
Security Engineer
- Southbank, VIC
- Permanent
- Full-time
- Design and implement SIEM solutions to monitor, detect, and respond to security threats across platform infrastructure.
- Develop and enforce microsegmentation policies to enhance workload isolation and reduce attack surfaces in Kubernetes and hybrid environments.
- Integrate security controls into CI/CD pipelines, container build processes, and infrastructure-as-code workflows using tools like Terraform.
- Automate vulnerability and compliance scanning for infrastructure
- Implement Kubernetes-native security mechanisms, including RBAC, OPA/Gatekeeper, Kyverno, and network policies, to secure containerized workloads.
- Manage secret management systems (e.g., 1Password) within platform automation workflows.
- Enhance platform observability by integrating logging, tracing, metrics, and alerting tools to support security monitoring and incident response.
- Collaborate with NEP IT Security and TSC SME group on IT Security to align platform infrastructure with global security policies and compliance frameworks (e.g., ISO 27001, SOC2).
- Lead remediation efforts for platform infrastructure following security audits and penetration tests, ensuring timely and effective resolution.
- Represent the Platform team in internal IT security meetings, external conferences, and audits, disseminating learnings and driving improvements.
- Define and enforce access controls across Kubernetes, GitHub, cloud resources, and internal tools to ensure least privilege principles.
- Work with Site Reliability Engineers (SRE) to maintain platform reliability, observability, and security under load and during failure conditions.
- Proven experience in platform security, DevSecOps, or SRE roles within containerized/Kubernetes environments.
- Expertise in designing and managing SIEM solutions for real-time threat detection and incident response.
- Hands-on experience implementing microsegmentation in Kubernetes or hybrid cloud environments to secure workloads.
- Proficient in integrating security into CI/CD pipelines.
- Strong knowledge of Kubernetes security practices, including RBAC, admission controllers, PSPs/OPA/Kyverno, and workload isolation.
- Experience with infrastructure-as-code and security scanning tools
- Proficiency in Linux systems and automation scripting in Bash, Python, or Go.
- Familiarity with vulnerability management, identity and access management (IAM), and cloud security best practices.
- Ability to participate in audits, understand compliance requirements, and coordinate remediation efforts effectively.
- Salary continuance insurance
- NEP Days - additional 5 days of leave per year (conditions apply)
- NEP Travel benefits & discounts including Qantas Club Membership
- Discounts through Employment Hero Work app
- Employee Assistance Program
- NEP's Live Production solutions range from AV services and live audience enhancements to traditional outside broadcast and cutting-edge centralized and cloud production.
- NEP's Virtual Production solutions start at the creative stage and end with exceptional execution across ICVFX, augmented reality, LED stages and more.
- NEP's Media Processing solutions provide the tools and products our clients need to ingest, edit, store, search, manage and distribute their digital assets to rights holders across multiple platforms.