Principal Azure DevSecOps Engineer

Js Careers Pty Limited — Australia · Posted ~1 day ago

Lead Full-time

Skills

Azure Azure DevOps DevSecOps Pipeline security Security controls Audit remediation KQL Azure Log Analytics SAST Dependency scanning Secret scanning YAML pipelines Software supply-chain security YAML SBOM

🔓 Log in to save this job, tailor your resume & track your apply process — 7 days free, no card needed.

Log in to add to target list

Summary ✨ AI‑Generated

Take a principal-level hands-on role strengthening the security, reliability, and maturity of an established Azure and DevOps environment. You will lead initiatives spanning pipeline and access security, audit remediation, security monitoring, code and dependency scanning, branch controls, software supply-chain protection, and secure release processes. The role offers broad collaboration with engineering, architecture, infrastructure, and security stakeholders.

Highlights

Principal-level hands-on ownership across cloud security, software supply-chain protection, audit remediation, release engineering, and reusable DevSecOps automation within an established environment.

Description

We’re partnering with an established financial services organisation to appoint a Principal Azure DevSecOps Engineer into its software engineering function. This is a senior, hands-on individual contributor role focused on strengthening the security, reliability and maturity of an established Azure and Azure DevOps environment. You’ll take ownership of key DevSecOps, software supply-chain security, audit remediation and release-engineering initiatives, working closely with senior engineers, architecture, infrastructure and security stakeholders. Key responsibilities: Strengthen Azure DevOps security, access controls and pipeline securityImplement audit-log streaming into Azure Log AnalyticsBuild KQL queries, dashboards and security reportingImplement SAST, dependency scanning, secret scanning and related controlsImprove branch policies, pull-request controls and release processesImplement SBOM generation, package governance and secure code signingDevelop reusable YAML pipelines and automationProduce clear documentation, runbooks and knowledge-transfer materials What we’re looking for: Strong Azure DevOps and YAML pipeline experienceStrong Azure capability across Log Analytics, Monitor, Key Vault, managed identities and RBACPractical KQL and security reporting experienceDevSecOps and software supply-chain security experiencePowerShell and Azure CLI automation skillsInfrastructure as Code experience, ideally Bicep or TerraformWorking knowledge of .NET build and release processes Experience within financial services, insurance, banking or another regulated environment would be highly regarded, along with exposure to APRA CPS 234, ISO 27001 or similar frameworks. Location: Sydney If this sounds like the right opportunity for you, please apply.