Jobs Companies ASX (Australian Securities Exchange) Application Security Engineer

About this Application Security Engineer role at ASX (Australian Securities Exchange)

ASX (Australian Securities Exchange) · Onsite · Sydney Office

ASX: Powering Australia's financial markets

Why join the ASX?

When you join ASX, you’re joining a company with a strong purpose – to power a stronger economic future by enabling a fair and dynamic marketplace for all.

In your new role, you’ll be part of a leading global securities exchange with a strong brand. We are known for being a trusted market operator and an exciting data hub. 

Want to know why we are a great place to work, click on the link to learn more.

www.asx.com.au/about/careers/a-great-place-to-work

We are more than a securities exchange!

The ASX team brings together talented people from a diverse range of disciplines. 

We run critical market infrastructure, with 1 in 3 people employed within technology.  Yet we have a unique complexity of roles across a range of disciplines such as operations, program delivery, financial products, investor engagement, risk and compliance.

We’re proud to foster a workplace where diversity is celebrated and inclusion is part of our everyday culture. Our employee-led networks champion LGBTIQ+ inclusion, promote gender equality, accessibility and wellbeing, inspire giving and volunteering, and celebrate cultural and religious events, creating a sense of belonging for all. As an AWEI Bronze employer and member of the Champions of Change Coalition for gender equality, we’re committed to a fair and inclusive workplace where everyone can thrive.

Your Team:

The role sits within Security Operations and Engineering, part of ASX Cyber Security. The team protects ASX’s technology environment by operating and engineering security capabilities across detection, response, vulnerability management and secure technology enablement.

The role will work across multiple applications and delivery teams, tailoring AppSec uplift to each team’s maturity while maintaining delivery alignment and strengthening resilience across critical market infrastructure. Conduct targeted application security reviews and AI-assisted code analysis to identify exploitable vulnerabilities and structural weaknesses across priority applications.

  • Prioritise, articulate and drive remediation of critical and high-severity code-level vulnerabilities in partnership with engineering teams.

  • Support threat modelling, secure design reviews and application security assessments for priority applications and automation workflows.

  • Adapt AppSec guidance to suit different engineering team maturity levels, balancing risk reduction, standardisation and delivery velocity.

  • Provide practical secure coding guidance, remediation patterns and code-level recommendations to accelerate effective fixes.

  • Raise, review or contribute to pull requests where appropriate to support timely remediation and knowledge transfer.

  • Help define, refine and embed security checkpoints, guardrails and automation within the SDLC and CI/CD pipelines.

  • Support optimisation of AppSec tooling, including SAST, DAST, SCA and related controls, so security testing is effective without unnecessarily impacting delivery velocity.

  • Help establish or uplift Security Champion practices across delivery teams to sustain secure coding capability after the engagement.

  • Produce handover documentation, reusable AppSec patterns and team enablement materials to support sustainable BAU ownership after the engagement.

Your experience and qualifications

Must have:

  • Demonstrated experience in application security, secure software engineering or hands-on vulnerability remediation.

  • Strong knowledge of secure coding practices, common application vulnerability classes and remediation approaches, including OWASP Top 10 risks and secure design principles.

  • Experience reviewing application code and working with engineering teams to remediate vulnerabilities in modern development environments.

  • Practical understanding of SDLC security controls, DevSecOps practices, CI/CD security integration and automated application security testing tools.

  • Hands-on experience using AppSec tooling such as SAST, DAST, SCA, secret scanning, container or cloud security assessment tools.

  • Experience working across multiple applications, platforms or delivery teams with varying levels of application security maturity.

  • Ability to adapt approach based on risk, complexity and delivery context while maintaining strong stakeholder engagement.

  • Ability to translate technical vulnerabilities into clear risk, priority and remediation guidance for delivery teams and stakeholders.

Nice to have:

  • Relevant security certification such as CSSLP, GWAPT, GWEB, OSWE, CISSP or equivalent practical experience.

  • Experience in financial services, critical infrastructure or highly regulated technology environments.

