Application Security Engineer for Billigence, focusing on security throughout engineering lifecycle and unique challenges of LLM and Gen AI workloads.
Responsibilities
Acquire a complete understanding of the Technology system and application landscape and assess it from a cybersecurity perspective.
Provide cybersecurity leadership in Agile environments across the broader Digital teams.
Design, create, embed, and own cybersecurity best practice processes into the SDLC of all Digital development teams.
Plan, research, and design robust security application architectures and patterns for all projects.
Proactively identify, prioritize, and manage security vulnerabilities across our codebases, from the front-end to the back-end infrastructure.
Embed security checks and scanning tools (SAST, DAST, etc.) directly into our CI/CD pipelines to catch and mitigate security flaws early and at scale.
Focus on the unique security challenges of LLMs and Gen AI, including prompt injection, model data poisoning, and the security of model serving infrastructure.
Organize ad-hoc and periodic vulnerability scans, risk analysis, and security assessments, and interpret the results for product teams.
Research security standards, security systems, and authentication protocols and educate the developers around their use.
Work closely with the Group Cyber Security and business teams to implement and maintain corporate security policies, standards, and procedures from an applications perspective.
Respond immediately to security-related incidents, manage any escalations and communications to the Senior Leadership team, and provide a thorough post-event analysis.
Work with the teams to identify, select, and implement technical security controls.
Oversee security awareness programs and educational efforts, particularly around developer training and awareness.
Requirements
Must have a strong background in both application and cloud security.
Proven experience in an Application Security Engineer or similar security role.
Deep understanding of common web application and cloud vulnerabilities (e.g., OWASP Top 10) and hands-on experience with various security testing tools and methodologies.
Experience with cloud security in GCP, including Identity and Access Management (IAM), network security, and data protection.
Strong analytical skills with a proactive approach to identifying and resolving complex security threats.
Excellent communication and interpersonal skills, with the ability to influence and collaborate with diverse engineering teams.
Benefits
Hybrid model, 2 days per week in the Sydney office
Security Officer maintaining safety and compliance at WarHorse Casino. Responsible for incident reporting and guest relations in a dynamic gaming environment.
Technical leader in security architecture for Riachuelo, overseeing security solutions and team activities. Seeking to enhance security measures while fostering teamwork.
Cyber Security Specialist for Riachuelo's Red Team overseeing offensive security projects. Leading cyber threat intelligence and collaborating with internal teams on security improvements.
Senior Security Engineer at PagBank ensuring secure network and application exposure strategies. Leading technical initiatives in firewalls, WAF/CDN, and advanced troubleshooting.
Technology and Cybersecurity Director leading the commercialization of cybersecurity consulting services at Emergent. Bridging technical teams and sales organizations to drive pipeline and revenue growth.
Engineer managing and supervising the Safety team at Localiza&Co in São Paulo. Overseeing safety policies and ensuring compliance with health and safety standards.
Technical Leader at VISION Cybersecurity overseeing SOC operations and guiding security investigations. Responsible for improving detection mechanisms and collaboration with security engineering teams.
Network Security Analyst configuring and maintaining Firewall solutions at Vision Cybersecurity. Collaborating with teams to manage security incidents and protect network integrity.
Security & Compliance Manager leading Tagup’s security and compliance efforts in defense technology. Engaging in national security initiatives and driving compliance with federal standards.
Security Researcher specializing in Windows and macOS threat detection for an AI - powered security platform. Conducting research and developing detections for threats, malware, and vulnerabilities.