AI DevSecOps Governance SME - 12 Month Contract
Job Description
AI DevSecOps Governance SME - 12 Month Contract
\n
Professional Recruitment Australia – Sydney NSW
\n
Contract, Casual/Temporary
\n
13h ago , from Professional Recruitment Australia
\n
AI DevSecOps Governance SME — 12-Month Contract, Sydney
\n Join a well-established technology services and consulting organisation to pioneer and scale AI-driven security governance across the enterprise software development lifecycle (SDLC).
\n The Role
\n In this forward-looking engineering role, you'll lead the implementation of governance frameworks and security standards powered by AI and Large Language Models (LLMs), integrating intelligent automation directly into CI/CD pipelines to transform how security policies, compliance checks, and code reviews are enforced across enterprise delivery teams.
\n Key Responsibilities
\n
- \n
- AI-Driven Security Governance- Design, implement, and enforce DevSecOps governance frameworks, security guardrails, and compliance standards utilising AI capabilities and LLMs \n
- Automated Policy Enforcement- Build and deploy AI-assisted controls for automated code review, policy validation, threat modeling workflows, and security compliance checks within CI/CD pipelines \n
- Responsible AI & Security Standards- Establish policy guidelines and security baselines for developer AI usage (AI code assistants, generative models, agentic workflows) to manage data privacy, IP, and code vulnerability risks \n
- Pipeline Integration & Shift-Left- Integrate intelligent security testing and automated remediation guidance into modern CI/CD systems (e.g. GitHub Actions, GitLab CI, Azure DevOps) \n
- Cross-Functional Leadership- Partner with Security Architecture, Engineering Leads, and Product Teams to define AI governance roadmaps and drive developer adoption across squads \n
\n
What You'll Bring
\n Essential:
\n
- \n
- Deep hands-on experience establishing DevSecOps practices, CI/CD security controls, and application security standards in enterprise environments \n
- Practical experience using AI/LLM tools to automate security governance, policy checking, or code review workflows - not just theoretical understanding \n
- Proven ability to translate complex regulatory, security, and data privacy requirements into enforceable, automated software controls \n
- Proficiency with modern CI/CD platforms, scripting (Python, Bash), and APIs to integrate AI workflows into active pipelines \n
- Excellent stakeholder management skills with a track record of driving security cultural shifts and developer adoption \n
\n
Desirable:
\n
- \n
- Exposure to secure AI deployment frameworks, model risk management, or AI safety standards (e.g. OWASP Top 10 for LLMs, NIST AI RMF) \n
- Experience with enterprise code scanning tools (SAST, SCA, DAST) and AI-driven triage mechanisms \n