Back to Signal
Wraith Patch

Security Analyst

JuniorSecurity LeadershipOn-siteSydney, NSW
$120k
Actively Looking

Quick Match Check

Company Size

Scale-up (100-1000)

Company Type

TechFintech

Key Skills

OWASP Top 10SAST (e.g., Checkmarx, SonarQube)DAST (e.g., Burp Suite, ZAP)Python (for scripting and automation)JiraGit/GitHubCI/CD Pipelines (e.g., Jenkins, GitLab CI)

Roles Worked

Junior Application Security Engineer
Software Developer
Graduate Security Analyst

Industry Experience

TechSaaSStartup

CyberSec People will make the introduction

Skills Assessment

1st PrinciplesCode BiasTech DepthCuriosityWar Stories6.06.05.07.06.0
1st Principles6/10

Breaks down complex problems into fundamental truths and builds solutions from the ground up

Code Bias6/10

Prefers building and shipping code over meetings and documentation

Tech Depth5/10

Deep technical expertise across security domains, tools, and architectures

Curiosity7/10

Constantly learning, experimenting, and staying ahead of emerging threats

War Stories6/10

Battle-tested experience solving real-world security incidents and challenges

Profile Summary

A proactive Security Analyst passionate about embedding security early in the development lifecycle. This individual builds and refines application security processes, ensuring developers are equipped to deliver secure code from inception. They are driven by a mission to empower engineering teams to own security outcomes, reducing vulnerabilities before they reach production.

Problems Solved

  • Implemented a new SAST rule set that reduced false positives by 40% across 5 critical applications at a major Australian fintech.
  • Assisted in the remediation of 25+ high-severity OWASP Top 10 vulnerabilities identified during pre-release penetration tests.
  • Developed and delivered security awareness training modules for 3 development teams, improving their understanding of common web application flaws.

What They Build

This analyst builds secure development practices, integrating security tools and processes directly into CI/CD pipelines. They focus on creating developer-friendly security guidelines and automating vulnerability identification and reporting within application codebases.

What Would Make Them Move

First security role out of a software engineering background. Want a company with a strong AppSec team where I can learn from senior engineers. Pair programming on security reviews would be ideal. Not chasing salary — chasing skill.

Mission & Values

Driven to help teams build security into the development lifecycle. Believe in shifting left and empowering developers to write secure code.

Growth Areas

LeadershipStrategic ThinkingTeam Building

Open to

Junior Application Security RoleSecurity LeadershipTechnical Architecture