Senior Application Security Engineer

2 months ago


Sydney, Australia Tyro Payments Limited Full time

Why work for Tyro

We're not just like every other bank. Tyro has always been a tech company at heart, but fostering a diverse and inclusive environment, and a passion for continuous learning has always been one of the most important parts of our company's culture.

Tyros are a highly collaborative mix of people. You will work closely with our awesome teams and individuals in engineering, product management, customer support, sales and other functions within the business. Our strong team of 600+ Tyros, just like our customers, are the lifeblood of our business. We go to great lengths to ensure a positive and enjoyable employee experience for all. Everyone is committed to delivering great outcomes for our customers, and you will have the chance to change the face of payments and commerce for Australian businesses.

As a Senior Application Security Engineer, you will drive product and application security initiatives, ensuring that security is seamlessly embedded throughout the software development lifecycle and deployment processes.

What you’ll do:

  • Implement and manage Software Composition Analysis (SCA) and Static Application Security Testing (SAST) toolsets to identify vulnerabilities in the codebase.

  • Working with 3rd parties and the business to co-ordinate application security activities.

  • Collaborate with Product Development teams, Cyber and other stakeholders.

  • Conduct sophisticated security assessments and penetration testing.

  • Create application threat models and validate that the appropriate security controls are properly implemented.

  • Promote and champion continuous learning and improvement by being involved in security training and ensuring best practices are followed by the development teams.

What you’ll bring:

  • Previous experience as either a Penetration Tester or Software Engineer.

  • Hands on development experience with either Java or Python.

  • A strong understanding of both Web & Mobile Application Security.

  • Knowledge of OWASP Frameworks.

  • Previous working experience across public cloud platforms – AWS preferred.

  • Experience with platforms like Secure Code Warrior and Secure Flag.

  • Strong communication skills with the ability to explain technical vulnerabilities to business stakeholders.

Perks and Benefits

We’ve worked hard to create an environment that’s big on diversity, inclusion, and flexibility, and one that suits the changing needs ofour people across Australia. Here are just some of the things Tyros tell us they love about working here: 

  • A hybrid working policy that truly enables you to live your best life

  • Learning and career development opportunities

  • 16 weeks paid primary carers leave

  • 12 weeks paid secondary carers leave

  • Annual team-based volunteer day

  • We're a social bunch, we love a weekly team social event, snacks, a selection of craft beer, wine and non-alcoholic beverages, ping pong and video games

  • Taco Tuesdays

  • Mental health and wellness initiatives

  • Personal finance initiatives

#LI-Hybrid



  • Sydney, Australia ASIC Full time

    The role   As an Application Security Engineer, you will help lead the product security and application security initiatives ensuring that security is integrated into every aspect of the software development lifecycle and deployment processes. As part of the role, you will also support the cyber assurance function and the delivery of the Cyber Uplift...


  • North Sydney, Australia TPG Telecom Full time

    We’ve only just begun, but what a beginning. In a once in a generation moment, we’ve brought together powerful brands to create one united force. TPG Telecom has a powerhouse of brands which include Vodafone, TPG, iiNet, Internode, Lebara, AAPT and felix. The latest technology and brave thinking let us connect our people and communities. You could play...


  • North Sydney, Australia TPG Telecom Full time

    We’ve only just begun, but what a beginning. In a once in a generation moment, we’ve brought together powerful brands to create one united force. TPG Telecom has a powerhouse of brands which include Vodafone, TPG, iiNet, Internode, Lebara, AAPT and felix. The latest technology and brave thinking let us connect our people and communities. You could play...


  • Sydney, Australia Tal Services Limited Full time

    Company DescriptionWelcome to This Australian Life. From the millions of Australians we protect, to those that make it happen every day at TAL, people really are what we’re all about. We want to grow with you. Achieve with you. And support you to do your best work. That's why we're focused on developing leadership, promoting diversity, rewarding...


  • Sydney, Australia Amazon Full time

    DESCRIPTIONEmbark on a Mission to Fortify Amazon's Defenses as a Senior Security Engineer with the Vulnerability Management & Remediation Operations team!Amazon Security is seeking an experienced and innovative Senior Security Engineer to join our Vulnerability Management and Remediation Operations (VMRO) team in Sydney, Australia. The VMRO team is...


  • Sydney, Australia Senior Full time

    Description Position at GroupM About us Acceleration is WPP’s specialist practice for data, analytics & technology consulting. We are a curious team of highly skilled data and technology practitioners, inspired by experimentation and new ideas. This is the lifeblood of the future-forward solutions we deliver, that...


