Senior Product Security Engineer
2 days ago
About CoStar Group
CoStar Group (NASDAQ: CSGP) is a leading global provider of commercial and residential real estate information, analytics, and online marketplaces. Included in the S&P 500 Index and the NASDAQ 100, CoStar Group is on a mission to digitize the world's real estate, empowering all people to discover properties, insights and connections that improve their businesses and lives.
We have been living and breathing the world of real estate information and online marketplaces for over 35 years, giving us the perspective to create truly unique and valuable offerings to our customers. We've continually refined, transformed, and perfected our approach to our business, creating a language that has become standard in our industry, for our customers, and even our competitors. We continue that effort today and are always working to improve and drive innovation. This is how we deliver for our customers, our employees, and investors. By equipping the brightest minds with the best resources available, we provide an invaluable edge in real estate.
About Domain
Domain is a leading property technology and services marketplace that is home to one of the largest portfolios of property brands in Australia, including the Domain, Allhomes and Commercial Real Estate (CRE) platforms. In 2025, Domain became part of CoStar Group (NASDAQ: CSGP), a global leader in commercial real estate information, analytics, online marketplaces and 3D digital twin technology. Together, Domain and CoStar Group is dedicated to digitising the world's real estate, empowering all people to discover properties, insights, and connections that improve their businesses and lives.
We're looking for a highly collaborative and deeply technical Senior Product Security Engineer to be a pivotal force in shaping our Application Security (AppSec) future. This is your chance to drive our strategic vision by making security an intrinsic, seamless part of our software development lifecycle.
Reporting to the Group Engineering Manager - Product Security, you will be the crucial link, the advisor, and the implementer working directly with our development teams. You will be instrumental in deploying initiatives from our cutting-edge Application Security Framework and fostering a culture where security is everyone's responsibility.
This position will collaborate with software development teams, DevOps and security to drive and shape the way our employees and engineers build, deploy and operate applications.
This position is located in either Sydney or Melbourne and is in office Tuesday through Thursday with work from home on Monday and Friday.
Responsibilities
Success here is measured by your ability to proactively embed security and drive tangible change. You will achieve this by:
- Leading Security Integration: Champion efforts to fully integrate security into our DevOps processes, promoting a culture of security ownership and awareness across the organization. Work with the software and product teams to help ensure applications are designed and implemented securely during the SDLC.
- Hands-On Security Mastery: Acting as the primary security advisor, you'll conduct implementation reviews of solution designs, lead crucial threat modeling sessions, and perform hands-on security code reviews.
- Tooling & Automation: Automate security testing at various stages within the CI/CD pipelines. Consume a variety of application security tools (DAST, SAST, SCA, Credential Scanning, IAC scanning) to secure web applications during development and production run-time. Manage and operate our critical security tools, ensuring maximum efficiency and coverage.
- Resilience & Compliance: Partnering with GRC to ensure adherence to industry standards and collaborating with Security Operations to provide crucial support during the investigation and response to security incidents.
Basic Qualifications
- Bachelor's degree required from an accredited, not for profit university or college (preferably in Computer Science/Cybersecurity or related field).
- 5+ years experience in a Product/Application Security or DevSecOps role.
- A track record of commitment to prior employers or a track record of delivering long-term impact to prior employers.
- Strong knowledge of DevOps principles and practices, as well as security best practices.
- Ability to communicate effectively with both cybersecurity and engineering teams.
- Ability to collaborate across Product, Security, DevOps, Product, and development teams..
- Proficiency in scripting and automation (e.g., Java, C/C++, C#, Python, JavaScript, PowerShell)
- Experience with container security (Docker, ECS, Kubernetes) and cloud security (AWS, Azure, or GCP).
Preferred Qualifications and Skills
- Hands-on experience implementing security tools into CI/CD pipelines and IDE interfaces including Static Application Security Testing (SAST) and Static Application Analysis (SCA) solutions.
- Experience with web application penetration testing and identifying attack chains to evaluate the severity of vulnerabilities.
- Strong communication skills with both software development and software leadership audiences, including the ability to communicate with different levels of leadership conveying risk and driving urgency for risk remediation.
- A self-starter who can advance the application security program and follow-through ideas to completion.
- Experience coordinating with application teams to drive security by design principles.
- Knowledge of infrastructure operations across databases, network, and system administration.
- Experience testing modern applications in cloud-native tech stacks.
Why join us?
We're the kind of place you can make a real impact, with a workplace culture where you can be you. It's a fun, safe space where you'll always feel you belong. Perks of the role include:
- Hybrid working;
- First-rate parental leave;
- Continuous opportunities to leap, learn and grow in a team that values creativity and innovation;
We don't just talk, we do. Every day we solve property problems for Australians and beyond. We encourage our people to see the possibilities, and turn them into realities.
What's next?
We'll give your application the thoughtful attention it deserves and get back to you as soon as possible. If there's a match, one of our recruitment consultants will reach out so keep your phone handy We're genuinely excited about the chance to work together and make a meaningful impact.
