Employment OS for your Business

DevOps Engineer

Varsity Lakes, Queensland 4227, Australia • Full-time
AI Job Summary
  • 2–4+ years in DevOps, cloud engineering, platform engineering, or security-adjacent engineering.
  • Hands-on experience with CI/CD pipelines such as GitHub Actions, Azure DevOps or similar.
  • Improve CI/CD pipelines with security scanning and securely manage secrets/credentials.

Role Type

Permanent • Full-time • Mid-level Senior

Description

DevOps Engineer – Security Focus 

Location: Gold Coast / Hybrid 

Employment Type: Full-time, permanent 

Level: Mid-level 

Reports to: Engineering Manager 

About the Role 

We’re looking for a DevOps Engineer with a strong interest in security to help us improve the reliability, automation and security of our cloud platforms and delivery pipelines. This role would suit someone with solid DevOps or cloud engineering experience who wants to grow further into DevSecOps. You’ll work closely with engineering teams to improve CI/CD pipelines, strengthen cloud infrastructure, automate security checks, manage secrets and access controls, and help make secure delivery part of how we build software. 

Our environment includes AWS, Azure and GCP, modern CI/CD tooling, infrastructure-as-code, and healthcare platforms where security, privacy and reliability matter. 

Key Responsibilities 

CI/CD and Delivery Security 

  • Improve and maintain CI/CD pipelines across our engineering teams 
  • Integrate dependency, vulnerability and code scanning into delivery workflows 
  • Help manage secrets and credentials securely across environments 
  • Support practical security gates that improve quality without slowing delivery unnecessarily 

Cloud Infrastructure and Platform Security 

  • Support configuration, monitoring and hardening of AWS and GCP environments 
  • Work with infrastructure-as-code using Pulumi / TypeScript or similar tools 
  • Assist with IAM, least-privilege access and secure cloud configuration 
  • Help identify and remediate infrastructure security risks 

Monitoring, Alerting and Incident Support 

  • Improve logging, monitoring and alerting across cloud services 
  • Help triage platform and security alerts 
  • Support incident response and post-incident improvement actions 
  • Track vulnerabilities and assist teams with remediation 

Security, Compliance and Documentation 

  • Support security documentation, runbooks and operational processes 
  • Help collect and maintain evidence for compliance activities 
  • Contribute to practical security improvements aligned with frameworks such as ISO 27001, SOC 2, Essential Eight or similar 
  • Work with developers to identify security issues early in the development lifecycle 

Required Skills and Experience 

  • 2–4+ years’ experience in DevOps, cloud engineering, platform engineering or a security-adjacent engineering role.
  • Hands-on experience with CI/CD pipelines such as GitHub Actions, Azure DevOps or similar.
  • Working knowledge of AWS, with exposure to GCP or Azure beneficial.
  • Experience with scripting or automation using Python, Bash, TypeScript or similar.
  • Familiarity with infrastructure-as-code tools such as Pulumi, Terraform or CloudFormation.
  • Understanding of cloud networking and security fundamentals, including IAM, firewalls, TLS, VPNs and WAFs.
  • Exposure to vulnerability scanning, dependency scanning or code quality tools such as Snyk, Trivy, OWASP ZAP, SonarQube or similar.
  • A practical mindset and willingness to work closely with developers to improve security without creating unnecessary friction.

Nice to Have 

  • Experience in healthcare, fintech or another regulated industry.
  • Exposure to SIEM, endpoint security or cloud security monitoring tools.
  • Understanding of OWASP Top 10 and secure coding practices.
  • Familiarity with Zero Trust concepts.
  • Relevant certifications such as AWS Security Specialty, Security+, CSSLP or similar.

What We Offer 

  • Flexible hybrid working arrangements.
  • Learning and development support, including time and certification support.
  • A pathway into a senior DevSecOps or platform security role.
  • A collaborative engineering environment where your work has visible impact.
  • Birthday leave.

Apply now with your resume and cover letter outlining your suitability for this role!

As part of our recruitment process, shortlisted candidates may be invited to complete a brief AI-powered pre-screening interview via Employment Hero. You’ll receive an invitation via email – please check your junk/spam folder if you don’t see it in your inbox within a few business days of applying.

Company Overview

We’re focused on creating medicinal cannabis products and digital health solutions that connect and strengthen the ecosystem between patients, prescribers, pharmacists, and suppliers. Vitura’s operations include technology enabled healthcare management, distribution and education, as well as quality medications that are delivered through our strategically aligned portfolio of brands, including CanView, CDA Clinics, Cannadoc, BHC and Adaya. Collectively, we’re committed to empowering the lives of Australians through education and by actively engaging in new and innovative ways to help the medical industry evolve for the better. Vitura Health Limited is an ASX listed company.