Applications Engineer / Senior Applications Engineer
Main Responsibility
Reports to: IT Manager
Define and govern DevSecOps, CI/CD and deployment governance standards across enterprise application initiatives.
Ensure technology solutions are tested and deployed in accordance with established DevSecOps, security and deployment governance requirements.
Partner business stakeholders and vendors to deliver technology solutions.
Drive continuous improvement through automation, standardisation and emerging technologies.
Key Responsibilities:
Develop and maintain DevSecOps, CI/CD and deployment governance frameworks, standards and processes.
Define and standardise CI/CD pipeline controls and security scanning requirements, including SAST, DAST, Software Composition Analysis (SCA) and code quality checks.
Define application security, testing and deployment requirements, including quality gates and acceptance criteria for production releases.
Govern vendor compliance with approved CI/CD, application security scanning and deployment requirements.
Review security scan results, vulnerability findings and deployment readiness, and ensure identified risks are appropriately addressed prior to production deployment.
Assess and challenge proposed solutions to ensure alignment with business requirements, operational needs and long-term supportability.
Review vendor proposals, solution designs and project deliverables to ensure completeness and alignment with approved requirements.
Support implementation activities, including requirements clarification, User Acceptance Testing (UAT) and issue resolution.
Identify project risks, requirement gaps and implementation dependencies, and recommend appropriate mitigation measures.
Maintain accurate project, system and technical documentation.
Identify opportunities to leverage automation, Artificial Intelligence (AI) and emerging technologies to improve business outcomes.
Requirements:
Degree in Computer Science, Information Technology, Information Systems or related field.
Minimum 4 years of relevant experience in Systems Analysis, Application Delivery, Application Support, DevOps, DevSecOps or related roles. Candidates with more experience may be considered for Senior appointment.
Strong understanding of Software Development Life Cycle (SDLC) methodologies.
Experience in business requirements gathering, process analysis and functional documentation.
Experience working in Agile, Waterfall or Hybrid project environments.
Experience establishing, implementing or governing DevOps, DevSecOps or CI/CD practices.
Good understanding of application release management, deployment controls and secure software development practices.
Experience reviewing SAST, DAST, SCA, vulnerability assessment and penetration testing findings.
Familiarity with CI/CD and application security tools such as Azure DevOps, GitHub, GitLab, SonarQube, Checkmarx, Snyk, Fortify or equivalent platforms.
Good understanding of enterprise applications, systems integration concepts and APIs.
Experience working with business stakeholders, vendors and implementation partners.
Understanding of cloud technologies, automation platforms or AI-enabled solutions will be advantageous.
Strong analytical, problem-solving and stakeholder management skills.
Excellent written and verbal communication skills.