Woolworths Group is a retail company dedicated to delivering "the best in convenience, value, and quality for our customers," aiming to create enhanced customer
Senior Security Services Engineer
Location
Australia
Posted
9 days ago
Salary
0
Seniority
Senior
Job Description
Senior Security Services Engineer
Woolworths Group
Title: Senior Security Services Engineer Location: Baulkham Hills Australia Job Description: Req ID 73109 Brand Woolworths Group Team Information Technology Employment type Full-time Location New South Wales, 2153 - Join a customer-obsessed technology business at the heart of Australia's largest retailer - Opportunity to work on the latest technology and methodology - Norwest based with hybrid working model We are Woolworths Group We are Woolworths Group. 200,000+ bright minds, passionate hearts and unique perspectives connected by a shared Purpose - 'to create better experiences together for a better tomorrow.' It's that Purpose that fuels our ambition to explore new ideas, make brave commitments and innovate better ways to meet the food and everyday needs of more than 24 million customers every week. If you're excited to turn today's blue sky thinking into a better tomorrow for future generations, you'll find yourself supported and enriched in a dynamic, inclusive and empowering workplace that reflects the diverse communities we serve. With a culture of genuine care, a flexible approach to work and opportunities across the group to grow your career and make a meaningful impact, the possibilities for what we can achieve together are endless. The Opportunity The Senior Security Engineer guides other security engineers and leads in the development and integration of security products and services in the Woolworths environment with a strong focus on Cloud. This role is responsible for leading engineering initiatives which improve the posture of our cloud & on-prem environment, which includes ensuring our capabilities are available for easy consumption, constantly improved to mitigate against the evolving threat landscape and ensuring these capabilities ad-here to our cyber security standards. What you'll do - Strategic Engineering Leadership: Lead the technical design and architectural integration of security products (SIEM, EDR, CNAPP, CASB, etc.), ensuring they align with the long-term Cyber Security roadmap and Woolworths standards. - Mentorship & Technical Guidance: Providing architectural guardrails and acting as a sounding board, allowing Engineers the autonomy to lead their own assigned projects while ensuring alignment with the broader strategy. Support Security Engineers with technical oversight and mentorship, reviewing their code, configurations, and implementation plans to ensure high-quality delivery and professional growth. - Security Architecture Collaboration: Liaise between the Security Architecture team and the Engineering team, translating high-level designs into executable engineering work packages. - Advanced Problem Solving: Serve as the final escalation point for the most complex 3rd level technical issues, conducting root-cause analysis and driving vendor relationships to resolve critical product defects. - Standardization & Governance: Define and govern the "Gold Standard" for security controls across Cloud and On-Prem environments, ensuring automation and GitOps workflows follow best practices. - Capability Evaluation: Lead Proof of Concepts (PoC) and technical assessments for emerging technologies, making authoritative recommendations on tool selection and business fit. - Continuous Posture Improvement: Proactively identify gaps in the security environment and initiate engineering projects to mitigate emerging threats, rather than solely reacting to incidents. - Stakeholder Management: Effectively communicate technical risks and project statuses to the Product Manager and broader What you'll bring - Architectural Proficiency: Expert-level knowledge of security tool integration (SIEM, EDR, CNAPP, Vulnerability Management) and the ability to align these tools with enterprise-wide security architecture. - Security Governance & Standards: Deep understanding of industry frameworks (NIST, ISO27001) and the ability to define "Gold Standard" configurations for a large-scale enterprise. - 6+ years' experience in an Engineering role is essential - Previous experience working with native security capability within cloud platforms like: Azure, GCP & AWS</li> - Exposure in system administration with operating systems common to enterprise (Windows, Linux & MAC) - Broad knowledge and confidence of a number of security applications and tools. - Exposure to SIEM technologies and respective query language - Experience in the various stages of Incident Response - Strong understanding of information security - Strong understanding of networking and protocols What you'll Experience - Team Discounts - Team discounts across our range of Woolworths Group brands you know