Zorky CRMZorky CRM
EN|RU
@termdocs
← All jobs

Cloud Security Engineer - CTEM

leadhybridSydney, AUScore 65/100today
Market insights
📊 Security: salaries and demand on the market
Stack
cloudawsazureci/cdcloudformationgcpgitgithubpythonrest
Apply
Upload your CV — we will connect you with the employer directly through our pool.
Send your CV →
Description
Work in an inclusive and purpose-led organisation helping Australians achieve a better retirement Strengthen security across Rest's AWS cloud platforms and services 12 Month Fixed Term Contract - Sydney CBD Located with hybrid working At Rest, we help more than 2 million Australians to build a better financial future. With around $112 billion in funds under management, we focus on delivering strong long-term outcomes for our members — from their first job through to retirement*. Your best at Rest means focusing on what matters, being trusted to get on with it, and knowing your work genuinely makes a difference. That’s how we operate every day, guided by our values: Be Daring, Keep It Simple, Take Action and Have Grit . Join us as an Cloud Security Engineer - CTEM on a 12 Month Fixed Term Contract . This is your opportunity to make a real contribution to the financial wellbeing of millions of Australians. About the Role You will provide domain-aligned cloud security support across AWS platforms and workload teams, prioritised by security risk, remediation demand and delivery priorities. Own and deliver remediation of cloud security findings while identifying recurring risks and defining preventative controls, guardrails and secure platform patterns to reduce future exposure. Accountabilities/Responsibilities Deliver hands-on remediation of prioritised cloud vulnerabilities, misconfigurations, identity risks and control gaps identified through security tooling and the vulnerability management process. Coordinate remediation changes with Cloud Platform Services and workload owners, validating implementation and effective closure in line with risk and delivery priorities. Automate repeatable remediation and control validation, and strengthen cloud infrastructure CI/CD through secure pipeline templates, CloudFormation validation, secrets protection, approval controls and security quality gates. Identify systemic risks and define new or enhanced controls, guardrails and secure platform patterns, documenting requirements, implementation options and expected risk reduction. Support effective cloud security operations through relevant telemetry, incident response, standards, playbooks and audit evidence. Lead cloud security risk exemptions by assessing residual risk, documenting business justification and compensating controls, coordinating approvals, and monitoring exemptions through review or expiry. Требования: Experience, skills and qualifications Strong AWS engineering and security expertise across IAM, network security, encryption, secrets management, logging and workload protection. Demonstrated Python scripting capability using AWS APIs to automate remediation and control validation. Practical experience with Git, CNAPP/CSPM, AWS Control Tower or equivalent, SIEM integration and vulnerability management. Experience engineering secure CI/CD pipelines for cloud infrastructure, including GitHub Actions or equivalent workflow controls, automated testing, secrets management, approval controls and deployment guardrails. Mandatory CloudFormation experience; experience with Sceptre, GCP and Azure is desirable. Practical knowledge of NIST, ISO 27001, ASD Essential Eight and APRA CPS 234; a relevant AWS security certification is desirable.
Employer contacts (email/phone/telegram) are hidden from the public preview — send your CV, and we will connect you directly.
Urgent question? Message @termdocs