Information Security Engineer III
4 days ago
When you think of InComm Payments, think of Innovative Payments Technology. We were founded over 30 years ago and continue to be a pioneer in the payment (FinTech) industry. Since our inception, we have grown to be a team of over 3,000 employees in 35 countries around the world. We own over 400 global technical patents and a network that includes over 525,000 points of retail distribution that points to our industry expertise.
InComm Payments works with the most recognized and valued brands in the world, and we are partnered with most of the world's leading merchants. InComm Payments is highly focused on our people and their growth, and we work hard to make a career at InComm Payments meaningful and rewarding. We value innovation, quality, passion, integrity, and responsibility in all that we do, and we are looking for great people to join our team as we move forward towards a very bright future.
You can learn more about InComm Payments by visiting our Website or connecting with us on LinkedIn, YouTube, Twitter, Facebook, or Instagram.
About This OpportunityAs a Information Security Engingeer III, you will work on securing applications across InComm Payments by integrating security tools into CI/CD pipelines, conducting threat modeling, and supporting incident response. Ideally, you will have 5+ years of application security experience, strong scripting and cloud security skills (Azure, AWS, OCI), and hands-on knowledge of SAST/DAST tools, WAFs, and penetration testing. The role also involves collaborating with development teams, leading security initiatives, and ensuring compliance with industry standards.
Responsibilities- Integrate SAST tooling into CI/CD pipelines, ensuring compatibility and efficient scanning within development workflows.
- Provide tailored SAST integration support for development teams at varying maturity levels with diverse toolsets and security requirements.
- Analyze application logs for anomalous patterns, communicate findings to leadership, and persuade them to take appropriate action.
- Participate in on-call rotation in support of WAF incidents.
- Validate security vulnerabilities identified by automated tools and fine-tune configurations to minimize false positives and reduce noise.
- Develop threat models with development teams to help expose risks in their deliverables.
- Conduct regular assessments of security configurations and controls within Azure, AWS, and OCI environments.
- Incident Response: Assist in investigating security incidents with CSOC and implementing corrective actions.
- Participate in application design and architectural reviews.
- Facilitate activities such as blue/red team events and bug bounty programs.
- Lead prioritization discussions to gain traction on important security issues
- Act as a liaison with 3rd parties performing vulnerability scans and penetration testing to validate findings and inform priorities and strategies for remediation.
- Draft, evaluate, and monitor compliance with application and development security standards.
- Ensure development teams are validating for OWASP Top 10 and performing industry leading application security practices.
- 5+ years of application security experience.
- Strong background with CI/CD processes and associated tooling, such as Jenkins, GitHub Actions, Azure Pipelines, or similar.
- Strong scripting experience – PowerShell, Python, etc.
- Extensive experience with SAST & DAST application scanning tools and knowledge of OWASP methodologies
- Application security experience with high level programming languages (e.g., Java, C, C++, C#, VB, .NET, ASP.NET, ASP, PHP, J2EE, JSP)
- Experience with Container technologies – Docker, Docker Swarm, Kubernetes
- Experience in cloud security, specifically with Azure, AWS, and OCI, preferably in the Fintech or related sectors and multi-cloud environments.
- Knowledge of Web Application Firewalls (WAF)
- Experience with Identity and Access Management security solutions and protocols (e.g., SAML, OpenID, and OAuth)
- Experience with performing web, API, and mobile manual penetration testing; preparing reports to document findings; and presenting the report to development teams.
- Familiarity with regulatory controls and industry best practices such as HIPAA, PCI, HiTrust, NIST etc.
- Conduct regular assessments of security configurations and controls within Azure, AWS, and OCI environments.
- Incident Response: Assist in investigating security incidents and implementing corrective actions.
- Communication skills to create documentation, videos and conduct training classes
- Ability to manage multiple tasks simultaneously and meet established deadlines.
- Ability to collaborate with IT teams on security-related tasks and projects.
- Ability to work productively while remote and communicate effectively in a virtual team environment.
- Ability to stay current with new technology.