Equity, Diversity and Inclusion at Domain
Domain is enthusiastically and unapologetically committed to fostering an equitable, inclusive work culture which reflects our customers and communities. We are proactively looking for candidates from all lived experiences, including people with disability, and people of all ages, ethnicities, cultures (including Aboriginal and Torres Strait Islander Peoples), faiths, sexual orientations, and gender identities (including trans and non-binary people).
We are committed to providing an equitable recruitment process for people with disability. If you require adjustments during the process we're here to support. If you wish to receive this job advertisement in an accessible format, or have a confidential chat about workplace adjustments, please contact our Equity, Diversity and Inclusion team at or leave a message on and we will get back to you.
-
Senior Product Security Engineer
2 days ago
Sydney, New South Wales, Australia CoStar Group Full time $120,000 - $180,000 per yearSenior Product Security EngineerJob DescriptionAbout CoStar GroupCoStar Group (NASDAQ: CSGP) is a leading global provider of commercial and residential real estate information, analytics, and online marketplaces. Included in the S&P 500 Index and the NASDAQ 100, CoStar Group is on a mission to digitize the world's real estate, empowering all people to...
-
Senior Product Security Engineer
2 days ago
Sydney, New South Wales, Australia CoStar Group Full time $120,000 - $180,000 per yearSenior Product Security EngineerJob DescriptionAbout CoStar GroupCoStar Group (NASDAQ: CSGP) is a leading global provider of commercial and residential real estate information, analytics, and online marketplaces. Included in the S&P 500 Index and the NASDAQ 100, CoStar Group is on a mission to digitize the world's real estate, empowering all people to...
-
Senior Security Engineer
7 hours ago
Sydney, New South Wales, Australia Decipher Bureau Full time $120,000 - $2,000,000 per yearWe're partnering with a fast-growing tech company in the financial services industry, and they're looking for a highly technicalSenior Security Engineerto join their team in Sydney (possibly Melbourne). Salary wise we are talking circa$200K + Super + Bonus.This is a great opportunity for a hands-on, functional lead (no direct reports) who thrives in secure...
-
Senior Engineer – Security
4 days ago
Sydney, New South Wales, Australia Westpac Group Full time $120,000 - $180,000 per yearCreate your best future and join the Digital Technology – Security Engineering team as a Senior Engineer – Security. What's the role?Join our frontline security team and help protect Westpac's digital edge. In this hands-on role, you'll monitor threats, respond to incidents, and coach developers on secure coding practices. You'll work across engineering...
-
Senior Engineer – Security
11 hours ago
Sydney, New South Wales, Australia Westpac Group Full time $120,000 - $180,000 per yearDescriptionCreate your best future and join the Digital Technology – Security Engineering team as a Senior Engineer – Security. What's the role?Join our frontline security team and help protect Westpac's digital edge. In this hands-on role, you'll monitor threats, respond to incidents, and coach developers on secure coding practices. You'll work across...
-
Senior Product Manager
1 week ago
Sydney, New South Wales, Australia TKH Security | Park Assist Full time $120,000 - $180,000 per yearAbout UsTKH Security is a global leader in intelligent parking and security technology. This role relates to our Park Assist platform, which combines AI-driven cameras and cloud software to transform parking facilities into smarter, more convenient, efficient and revenue-generating assets. The Park Assist solution was originally invented in Australia and is...
-
Senior Application Security Engineer
11 hours ago
Sydney, New South Wales, Australia Airwallex Full time $120,000 - $180,000 per yearAbout AirwallexAirwallex is the only unified payments and financial platform for global businesses. Powered by our unique combination of proprietary infrastructure and software, we empower over 150,000 businesses worldwide – including Brex, Rippling, Navan, Qantas, SHEIN and many more – with fully integrated solutions to manage everything from business...
-
Sydney, New South Wales, Australia Commonwealth Bank Full time $120,000 - $180,000 per yearSenior Manager - Security Engineering/Application security EducationIn this role, you'll be at the forefront of developing and implementing security training programs that will empower our engineering teams with the knowledge and skills they need to protect Group products and infrastructure. You will be responsible for creating engaging and informative...
-
Senior Security Engineer
10 hours ago
Sydney, New South Wales, Australia Canva Full time $120,000 - $180,000 per yearJob Description Join the team redefining how the world experiences design.Hey, hello, hiya, g'day, mabuhay, kia ora, 你好, hallo, vítejteThanks for stopping by. We know job hunting can be a little time consuming and you're probably keen to find out what's on offer, so we'll get straight to the point.Where and how you can workOur flagship campus is in...
-
Senior Corporate Security Engineer
14 hours ago
Sydney, New South Wales, Australia DroneShield Full time $120,000 - $180,000 per yearAbout the roleDroneShield is seeking a Senior Corporate Security Engineer with relevant experience to join the Security team in Sydney, NSW.The Security team is a nimble team responsible for protecting DroneShield's assets and users. Our adversaries are sophisticated and use state-of-the-art tooling. To protect DroneShield, we need to focus on the biggest...