDLC (including Checkmarx), to allow developers to self-identify security issues early on in the development cycle.
- Training: Delivering training on secure development practices to engineering teams via our e-learning platform (Secure Code Warrior), brown-bag sessions, and tailored in-person workshops.
- Developer Security Support & Engagement: Supporting and mentoring development teams through our AppSec Champions programme to foster a secure-by-design culture.
- Consulting: Providing specialist and practical security advice to development teams, with a focus on ensuring that secure development practices are in place from day one, developing patterns and practices, and helping to solve development-time security challenges.
You will perform Application Security function activities, including coaching developers, providing application security training, grow the consultancy function, and implementing tools for success
Your responsibilities
- Work with software development teams to ensure application security requirements are addressed and understood at project formation
- Provide advice on code security in the Software Development Lifecycle
- Develop and conduct training on best practice secure coding for application development
- Perform Penetration Testing to provide software development sprints security feedback & assurance
- Develop, maintain and operate tools for application security automation such as fuzzers and code scanners
- Report results of application security initiatives to stakeholders which include project managers, service owners, developers and risk managers
- Participate in thought leadership and attend industry events
- Perform security research and excellence activities in addition to regular responsibilities
- Experience in best practice software security
- Ability to consult with business and technical representatives to balance security and business requirements
- Have an understanding of Agile and DevOps development techniques
- Have strong communication skills
- Strong grasp of risk management principles
- Java and / or C# experience is desirable
If you're already part of the Commonwealth Bank Group (including Bankwest), you'll need to apply through to submit a valid application. We’re keen to support you with the next step in your career.
We're aware of some accessibility issues on this site, particularly for screen reader users. We want to make finding your dream job as easy as possible, so if you require additional support please contact HR Direct on 1800 989 696.
Advertising End Date: 12/04/2021
Commonwealth Bank