At Centorrino Technologies (CT), we’re more than just tech—we’re a community that goes beyond expectations. We’ve been recognised as a Great Place to Work in 2024-2025 and one of the Best Places to Work Medium & Large Size in Australia for 2025, with an outstanding eNPS score of 68. And we’re not stopping there.
We’re looking for an experienced Infrastructure Security Engineer to support the hardening and security of Windows and Linux server environments. You’ll play a key role in implementing CIS security controls, improving infrastructure security, and automating secure configurations using Puppet and GitHub.
This role will be a 6-month contract based in Hobart or Melbourne.
What You’ll Do
• Implement and maintain CIS Benchmark Level 1 security controls across Windows and Linux environments.
• Assess server configurations, identify security gaps and support remediation activities.
• Develop and maintain Puppet code to automate security hardening and configuration.
• Manage infrastructure-as-code through GitHub , including pull requests, peer reviews and releases.
• Test and validate security configurations before production deployment.
• Troubleshoot issues resulting from security hardening and perform root cause analysis.
• Develop remediation, rollback and recovery procedures where required.
• Work closely with Cyber Security, Cloud Infrastructure, Application and Technical Support teams.
• Maintain documentation covering security controls, configurations and deployment processes.
• Support initiatives to reduce vulnerabilities and improve the overall security posture of the server environment.
What You’ll Bring
• Strong experience administering and securing Microsoft Windows Server and Linux environments .
• Hands-on experience with CIS Benchmarks, security baselines or OS hardening .
• Strong understanding of vulnerability management, secure configuration and security controls.
• Enterprise experience with Puppet and Infrastructure as Code (IaC).
• Strong experience using GitHub for source control, branching, pull requests and code reviews.
• Strong troubleshooting and analytical skills, with the ability to understand the impact of security controls on applications and services.
• Experience working across infrastructure, security and application teams in a collaborative environment.
Desirable: Experience in regulated or critical infrastructure environments, cloud infrastructure, vulnerability management tools such as Tenable/Qualys/Rapid7, or relevant security certifications.