Macquarie Group

Staff Engineer - Cyber Security

Macquarie Group

Sydney, New South Wales, Australia · Full Time

Be the first to apply

Experience
Any
Salary
Openings
1
Posted
2 weeks ago
Work mode
In office
Resume
Required to apply

Where you'll work

Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.

Job description

About the Role

This position involves designing and implementing secure machine identity and authentication systems at scale across a multinational financial services group operating in 31 markets. The incumbent will architect solutions for workload identity integration with human identity and access management (IAM), cloud platforms, and API gateways, supporting a unified zero-trust architecture across the enterprise.

Responsibilities

You will provide hands-on engineering and technical leadership within your team, developing machine identity and authentication infrastructures that work at scale. Tasks include building identity lifecycle automation, integrating workload identity with cloud and service mesh environments, contributing to engineering standards, writing production code, leading architectural reviews, mentoring peers, and resolving distributed authentication issues.

Required Qualifications and Experience

  • Proven expertise developing and maintaining workload identity infrastructure at scale, including provisioning, rotation, and revocation of service identities within distributed systems.
  • Practical experience integrating multiple identity layers, including human IAM, OAuth/OIDC application authentication, and cloud IAM (AWS, Azure, GCP), ensuring seamless interoperability with API gateways.
  • Strong understanding of when to replace secrets with machine identity, use attested identities versus tokens, and implement identity federation, supported by demonstrable coding and data analysis.
  • Extensive experience shipping production code primarily using Python and Go, coupled with architectural review capabilities and debugging distributed authentication problems.
  • Ability to engage with emerging identity management patterns, contribute to standards, and promote best engineering practices within the team.
  • In-depth knowledge of identity protocols, JWT token handling, and digital signing required to build secure identity systems.
  • Experience with identity lifecycle automation tools such as SPIFFE/SPIRE, managing HashiCorp Vault, integrating authentication for service meshes or API gateways, or active participation in open-source identity projects is highly desirable.

Company and Workplace Benefits

Employees enjoy diverse benefits which may include:

  • One day of wellbeing leave annually.
  • Up to five additional leave days for service milestones each year.
  • Up to 20 weeks of paid parental leave for primary caregivers, plus 12 days' transition leave upon return and six weeks for non-primary caregivers.
  • Two days of paid volunteer leave combined with donation matching programs.
  • Up to 12 months of gender affirmation leave with six weeks paid.
  • Comprehensive employee assistance and wellness programs covering health scans and vaccinations.
  • Various salary packaging options and extensive learning and development opportunities, including reimbursement for professional memberships.
  • Flexible and hybrid working arrangements depending on the role.
  • Support and reimbursement for home office equipment.

Inclusion and Accessibility

The organization commits to a diverse and inclusive environment valuing all backgrounds and perspectives regardless of race, gender identity, sexual orientation, or other personal characteristics. Reasonable accommodations during recruitment and employment are offered upon request.

Technology

The technology department fuels every facet of the company’s operations, focusing on digital innovation, platform development, data integration, and future-focused solutions.

Level

Mid

How they work

Teamwork & Collaboration Problem Solving Leadership
🤖
Online · instant AI help
Broxer