Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Security Engineer - Application Security image - Rise Careers
Job details

Security Engineer - Application Security

Zip Co Limited seeks a Security Engineer with expertise in application security and knowledge of AWS Cloud infrastructure to protect millions from cyber threats.

Skills

  • Web application security
  • Experience with AWS and Azure
  • Security engineering
  • Infrastructure-as-Code
  • API Security

Responsibilities

  • Identify protection goals across current and emerging threats
  • Contribute to the development and execution of Zip’s information security strategy
  • Identify potential threats and risks within application code and platforms
  • Design and deliver effective security solutions

Education

  • Bachelor’s degree in Computer Science, Information Technology, or related field

Benefits

  • 25 days paid leave annually
  • 16 weeks paid parental leave for primary carers
  • Mental health and wellness initiatives
  • Fee-free Zip products
  • Team social events
To read the complete job description, please click on the ‘Apply’ button

Average salary estimate

$105000 / YEARLY (est.)
min
max
$90000K
$120000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Security Engineer - Application Security, Zip Co Limited

As a Security Engineer - Application Security at Zip in Sydney, you'll dive deep into the exciting world of web application security to protect millions of our customers from cybersecurity threats. With proven experience in software engineering and knowledge of AWS cloud infrastructure, you’ll face interesting challenges every single day! In this hybrid role, you have the flexibility to work from either our Sydney or Melbourne offices. If you enjoy tackling complex security challenges and thrive in a collaborative environment, you’ll fit right in with our Cyber Security team. Your mission is to identify potential threats within our application code and devise effective solutions while ensuring minimal disruption to our technology operations. Every day presents an opportunity to grow your skills as you contribute to developing and executing Zip’s overall information security strategy. You will be encouraged to own your career path—whether that means climbing upwards within Security or exploring other areas in Zip's vast tech landscape. We’re looking for someone with at least 3 years of experience in information security or secure software development, comfortable with AWS/Azure, and with a knack for application security. Beyond technical skills, what we value is your drive to learn and grow, your stakeholder engagement abilities, and your alignment with our core values: Customer First, Own It, Stronger Together, and Change the Game. At Zip, you’ll be immersed in a culture that not only nurtures your professional development but also prioritizes employee well-being and work-life balance. Come join us at Zip, where you can feel confident bringing your whole self to work and making an impact that matters!

Frequently Asked Questions (FAQs) for Security Engineer - Application Security Role at Zip Co Limited
What are the main responsibilities of a Security Engineer - Application Security at Zip?

As a Security Engineer - Application Security at Zip, your primary responsibilities include identifying potential threats within our application code, developing effective security solutions, and contributing to the overall information security strategy. Working closely with the Cyber Security team, you'll assess current and emerging threats and collaborate to reduce risks across the organization, ensuring a secure environment for our customers.

Join Rise to see the full answer
What qualifications do I need to apply for the Security Engineer - Application Security position at Zip?

To qualify for the Security Engineer - Application Security position at Zip, candidates should have a minimum of 3 years of experience in information security or secure software development. It is essential to be knowledgeable about public cloud services like AWS or Azure, have experience with application security, and demonstrate proficiency in systems such as Docker or Kubernetes. A strong aptitude for risk management and relationship building is also crucial.

Join Rise to see the full answer
What does the career growth look like for a Security Engineer - Application Security at Zip?

At Zip, career growth for a Security Engineer - Application Security is promising. You will have opportunities to advance within the Security domain or explore other areas within our tech ecosystem. The supportive environment encourages you to take ownership of your career, develop new skills, and make your mark in a variety of initiatives across the company.

Join Rise to see the full answer
What is the culture like at Zip for a Security Engineer - Application Security?

The culture at Zip is collaborative and people-centered, making it an excellent place for a Security Engineer - Application Security. You will be surrounded by smart, friendly colleagues who are committed to supporting each other's growth. We embrace our core values—Customer First, Own It, Stronger Together, and Change the Game—creating an environment where everyone feels valued and encouraged to contribute their unique perspectives.

Join Rise to see the full answer
What is the work-life balance like for a Security Engineer - Application Security at Zip?

Zip promotes a healthy work-life balance for its employees, offering hybrid work arrangements and ample paid leave. In addition to 25 days of annual leave, including birthday leave and wellness days, Zip supports mental health initiatives, family-friendly policies, and volunteering opportunities. You can feel confident that your well-being is prioritized while you tackle the challenges associated with your role.

Join Rise to see the full answer
Common Interview Questions for Security Engineer - Application Security
Can you describe your experience with application security best practices?

When answering this question, discuss specific techniques you've employed in assessing application vulnerabilities, such as threat modeling, secure coding practices, and penetration testing. Highlight any particular frameworks or tools you have worked with, and demonstrate your knowledge of mitigating security risks effectively.

Join Rise to see the full answer
How do you approach risk management in your role as a Security Engineer?

Express your systematic approach to identifying and evaluating security risks. Talk about your experience in implementing controls, monitoring threats, and reporting security issues. Mention how stakeholder engagement plays a vital role in managing risks and ensuring a secure environment.

Join Rise to see the full answer
What cloud security measures do you prioritize when working with AWS or Azure?

Share your understanding of cloud security principles, such as understanding shared responsibility models, configuring security groups, identity access management, and data encryption. Provide examples of how you've employed best practices to maintain security across cloud environments to protect customers' data.

