Description of the job
Description
- Outstanding opportunity to shape Security Solutions for Westpac.
- Sydney Based Location.
Time to Shine!
As a Principal Architect within the Security Solution Architecture team, you will lead the design and integration of secure solutions across the enterprise, with a specific focus on vulnerability management and application security practices.
You will oversee translating strategic security goals into actionable architecture patterns and technical designs, ensuring alignment with the Group Policies and Standards, in a customer first approach.
This role demands deep technical and firsthand experience with vulnerability management and application security tooling, and the ability to collaborate effectively with business, security, development, and engineering teams, including senior and executive stakeholders.
Additionally, you will be working alongside a deep cross selection of SMEs across multiple security domains including Data Protection, Identity and Access Management, Vulnerability Management, and Threat Prevention.
The team operates within a federated architecture model, supporting both centralised governance and domain-aligned execution.
Responsibilities …
Working with the Domain Architects to define and champion the strategic direction for vulnerability management and application security, influencing stakeholders across technology and business domains.
You will leverage existing firsthand experience and skillsets, lead the delivery of secure solution designs, reusable architecture patterns and frameworks that enable capabilities and address design challenges in application security and DevSecOps contexts.
No two days will be the same as you will provide expert guidance on secure solution design, threat modelling, and vulnerability remediation strategies, acting as a trusted advisor to delivery teams and senior leadership.
What makes you perfect for the role?
- Highly adept Senior Solutions Architecture Security SME with CI/CD pipelines and integrating security tooling into DevOps Workflows.
- Firsthand experience with security tools such as SAST, SCA, Container Scanners.
- Strong understanding of secure coding practices, OWASP Top 10 and threat modelling techniques.
- Ability to engage and influence developers, architects, and engineering leads.
- Highly developed architectural thought leadership with effective interpersonal ability, stakeholder engagement and executive presence.
The nice to have stuff ...
- Experience in SDLC and enforcing Platform Engineering Principles and how they apply to enterprises.
- Experience with Cloud-Native Security Architectures and exposure to Regulatory Frameworks and Risk Management Practices.
- Experience with configuring CDN and WAF capabilities.
Why join us?
We’re obsessed with becoming our customers' #1 banking partner for life and we’re looking for people who are passionate about helping us achieve that goal. In return, we’re committed to making Westpac the best place to work in the country. Here are just a few of the ways we’re already doing that:
- Special offers on banking products and discounts from top brands, including generous employee-only mortgage rates!
- Flexible work arrangements to help you achieve a greater work/life balance, and a variety of leave options including Culture, Lifestyle and Wellbeing leave.
- Tailored learning and development opportunities to help your grow your career within the bank.
- Lots of opportunities to ‘give back’ to the Community by getting involved in our many volunteering initiatives.
Create your future today!
Please submit your application via the APPLY or APPLY NOW button.
We’re all about creating a supportive and inclusive community. We welcome everyone – no matter your age, gender, background, or abilities. We also provide added support to welcome our veterans, Indigenous Australians, and neurodiverse community.
If you need any adjustments during the recruitment process, you can find out more information and additional contact details by visiting the "People with Disability and/or needing Accessibility Requirements" page on our website.


