
Infrastructure Permanent
About Us
Our client isat the forefront of digital transformation in the global wealth management sector. As they continue scaling their modern cloud platforms, we are seeking a Cloud Security Engineer to lead and enhance their enterprise security posture – with a special focus on Zscaler (ZIA/ZPA) and SASE architectures.
Your Opportunity
Are you an experienced Cloud Security Engineer ready to elevate enterprise security? In this role, you will be pivotal in designing and implementing innovative security solutions while enhancing security controls and posture within the organization.
You will join a diverse and high-performing global team in an Australian-based company, collaborating and growing your expertise. This full-time opportunity is based in Sydney and offers a pathway to making a significant impact within a cutting-edge environment.
Your Responsibilities
Responsibility in this role includes but is not limited to:
Design, deploy, and manage secure network and cloud architectures across AWS and hybrid environments
Implement and tune Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA) for Zero Trust enforcement and secure application access
Integrate Zscaler into security operations, incident response workflows, and visibility pipelines (e.g. SIEM)
Configure and manage AWS security infrastructure: VPCs, Transit Gateways, NATs, Security Groups, Firewalls (AWS/WAF), Route 53, IAM
Build and enforce security baselines using Terraform, Python, and/or CloudFormation
Work closely with our DevOps, Network, and Architecture teams to ensure scalable, secure deployments
Drive improvements to security controls aligned with frameworks like ACSC Essential 8, CIS Benchmarks, NIST, ISO 27001, and SOC 2
Support and integrate security tooling such as SIEM, SOAR, CWPP, CSPM (Sentinel, Splunk, etc.)
Your Skills and Experience
To succeed in this role, you will need:
5+ years in IT infrastructure or cloud security roles, ideally with AWS as the primary cloud platform
Proven, hands-on experience with Zscaler ZIA and ZPA in enterprise environments (policy creation, SSL inspection, access enforcement, troubleshooting)
Familiarity with broader SASE architectures and concepts (Zero Trust, CASB, DLP, remote access)
Strong understanding of networking, routing, DNS, and firewall policies in cloud and hybrid setups
Practical experience with IaC (Terraform preferred), scripting (Python/Bash), and cloud-native security controls
Exposure to SIEM/SOAR tools and endpoint/cloud monitoring (Sentinel, Splunk, Defender, etc.)
Excellent communication skills and a collaborative, proactive approach
Benefits of Joining Our Client
Our client believes in supporting a work-life balance and offers excellent employee benefits, including:
Flexible hybrid working (2 days from home)
Tech-forward, agile team with a global footprint
Opportunity to own major security uplift initiatives
Additional U day off every year, plus EAP, study assistance, and more
Join a mission-driven team shaping the future of digital wealth platforms
If you are looking for a role that places you at the forefront of innovation and collaboration, we encourage you to express your interest!
Infrastructure Permanent