-
Information Technology Security Engineer
1 week ago
Melbourne, Victoria, Australia Sanderson-iKas Singapore Full timeOverview: We are seeking a technically skilled IT Security Engineer for our client to support the implementation and maintenance of cybersecurity protocols across enterprise systems. This role is ideal for candidates with a strong foundation in threat detection, vulnerability management, and incident response.Key ResponsibilitiesMonitor and respond to cyber...
-
Melbourne, Victoria, Australia L3HHCM20 Full timeJob Title: Senior Associate, Information Security Systems EngineerJob Code: 30275Job Location: Melbourne, FLJob Schedule: 9/80Job Description: L3Harris is searching for talented and experienced Security Engineering professionals to join the Mission Networks Enterprise Security Team as a Level 3 Information Security Systems Engineer (ISSE). This...
-
Melbourne, Victoria, Australia L3HHCM20 Full timeJob Title: Lead, Information Security Systems EngineerJob Code: 30276Job Location: Melbourne, FLJob Schedule: 9/80Job Description: Duties for successful candidates include, but are not limited to management of a team responsible for reviewing and developing information system accreditation/certification support documentation; interacting with...
-
Information Security Officer
2 weeks ago
Melbourne, Victoria, Australia China Merchants Bank Co., Ltd. Full time $80,000 - $120,000 per yearEstablished in 1987 in Shenzhen, China Merchants Bank (CMB) is at the forefront of China's reform and opening-up drive, CMB is China's first joint-stock commercial bank and also the first bank to attend the national experiment for the promotion of China's banking industry reform driven by endeavors from outside the government.We are the Mel-based branch of...
-
Security Engineer
2 days ago
Melbourne, Victoria, Australia Crown Resorts Full time $90,000 - $130,000 per yearJob Description BETTER BEGINS HERE Crown Resorts is a great place to visit and an even better place to work — a place where you can play your part in creating joyful experiences for our guests and our people.We value passion, creativity, and an appetite for change — for the better.Here, you'll be part of the team, empowered to explore more, experience...
-
Information Security Intern
7 hours ago
Melbourne, Victoria, Australia Zoetis Full time $16,000 - $40,030 per yearRole Description:Zoetis is looking for a highly motivated individual to intern as part of our growing Information Security team. This opportunity will immerse you in many different aspects of the Information Security world including Incident Response, Vulnerability Management, Data Protection, Operational Technology (OT) and Security...
-
Information Security Assurance Coordinator
2 days ago
Melbourne, Victoria, Australia Emmbr Full time $80,000 - $120,000 per yearJoin one of Australia's largest healthcare providers on a major digital platformCollaborate within a multidisciplinary delivery stream of engineers and analystsSecurity coordination, assurance and communication internally and externallyBy official title, this is a Security Operations Analyst position within a large-scale program modernising healthcare...
-
Business Development Manager- Cyber GRC
2 weeks ago
Melbourne, Victoria, Australia Information Security Consultants Full time $90,000 - $120,000 per yearCyber GRC Consulting & Compliance Location:Remote (with travel across Australia & New Zealand)Company:Information Security Consultants (ISC)Employment Type:Full-timeAbout ISCInformation Security Consultants (ISC) is a specialist cybersecurity consulting firm supporting organisations across Australia and New Zealand. We deliver tailored solutions in...
-
Armed Security Officer
1 week ago
Melbourne, Victoria, Australia MSS Security Full time $60,000 - $180,000 per yearAbout the CompanyAs one of Australia's leading security companies, MSS Security is built on teamwork, respect, and integrity. We provide long-term career paths, stability, and a workplace where your professionalism and dedication are genuinely valued. To find out more visit our website at MSS Security is currently seeking Casual and Full-Time Armed Security...
-
Melbourne, Victoria, Australia Telstra Full time $80,000 - $120,000 per yearEmployment TypePermanentClosing Date4 Nov :59pmJob TitlePrincipal Business Information Security AdvisorJob SummaryWe're an iconic Aussie brand with a global footprint. Our purpose is to build a connected future so everyone can thrive. We're all about providing the best experience and delivering the best tech on the best network.This includes making Telstra...