
Security Engineer
18 hours ago
Worker Type:
PermanentHere at BNZ, it's about more than just banking. We work together in an agile, energising environment to create innovative solutions through our promise "If you can imagine a better future, let's find a way."
We support wellbeing, flexible working and have a generous leave offering. There is the opportunity for growth, learning and career development. No two days are the same.
Centrapay is an entity of the BNZ Group.
At Centrapay, we're revolutionising how you spend money both in-store and online. We allow businesses to create digital assets and loyalty programmes so that you can spend and be rewarded anywhere. Some of our partners include Coca-Cola, BNZ, and Farmlands, and we process payments in New Zealand and Australia.
Our payments platform is the heartbeat of what we do. On top of this, we're building our hero app, Payap, that brings all of our best capabilities to life.
We are seeking an intermediate-level Security Engineer to support our growing Information Security program. You'll be hands-on doing development work within our infrastructure space, with a focus on attaining and maintaining compliance with global security and risk frameworks such as ISO 27001, SOC 2, and NIST SP Your role will help ensure our systems, policies, and practices meet both regulatory and customer expectations.
This role is ideal for someone with 3+ years of experience in compliance or risk who is ready to take more ownership of controls, audits, and risk processes in a fast-paced payments environment.
What You'll Do
Engineering & Development
- Design, build, and maintain secure infrastructure and internal systems (CI/CD pipelines, cloud infrastructure, APIs, etc.).
- Implement and maintain security tools (e.g. SIEM, IDS/IPS, vulnerability scanners).
- Work closely with DevOps and Engineering teams to integrate security into SDLC (DevSecOps approach).
- Conduct peer code and architecture reviews with a focus on security best practices.
- Participate in an on-call support rota, with specific timeframes determined by business priorities and the discretion of senior leadership.
Compliance & Governance
- Lead and support efforts to attain and maintain security certifications such as ISO 27001, SOC 2, and NIST SP 800-53 compliance.
- Perform internal risk assessments, control testing, and vendor security reviews.
- Maintain policies, procedures, and documentation aligned to security frameworks.
- Coordinate with external auditors, consultants, and internal stakeholders for audits and gap remediation.
- Collaborate with HR and Training to support security awareness programs.
- Keep up to date with relevant regulations and compliance trends (e.g., NIST updates, NZ Privacy Act).
Requirements
Who we're looking for
- 3–5 years of experience in a software development, DevSecOps, or Systems Engineer role.
- 2-3 years of experience in security compliance, risk management, or IT audit.
- Hands-on experience with cloud infrastructure (preferably AWS or Azure).
- Familiarity with Infrastructure-as-Code (Terraform, CloudFormation, etc.).
- Understanding of security architecture and secure coding practices.
- Knowledge of ISO 27001, SOC 2, and/or NIST SP frameworks.
- Experience with compliance documentation and audits.
Nice-to-have
- Relevant security certifications (e.g., CISSP, CISM, ISO 27001 Lead Implementer, AWS Security Specialty).
- Experience in the payments or fintech space.
- Familiarity with container orchestration (e.g., Kubernetes).
- Experience with CI/CD and automated compliance tooling.
Why Join Us?
- Be part of a fast-growing fintech shaping the future of payments
- Work with a team that values innovation, collaboration and ambition
- Competitive compensation, growth opportunities, and a chance to make a real impact
Your Key Benefits
There are great benefits to working at the BNZ group such as 6 weeks annual leave, discounts on banking products, health & life insurance etc.
This is an exciting opportunity to join us We're bold thinkers who are taking brave steps to create a company that people want to work for, and customers want to bank with. If you're ready to join a fun organisation where we are proud of our culture and how we are helping New Zealander's to 'Find their way', then show your interest by submitting your application - we can't wait to read it.
Ehara taku toa i te toa takitahi, engari he toa takitini" - Success is not the work of an individual, but the work of many."
Closing Date: 20 November 2025Applications will be reviewed regularly across the advertising period, but we do reserve the right to close applications early.
-
Security Engineer
4 weeks ago
Melbourne, Australia NEP Australia Full timeAre you ready for new challenges and new opportunities? Join our team! Current job opportunities are posted here as they become available. Subscribe to our RSS feeds to receive instant updates as new positions become available. NEP is Australia’s leading provider of outsourced television production services. We are always looking for great people to...