and love and a robust rewards program that celebrates and incentivises purpose-driven work. - Wellness - Access to Sonder. Sonder provides free confidential 24/7 personalised financial, medical safety, psychological or physical support for team members and their families. Everyone belongs at Woolworths Group As one of the largest employers in Australia and New Zealand, we aim to create a truly inclusive workplace where everyone feels that they belong, can be their best selves, and reach their full potential. Diversity, equity, inclusion, and belonging are key to realising our purpose of better together for a better tomorrow. We recognise the value our team's diversity brings to our business, customers, and communities and that teams with diverse experiences and backgrounds enrich our group and are better able to innovate and solve problems.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Cyber Security Specialist
NSW GovernmentThe New South Wales (NSW) Government serves as the governing body for Australia’s most populous state, dedicated to delivering programs and services that enha
Cyber Security Specialist Location: Australia Job Description: Reference number REQ664446 Occupation Network and Server Management Work type Full-Time Location Sydney - North/North West Salary Information $132236 - $150222 Cyber Security Specialist Cyber Security Specialist (Health Manager Level 3) Strengthen cyber resilience across Australia’s largest public health system – with flexible work options and growth opportunities - Multiple Permanent Full Time Opportunities - Hybrid flexibility for work-life balance | Chatswood, St Leonards or Charlestown - Attractive salary, up to $150,222 + 12% Super + 17.5% annual leave loading Applications Close: 11:59pm, 31 May 2026 Your work matters at eHealth NSW As the digital centre of excellence for NSW Health, we design and deliver secure, scalable technology that supports patient care across the state, helping clinicians provide better healthcare, now and into the future. Join eHealth NSW to create real-world impact, drive meaningful outcomes and support the health of millions every day. Learn more about us at eHealth NSW Join the Team As a Cyber Security Specialist, you will help strengthen security across NSW Health by delivering trusted cyber risk advice, assessing strategic initiatives and supporting secure technology decisions across clinical and corporate environments. In this role, you will: - Lead cyber security advisory activities across strategic delivery initiatives, providing practical guidance that supports secure outcomes for clinical and corporate services. - Conduct cloud security assessments across major platforms such as AWS, Azure and SaaS environments against established security frameworks, evaluating controls including identity governance, audit logging, threat detection and data encryption, and translating findings into prioritised remediation roadmaps that support informed business decisions and organisational risk reduction. - Perform security assessments, third-party risk reviews and solution design reviews to identify threats, control gaps and residual risk across projects, platforms and vendors. - Assess security initiatives against regulatory and industry frameworks such as the ASD ISM, Essential Eight, ISO 27001 and NIST, helping ensure alignment with organisational, compliance and assurance requirements. - Provide strategic oversight of penetration testing assurance activities, including scope validation for critical systems, review of complex findings, risk contextualisation, and endorsement of remediation and re-testing strategies for systems of institutional criticality. - Advise on security controls across application security, network, operating system and identity layers, with consideration for architecture patterns, integration points and operational risk. - Ensure instances of non-compliance, control weakness or risk exposure beyond appetite are appropriately documented, transparently reported, and effectively escalated to senior leadership. View the position description here About You To be successful in this role you’ll need: - Bring hands-on cyber security experience in advisory, consulting or risk-focused environments, with the ability to apply sound judgement in complex delivery settings. - Demonstrate a strong understanding of security concepts across like security architecture, application security, network security, operating systems, identity management, broader information technology environments. - Communicate confidently with both technical and non-technical stakeholders, with well-developed influencing skills and the ability to translate security risk into clear business language. - Understand common security assessment and assurance approaches, including design reviews, third-party assessments, penetration testing and vulnerability assessment methodologies. - Work effectively with cloud technologies and native security