DevSecOps Security Consultant / Engineer - Contract - Sydney at Hastha Solutions | AU | Rezi

DevSecOps Security Consultant / Engineer - Contract - Sydney at Hastha Solutions

DevSecOps Security Consultant / Engineer - Contract - Sydney

Hastha Solutions · AU

1 weeks ago

DevSecOps Security Consultant / Engineer - Contract - Sydney

Hastha Solutions · AU

9 days ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now
Resume preview

Tailor your resume to this DevSecOps Security Consultant / Engineer - Contract - Sydney role.

Rezi rewrites your resume against Hastha Solutions's job description. Free.

Resume score gauge reading 58 out of 100

Don't guess if your resume is good enough.

See how it scores against the DevSecOps Security Consultant / Engineer - Contract - Sydney posting at Hastha Solutions — free, in seconds.

About the Role

This is a contract role for a DevSecOps Security Consultant/Engineer based in Sydney, focusing on enhancing security within cloud platforms, applications, and development environments.

Responsibilities

  • Conduct DevSecOps security discovery, assessment, and risk evaluation across cloud platforms, applications, and development environments.
  • Perform security posture reviews using Orca Security and GitHub Advanced Security to identify vulnerabilities, misconfigurations, exposed assets, code security issues, and compliance gaps.
  • Analyze cloud workloads, repositories, infrastructure configurations, and application architectures to assess security risks and recommend mitigation strategies.
  • Partner with DevOps, engineering, and application teams to integrate security controls and secure-by-design principles throughout the SDLC.
  • Implement and enhance security capabilities within CI/CD pipelines, including automated security testing, code scanning, secret detection, dependency analysis, and policy enforcement.
  • Review and validate security findings, prioritize risks based on business impact, and provide actionable remediation guidance.
  • Track remediation efforts and security improvements across cloud environments, containerized workloads, and source code repositories.
  • Support vulnerability management activities, including identification, reporting, risk assessment, and remediation verification.
  • Contribute to the development of DevSecOps standards, security baselines, governance frameworks, and operational procedures.
  • Collaborate with cross-functional teams to improve cloud security architecture, compliance readiness, and security monitoring capabilities.
  • Prepare assessment reports, security dashboards, executive summaries, and technical recommendations.

Requirements

  • 8+ years of relevant experience in Cyber Security, Cloud Security, Application Security, or DevSecOps engineering roles.
  • Strong hands-on experience with Orca Security and GitHub Advanced Security.
  • Practical knowledge of DevSecOps methodologies, security automation, and secure software development practices.
  • Experience securing CI/CD platforms and integrating security controls into development pipelines.
  • Strong understanding of cloud security concepts, including identity and access management, network security, data protection, and workload security.
  • Experience with vulnerability management, risk assessment, and remediation tracking.
  • Knowledge of application security principles, code security testing, and software supply chain security.
  • Familiarity with cloud platforms such as AWS, Microsoft Azure, and Google Cloud Platform (GCP).
  • Understanding of container security, Kubernetes security, and Infrastructure as Code (IaC) security practices.
  • Strong analytical, troubleshooting, and problem-solving skills.
  • Excellent communication and stakeholder management capabilities.
  • Relevant cloud security or cybersecurity certifications.
  • Experience working in enterprise-scale DevSecOps and cloud transformation programs.
  • Knowledge of regulatory compliance frameworks and industry security standards.

Skills

  • Orca Security
  • GitHub Advanced Security
  • DevSecOps methodologies
  • Security automation
  • Secure software development practices
  • CI/CD security
  • Cloud security
  • Identity and Access Management (IAM)
  • Network security
  • Data protection
  • Workload security
  • Vulnerability management
  • Risk assessment
  • Remediation tracking
  • Application security
  • Code security testing
  • Software supply chain security
  • AWS
  • Microsoft Azure
  • Google Cloud Platform (GCP)
  • Container security
  • Kubernetes security
  • Infrastructure as Code (IaC) security
  • Analytical skills
  • Troubleshooting skills
  • Problem-solving skills
  • Communication skills
  • Stakeholder management

Location

  • Sydney

Work Type

  • Contract
  • Full-time

Experience Level

  • 8+ years relevant experience

Education Level

  • Bachelor’s degree in computer science, Information Security, Information Technology, Engineering, or a related field.