- Sydney, NSW
- 6-Month Contract with Potential Extension
About the Role
You will work closely with Security, Development, Architecture and DevOps teams to support the implementation of secure code scanning capabilities. The role will focus on requirements gathering, process design, governance, stakeholder engagement and the successful adoption of new security controls across the software development lifecycle.
Key Responsibilities
- Gather, analyse and document functional and non-functional requirements for secure code scanning solutions.
- Support the implementation of platforms such as Snyk, Fortify or comparable SAST tools.
- Define secure coding standards, remediation requirements, risk classification models and governance processes.
- Identify process changes required to integrate secure coding controls into SDLC and CI/CD pipelines.
- Document future-state workflows, operating procedures, exception management processes and developer onboarding requirements.
- Develop business requirements, user stories, process maps, reporting requirements and implementation documentation.
- Support UAT, stakeholder engagement, training and change management activities.
- Prepare rollout and go-live plans covering operational readiness, governance controls, metrics and post-implementation support.
To be successful in this role, you will have:
- Proven Business Analyst experience supporting Secure Coding, Application Security or DevSecOps transformation initiatives.
- Experience gathering and documenting functional and non-functional requirements.
- Knowledge of secure code scanning solutions such as Snyk, Fortify or similar SAST platforms.
- Understanding of secure software development practices, SDLC processes and CI/CD pipelines.
- Experience developing user stories, process maps, operating procedures and implementation documentation.
- Strong stakeholder engagement skills with the ability to work across Security, Development, Architecture and DevOps teams.
- Experience supporting UAT, training, change management and technology adoption.
- Strong analytical, documentation and communication skills.
- Initial six-month contract with potential extension.
- Sydney-based engagement.
- Opportunity to contribute to a significant application security transformation.
- Work with multidisciplinary Security, Development, Architecture and DevOps teams.
- Play a key role in improving secure coding practices and governance across enterprise development environments.
Apply today or reach out for a confidential discussion:
Katrina Gabriel | 0489 923 756 | katrinag@whizdom.com.au
Candidates will need to be willing to undergo pre-employment screening checks, which may include identity and work rights checks, security clearance verification and any other client-requested checks


