Senior Security Engineer - Offensive Security

  • Hybride
  • Sydney (AU)
  • 37.5 uur
  • Fulltime
Solliciteren
  • AWS Cloud Computing
  • Digitale geletterdheid
  • Gedisciplineerde uitvoering
  • Gedistribueerde systemen
  • Informatietechnologie-strategieën
  • Informatietechnologiebeveiliging
  • Klantgericht
  • Oplossingsarchitectuur
  • Probleemmanagement
  • Technologisch landschap
  • Veranderingsvermogen

Deze match heeft geen invloed op je sollicitatie. Dit is puur een indicatie of deze vacature bij jouw skills past.

About Us

Rabobank is the world’s leading specialist in food & agribusiness banking.  One of our key strengths lies in our people who have a deep understanding of agriculture & are committed to adding long-term value for clients.  Our commitment to our employees & clients is at the heart of everything we do.

About the role:

Rabobank’s Technology Engineering Security Team is on the front line of cyber defence - designing & implementing controls that protect our systems & data.  This collaborative team covers Security Architecture, Vulnerability Management, Security Testing, & Red Teaming.  The team is now looking for an Senior Security Engineer - Offensive Security, in Sydney on a 12-month fixed term contract

As Senior Security Engineer - Offensive Security,, you will be responsible for delivering high‑impact offensive security testing across applications, infrastructure, cloud environments, & emerging technologies within Rabobank Australia & New Zealand (RANZ).

Top Role Responsibilities & Accountabilities:

  • Partner with business leaders & technology stakeholders to identify systems & services that meet defined criteria for offensive security testing, establishing & managing a prioritised testing pipeline
  • Execute offensive security testing pipeline across applications, infrastructure, & cloud platforms (on‑prem & Azure)
  • Deliver hands‑on penetration testing & vulnerability assessments, validating exploitability & real business impact
  • Support squads by triaging findings from code scanning, helping teams understand what matters & why
  • Partner with DevSecOps engineering teams to support shift‑left security by informing, tuning, & validating automated security testing & CI/CD controls based on real‑world offensive findings
  • Champion effective remediation by collaborating with engineering, security architecture, secure design, & vulnerability management teams to prioritise findings, provide actionable guidance, validate fixes, & influence secure‑by‑design practices
  • Oversee & coordinate testing activity across the Rabobank ANZ region, including external penetration testing schedules
  • Produce clear, high‑impact security reports tailored to both technical & non‑technical stakeholders
  • Contribute to secure‑by‑design outcomes by feeding findings back into architecture, design, & vulnerability management processes
  • Influence the ongoing maturity of the offensive security capability through knowledge sharing, research, & continuous improvement

To Be Successful, you will have:

  • A minimum of 10 years IT experience
  • Strong hands-on experience conducting penetration testing & offensive security assessments in complex environments
  • Demonstrated experience writing clear, concise, & impactful reports that translate technical findings into understandable risks & remediation steps for technical & non-technical audiences
  • Solid understanding of offensive security frameworks & methodologies (e.g., OWASP Testing Guide, OSSTMM, PTES,NIST, MITRE ATT&CK)
  • Strong technical communication & collaboration skills, with the ability to work effectively across domains (including SOC, architecture, & vulnerability management) to drive meaningful improvements & remediation outcomes
  • Proven ability to identify & exploit vulnerabilities across diverse technologies while collaborating with defensive teams
  • Deep passion for ethical hacking & security research; proactively exploring & adopting new tools, techniques, exploits, and methodologies to elevate testing quality.
  • Broad technical expertise in assessing platforms including (but not limited to)web applications & APIs, mobile (iOS/Android), network/server infrastructure, major cloud providers (AWS, Azure, etc.), & hardware/IoT devices
  • General knowledge of SAST (Static Application Security Testing) & DAST (Dynamic Application Security Testing)tooling, & how these complement manual offensive testing in identifying & prioritising vulnerabilities
  • Knowledge of secure development practices & DevSecOps principles within the SDLC, including integration of security controls in CI/CD pipelines to support shift-left security & faster remediation

Our Values

Rabobank Australia values inclusion, belonging, & positive experiences for all.  Our work environment, our benefits, & the way we live our values, “Client Driven”, “Responsible”, “Professional” & “Cooperative” make it a great place to work.   We welcome applicants from diverse backgrounds.

Please let our Talent Acquisition team know if you need any accommodations to make our opportunities more accessible to you.

Het sollicitatieproces

Dit is ons standaard sollicitatieproces. Het proces kan per rol verschillen.

Stap 1Je solliciteert

Leuk dat je solliciteert! Je krijgt altijd een bevestiging van je sollicitatie per e-mail. Wij nemen alle cv's en brieven door en laten zo snel mogelijk weten of we je uitnodigen voor een gesprek.

Stap 2Op gesprek

We nodigen je uit voor één of meerdere (online) gesprekken. We willen weten of je bij de functie en het team past. En jij hebt vast ook veel vragen aan ons. Bij sommige functies vragen we je ook om een opdracht of assessment te doen.

Stap 3Ons aanbod

Ben jij de nieuwe collega die we zoeken en word jij ook blij van ons? Gefeliciteerd! Dan krijg je een goed aanbod van ons. Voordat je bij ons start, voeren we eerst een wettelijke screening uit. Zo zorgen we ervoor dat onze medewerkers geen risico vormen voor ons en onze klanten.

Stap 4Welkom!

Welkom bij Rabobank! We kijken uit naar jouw komst en kunnen niet wachten om samen te werken.

Solliciteer op deze functie

Senior Security Engineer - Offensive Security

Het verplichte veld 'voornaam' is niet ingevuld.
Het verplichte veld 'achternaam' is niet ingevuld.
Het verplichte veld 'e-mail' is niet ingevuld.

Het verplichte veld 'telefoonnummer' is niet ingevuld.
Upload
Het verplichte veld 'cv' is niet ingevuld.
Upload
Je hebt het privacy statement nog niet geaccepteerd. Vink het vakje aan om akkoord te gaan.
Het verplichte veld 'working rights australia' is niet ingevuld.
Het verplichte veld 'remuneration expectations' is niet ingevuld.
Het verplichte veld 'connections to rabobank' is niet ingevuld.