DevSecOps Engineer
NewYou may have been part of some big projects before, but this work is legacy-building.
You bring structure, mitigation and education to our organisation. Our records and datasets are vast and varied. This is your opportunity to safeguard critical infrastructure, order and protect sensitive data, and defend against emerging cyber threats. You'll be part of an expert team who protect against thousands of threats every day.
In this role, you'll:
You will play a key role in embedding security throughout the software development lifecycle across Enterprise Applications platforms.
Working closely with development and platform teams, you will implement secure-by-design principles, automate security controls, and establish developer-friendly guardrails that enable rapid delivery with reduced risk.
The role focuses on secure development practices, including automated code and infrastructure scanning, container security, CI/CD pipeline security, and the implementation of reusable, compliant solutions that provide measurable risk reduction and audit-ready assurance. This is a Fixed Term Full Time role until 30.06.2028.
For more information on this position and business unit, view the role description and information pack.
About you
You will have experience in cloud and infrastructure security across AWS and Azure environments, with hands-on expertise in Infrastructure as Code (IaC).
You will possess strong knowledge of CI/CD platforms, such as Azure DevOps, including the integration of static and dynamic security scanning, pipeline hardening, and automated security controls.
Your background will include implementing identity and access management (IAM), role-based access controls, network segmentation, encryption, secrets management, and security baselines.
You will also have a solid understanding of network security concepts, including firewalls, web application firewalls (WAF), and Zero Trust architectures.
Experience with security tools such as Airlock, CrowdStrike, Qualys, and Prisma, including the management and remediation of identified vulnerabilities and risks, is highly valued.
Additionally, you will have hands-on scripting and automation experience using tools such as Python, Bash, and PowerShell, and a proven ability to work effectively within Agile, DevOps, or platform-based delivery environments.
Who we are
Transport for NSW provides a safe, integrated, and efficient transport system. We connect people, communities and industry every day.
Join us
Our workforce is as diverse as the community we serve. If you’d like further information on our inclusion and diversity initiatives, visit Transport careers.
Flexible work options may be available. Learn more via Flexible work options and policy
Apply today
Applications close 11:59 PM Thursday 17 September 2026
For more information about this role, please contact EMILIA.MAIELLO@TRANSPORT.NSW.GOV.AU.
Aboriginal people and people living with disability are supported throughout the recruitment process and at work, and we encourage you to apply. Visit Supporting Aboriginal People or Supporting People with Disability for more information or speak to your talent team member to arrange any adjustments to how you interact with us.
Learn more about how to apply via Our recruitment process | Transport for NSW
#LI-Hybrid