Join Rise to see the full answer
Can you give an example of a time you successfully dealt with a security incident?

When addressing this question, present a specific incident where you took a lead role in incident response. Explain how you identified the threat, the steps you took to mitigate it, and what lessons were learned to strengthen future security measures. Emphasize effective communication and collaboration throughout the process.

Join Rise to see the full answer
How do you stay updated with current trends in cyber threats and security tools?

Discuss your commitment to continuous learning in the field of cybersecurity. Mention resources such as industry blogs, cybersecurity forums, conferences, or certifications that you actively engage with to stay informed. Highlight your approach to integrating knowledge from these resources into your work.

Join Rise to see the full answer
What experience do you have with CI/CD in relation to security?

Describe your familiarity with continuous integration and continuous deployment practices, focusing on embedding security checks early in the pipeline. Highlight any specific tools you've used and how you've collaborated with development teams to ensure secure deployments without slowing down the workflow.

Join Rise to see the full answer
How do you engage with stakeholders to ensure security policies are understood and implemented?

Explain your strategies for effective stakeholder communication, such as conducting training sessions, creating informative materials, or establishing feedback loops. Share examples where you've successfully engaged cross-functional teams to promote a culture of security awareness.

Join Rise to see the full answer
What challenges have you faced in application security, and how did you overcome them?

Identify specific challenges such as balancing security needs with usability or dealing with legacy systems. Discuss how you approached these issues, the solutions you implemented, and the positive outcomes achieved from your actions.

Join Rise to see the full answer
How do you assess the security of third-party vendors or software?

Detail your experience in conducting vendor assessments, including how you evaluate their security practices, compliance standards, and any risks they might introduce. Highlight your method for ensuring that third-party solutions align with your organization's security goals.

Join Rise to see the full answer
What tools and technologies do you find most effective for application security?

Specify tools and technologies you've used for different aspects of application security, such as static and dynamic analysis tools, vulnerability scanners, or security information and event management (SIEM) solutions. Explain why you prefer these tools and how they've contributed to your success in securing applications.

Join Rise to see the full answer
Similar Jobs
Posted 2 days ago
Photo of the Rise User
Posted 7 days ago
DevSavant Inc. Remote No location specified
Posted 9 days ago
Photo of the Rise User
ENERTRAG SE Remote Friedrichstraße 152, 10117 Berlin, Deutschland
Posted 19 hours ago
Photo of the Rise User
Continental Remote Strada Avram Imbroane, Timișoara, Romania
Posted yesterday
Photo of the Rise User
Babylon Labs Remote No location specified
Posted 7 days ago
Photo of the Rise User
Zuri Group Remote United States - Remote Flexibility
Posted 8 days ago
Photo of the Rise User
Posted yesterday
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
HQ LOCATION
No info
SALARY RANGE
$90,000/yr - $120,000/yr
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
March 15, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
16 people applied to IT Intern at USAA
P
Someone from OH, Mentor just viewed Ecommerce Specialist at ProjectGrowth
Photo of the Rise User
Someone from OH, Lakewood just viewed Regional Broker Contractor - Ohio, US (Remote) at Real
Photo of the Rise User
Someone from OH, Cleveland just viewed Data Partnerships Analyst at Experian
Photo of the Rise User
Someone from OH, Dublin just viewed Junior PMO Analyst at Rentokil Initial Group
Photo of the Rise User
Someone from OH, Columbus just viewed Executive Assistant II at Progress
Photo of the Rise User
Someone from OH, Cleveland just viewed Infection Prevention Data Abstractor: Full-Time at Q-Centrix
Photo of the Rise User
Someone from OH, Orwell just viewed Amazon Expediting Fleet Specialist at MSX International
E
Someone from OH, Cleveland just viewed Junior Support Engineer (m/f/d) at EoT Labs GmbH
Photo of the Rise User
Someone from OH, Reynoldsburg just viewed Graphic Designer at Hyve Group
Photo of the Rise User
Someone from OH, Reynoldsburg just viewed Production Artist Phoenix at R.R. Donnelley
A
Someone from OH, Avon Lake just viewed Entry Level Marketing Assistant at Alphabe Insight Inc
Photo of the Rise User
Someone from OH, North Royalton just viewed Researcher-NBC Sports at NBCUniversal
Photo of the Rise User
Someone from OH, Cleveland just viewed UI Product Designer at Insight Global
Photo of the Rise User
Someone from OH, Cleveland just viewed Getinge is hiring: UI/UX Developer in Streetsboro at Getinge
Photo of the Rise User
Someone from OH, Kent just viewed Graphic Designer, Direct Response at Visa
Photo of the Rise User
Someone from OH, Columbus just viewed General Application - I want to work at Kiddom! at Kiddom
G
Someone from OH, Cincinnati just viewed Calling All Stay-at-Home Parents at Global Elite Texas
S
Someone from OH, Columbus just viewed Senior Project Manager, Learning at Studion
Photo of the Rise User
Someone from OH, Pickerington just viewed Marketing Data Analyst - Contract (10hrs/wk) at Skylight
Photo of the Rise User
Someone from OH, Pickerington just viewed Americas Sales Manager, Kuiper Mobility Business Unit at Amazon