Information Security Senior Consultant (Application Protection & Resilience)
Sydney, NSW, Australia
Westpac
Westpac is Australia's first bank with a range of innovative financial packages to support your personal, business or corporate banking needs.Create your best future and join Security Team as an Information Security Senior Consultant (Application Protection & Resilience)
What’s the role?
At the forefront of digital defence, the Application Security team—part of Westpac’s Information Security Group—empowers all brands across the Group to build secure, resilient software from the ground up. As a key technical security SME, you’ll be the go-to expert, arming development teams with cutting-edge tools, techniques, and strategies to combat real-time threats like vulnerability exploitation and DDoS attacks. You’ll shape the future of secure banking by setting technical standards, ensuring compliance, and delivering impactful, scalable solutions. From advising on advanced runtime controls such as rate limiting, WAFs, and CDNs, to embedding robust security practices across the board, you'll play a pivotal role in strengthening the Group’s cyber resilience—one secure application at a time.
What do I need?
What you'll bring on Day One:
- Strong technical expertise in identifying and mitigating runtime threats to web applications, particularly around DDoS attacks and vulnerability exploitation.
- Deep understanding of the Akamai application security suite or similar web security platforms.
- Proven experience delivering clear, actionable security recommendations related to web application design and configuration.
- A collaborative mindset, with experience working closely with technical teams and third-party service providers to drive security enhancements.
- Solid technical knowledge of diverse web architectures—ranging from multi-tier monoliths to SPAs, microservices, serverless, and containerized environments.
- Expertise in application caching and content delivery strategies to enhance both performance and security resilience.
- Experience interpreting application logs, security telemetry, and drawing meaningful insights.
- Skilled in preparing technical reports and analysis for both security and application leadership.
- A proactive attitude with a passion for tackling complex technical challenges head-on.
Bonus points if you also have:
- Hands-on experience in software development and DevOps tooling.
- A knack for delivering developer-focused security training and awareness sessions.
- Familiarity with tools like Snyk, Fortify, or other application security assessment platforms.
- Practical exposure to secure development practices such as threat modelling, code reviews, vulnerability management, and security testing.
- Special offers on banking products and discounts from top brands, including generous employee-only mortgage rates!
- Flexible work arrangements to help you achieve a greater work/life balance, and a variety of leave options including Culture, Lifestyle and Wellbeing leave.
- Tailored learning and development opportunities to help your grow your career within the bank.
- Lots of opportunities to ‘give back’ to the Community by getting involved in our many volunteering initiatives.
We’re all about creating a supportive and inclusive community. We welcome everyone – no matter your age, gender, background, or abilities. We also provide additional support to welcome our veterans, Indigenous Australians and neurodiverse community. If you need any adjustments during the recruitment process, you can find out more information and additional contact details by visiting the "People with Disability and/or needing Accessibility Requirements" page on our website.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Application security Banking Compliance DDoS DevOps Microservices Security assessment Vulnerability management
Perks/benefits: Career development Flex hours Salary bonus
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.