controls across Azure and AWS, using a risk-based approach to strengthen secure design and operational resilience. - Hold, or be working towards, relevant industry certifications such as CISSP, CISM, AWS Security or Azure Security certifications. What We Offer At eHealth NSW, our benefits are designed to provide you with the flexibility, growth and support when you need it. We provide: - Hybrid and flexible working options to support balance and productivity - Allocation day off per month in addition to annual leave - Salary packaging to maximise your take-home pay - Career development and learning opportunities to help you grow - Wellbeing initiatives like Fitness Passport to support your physical and mental health Learn More About Us - Find out how we hire at eHealth NSW - Check out our diversity and inclusion commitment How to apply Submit your cover letter and most up to date resume (up to 5 pages), highlighting your relevant skills and experience. We recognise that AI tools are increasingly being used to support resumes and applications. While we accept their use, we’re eager to understand you – your experience, motivation, and what you would bring to the role. For questions around the role or recruitment process, including adjustments, please contact our Talent Advisor or Hiring Manager, Jitendra and quote REQ664446. Important information - This recruitment may be used to establish a Talent Pool for similar roles (ongoing or temporary) that may arise over the next 18 months. - To be eligible for this role you must have current Australian work rights (Australian citizen, permanent resident, New Zealand citizen with a current passport, or hold a valid visa with permission to work in Australia). - For this role 'Exempt' is refers to a fixed term contract of more than 13 weeks. - If you currently reside outside NSW, please indicate in your application whether you are willing to relocate if successful.
Senior Technology and Security Consultant
AECOMWe are the world’s trusted infrastructure consulting firm.
Title: Senior Technology & Security Consultant Location: Sydney Australia Employees work in a hybrid mode Full-time State/Province: New South Wales Business Group: DCS Legal Entity: AECOM Australia Pty Ltd Business Line: B&P - Buildings & Places Work Location Model: Hybrid Operating Group: International Primary Location: AU - Sydney, NSW Job Description: Company Description Work with Us. Change the World. At AECOM, we're delivering a better world. Whether improving your commute, keeping the lights on, providing access to clean water, or transforming skylines, our work helps people and communities thrive. We are the world's trusted infrastructure consulting firm, partnering with clients to solve the world's most complex challenges and build legacies for future generations. There has never been a better time to be at AECOM. With accelerating infrastructure investment worldwide, our services are in great demand. We invite you to bring your bold ideas and big dreams and become part of a global team of over 50,000 planners, designers, engineers, scientists, digital innovators, program and construction managers and other professionals delivering projects that create a positive and tangible impact around the world. We're one global team driven by our common purpose to deliver a better world. Join us. Job Description Given our strong pipeline of secured and upcoming projects, we are looking for an ICT / Comms all-rounder with security experience, to join our team based in Sydney. We are looking for a Senior level consultant to join our national ICT Team. How you'll make a difference: - Lead the ICT and Security design and delivery on projects, responsible for project costing, client engagement and briefing, development of technical solutions, documentation of design and specifications, and liaising with contractors during construction. - Technical design of ICT and Security systems including communications passive infrastructure (structured cabling systems), IT Network (LAN, WAN, VoIP, Wireless), and electronic security systems, including CCTV, Electronic Access Control, intruder alarm, perimeter intrusion detection, Type 1A Security Alarm Systems, and Cyber Security. - Collaborate with the local Buildings and Places team and national AECOM Technology Advisory group on a diverse range of projects in sectors including health, education, aviation, defence and justice. - Mentor and provide technical guidance to junior team members and build your own career through professional development and training - Ability to apply for and maintain an Australian Government Security Clearance Qualifications The qualities that help you thrive: The following qualifications and experience are highly desired, but if you don't tick all the boxes, you could still be a perfect fit for this role. Please apply, all applications will be considered. - Relevant Engineering Qualification in Electrical, ICT, Communications