Cloud & Network Security Engineer

About Us
Our client isat the forefront of digital transformation in the global wealth management sector. As they continue scaling their modern cloud platforms, we are seeking a Cloud Security Engineer to lead and enhance their enterprise security posture – with a special focus on Zscaler (ZIA/ZPA) and SASE architectures

Your Opportunity
Are you an experienced Cloud Security Engineer ready to elevate enterprise security? In this role, you will be pivotal in designing and implementing innovative security solutions while enhancing security controls and posture within the organization.

You will join a diverse and high-performing global team in an Australian-based company, collaborating and growing your expertise. This full-time opportunity is based in Sydney and offers a pathway to making a significant impact within a cutting-edge environment.

Your Responsibilities
Responsibility in this role includes but is not limited to:

  • Design, deploy, and manage secure network and cloud architectures across AWS and hybrid environments

  • Implement and tune Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA) for Zero Trust enforcement and secure application access

  • Integrate Zscaler into security operations, incident response workflows, and visibility pipelines (e.g. SIEM)

  • Configure and manage AWS security infrastructure: VPCs, Transit Gateways, NATs, Security Groups, Firewalls (AWS/WAF), Route 53, IAM

  • Build and enforce security baselines using Terraform, Python, and/or CloudFormation

  • Work closely with our DevOps, Network, and Architecture teams to ensure scalable, secure deployments

  • Drive improvements to security controls aligned with frameworks like ACSC Essential 8, CIS Benchmarks, NIST, ISO 27001, and SOC 2

  • Support and integrate security tooling such as SIEM, SOAR, CWPP, CSPM (Sentinel, Splunk, etc.)

Your Skills and Experience
To succeed in this role, you will need:

  • 5+ years in IT infrastructure or cloud security roles, ideally with AWS as the primary cloud platform

  • Proven, hands-on experience with Zscaler ZIA and ZPA in enterprise environments (policy creation, SSL inspection, access enforcement, troubleshooting)

  • Familiarity with broader SASE architectures and concepts (Zero Trust, CASB, DLP, remote access)

  • Strong understanding of networking, routing, DNS, and firewall policies in cloud and hybrid setups

  • Practical experience with IaC (Terraform preferred), scripting (Python/Bash), and cloud-native security controls

  • Exposure to SIEM/SOAR tools and endpoint/cloud monitoring (Sentinel, Splunk, Defender, etc.)

  • Excellent communication skills and a collaborative, proactive approach

Benefits of Joining Our Client
Our client believes in supporting a work-life balance and offers excellent employee benefits, including:

  • Flexible hybrid working (2 days from home)

  • Tech-forward, agile team with a global footprint

  • Opportunity to own major security uplift initiatives

  • Additional U day off every year, plus EAP, study assistance, and more

  • Join a mission-driven team shaping the future of digital wealth platforms

If you are looking for a role that places you at the forefront of innovation and collaboration, we encourage you to express your interest!

Amanda  Evans's Our  Infrastructure Permanent

Infrastructure Permanent

Amanda Evans

Infrastructure – Permanent

[email protected]
02 8346 6716