Xero Logo

Xero

Senior Consultant - Application Security

Posted 5 Hours Ago
Be an Early Applicant
Hybrid
Melbourne, Victoria
Senior level
Hybrid
Melbourne, Victoria
Senior level
As a Senior Consultant in Application Security, you will integrate security into the software development lifecycle, mentor teams, and promote security best practices and automation.
The summary above was generated by AI

The role and it’s impact

You will play a vital role in the creation and successful execution of Application Security, taking a proactive approach to embedding security into our software development lifecycle.

Rather than acting as a blocker, you will ensure security is an enabler that allows teams to move fast while remaining secure. Working with engineering functions, you will design secure application infrastructure and frameworks that empower developers to plan, build, and deploy securely.

Your impact extends beyond technical implementation; you will provide mentorship to members of the team and foster a culture of security enablement and continuous learning. You will support engineering teams to 'shift security left' by integrating automated security testing and secure coding practices. Additionally, you will work closely with product and engineering teams to balance security requirements with productivity and business agility.

The team & how they connect

We prefer to be on the ground with developers rather than operating from an ivory tower!

We collaborate closely with engineering, DevOps, and product teams to build trust and ensure security is seamlessly integrated into the development process.

Initially, the role may focus on

  • Building proof of concepts and assessing the value of security tools to reduce toil and automate processes.

  • Collaborating with DevOps and engineering teams to build security guardrails that ensure frictionless security adoption.

  • Integrating automated security testing, secure coding practices, and DevSecOps methodologies to shift security left.

  • Utilising a tech stack that includes AWS, Python, Java, C#, Go, and various automated security testing tools such as SAST and DAST.

Where and how you can work

We offer a flexible and inclusive working environment that values progress over perfection and prioritises wellbeing. You will have the opportunity to work in a way that balances your home life with collaborative time in our offices, supporting our ethos of making work human.

Here are some of the things we are looking for

  • You possess solid technology fundamentals encompassing operating systems, cloud infrastructure (specifically AWS), and web applications.

  • Experience with automated security testing tools, including SAST, DAST, SCA, and IaC security scanning, is essential to your toolkit.

  • We value proficiency in programming and scripting languages such as Python, Java, C#, Go, or JavaScript.

  • You bring a passion for security automation and 'security-as-code' to improve efficiency and reduce manual toil.

  • Collaborating with engineering teams comes naturally to you, allowing you to influence security best practices without disrupting development velocity.

  • You have a background in coaching or mentoring, with a desire to make security accessible and empower engineers to write secure code.

Apply even if your experience isn't a perfect match! At Xero, we hire based on your skills, passion, and the unique perspective you can bring to enhance our culture and team.

Top Skills

Automated Security Testing Tools
AWS
C#
Dast
Go
Iac Security Scanning
Java
Python
Sast
Sca

Xero Hawthorn West, Victoria, AUS Office

Xero Melbourne (HQ) Office

Xero’s head office in Australia is in the buzzing suburb of Hawthorn, a stone’s throw from the CBD. Here, a diverse mix of Xeros work in both global and regional teams.

Similar Jobs at Xero

5 Hours Ago
Hybrid
Melbourne, Victoria, AUS
Expert/Leader
Expert/Leader
Cloud • Fintech • Information Technology • Machine Learning • Software
As a Lifecycle Writer & Strategist, you will create impactful content and develop strategies to optimize customer engagement across various platforms, ensuring alignment with business objectives and enhancing customer experiences.
Top Skills: BrazeIntercom
5 Hours Ago
Hybrid
Melbourne, Victoria, AUS
Senior level
Senior level
Cloud • Fintech • Information Technology • Machine Learning • Software
The Senior Manager Payments Risk and Compliance at Xero ensures compliance with payments-related regulations, supports product teams, and manages operational risks to foster payments growth in Australia.
Top Skills: AfslAmlFinancial ServicesPayments
5 Hours Ago
Hybrid
Melbourne, Victoria, AUS
Senior level
Senior level
Cloud • Fintech • Information Technology • Machine Learning • Software
As a Senior Front-End Engineer, lead the development of a design system and maintain UI components, ensuring quality and accessibility for users. Collaborate with cross-functional teams to foster a consistent user experience.
Top Skills: AngularCSSHTMLJavaScriptJestLokiPlaywrightReactReact Testing LibraryVue

What you need to know about the Melbourne Tech Scene

Home to 650 biotech companies, 10 major research institutes and nine universities, Melbourne is among one of the top cities for biotech. In fact, some of the greatest medical advancements were conceptualized and developed here, including Symex Lab's "lab-on-a-chip" solution that monitors hormones to predict ovulation for conception, and Denteric's vaccine for periodontal gum disease. Yet, the thousands of people working in the city's healthtech sector are just getting started, to say nothing of the tech advancements across all other sectors.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account