Security Engineer

Airwallex

Airwallex

Software Engineering
Melbourne, VIC, Australia · Sydney, NSW, Australia
Posted on Oct 18, 2024

About Airwallex

Airwallex is the only unified payments and financial platform for global businesses. Powered by our unique combination of proprietary infrastructure and software, we empower over 100,000 businesses worldwide – including Brex, Rippling, Navan, Qantas, SHEIN and many more – with fully integrated solutions to manage everything from business accounts, payments, spend management and treasury, to embedded finance at a global scale.

Proudly founded in Melbourne, we have a team of over 1,500 of the brightest and most innovative people in tech located across more than 20 offices across the globe. Valued at US$5.6 billion and backed by world-leading investors including Sequoia, Lone Pine, Greenoaks, DST Global, Salesforce Ventures and Mastercard, Airwallex is leading the charge in building the global payments and financial platform of the future. If you're ready to do the most ambitious work of your career, join us.

About the team

The Airwallex Information Security Team is a high calibre and highly proactive team that work across our infrastructure, app security, Corporate IT and broader engineering functions.

What you’ll do

As a Security Engineer here at Airwallex, you will be a trusted member of the Information Security team and work closely with IT, Product and Engineering teams across the business.

Reporting directly to the Security Engineering Lead, this role will see you being a critical part of Airwallex. You will help to identify, protect, detect, respond and recover the organisation from cybersecurity threats.

This is a dynamic, proactive and hands-on role that requires experience in designing, developing and managing infrastructure projects, processes and standards related to the security of our networks, systems and applications.

This role can be based in Sydney or Melbourne.

Responsibilities:

  • Partner with other internal teams to analyse new or existing applications, software or services and help drive security improvements.

  • Design, develop, test and evaluate new security controls for our rapidly growing business.

  • Perform incident response and hunt through log sources to identify new threats.

  • Design and implement custom detection strategies and workflows to support the incident response lifecycle.

  • Analyse and develop integration, testing, operations and maintenance of secure systems.

  • Use data collected from a variety of endpoint, network and cloud tools (eg. EDR, authentication, firewalls, network traffic logs) to analyse, identify and mitigate threats.

  • Design, test, implement, test and maintain cybersecurity infrastructure projects.

  • Investigate, analyse and respond to cybersecurity incidents within the Airwallex environment.

  • Perform assessments of systems and networks to identify deviations in configurations and policies, identify vulnerabilities and support suitable mitigation and remediation.

  • Conduct collection, processing and/or geolocation of threats in order to exploit, locate and/or track cybersecurity threats to infrastructure.

  • Perform network navigation, tactical forensic analysis and defensive operations.

  • Identify, collect, examine and preserve digital forensic evidence using analytical and investigative techniques.

Who you are

  • You have a passion for solving the complex challenges within a high-growth start-up.

  • You are self-motivated, a self starter, and able to learn new skills and dive deeper into existing skills.

Minimum qualifications:

  • You have a Degree in Cybersecurity, Computer Science, or similar technical course.

  • You have 3-5 years of experience working directly in security engineering or incident response roles within a tech company.

  • You have experience with Cloud platforms (we use GCP, but other cloud platforms are OK).

  • Hands-on experience with coding languages (Python, Java or similar).

  • In-depth understanding of common attacker tools and techniques, how they can be detected and prevented, and the ability to respond to incidents with high depth and quality of investigation.

  • Knowledge of common software development tools, including CI/CD tooling an pipelines.

Preferred qualifications:

  • Experience with Splunk and other common security monitoring tools.

  • Experience with Okta, GSuite and cloud based VPN services.

  • Published articles or blogs related to cybersecurity.

Equal opportunity

Airwallex is proud to be an equal opportunity employer. We value diversity and anyone seeking employment at Airwallex is considered based on merit, qualifications, competence and talent. We don’t regard color, religion, race, national origin, sexual orientation, ancestry, citizenship, sex, marital or family status, disability, gender, or any other legally protected status when making our hiring decisions. If you have a disability or special need that requires accommodation, please let us know.

Airwallex does not accept unsolicited resumes from search firms/recruiters. Airwallex will not pay any fees to search firms/recruiters if a candidate is submitted by a search firm/recruiter unless an agreement has been entered into with respect to specific open position(s). Search firms/recruiters submitting resumes to Airwallex on an unsolicited basis shall be deemed to accept this condition, regardless of any other provision to the contrary.