  • Sydney, New South Wales, Australia Senior Full time

    Job OverviewWe are seeking a highly skilled Senior Data Architect to join our team. This is a senior-level position responsible for designing and building scalable cloud-based systems and applications for our marketing analytics clients.The ideal candidate will have at least 4+ years of experience delivering data engineering solutions on Google Cloud...


  • Sydney, Australia Commonwealth Bank of Australia Full time

    Application Security Consultant **Your new team**: The Application Security team, a part of the wider Cyber Security team, partners with our engineering teams to enable DevSecOps by integrating security into the software development lifecycle through the following services: - **Tooling and Automation**: Embedding security tools and automation into the SDLC...


  • Sydney, Australia Commonwealth Bank Full time

    **Your new team**: The Application Security team, a part of the wider Cyber Security team, partners with our engineering teams to enable DevSecOps by integrating security into the software development lifecycle through the following services: - **Tooling and Automation**:Embedding security tools and automation into the SDLC (such as Snyk and GitHub Advanced...


  • Sydney, Australia REA Group Full time

    We’re REA REA Group ( is not your average digital business. From humble beginnings in a garage in Melbourne’s east in 1995, we have grown into a leading global digital business, specialising in property. With bold and ambitious goals, we are changing the way the world experiences property. No matter where you're at on your property journey, we're...

  • AWS Security Engineer

    2 weeks ago


    Sydney, New South Wales, Australia Culture Amp Full time

    Job Title: AWS Security EngineerWe are seeking an experienced AWS Security Engineer to join our team at Culture Amp. The role is based in Australia and requires a deep understanding of cloud security principles, AWS services, and software development.The estimated salary for this role is $120,000 - $180,000 per annum, depending on experience.Company...


  • Sydney, New South Wales, Australia The Decipher Bureau Full time

    Job Title: Senior Cybersecurity EngineerAbout the Role:We're seeking a highly skilled Senior Cybersecurity Engineer to join our team at The Decipher Bureau. As a Senior Cybersecurity Engineer, you'll be responsible for designing and implementing secure software development life cycles (SDLCs) and ensuring the security of our products and platforms.Key...


  • North Sydney Council, Australia TPG Telecom Full time

    We are in pursuit of a dedicated cybersecurity professional to be a key player in our Security Assurance Team at TPG Telecom. In this role, you will blend technical acumen with an empathetic approach, ensuring our software development processes are both sophisticated and secure.As a Senior Software Security Assurance Engineer, you will work together with our...


  • Sydney, Australia Decipher Bureau Full time

    Can be based in Sydney as a hybrid, or remote - Salary depending on experience - up to $160k base + super + bonuses - Huge long term learning and career growth opportunity If you're somebody that can communicate with Developers, knows how to review code or understands how to use the right scanning tools to ensure code is secure then you have the right...


  • Sydney, Australia The Decipher Bureau Full time

    Are you an experienced Engineering Manager who has lead small teams across a global platforms, ideally with some exposure to Cyber Do you take pride in your teams work and strive for success through clear communication, leadership and accountability?Are you looking for a large enterprise environment where you will be responsible for a small global team who...


  • Sydney, Australia Talenza Full time

    About the company Large FMCG style business Building out their first internal security team Excellent leadership team to work with About the role This is a newly created role in a team being built out by the CISO and Head of Security. They are investing heavily in Azure and Microsoft technologies, the will be a generalist across Microsoft...


  • Sydney, Australia Challenger Security Full time

    **Join Our Team at Challenger Security: Where Safety Meets Luxury** **About Us**: At Challenger Security, our impeccable Australia wide client list and teams of dedicated highly skilled professionals ensures we are the standout company in the industry. We are an ISO accredited industry leader specialising in providing top-tier security services for high-end...


  • Sydney, Australia Challenger Security Full time

    **Join Our Team at Challenger Security: Where Safety Meets Luxury** **About Us**: At Challenger Security, we're more than just a security company - we're a team of dedicated individuals committed to safeguarding our clients across Australia. As an ISO accredited industry leader, we specialise in providing top-tier security services for high-end luxury...


  • North Sydney, Australia Firesoft People Full time

    Job Title: Senior Security Engineer for MSPLocation: SydneySalary: $200,000 plus superOur client is a leading IT Service and Infrastructure Solutions Provider. They maintain strong relationships with all major industry-leading IT vendors, offering a comprehensive range of technology services and solutions to perfectly benefit their client’s needs and...


  • Sydney, Australia Challenger Security Full time

    **Join Our Team at Challenger Security: Where Safety Meets Luxury** **About Us**: At Challenger Security, our impeccable Australia wide client list and teams of dedicated highly skilled professionals ensures we are the standout company in the industry. We are an ISO accredited industry leader specialising in providing top-tier security services for high-end...