with, ideally, 10 + years of experience. - Holding (or eligible to obtain) a Security Advisor Licence and a Professional Engineering Registration in NSW. - Excellent technical and project delivery skills with a proven ability to coordinate and liaise effectively with clients and contractors. Your attention to detail and ability to prioritise tasks and communicate effectively is essential to work in a multidisciplinary team to deliver the right solution, on time, every time. - Demonstrated experience leading and delivering ICT and Security designs and consulting services within a Buildings environment. - A strong consultative approach, with an ability to work with technical engineers and non-technical project stakeholders. Additional Information Why you'll love working with us: - Flexible work arrangements, including alternative start/finish times, part-time, job-sharing and hybrid work options - Purchase up to 6 weeks additional annual leave per year - Flex public holidays - swap Easter or other holidays for ones that suit you better - Continuous learning and growth - lunch and learns, professional development courses, financial study assistance, 5 days paid study leave, global career opportunities Ready to push the limits of what's possible? We welcome applications from individuals of all backgrounds, including those with disabilities, additional health or mental health needs, and/or neurodiverse conditions. If you require any adjustments during the hiring process, please let us know. Freedom to Grow in a World of Opportunity You will have the flexibility you need to do your best work with hybrid work options. Whether you're working from an AECOM office, remote location or at a client site, you will be working in a dynamic environment where your integrity, entrepreneurial spirit and pioneering mindset are championed. You will help us foster a culture of equity, diversity and inclusion - a safe and respectful workplace, where we invite everyone to bring their whole selves to work using their unique talents, backgrounds and expertise to create transformational outcomes for our clients. AECOM provides a wide array of compensation and benefits programs to meet the diverse needs of our employees and their families. We also provide a robust global well-being program. We're the world's trusted global infrastructure firm, and we're in this together - your growth and success are ours too. Join us, and you'll get all the benefits of being a part of a global, publicly traded firm - access to industry-leading technology and thinking and transformational work with big impact and work flexibility. As an Equal Opportunity Employer, we believe in each person's potential, and we'll help you reach yours.
Security Engineer - Data Loss Prevention
GoDaddyGoDaddy is a web services platform that helps individuals and businesses worldwide start, grow, and manage their online presence. GoDaddy employs team members across North America,
Role Description As a Security Engineer - Data Loss Prevention at GoDaddy, you will contribute significantly to crafting the future of our data protection strategies. This groundbreaking role offers the chance to lead the implementation and management of innovative security technologies and processes. These measures protect sensitive data within our evolving workforce environment. Focusing on Data Loss Prevention (DLP), you will join a collaborative team committed to innovation and excellence. We want a candidate with hands-on experience and enthusiasm for developing scalable workflows that lower risk and empower the business! What you'll get to do... - Set up, refine, and maintain Data Loss Prevention (DLP) controls across endpoints, email, collaboration platforms, and cloud services to ensure the security of sensitive company information. - Monitor DLP alerts and investigations, perform triage and analysis, and partner with collaborators to drive timely remediation while balancing security and business efficiency. - Build, introduce, and steadily improve procedures, guides, and operational systems to address DLP events, policy exceptions, and recurring alert patterns. - Refine DLP policies, detection logic, and rule sets to improve precision, minimize false positives, and bolster protection coverage throughout the environment. - Lead and improve Microsoft 365 security and compliance solutions, emphasizing Microsoft Purview and the comprehensive O365 platform, to aid enterprise data protection aims. - Serve as the main point of contact for intricate DLP and data protection concerns, working in close coordination with the Security Operations function, Incident Response, Legal, HR, technology, and corporate units. Qualifications - 5+ years of experience in Security Engineering or Security Operations within large enterprise environments, including substantial hands-on experience with Data Loss Prevention technologies and programs. - Proven expertise in deploying, implementing, adjusting, and