-
Security Engineering Senior Engineer
21 hours ago
Melbourne, Victoria, Australia Telstra Full time $120,000 - $180,000 per yearEmployment TypePermanentClosing Date31 Oct :59pmJob TitleSecurity Engineering Senior Engineer (Endpoint Security)Job SummaryJob DescriptionAs a Senior Security Engineer, you'll step into a pivotal role as a recognised authority across information, engineering, and cyber security. Your deep expertise in security technologies, cloud platforms, and enterprise...
-
Product Security Engineer
1 week ago
Melbourne, Victoria, Australia BAE Systems Full time $80,000 - $120,000 per yearBIS Strategic Surveillance BU / JORNSA-Ed Parks or VIC-Melbourne Central OfficeGrade: 6Referral Fee Value: $3000PURPOSE OF JOB:To deliver Product Security programs for projects undertaken by the Company. The role requires continuous integration with other engineering streams. The Product Security Engineer will work with the other project design (software,...
-
Security Engineer
1 week ago
Melbourne, Victoria, Australia Kaizen Global Technologies Full time $120,000 - $180,000 per yearEmployment: Permanent RoleExperience: 5+ yearsLocation: Melbourne, Sydney Australia - HybridEligibility: Candidates must have the right to work in Australia (Citizen, PR, Valid Visa holders).Job Description:Seeking a skilledSecurity Engineerto enhance and maintain enterprise security across Microsoft Entra ID and Defender environments. The role focuses on...
-
Cyber Security Engineer
3 days ago
Melbourne, Victoria, Australia ITbility Full time $78,000 - $120,000 per yearCyber security EngineerMelbourne / Brisbane/ SydneyPermanentSalary - $78K plus superMy client in Melbourne/ Brisbane/ Sydney looking for Cyber security Engineer. Kindly go through the below PD and let me know if the role suits and interests you, your friends or colleagues. can send me your resumes/referrals at QualificationsMinimum of two years of...
-
Cloud Security Engineer
1 week ago
Melbourne, Victoria, Australia Kaizen Global Technologies Full time $120,000 - $180,000 per yearJob Title:Security Team EngineerDuration: PermanentLocation: Melbourne OR Sydney, AustraliaSummary:We are seeking a skilledSecurity Team Engineerto join our team on a permanent basis inMelbourne or Sydney, Australia. This role is ideal for a security-focused professional with strong experience in cloud-native environments, and centralized logging and...
-
Security Engineer, AWS Security
6 days ago
Melbourne, Victoria, Australia myGwork - LGBTQ+ Business Community Full time $90,000 - $120,000 per yearThis job is with Amazon, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly.DescriptionAmazon Web Services (AWS) is the leading cloud service provider, providing virtualised infrastructure, storage, networking, messaging, and many other services to...
-
Network Security Engineer
4 days ago
Melbourne, Victoria, Australia Resource Corner Full time $80,000 - $120,000 per yearKey ResponsibilitiesOperate, configure, and optimize Cisco network security solutions including:Cisco FMC (Firepower Management Center)Cisco ISE (Identity Services Engine)Cisco EWSA (Email/Web Security Appliance)Manage and fine-tune Imperva Web Application Firewall (WAF) policies and rules to protect public-facing applications.Contribute to ...
-
cyber security engineers/architect
2 weeks ago
Melbourne, Victoria, Australia Torch Professional Services Full time $70,000 - $120,000 per yearMust have NV1 or NV2 clearances (non-negotiable)Immediate or 4 weeks notice startUrgent rolesCyber Engineering4 x Cyber GRC Analysts - NV1 - SCTY 5Cyber Governance Risk and Compliance Analysts will work alongside project teams, Engineers, Solution Architects and systems integrators to analyse and document cyber security risks.They will be responsible for...
-
Graduate Security Operations Engineer
1 week ago
Melbourne, Victoria, Australia Lyrebird Health Full time $70,000 - $120,000 per yearGraduate Security Operations EngineerThe RoleWe're seeking a Graduate Security Operations Engineer with a genuine interest in cyber security and a desire to grow their skills under the guidance of experienced Site Reliability Engineers. In this role, you'll gain hands-on experience in security operations while supporting IT Ops to respond to and resolve...