GitHub Enterprise Security SME Lead

13 hours ago


Sydney, New South Wales, Australia Tech Aalto Full time $120,000 - $180,000 per year

Job description: GitHub Subject Matter Expert (SME)

We're seeking a highly skilled and security-focused
GitHub Subject Matter Expert (SME)
to drive the modernization and secure consolidation of our code repositories onto the strategic GitHub Enterprise Cloud platform. This role is central to enforcing enterprise-level security standards, implementing modern identity management, and ensuring robust governance across our entire development ecosystem.

The SME will serve as the top technical authority on GitHub architecture, policy enforcement, and complex integrations, transforming our development practices to align with DevSecOps best practices.

Required Skills and Qualifications

Technical and Analytical Expertise (Must-Haves)

  • Deep GitHub Administration:
    Extensive, hands-on experience managing and governing GitHub Enterprise Cloud environments, including organization and enterprise-level settings.
  • Identity & Access Management:
    Proven expertise in
    SAML SSO, SCIM, and IdP integration
    (e.g., Azure AD/Google Workspace). Experience with the entire
    EMU setup and migration lifecycle
  • DevSecOps Automation:
    Strong scripting skills (e.g., Python, Bash) and experience with GitHub Actions/Workflows to automate security policies, repository metadata updates (CMDB integration), and remediation tasks.
  • API Security:
    Strong understanding of API security principles (OAuth, scopes, token usage) and experience reviewing code that integrates with major platforms (Apigee, Microsoft Graph).

Good to have

  • Azure devops admin experience

Soft Skills and Certifications

  • Analytical Rigor:
    Exceptional analytical skills with the ability to translate complex security findings (CodeQL results) into prioritized, actionable technical remediation plans.
  • Communication:
    Excellent verbal and written communication skills, capable of articulating complex security risks to both technical engineers and executive stakeholders.

Certification (mandatory):
GitHub Certified Administrator
or equivalent enterprise security certification (e.g., related to cloud security or identity management).

Key Responsibilities and Deliverables

The SME will lead and execute initiatives across four critical areas, directly impacting developer productivity and organizational security:

1. Enterprise Identity and Access Management (IAM)

  • EMU Implementation:
    Design and implement the migration from existing Single Sign-On (SSO) to
    Enterprise Managed Users (EMU)
    to centralize user lifecycle management and enforce corporate identity standards.
  • IdP Integration:
    Serve as the technical lead for integrating GitHub Enterprise Cloud with our Identity Provider (IdP) (e.g., Azure AD/Google Workspace) for seamless SSO and Multi-Factor Authentication (MFA).
  • RBAC and Policy:
    Define, implement, and enforce a
    Role-Based Access Control (RBAC)
    model founded on the principle of least privilege across all GitHub Organizations.
  • Token Governance:
    Overhaul and formalize the Personal Access Token (PAT) policy, implementing short-lived expiry dates and fine-grained permissions for both human and service accounts.

2. Repository Migration and CMDB Integration

  • Discovery & Migration:
    Identify, catalogue, and prepare all code repositories across the Woolworths Group for migration to GitHub, ensuring no code is left behind.
  • CMDB Synchronization:
    Integrate the GitHub repository catalogue with the central
    Configuration Management Database (CMDB)
    , automating the synchronization of metadata (e.g., repository owner) for real-time visibility and reporting.

3. Code Security and Secret Management

  • Secret Scanning:
    Implement and manage
    GitHub Secret Scanning
    across all repositories to identify and triage embedded secrets (API keys, passwords).
  • Proactive Protection:
    Review
    Push Protection
    globally across all GitHub repositories to proactively block new secrets from being committed to code history.
  • Vulnerability Management:
    Systematically analyze secret findings, prioritize remediation efforts based on vulnerability and risk, and formalize the migration of all active secrets into an approved vaulting solution.

4. API Security and Incident Response

  • API Security Review:
    Lead a security review of our API utilization and exposure across platforms like
    Apigee, Microsoft Graph, and Azure API Gateway
    , using CodeQL to analyze usage patterns and potential vulnerabilities in the code.
  • Incident Activity:
    Perform in-depth security code reviews to remediate identified issues and quickly identify repositories affected by security incidents, prioritizing those that are externally facing.

When you apply, you voluntarily consent to the disclosure, collection and use of your personal data for employment/recruitment and related purposes in accordance with the Tech Aalto Privacy Policy, a copy of which is published at Tech Aalto's website )

Confidentiality is assured, and only shortlisted candidates will be notified for interviews.


