Senior Security Specialist

  • Full Time Job
  • Hybrid
  • nzd
Serko

Serko is a cutting-edge tech platform in global business travel & expense technology. When you join Serko, you become part of a team of passionate travellers and technologists bringing people together, using the world’s leading business travel marketplace.

We are proud to be an equal opportunity employer, we embrace the richness of diversity, showing up authentically to create a positive impact. There's an exciting road ahead of us, where travel needs real, impactful change.

With offices in New Zealand, Australia, North America, and China, we are thrilled to be expanding our global footprint, landing our new hub in Bengaluru, India. We’re hiring people from different backgrounds, experiences, abilities, and perspectives to help us build a world-class team and product.

This is an Auckland based hybrid role.

We're looking for a capable and passionate senior security specialist to join our highly motivated and knowledgeable team of security professionals.

Requirements

Reporting to the CISO your contribution will make a real difference in a critical area for the organisation as we enter a period of transformation for the security team to enable acceleration of the delivery of our business strategy. You’ll be working collaboratively with several different cross functional delivery teams with many industries leading technical professionals.

What you'll be doing

  • Building relationships and working collaboratively with other teams across the organisation as a trusted advisor for security
  • Conducting business focussed security risk assessments.
  • Enabling other teams to deliver at pace through empowering them with the security knowledge they need to operate within acceptable levels of security risk.
  • Working with the CISO and the rest of the security team to help define and implement the Security Strategy.
  • Staying up to date with the security threat landscape as it pertains to Serko and the latest security countermeasures that could be used to mitigate those threats.
  • Being tenacious and proactively seek out opportunities to enable and improve Serko’s business goals through enhanced levels of security.

Responsibilities

  1. DevSecOps
  2. Security Operations Management
  3. Incident Response and Threat Intelligence
  4. Security Awareness and Training
  5. Security Risk Management
  6. Emerging Technologies and Innovations
  7. Team Leadership and Collaboration


What you'll bring

We'd love to hear from you if you have:

  • Considerable experience in a role focussed on Devsecops, and security risk management.
  • A working knowledge of security attack and defence methods
  • Clear and concise verbal and written communication skills.
  • A proven track record of conducting security risk management to a high standard within fast paced environments.
  • Proven experience in managing Microsoft security products and services, including Azure Security Center, Azure Active Directory, and Sentinel
  • Strong background in implementing DevSecOps practices and integrating security into the software development lifecycle.
  • In-depth knowledge of risk management frameworks, industry standards (e.g., NIST, ISO 27001), and regulatory requirements (e.g., GDPR, HIPAA).
  • Experience in incident response, threat intelligence, and conducting security assessments.
  • Familiarity with security automation and orchestration tools, vulnerability scanning tools, and secure coding practices.
  • Excellent problem-solving and analytical skills, with the ability to assess complex security issues and provide practical solutions.
  • Strong communication and interpersonal skills, with the ability to effectively collaborate with cross-functional teams and communicate security concepts to non-technical stakeholders.
  • Relevant certifications such as CISSP, CISM, CCSP, Azure Security Engineer Associate, or equivalent certifications are highly desirable.
  • Join our dynamic team and contribute your expertise to enhance our organization's security posture. Apply today and help us safeguard our digital assets and protect our valuable information.
  • Regenerate response
  • Confidence to pushback or challenge when security is at risk in a safe and inclusive environment.
  • A working knowledge of cloud infrastructure services security. Particularly Azure.
  • Security compliance experience (e.g. – PCI-DSS) is preferred but not required.
  • Professional security certifications such as CISSP would be highly advantageous.
Benefits

At Serko we aim to create a place where people can come and do their best work.  This means you’ll be operating in an environment with great tools and support to enable you to perform at the highest level of your abilities, producing high-quality, and delivering innovative and efficient results. Our people are fully engaged, continuously improving, and encouraged to make an impact.

Some of the benefits of working at Serko are:

    • A competitive base pay
    • Medical Benefits
    • Discretionary incentive plan based on individual and company performance
    • Focus on development: Access to a learning & development platform and opportunity for you to own your career pathways
    • Flexible work policy.
Serko
1 Follower