  • Exposure to AI-assisted security analysis, threat modelling or secure-by-design uplift programs.

  • Experience with DevOps pipelines, Java or comparable enterprise development environments.

  • Experience establishing Security Champion practices, mentoring developers or uplifting secure coding capability across teams.

We make hiring decisions based on your skills, capabilities and experience, and how you’ll help us to live our values. We encourage you to apply even if you don’t meet all the criteria of this role.

If you need any adjustments during the application or interview process to help you present your best self, please let us know at [email protected].

At ASX Group, our diverse workforce is essential to build and maintain a fair and dynamic marketplace. We support flexible working and offer hybrid working options. Even if our roles are advertised as full-time, we encourage you to apply if you are interested in part-time or other flexible working arrangements.

We will arrange for successful candidates to have background checks, including reference and police checks, completed as part of the on-boarding process.

To be considered for this position, candidates must be legally authorised to work in Australia on a permanent basis without any restrictions.

Ready to apply to ASX (Australian Securities Exchange)?
Apply to ASX (Australian Securities Exchange)

About ASX (Australian Securities Exchange)

ASX is an integrated exchange offering listings, trading, clearing, settlement, technical and information services, technology, data and other post-trade services. It acts as a market operator, clearing house and payments system facilitator. It oversees compliance with its operating rules, promotes standards of corporate governance among Australia’s listed companies and helps to educate retail investors. ASX operates markets for a wide range of asset classes including equities, fixed income, commodities and energy. As an integrated exchange, ASX’s activities span primary and secondary market services, including the raising, allocation and hedging of capital flows; trading and price discovery

See all jobs at ASX (Australian Securities Exchange) →

Similar jobs

HP
Software Product Security Engineer Intern
HP
⚡ Apply early Spring, Texas, United States o... Onsite $72,800–$83,200
● New 👁 Seen ✓ Applied 1h ago
HP
Software Product Security Engineer
HP
⚡ Apply early Spring, Texas, United States o... Onsite $123,100–$150,400
● New 👁 Seen ✓ Applied 1h ago
Anduril Industries
Senior Product Security Engineer
Anduril Industries
⚡ Apply early Fort Collins, Colorado, United... Onsite $144,000–$191,000
● New 👁 Seen ✓ Applied 9h ago
Roblox
Principal Security Software Engineer, Application Security
Roblox
⚡ Apply early San Mateo, CA, United States Onsite $326,060–$385,050
● New 👁 Seen ✓ Applied 12h ago
Roblox
Senior Security Software Engineer, Application Security
Roblox
⚡ Apply early San Mateo, CA, United States Onsite $269,170–$326,060
● New 👁 Seen ✓ Applied 13h ago
Open
Product Engineer, Security
Open
⚡ Apply early Amman, Amman Governorate, Jord... · location restricted
● New 👁 Seen ✓ Applied 1d ago
TT
Application Security Engineer II
The Trade Desk
⚡ Apply early Bellevue; Ventura Onsite $103,200–$189,200
● New 👁 Seen ✓ Applied 1d ago
DigitalOcean
Product Security Engineer, Secure Design
DigitalOcean
⚡ Apply early Boston Onsite $113,600–$142,000
● New 👁 Seen ✓ Applied 1d ago
DigitalOcean
Product Security Engineer, Secure Design
DigitalOcean
⚡ Apply early United States Onsite $113,600–$142,000
● New 👁 Seen ✓ Applied 1d ago

Sign up for suggestions tailored to the jobs you open and the searches you save.

More jobs at ASX (Australian Securities Exchange)

See all jobs at ASX (Australian Securities Exchange) →

Apply now
🤖

Whoa — hold up

JobsRadar was built for real people having a rough time in their job search — not for automated requests. You're clicking way too fast and you're now temporarily blocked.

Come back later. If you're genuinely job hunting, we've got your back — just act like a human.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Get an edge on your job hunt.

Join our Telegram channel for the stuff that helps you land the role — salary benchmarks, the weekly market pulse, and new-feature drops. No spam, just signal.

Join the channel — it's free