  • Github SME

    10 hours ago


    Sydney, New South Wales, Australia Delivery Centric Full time $90,000 - $120,000 per year

    Role: Github SME (L3/L4)Location: SydneyJob Description:We're seeking a highly skilled and security-focused GitHub Subject Matter Expert (SME) to drive the modernization and secure consolidation of our code repositories onto the strategic GitHub Enterprise Cloud platform. This role is central to enforcing enterprise-level security standards, implementing...

  • Github SME L2

    9 hours ago


    Sydney, New South Wales, Australia Wipro Full time $120,000 - $180,000 per year

    Job description:Job DescriptionRole Purpose**Skill : Github SME (L3/L4)Location : Onshore (Syd.) & Offshore (Chennai)**We're seeking a highly skilled and security-focusedGitHub Subject Matter Expert (SME) to drive the modernization and secure consolidation of our code repositories onto the strategic GitHub Enterprise Cloud platform. This role is central to...


  • Sydney, New South Wales, Australia Delivery Centric Pty Ltd Full time $120,000 - $180,000 per year

    Delivery Centric is seeking a highly skilled GitHub Subject Matter Expert (SME) to lead the modernization, security, and consolidation of enterprise code repositories on GitHub Enterprise Cloud. This role will define and implement enterprise-grade identity management, security policies, and DevSecOps governance across the development landscape. The ideal...


  • Sydney, New South Wales, Australia ALOIS Solutions Full time $120,000 - $180,000 per year

    Role: GitHub Subject Matter Expert (SME)Work location: Sydney, NSWRole type: ContractJob description: GitHub Subject Matter Expert (SME)We're seeking a highly skilled and security-focusedGitHub Subject Matter Expert (SME)to drive the modernization and secure consolidation of our code repositories onto the strategic GitHub Enterprise Cloud platform. This role...


  • Sydney, New South Wales, Australia Whizdom Full time $60,480 - $120,960 per year

    GitHub Subject Matter Expert (SME)Contract role – 6+ monthsLocation – Sydney, NSWRate – $504 per day including superAbout the Client:Our client is a multinational corporation that provides information technology, consulting, and business process services to a range of clients across Government, Financial Services, Telecommunications, Retail and...

  • CyberArk SME

    2 weeks ago


    Sydney, New South Wales, Australia SyncUp Full time $150,000 - $200,000 per year

    Act as the internal SME for a leading enterprise customerOversee and review vendor delivery of CyberArk solutionsLong-term engagement with flexible arrangementsThe Opportunity SyncUp is seeking a highly experienced CyberArk SME to join a major enterprise program, preferably based in Sydney. This role is critical in ensuring the successful deployment and...


  • Sydney, New South Wales, Australia Relevance AI Full time $120,000 - $180,000 per year

    Location : Sydney, Australia (Hybrid - 3 days per week in office)About Us At Relevance AI, our mission is to empower anyone to delegate work to the AI workforce.We're building a new type of automation platform, for anyone to create and use AI agents that can replicate human quality work, decision making and collaboration.We are scaling fast to meet...


  • Sydney, New South Wales, Australia Relevance AI Full time $120,000 - $180,000 per year

    Location : Sydney, Australia (Hybrid - 3 days per week in office) About Us At Relevance AI, our mission is to empower anyone to delegate work to the AI workforce. We're building a new type of automation platform, for anyone to create and use AI agents that can replicate human quality work, decision making and collaboration. We are scaling fast to...

  • Client Partner

    8 hours ago


    Sydney, New South Wales, Australia Randstad Enterprise Full time $120,000 - $180,000 per year

    Client Partner, Enterprise SolutionsWe are seeking a highly motivated and experiencedClient Partnerto join our Enterprise Solutions team focused on driving revenue and profitable growth within our core concepts of outplacement and coaching. In this role, you will be the face of our brand, responsible for securing complex, high-value deals and nurturing...


  • Sydney, New South Wales, Australia Bluefin Resources Pty Limited Full time $80,000 - $120,000 per year

    A major bank is currently seeking 2 Senior Entra ID SME's Engineers. These are initial 6 month contract that can be based in Sydney or Melbourne. You will be joining a team about to embark on an extensive modernisation agenda around AI, Copilot etc and your skills and expertise will be at the forefront of its delivery. Responsibilities: Take the lead in...