Product Security Engineer

Posted:
9/4/2024, 11:57:52 AM

Location(s):
Melbourne, Victoria, Australia ⋅ Victoria, Australia

Experience Level(s):
Junior ⋅ Mid Level ⋅ Senior

Field(s):
IT & Security

  • Be a part of a high profile Security Program
  • Join one of the most advanced Cyber Security teams in Australia

The Cyber Security Team protects the bank and our customers from theft, losses and risk events, through effective and proactive management of cyber security, privacy and operational risk. The Digital Assurance team is responsible for vulnerability assessment, penetration testing, and ethical hacking services. The team provides security leadership and expertise through direct interaction with business stakeholders to enable innovation to the Group and its customers.

Do Work that Matters

You will be responsible for delivering Product Security services to our key delivery streams.  Providing technical consulting, application security and penetration testing activities designed to ensure that the bank maintains its risk and security posture at desired levels, you will be responsible for communicating security issues to both technical and non-technical stakeholders.

Your responsibilities

  • Work closely with scrum teams and project managers to provide penetration testing and application security services. This will include delivering targeted web application, mobile application security tests, source code review and analysis.
  • Document and report results and scope of assurance activities to our customers, including project managers, service owners, developers and risk managers.
  • Champion security initiatives and new ways of working to ensure systems in the portfolio continue to be safe, sound and secure. This will involve pitching security initiatives, and assisting in the implementation of industry leading secure development practices such as code scanning and bug bounties.
  • Provide subject matter expertise to key stakeholders, including pro-active efforts to reduce the likelihood that vulnerabilities ship in our retail products before go-live.

Your experience

  • Demonstrated experience in Penetration Testing/Application Security /Product Security .
  • Exposure in code review to assist with proactively reducing vulnerabilities before code is deployed.
  • Have a sound understanding of web and mobile application vulnerabilities identification, penetration testing processes and methodologies.
  • Have worked in (or with) development teams.

If you're already part of the Commonwealth Bank Group (including Bankwest, x15ventures), you'll need to apply through Sidekick to submit a valid application. We’re keen to support you with the next step in your career.

We're aware of some accessibility issues on this site, particularly for screen reader users. We want to make finding your dream job as easy as possible, so if you require additional support please contact HR Direct on 1800 989 696.

Advertising End Date: 14/09/2024

Commonwealth Bank Australia

Website: https://commbank.com.au/

Headquarter Location: Sydney, New South Wales, Australia

Employee Count: 10001+

Year Founded: 1911

Last Funding Type: Post-IPO Debt

Industries: Banking ⋅ Finance ⋅ Financial Services ⋅ Wealth Management