Application Security Engineer for Billigence, focusing on security throughout engineering lifecycle and unique challenges of LLM and Gen AI workloads.
Responsibilities
Acquire a complete understanding of the Technology system and application landscape and assess it from a cybersecurity perspective.
Provide cybersecurity leadership in Agile environments across the broader Digital teams.
Design, create, embed, and own cybersecurity best practice processes into the SDLC of all Digital development teams.
Plan, research, and design robust security application architectures and patterns for all projects.
Proactively identify, prioritize, and manage security vulnerabilities across our codebases, from the front-end to the back-end infrastructure.
Embed security checks and scanning tools (SAST, DAST, etc.) directly into our CI/CD pipelines to catch and mitigate security flaws early and at scale.
Focus on the unique security challenges of LLMs and Gen AI, including prompt injection, model data poisoning, and the security of model serving infrastructure.
Organize ad-hoc and periodic vulnerability scans, risk analysis, and security assessments, and interpret the results for product teams.
Research security standards, security systems, and authentication protocols and educate the developers around their use.
Work closely with the Group Cyber Security and business teams to implement and maintain corporate security policies, standards, and procedures from an applications perspective.
Respond immediately to security-related incidents, manage any escalations and communications to the Senior Leadership team, and provide a thorough post-event analysis.
Work with the teams to identify, select, and implement technical security controls.
Oversee security awareness programs and educational efforts, particularly around developer training and awareness.
Requirements
Must have a strong background in both application and cloud security.
Proven experience in an Application Security Engineer or similar security role.
Deep understanding of common web application and cloud vulnerabilities (e.g., OWASP Top 10) and hands-on experience with various security testing tools and methodologies.
Experience with cloud security in GCP, including Identity and Access Management (IAM), network security, and data protection.
Strong analytical skills with a proactive approach to identifying and resolving complex security threats.
Excellent communication and interpersonal skills, with the ability to influence and collaborate with diverse engineering teams.
Benefits
Hybrid model, 2 days per week in the Sydney office
Field Supervisor ensuring efficient security operations for United Security at client locations. Conducting inspections, providing leadership and maintaining compliance with protocols.
Managing Consultant driving cyber resilience improvements for critical national infrastructure, with a focus on regulatory frameworks. Leading client engagements and enhancing operational safety and uptime.
Security Engineer Intern at Snap Inc. Developing security projects and enhancing security posture with meaningful contributions during a 13 - week internship.
Security Manager responsible for overseeing risk - based security program and compliance. Leading team and collaborating with stakeholders for cybersecurity in Indonesia.
OT Cybersecurity Consulting Director at Marsh leading cyber risk assessments and consulting projects across Canada and other regions. Requires strong technical knowledge and client relationship building.
Senior Cyber Security Consultant delivering high - impact cybersecurity solutions to clients in various industries in Montreal. Collaborating closely with project managers and guiding junior consultants.
Consultant technique pour Microsoft 365 Security à Ingram Micro, impliqué dans le support avant - vente et le déploiement des solutions cloud Microsoft.
Specialist in Information Security at IESO ensuring security for Ontario's electricity system. Responsibilities include monitoring access logs, delivering security programs, and investigating breaches.
Partner Sales Specialist focusing on enabling partners to sell Microsoft Security solutions. Collaborating with teams to activate partners for effective sales across their customer base.