coordinating DLP controls across one or more channels such as endpoints, email, SaaS platforms, or cloud collaboration environments. - Experience handling DLP alerts, conducting investigations and triage, and improving detection and response approaches to reduce false positives and improve operational efficiency. - Experience developing and defining workflows, playbooks, and repeatable operational procedures in collaboration with Security Operations, IT, and business colleagues. - Strong understanding of Microsoft 365 / O365 safety and governance features; experience with Microsoft Purview, Exchange Online, SharePoint Online, OneDrive, and Teams is highly valued. - Ability to communicate complex security concepts and provide actionable mentorship to both technical and non-technical audiences. - Strong troubleshooting, analytical, and problem-solving skills, with the ability to balance security outcomes with business and user experience needs. - Experience with scripting or automation tools such as PowerShell, Python, or similar technologies to support reporting, automation, or operational scalability is a plus. Requirements - Experience with Microsoft Purview, Microsoft Defender, or similar Microsoft 365 security and compliance solutions, passionate about data protection and insider risk management. - Relevant certifications such as CISSP, SC-400, SC-900, or other security, compliance, or cloud-focused certifications. - Bachelor’s degree or equivalent experience in Cybersecurity, Security Engineering, Data Protection, Compliance Operations, or a related field. Benefits - Paid time off - Retirement savings (e.g., 401k, pension schemes) - Bonus/incentive eligibility - Equity grants - Participation in our employee stock purchase plan - Competitive health benefits - Family-friendly benefits including parental leave
Junior Test and Security Information Assurance Engineer
General DynamicsGeneral Dynamics is a global aerospace and defense company offering products designed to provide safety and security to people around the world. In the past, Ge
Title: Junior Test & Security Information Assurance (IA) Engineer Location: United States Job Description: Responsibilities for this Position Junior Test & Security Information Assurance (IA) Engineer ID: 2026-72646 US-AZ-Scottsdale US-Telework-Telework Required Clearance: Secret Posted Date: 5/18/2026 Category: Engineering-Systems Employment Type: Intern Conversion Hiring Company: General Dynamics Mission Systems, Inc. Basic Qualifications Requires a Bachelors degree in Engineering, or a related Science, Technology or Mathematics field. Also requires 8+ years of job-related experience, or a Master's degree plus 6 years of job-related experience. These are the foundational skills and qualifications we expect you to bring on day one: Required Skills & Qualifications Category Requirements Coding Demonstrated competencies in software development and the SDLC in python. Software Testing Demonstrated understanding of software testing principles including test case design, defect management, and test reporting Test Tools Hands-on experience or academic exposure to JIRA or similar defect tracking tools Automation Familiarity with test automation concepts and scripting for test execution IA/Cybersecurity Foundational understanding of Information Assurance principles and vulnerability management concepts Scanning Tools Familiarity with ACAS or similar vulnerability scanning platforms Compliance Basic understanding of STIGs and DoD security compliance frameworks Scripting Ability to write, test, and iterate scripts for system configuration and automation tasks in powershell, bash or similar. Cloud Familiarity with AWS or equivalent cloud environments for testing and development purposes Documentation Ability to produce clear, thorough, and professional technical documentation Process Understanding of Agile/Scrum, SDLC, and STLC methodologies Analytical Strong analytical skills including requirements analysis, root cause analysis, and risk assessment Communication Clear and professional written and verbal communication skills for stakeholder reporting and team collaboration CLEARANCE REQUIREMENTS: Department of Defense Secret security clearance is required at time of hire. Applicants selected will be subject to a U.S. Government security investigation and must meet eligibility requirements for access to classified information. Due to the nature of work performed within our facilities, U.S. citizenship is required. Responsibilities for this Position ABOUT THE ROLE Are you a technically curious, detail-oriented engineer ready to make an impact on mission-critical systems? We are looking for a Junior Test & Security Information Assurance (IA) Engineer to join our growing team. In this dual-function role, you will contribute to both software quality assurance and cybersecurity / vulnerability management efforts in support of a dynamic defense program. You will work