NCS Group Australia Logo

NCS Group Australia

Technical Business Analyst (DevSecOps) - Contract

Posted 3 Days Ago
Be an Early Applicant
In-Office
Sydney, New South Wales, AUS
Entry level
In-Office
Sydney, New South Wales, AUS
Entry level
Technical Business Analyst embedded with engineering and security teams to translate application security requirements into technical specifications, user stories, acceptance criteria, and DevSecOps processes. Responsibilities include mapping software delivery workflows, integrating SAST/SCA/DAST and security gates into CI/CD pipelines, documenting governance and runbooks, and facilitating alignment among security, DevOps, product, and engineering stakeholders.
The summary above was generated by AI
Company Description

At NCS Australia, we believe in doing technology services better. Our commitment to quality, focus on people, and willingness to challenge traditional thinking set us apart. Our team brings this belief to life by partnering with our clients and communities to make tomorrow together.

We are committed to creating an environment that prioritises innovation, collaboration, and purposeful work. Our diverse team is empowered to make a meaningful impact with curiosity, creativity and resilience to shape better outcomes. Join us and accept the challenge of creating a better tomorrow.

Job Description

We are seeking a Technical Business Analyst with deep DevSecOps experience for an initial 6-month contract in Sydney to bridge the gap between application security, software engineering squads, and enterprise governance.

In this high-visibility delivery role, you will work embedded within engineering and security teams to translate enterprise security requirements into clear, actionable technical specifications. You will play a key role in integrating security controls, code scanning standards, and automated compliance directly into modern CI/CD software delivery pipelines.

Key Responsibilities

  • DevSecOps Process Mapping: Analyze current software development workflows to identify security bottlenecks, gaps, and opportunities to "shift left" security controls into the SDLC.

  • Requirements & User Stories: Translate complex application security policies, vulnerability management SLAs, and compliance standards into technical user stories, engineering epics, and acceptance criteria.

  • Security Tooling Integration: Partner with DevSecOps Engineers to scope and support the implementation of automated code scanning (SAST, SCA, DAST) and pipeline security gatekeepers.

  • Governance & Runbooks: Document DevSecOps frameworks, technical runbooks, operational support models, and developer guidance materials to ensure seamless platform adoption.

  • Stakeholder Alignment: Facilitate workshops between Security Architects, DevOps leads, Product Owners, and engineering squads to align delivery roadmaps with security posture goals.

Qualifications

Essential Experience:

  • Technical BA Background: Proven track record as a Business Analyst working within complex software engineering, cloud, or cybersecurity environments.

  • DevSecOps Knowledge: Strong understanding of DevSecOps principles, CI/CD pipelines, automated testing, and software security concepts.

  • AppSec Exposure: Practical familiarity with application security standards (e.g., OWASP Top 10) and code security scanning tools (SAST, SCA, DAST).

  • Agile Delivery: Experience writing technical user stories, managing backlogs, and working inside cross-functional Agile/Scrum delivery squads.

  • Communication & Collaboration: Outstanding stakeholder management skills with the ability to articulate technical security risks to non-technical business partners.

Additional Information

Why NCS?

This is a place for people who like to get stuck in, bring ideas to life and make things happen. You'll work alongside experienced people who care about what they do, contribute to meaningful work and have the support to keep learning and grow your career.  Whether you want to deepen your expertise, explore something new or take your career in a different direction, there's room to make it your own.  We value Adventure, Excellence, Integrity, Ownership and Unity - bringing curiosity, collaboration and accountability to the way we work with our clients and each other.

Ready to make extraordinary happen?

We'd love to hear from you.

We celebrate diversity and inclusion

We value different perspectives, experiences and strengths our people bring.  We're committed to an inclusive workplace where everyone has the opportunity to contribute, grow and succeed, and to providing equal employment opportunities and reasonable adjustments throughout the recruitment process.

Important information

Applicants will need valid Australian work rights and may be required to undergo relevant background, probity and police checks.

Agencies: NCS accepts candidate submissions only from agencies on our preferred supplier panel through the NCS Agency Portal.

Similar Jobs

43 Minutes Ago
In-Office or Remote
Sydney, New South Wales, AUS
Mid level
Mid level
Cloud • Information Technology • Productivity • Security • Software • App development • Automation
Implements, operates, and improves enterprise security controls across identity, endpoints, cloud, SaaS, networks, and data. Builds automation using scripts, APIs, infrastructure-as-code, and CI/CD security checks. Supports IAM, endpoint protection, DLP, vendor risk assessments, physical access integrations, incident troubleshooting, and security operations. Partners with engineering, IT, legal, privacy, and business teams to deploy secure baselines, remediate risks, monitor control health, and improve enterprise security capabilities.
Top Skills: AWSAzure AdBashCi/CdDlpEntra IdGCPGoGoogle WorkspaceIammacOSMdmMfaOktaPythonRest ApisSaaSSlackSsoWindows
43 Minutes Ago
In-Office
Sydney, New South Wales, AUS
Expert/Leader
Expert/Leader
Cloud • Information Technology • Productivity • Security • Software • App development • Automation
Leads Atlassian’s partner and alliances strategy across Australia, New Zealand, and India. The role manages a six-person team, recruits and activates enterprise partners, drives co-selling and pipeline performance, expands India’s partner-led route to market, and strengthens existing ecosystem contribution. It requires executive-level commercial leadership, market expertise, partner development, forecasting, strategic planning, and cross-functional collaboration with sales, customer success, marketing, and field teams.
43 Minutes Ago
In-Office or Remote
Sydney, New South Wales, AUS
Mid level
Mid level
Cloud • Information Technology • Productivity • Security • Software • App development • Automation
Implements and operates enterprise security controls across identity, endpoints, cloud, SaaS, networks, and data. Automates security workflows using scripts, APIs, infrastructure as code, and CI/CD checks. Maintains IAM, endpoint protection, DLP, device posture, and secure configuration baselines. Supports vendor risk reviews, insider-risk monitoring, physical access integrations, incident troubleshooting, on-call operations, documentation, and remediation of security gaps across corporate technology environments.
Top Skills: AWSAzure AdBashCi/CdDlpGCPGoGoogle WorkspaceIamInfrastructure As CodemacOSMdmMfaMicrosoft Entra IdOktaPythonRest ApisSlackSsoWindows

What you need to know about the Sydney Tech Scene

From opera to comedy shows, the Sydney Opera House hosts more than 1,600 performances a year, yet its entertainment sector isn't the only one taking center stage. The city's tech sector has earned a reputation as one of the fastest-growing in the region. More specifically, its IT sector stands out as the country's third-largest, growing at twice the rate of overall employment in the past decade as businesses continue to digitize their operations to stay competitive.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account