About the role:
The Platform Security Engineer is a valued member of our engineering team. We value evidence-backed opinions and offer the opportunity to play an integral part in shaping engineering rhythm, culture, and processes across planning, architecture and design, coding, deployment, and support.
In an ever-changing environment, Lendi Group is leading the charge in developing industry-first technology designed to offer Australian homeowners transparency, simplicity, and convenience in their home loan experience. The Platform Security Engineer partners with engineering teams to evaluate planned changes, minimise security risk, and continuously improve our security posture. A key focus of the role is driving vulnerability and security findings down over time, improving security standards, and embedding secure-by-default practices across both traditional and AI-enabled systems.
Please note: this role will be a 12 Month Fixed Term Contract
Job Description
* Working closely with the Cyber Security team to ensure security principles are consistently applied across the engineering environment.
* Collaborating and coding with engineering teams to uplift secure development practices and reduce recurring security findings.
* Designing, building, and maintaining secure cloud and microservice solutions.
* Improving security posture through effective use of COTS products, platform controls, and network infrastructure.
* Vulnerability and Threat Management — monitoring and assessing assets including cloud infrastructure, containers, packages, APIs, and requests, with a focus on remediation and measurable risk reduction.
* Supporting the secure design and operation of AI-enabled systems, including LLM integrations, automation agents, and MCP-based architectures.
* Implementing and reviewing AI security guardrails such as access controls, data protection, prompt-injection mitigation, and output validation.
* Collaborating with cross-functional teams including engineering, operations, compliance, data, and AI platform teams.
* Contributing as an individual contributor within a cross-functional DevOps / SecOps team.
* Build or integrate services to improve security and compliance
Qualifications
* Strong understanding of networking, infrastructure, and applications from a DevOps perspective with a security focus.
* Hands‐on experience implementing and maintaining security controls across cloud environments (particularly AWS) and access management solutions (e.g. Auth0).
* Experience with security logging, monitoring, and vulnerability assessment, with a demonstrated ability to drive findings down and improve baseline security standards.
* Passion for secure coding practices and identifying common implementation and operational security risks.
* AWS technologies such as CloudFormation, Terraform, IAM, WAF, Node.js and/or TypeScript.
* Docker, containerised environments, serverless architectures, and Kubernetes.
* Securing AI platforms, including LLM integrations, MCP implementations, AI guardrails, and automation/build agents.
Benefits
* A vibrant, relaxed, yet professional culture.
* Hybrid working arrangement designed to support work-life balance, while fostering meaningful connection and collaboration.
* A holistic wellbeing programs offering 24/7 support, including medical, mental health, and financial wellbeing services to enable our workforce to thrive at home and work.
* Generous paid Parental Leave: we celebrate our growing Lendi Group family with 18-26 weeks leave for primary carers and up to 4 weeks for secondary carers.
* An additional week's Loyalty Leave each year after reaching 3 years' service.
* Wellness initiatives with a strong focus on psychological safety.
#J-18808-Ljbffr