Product Security Engineer

5 days ago


Melbourne, Victoria, Australia BAE Systems Full time $80,000 - $120,000 per year

BIS Strategic Surveillance BU / JORN

SA-Ed Parks or VIC-Melbourne Central Office

Grade: 6

Referral Fee Value: $3000

PURPOSE OF JOB:

To deliver Product Security programs for projects undertaken by the Company. The role requires continuous integration with other engineering streams. The Product Security Engineer will work with the other project design (software, hardware, mechanical, etc.) and support teams to ensure a systems orientated, integrated approach is taken with respect to the product security related development, verification and sustainment activities.

PRINCIPAL ACCOUNTABILITIES:

  • Develop (with guidance) or contribute to the development of Cyber and Product Security Risk Assessments. Maintain the Product Security Risk Assessments throughout the life of the project.
  • Develop and manage Product Security requirements and documentation (System Security Plan, System & Subsystem Specifications, security controls database, design documents, component specifications, interface specifications, subcontractor Product Security requirements etc.), including the regulatory and statutory requirements.
  • Perform System Engineering activities for product security requirements including functional analysis, candidate solution development, system design, system analysis, integration, system tests, assessment tests and system accreditation.
  • Develop and execute product security tests to verify that the implemented designs conform to specifications and to uncover vulnerabilities.
  • Provide support for assurance that the design meets customer, regulatory and statutory requirements, applies good security industry practices, mitigates security risks to the agreed level and addresses hazards related to security and provide supporting documentation for the safety case.
  • Maintain the design and its documentation in accordance with the applicable configuration management, change management and traceability processes.
  • Provide realistic programme status, identify problem areas and implement agreed recovery plans.

KEY CRITERIA:

  • Knowledge of commonly used Australian and Industry security standards and accreditation frameworks (eg. PSPF, DSPF, ISM, ISO 270001/2, NIST Special Publications, HB , RMF, OWASP, CIS) is considered advantageous.
  • Experience within a Product and Cyber Security Engineering discipline which encompasses physical, cyber and emissions security and concept of cyber resilience.
  • Working knowledge of; CISSP or GSEC and CISA or CRISC is desirable.
  • Good knowledge of ICT vendors' technologies.
  • Bachelor's degree in an Engineering discipline is considered desirable
    Defence security clearance or eligibility to obtain & Eligibility to be cleared for International Traffic In Arms (ITAR) regulations.

Please apply to Sara Milne online by close of business on the closing date. Your application should include a resume and whilst not essential, a cover letter is preferred. Please note, it is a business expectation that you advise your line manager of your application.

Please note that business impact will need to be considered and negotiated transition plans will be required for internal appointments.

Employees are also encouraged to refer others for this vacancy - refer to:Employee Referral Scheme

for further information on eligibility and instructions on how to use our online referral portal. Whilst referrals are encouraged for this vacancy, suitable internal applicants will always be given first preference and consideration.



  • Melbourne, Victoria, Australia Salt Full time $120,000 - $150,000 per year

    We're seeking an experienced Senior Security Engineer focused on strengthening Application Security and Secure Software Development Lifecycle (SSDLC) practices.In this role, you'll partner closely with product engineering teams to embed security-by-design, develop reusable threat models, and uplift secure design practices across a large-scale, cloud-based...

  • Security Engineer

    2 weeks ago


    Melbourne, Victoria, Australia Sekuro Full time $90,000 - $120,000 per year

    We are seeking multiple Email Security Engineers to join our cybersecurity team on a huge enterprise email security depolyment project. The successful candidates will be responsible for managing and optimising our organisation's email security infrastructure whilst ensuring the highest level of protection against emerging email-based threats.Key...


  • Melbourne, Victoria, Australia Telstra Full time $100,000 - $180,000 per year

    Employment TypePermanentClosing Date24 Oct :59pmJob TitleSenior Security Engineer - Telco Cloud SecurityJob SummaryJob DescriptionAs an iconic Australian brand with a global footprint, our purpose is to build a connected future where everyone can thrive. We're focused on delivering the best experiences through the best tech on the best network and making...


  • Melbourne, Victoria, Australia Telstra Full time $120,000 - $180,000 per year

    Employment TypePermanentClosing Date3 Nov :59pmJob TitleSenior Security Engineer - Telco Cloud SecurityJob SummaryJob DescriptionAs an iconic Australian brand with a global footprint, our purpose is to build a connected future where everyone can thrive. We're focused on delivering the best experiences through the best tech on the best network and making...


  • Melbourne, Victoria, Australia Telstra Full time $120,000 - $180,000 per year

    Employment TypePermanentClosing Date27 Oct :59pmJob TitleSenior Security Engineer - Mobile Network SecurityJob SummaryJob DescriptionAs an iconic Australian brand with a global footprint, our purpose is to build a connected future where everyone can thrive. We're committed to delivering the best experiences through the best technology on the best network —...


  • Melbourne, Victoria, Australia Telstra Full time $120,000 - $180,000 per year

    Employment TypePermanentClosing Date12 Nov :59pmJob TitleSenior Security Engineer - Mobile Network SecurityJob SummaryJob DescriptionAs an iconic Australian brand with a global footprint, our purpose is to build a connected future where everyone can thrive. We're committed to delivering the best experiences through the best technology on the best network —...


  • Melbourne, Victoria, Australia myGwork - LGBTQ+ Business Community Full time $90,000 - $120,000 per year

    This job is with Amazon, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly.DescriptionAmazon Web Services (AWS) is the leading cloud service provider, providing virtualised infrastructure, storage, networking, messaging, and many other services to...


  • Melbourne, Victoria, Australia Spartans Security Full time $104,000 - $130,878 per year

    Company DescriptionAt Spartans Security, we protect businesses from evolving cyber threats, such as data breaches and ransomware, using advanced threat detection and vulnerability management. Our experienced team offers tailored cybersecurity strategies, penetration testing, and risk assessments to identify and resolve system weaknesses before they become...

  • Security Engineer

    6 days ago


    Melbourne, Victoria, Australia Kaizen Global Technologies Full time $120,000 - $180,000 per year

    Employment: Permanent RoleExperience: 5+ yearsLocation: Melbourne, Sydney Australia - HybridEligibility: Candidates must have the right to work in Australia (Citizen, PR, Valid Visa holders).Job Description:Seeking a skilledSecurity Engineerto enhance and maintain enterprise security across Microsoft Entra ID and Defender environments. The role focuses on...


  • Melbourne, Victoria, Australia Easygo Full time $120,000 - $180,000 per year

    At Easygo, our DevSecOps team is highly involved, impactful and delivers solutions across multiple departments and to a large number of internal stakeholders. As the champions of leading & building application security and operational best practices, we simplify the developer experience while tackling complex technical challenges with innovation and...