Where

Appsec Engineer

NXTGIG
Sydney Full-day Full-time

Description:

NXT GIG is seeking a talented Application Security (AppSec) Engineer to join our dedicated security team. In this role, you will be responsible for integrating security into the software development lifecycle (SDLC), ensuring that our applications are secure from the ground up. You will work closely with development teams to identify vulnerabilities, perform security assessments, and implement security best practices throughout the development process. Your expertise will be critical in enhancing our application security posture and ensuring compliance with industry standards and regulations. If you have a passion for application security and enjoy working in a collaborative environment, we invite you to apply and be part of our innovative team at NXT GIG.


Responsibilities
  • Conduct security assessments and penetration testing on applications to identify and mitigate vulnerabilities.
  • Collaborate with development teams to embed security practices into the SDLC and provide security guidance during design and implementation.
  • Develop and maintain application security policies, standards, and best practices.
  • Implement automated security testing tools and processes to ensure continuous security validation.
  • Monitor and respond to security incidents related to applications, providing thorough reports and recommendations for remediation.
  • Stay informed about the latest security threats, vulnerabilities, and trends in application security.
  • Provide training and awareness programs for developers on secure coding practices and application security principles.

Requirements

  • Bachelor's degree in Computer Science, Cyber Security, or a related field.
  • Proven experience as an Application Security Engineer or in a similar role focused on application security.
  • Strong understanding of application security principles, threats, and vulnerabilities.
  • Experience with security testing tools (e.g., SAST, DAST, IAST) and code review methodologies.
  • Familiarity with secure coding practices and frameworks (e.g., OWASP Top Ten, secure SDLC methodologies).
  • Excellent analytical and problem-solving skills with a keen attention to detail.
  • Relevant certifications (e.g., CSSLP, OSCP, or similar) are a plus.
20 Mar 2025;   from: uworkin.com

Similar jobs

  • Amazon Commercial Services Pty Ltd - F47
  • Sydney
Description: The goal of Amazon Logistics is to build a world class last mile operation. Amazon Logistics aims to exceed the expectations of our customers by ensuring that their orders, no matter how large or small, are delivered as quickly, accurately, ...
a month ago
Description: AWS Infrastructure Services owns the design, planning, delivery, and operation of all AWS global infrastructure. In other words, we’re the people who keep the cloud running. We support all AWS data centers and all of the servers, storage, ...
15 days ago
Description: Geotechnical Engineer - Transition into Piling Engineering • Are you a Geotechnical or Structural Engineer looking for a fresh challenge? • Salary: $128k – $151k (depending on experience) • Location: Office-based (North Shore), Potential for ...
24 days ago
  • Transurban Group
  • Sydney
Description: Working at Transurban is different; it’s a place where you can see the benefits of your work play out in real life, every day. We create city-sized solutions—building and operating safer, smarter, and more sustainable roads—to solve pressing ...
25 days ago