Application Security Engineer | Sydney CBD | Hybrid
Application Security Engineer role embedded with developers building internal cloud applications, Microsoft Power Platform, and M365 Copilot for a growing Australian organisation. This is a build-side security role with genuine ownership over how the AppSec function gets shaped, not maintaining someone else's playbook. You'll work alongside dev teams in Agile sprints, contributing security architecture, threat modelling, and secure design across modern Microsoft cloud workloads.
About the role
You'll be embedded with development teams across Agile sprint cycles, contributing security architecture, design input, and threat modelling across modern internal applications. The team operates with high autonomy and a strong culture of continuous improvement, with real room to shape how the AppSec function matures.
What you'll be doing
- Working alongside dev teams in Agile sprints, contributing security input from design through to deployment
- Security architecture and design across modern internal cloud applications
- Securing Microsoft Power Platform, Logic Apps, and AI/Copilot deployments
- Threat modelling, secure design reviews, authentication and authorisation guidance
- Shaping how the AppSec function operates as it matures
What you'll bring
- Solid security architecture background, ideally hands-on with developer teams
- Strong understanding of application security principles (secure design, threat modelling, OAuth, API security)
- Microsoft ecosystem fluency (Azure, M365)
- Ability to communicate security trade-offs clearly to non-security audiences
Highly regarded
- Microsoft Power Platform, Power Apps, or Logic Apps security experience
- Agentic AI, M365 Copilot, or Copilot Studio security exposure
- CI/CD pipeline security (GitHub)
- Secure SDLC tooling
What's on offer
- Hybrid working (3 days office / 2 days home)
- Base salary + super + bonus + training budget
- Member-owned organisation with strong culture and high autonomy
- Supportive environment that encourages experimentation and continuous improvement
- Small, senior team with direct influence
Requirements
- Australian Citizen or Permanent Resident (no sponsorship available)
- Based in Sydney or willing to relocate
Aboriginal and Torres Strait Islander Peoples are encouraged to apply.
To apply please click apply or call Cody Berry on 02 8289 3123 for a confidential discussion.
About the job
Contract Type: Permanent
Specialism: Technology & Digital
Focus: Cyber Security & Risk
Industry: IT
Salary: + Super
Workplace Type: Hybrid
Experience Level: Mid Management
Location: Sydney CBD
FULL_TIMEJob Reference: BYD2GI-487593E4
Date posted: 25 June 2026
Consultant: Cody Berry
sydney technology-and-digital/cyber-security-and-risk 2026-06-25 2026-07-25 it Sydney CBD New South Wales AU 2000 Robert Walters https://www.robertwalters.com.au https://www.robertwalters.com.au/content/dam/robert-walters/global/images/logos/web-logos/square-logo.png true