DevOps Engineer – Security Focus
Location: Gold Coast / Hybrid
Employment Type: Full-time, permanent
Level: Mid-level
Reports to: Engineering Manager
About the Role
We’re looking for a DevOps Engineer with a strong interest in security to help us improve the reliability,
automation and security of our cloud platforms and delivery pipelines. This role would suit someone with solid DevOps or cloud engineering experience who wants to grow further into DevSecOps. You’ll work closely with engineering teams to improve CI/CD pipelines, strengthen cloud infrastructure, automate security checks, manage secrets and access controls, and help make secure delivery part of how we build software.
Our environment includes AWS, Azure and GCP, modern CI/CD tooling, infrastructure-as-code, and
healthcare platforms where security, privacy and reliability matter.
Key Responsibilities
CI/CD and Delivery Security
- Improve and maintain CI/CD pipelines across our engineering teams
- Integrate dependency, vulnerability and code scanning into delivery workflows
- Help manage secrets and credentials securely across environments
- Support practical security gates that improve quality without slowing delivery unnecessarily
Cloud Infrastructure and Platform Security
- Support configuration, monitoring and hardening of AWS and GCP environments
- Work with infrastructure-as-code using Pulumi / TypeScript or similar tools
- Assist with IAM, least-privilege access and secure cloud configuration
- Help identify and remediate infrastructure security risks
Monitoring, Alerting and Incident Support
- Improve logging, monitoring and alerting across cloud services
- Help triage platform and security alerts
- Support incident response and post-incident improvement actions
- Track vulnerabilities and assist teams with remediation
Security, Compliance and Documentation
- Support security documentation, runbooks and operational processes
- Help collect and maintain evidence for compliance activities
- Contribute to practical security improvements aligned with frameworks such as ISO 27001, SOC 2, Essential Eight or similar
- Work with developers to identify security issues early in the development lifecycle
Required Skills and Experience
- 2–4+ years’ experience in DevOps, cloud engineering, platform engineering or a security-adjacent engineering role.
- Hands-on experience with CI/CD pipelines such as GitHub Actions, Azure DevOps or similar.
- Working knowledge of AWS, with exposure to GCP or Azure beneficial.
- Experience with scripting or automation using Python, Bash, TypeScript or similar.
- Familiarity with infrastructure-as-code tools such as Pulumi, Terraform or CloudFormation.
- Understanding of cloud networking and security fundamentals, including IAM, firewalls, TLS, VPNs and WAFs.
- Exposure to vulnerability scanning, dependency scanning or code quality tools such as Snyk, Trivy, OWASP ZAP, SonarQube or similar.
- A practical mindset and willingness to work closely with developers to improve security without creating unnecessary friction.
Nice to Have
- Experience in healthcare, fintech or another regulated industry.
- Exposure to SIEM, endpoint security or cloud security monitoring tools.
- Understanding of OWASP Top 10 and secure coding practices.
- Familiarity with Zero Trust concepts.
- Relevant certifications such as AWS Security Specialty, Security+, CSSLP or similar.
What We Offer
- Flexible hybrid working arrangements.
- Learning and development support, including time and certification support.
- A pathway into a senior DevSecOps or platform security role.
- A collaborative engineering environment where your work has visible impact.
- Birthday leave.
Apply now with your resume and cover letter outlining your suitability for this role!
As part of our recruitment process, shortlisted candidates may be invited to complete a brief AI-powered pre-screening interview via Employment Hero. You’ll receive an invitation via email – please check your junk/spam folder if you don’t see it in your inbox within a few business days of applying.