Senior Security Automation Engineer - Hawthorn East

We've been trusted to serve Aussie communities since 1914 and grown to become a top 30-listed on the ASX with 120,000 team members and a portfolio of iconic brands. At Coles Group, you'll not only get to make a difference to millions of Aussie lives—you'll also get to see your impact.

 

 

About the team

 

Technology is the backbone of our business. Every day, our teams solve complex problems, the solutions help thousands of our fellow team members succeed and makes millions of customers’ lives easier.

 

About the role

 

A permanent opportunity of a Senior Security Automation Engineer is now available at the Coles Group. 

 

Reporting into the Delivery Manager – Cyber Control Intelligence, this role will primarily be responsible for: 

  • the delivery of Compliance Automation solutions which ensure the effectiveness of security controls implemented to protect Coles’ Critical and Secret Information Assets, including but not limited to on-prem/critical infrastructure, technology stacks and applications.

 

Incumbent to be considered a T-Shaped” individual, having broad knowledge across the core focus areas below, with deep drill down expertise in at least one of the core focus areas, preferably around automation and compliance frameworks, policies, standards, and controls: 

  • automated solutions,
  • security policy and pattern enforcement,
  • coding skills,
  • software development lifecycles and applicable tools

 

 

Key responsibilities will include

 

Tactical delivery and automation 

 

  • Co-design, co-build, and co-own the security control automation
  • Design and develop automated compliance, control assurance and reporting solutions
  • Develop technical solutions that measure the performance of controls, conformance with patterns and policy for on-prem/critical infrastructure/related technology stacks and applications
  • Work with Senior Controls Assurance Analyst to develop automation use cases
  • Work with the Technical Assurance & Compliance Automation Delivery manger to identify reporting requirements and automate metric population and visualisation of Control Assurance results.
  • Provide the primary engagement interface for collaboration with other Coles’ service and support teams to deliver effective security solutions.
  • Development of Compliance Automation strategic initiatives and objectives in line with broader organisational and technology strategy.
  • Operational oversight of implemented security solutions with a view to continuous improvement and operational efficiency
  • Build and maintain a Compliance Automation framework for Information Security within Coles.
  • Help the engineers around you level-up on their own security reasoning and knowledge

 

 

Manage the Coles Information Security compliance and assurance process

 

  • Build and maintain an Information Security compliance and assurance process within Coles
  • Plan and direct compliance and assurance activities

 

About you & your skills

 

  • Extensive years of experience across multiple Information Security and related Technology governance roles with a recent focus on Compliance Automation.
  • As applicable to the core focus areas:
    • Practical hands-on experience working with Information Security and related Technology governance frameworks
    • Experienced in interpreting Information Security framework requirements, industry & best practice standards
    • Experience analysis, identifying and implementing best of breed framework requirements
    • Extensive experience developing/establishing; as well as designing automated risk and security controls compliance programs for large and complex technology enabled organisations.
    • Experience with Operational risk management and compliance processes, including the management of risk appetite statements and key risk indicators
  • Experience navigating and delivering within complex corporate environments at pace
  • Demonstrable experience collaborating with stakeholders at all levels of the organisation, to influence outcomes, obtain buy-in and solicit commit to implement Information Security requirements
  • Ability to think deeply and critically about the efficacy of information presented to stakeholders and whether the right messages are communicated from the presented materials
  • A can-do attitude coupled with an ability to “roll up one’s sleeves” and directly contribute to delivery
  • Ability to translate and communicate complex, technical or Information Security concepts in a non-technical, simplified fashion. Making sure communication is fit for purpose, regardless of the readers skillset/knowledge.

 

Commercial Skills and Formal Qualifications

 

  • Relevant tertiary qualification and or business experience with Technology/Information Security
  • Relevant security certifications beneficial such as CISA, CISM, CISSP, SASA, ISO27K or related IT Governance certifications such as COBIT
  • Experience developing highly automated software solutions based on event driven architecture.
  • Experienced in security enforcement within CI/CD pipelines, inclusive of automation/orchestration and service delivery.
  • Experienced with building and operating deployments into on-prem/critical infrastructure/technology stacks and application environments
  • Experience with applied coding skills (e.g.: PowerShell, Python, JSON, Terraform, etc)
  • Experienced in software development lifecycle and tools (e.g.: Git, Jira, Azure DevOps, etc)
  • Experience working in and with Agile project management methodologies and SCRUM development practices.
  • Experience with application cloud/web/API security practices.
  • Familiarity with common security frameworks (e.g.: SANS, NIST, ISO 27xxx, PCI DSS, etc)

 

 

 

What’s in it for you?

 

  • Flexible working options: We know that work is only one part of your life, so we actively encourage a positive work-life balance and provide hybrid working options to help you achieve it.

 

  • Office perks: Take advantage of our gym facility and fitness classes, free parking, BBQ area, mini-Coles supermarket, fooderie hub where you can sample new products before they hit the shelves, school holiday program and so much more when you come in.

 

  • Discounts: Eligible team members receive 5% discount all year round on your Supermarket and Liquor online and in-store purchases. We also offer additional periods of double discount (10%) at various times throughout the year. As well as hot deals exclusive to team members that translate into additional savings.

 

  • Reward through recognition: Give and receive recognition, linked to our Coles values, through our digital recognition platform ‘mythanks.’ You can accumulate points to redeem in the online shop for exciting gifts and electronic gift cards from an extensive range of retailers.

 

  • Opportunities for learning and development: No matter where you start within our diverse business, you’ll have experiences, exposure, and education to satisfy you. Discover and explore a variety of career development programs and job-specific training.

 

  • Paid parental leave: We understand how important your life outside work is and offer permanent team members paid parental leave to support you in balancing work and family.

 

  • Investment in your future: Our annual team member share plan offer allows eligible team members to make regular pre-tax salary sacrifice deductions to purchase Coles Group shares.

 

Take your next step into something bigger, apply now!

 

With us it’s not about the discounts (although you do get those), it’s about joining a team where your wellbeing and professional development is invested in and celebrating your contributions is the norm. And because everyone leads unique lives, we offer flexible work including work from home, additional leave, and parental leave entitlements. 

 

We’re continuing to build a gender equitable team, and a culture that’s just as diverse, inclusive, and welcoming as the communities we serve. We encourage applications from people of all ages, cultures (including Aboriginal and Torres Strait Islander peoples), abilities, sexual orientation, and gender identities. 

 

We’re happy to adjust our recruitment process to support candidates with disability. For further information and additional contact details visit the ‘Our Recruitment Process' section of our careers site or email inclusionrecruitment@coles.com.au.

 

Job ID: 160416 

Employment Type: Full time