This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We are seeking a proactive Cloud Security Engineer to protect and enhance the security posture of a mission critical multi cloud environment. This role is focused on the day-to-day optimisation of security operations, policy enforcement, and alignment with strict Australian Government standards across Azure and AWS.
Job Responsibility:
Oversee and optimise CSPM and CWPP solutions to maintain continuous visibility into risk across Azure and AWS
Assess cloud environments against ISM and PSPF controls, identifying security gaps and driving technical remediation
Develop and maintain automated security baselines using Azure Policy, AWS Config, and Terraform
Partner with DevOps teams to embed security "guardrails" directly into CI/CD pipelines, ensuring a secure-by-design approach
Build and maintain security dashboards to track compliance trends and provide actionable risk data to stakeholders
Conduct cloud security architecture reviews and provide subject matter expertise to assist platform teams in uplifting their security maturity
Support formal security audits and compliance reporting to ensure long-term adherence to regulatory standards
Requirements:
Active AGSVA Baseline Clearance
NV1 clearance (or eligibility to obtain one) highly preferred
Expert-level knowledge of Azure and AWS security services (e.g., GuardDuty, Microsoft Defender for Cloud, IAM)
Demonstrated experience with CSPM/CWPP platforms and automated compliance scanning
Proficiency in implementing security controls via Infrastructure as Code (Terraform) and policy frameworks
Solid understanding of the Australian Government Information Security Manual (ISM) and Protective Security Policy Framework (PSPF)
Ability to translate complex technical vulnerabilities into clear, actionable recommendations for both technical and non-technical stakeholders