alongside experienced engineers, collaborate with cross-functional teams, and play a direct role in ensuring the reliability, security, and compliance of critical systems. This is an excellent opportunity for an early-career engineer to build a strong technical foundation across software testing and information assurance two of the most in-demand disciplines in the defense and government contracting space. WHAT YOU'LL EXPERIENCE In this role, you will be actively engaged in meaningful, hands-on work from day one. Here is what your day-to-day experience will look like: Software Testing & Quality Assurance Test Execution - Execute test cases both manually and through automation tools, ensuring software performs as designed - Accurately record and track test results across testing phases - Reproduce and isolate defects and bugs to support effective debugging by development teams - Perform regression testing after defect fixes to ensure no new issues are introduced - Conduct smoke testing and sanity testing on new software builds before full test cycles begin - Validate and verify that reported defects have been properly resolved Defect Management - Log clear, detailed defect reports in JIRA, the team's issue-tracking platform - Assign appropriate severity and priority ratings to identified defects - Collaborate directly with developers to investigate and resolve issues - Track defects from initial discovery through full resolution and closure - Analyze defect trends and contribute to root cause analysis efforts Documentation & Reporting - Maintain accurate and up-to-date test documentation throughout the project lifecycle - Produce Test Summary Reports at the conclusion of each testing phase, summarizing results, metrics, and quality disposition - Report test progress and key metrics to stakeholders in a clear, concise manner - Maintain Requirements Traceability Matrices (RTM) to ensure all requirements are covered by corresponding test cases Continuous Improvement - Identify opportunities to improve test processes and methodologies - Actively contribute to the development and maintenance of automation frameworks and test infrastructure Information Assurance & Cybersecurity Vulnerability Management - Support the establishment and maintenance of a vulnerability scanning cadence for the unclassified (unclass) lab environment - Manage ACAS scanning activities including plugin management, scan execution, and results review - Coordinate scanning schedules and remediation activities with the lab team - Use and maintain the BRIM Tool (or equivalent) for vulnerability data processing within the VMP Plan Automation & Scripting - Develop, iterate, and test scripts to automate the configuration of PitBull systems for ACAS scanning compatibility - Work toward packaging automation scripts into RPM packages for streamlined, repeatable deployment - Test automation scripts within the AWS cloud environment Compliance & STIG Remediation - Review systems against applicable STIGs to assess compliance posture - Identify non-compliant findings and coordinate with relevant teams to drive remediation - Document compliance status and track remediation actions to closure IA Documentation & Stakeholder Coordination - Document and finalize the Least Privilege approach for scanning users, incorporating SME feedback through structured review cycles - Deliver finalized IA documentation to the VMP Team - Update and maintain the Container Best Practices document to incorporate input from the ASU Capstone project and NCDSMO container security guidance WHAT SETS YOU APART These are the additional skills, experiences, and qualities that will make you stand out as a top candidate: Category Differentiators Advanced Tools Experience with the BRIM Tool or equivalent vulnerability management processing tools RPM Packaging Demonstrated experience packaging Linux scripts or applications into RPM packages for deployment Container Security Working knowledge of container security best practices and familiarity with NCDSMO container security guidance PitBull Familiarity Prior experience working with PitBull mandatory access control systems in a classified or DoD environment Dual Discipline Experience Hands-on experience working across both software testing/QA and cybersecurity/IA functions Cross-Domain Knowledge Understanding of cross-domain solution environments and associated security requirements Continuous Improvement Mindset Demonstrated initiative in identifying process improvements and proposing innovative solutions Collaboration with SMEs Experience participating in or facilitating technical review cycles with subject matter experts #LI-Hybrid Salary Note This estimate represents the typical salary range for this position based on experience and other factors (geographic location, etc.). Actual pay may vary. This job posting will remain open until the position is filled. Combined Salary Range USD $88,300.00 - USD $90,700.00 /Yr.


