2 jobs in Triskele Labs

Senior AI Platform Engineer - Bedrock, LLMs & Automation

Melbourne Triskele Labs

Posted today

Job Viewed

Tap Again To Close

Job Description

Job Description

About Triskele Labs

Triskele Labs is a large-scale sovereign Australian cybersecurity provider. We deliver Managed Detection and Response (MDR), Digital Forensics and Incident Response (DFIR), offensive security, and Governance, Risk and Compliance (GRC) services to some of the most regulated and high-value organisations in Australia, across financial services, government, education, healthcare, and critical infrastructure.

Weoperatea sovereign 24x7 SOC, a national DFIR practice, and a growing engineering function that builds the tooling, automation, and AI capability our delivery teams rely on. Engineering excellence and operational discipline are core to how we win and keep clients.

About the Role

The AI DevOps Engineer is a key role at Triskele Labs. You will sit inside the DevOps team and report to the DevOps Architect, who owns the broader cloud, platform, and DevOps stack. Your mandate is to own the design, deployment, and ongoing operation of our AI and AI enablement capability across the business.

This is an AI-first role.The majority ofyour time will be spent building andoperatingthe platforms that host our internal and client-facing AI capability. Primarily this means AWS Bedrock for sovereign access to frontier and open-weight models, with selective self-hosting on AWS where workload economics or specialisation justify it, alongside workflow orchestration and agentic automation, and enterprise search and retrieval.

You will also contribute to cloud and broader platform work alongside the rest of the DevOps team.

You will be hands-on, opinionated, and accountable for outcomes. Triskele Labs is a fast-moving environment where engineers are trusted to make calls, ship, and own what they build.

Responsibilities

AI Platform and Enablement (primary focus)

  • Design, deploy, andoperateAWS Bedrock as the primary inference platform for sovereign internal and client-facing AI workloads, including model access, integration patterns, throughput management, and quota planning across frontier and open-weight model families.
  • Design, deploy, andoperateopen-weight LLM hosting on AWS for sovereign and client-facing use cases, including model selection, fine-tuning workflows, and inference optimisation.
  • Own the workflow orchestration and agent automation platform, including hosting, scaling, security, integrations, and enablement of business users building workflows.
  • Own model selection and routing across the AI estate so every workload uses the most cost-effective model that meets the quality bar, including modelling unit economics across managed and self-hosted inference options.
  • Stand up andoperateenterprise search, retrieval, and embedding infrastructure, including vector search, index lifecycle, ingestion pipelines, and query performance.
  • Define and enforce patterns for prompt management, evaluation, observability, guardrails, cost control, and model lifecycle across the AI estate.
  • Partner with engineering, product, and delivery leaders toidentify, scope, and deliver AI use cases that drive measurable business outcomes.

Engineering, Scripting, and Automation

  • Write high-quality, production-grade AI-assisted code across Python, TypeScript/Node, and Bash to automate platform operations, integrate systems, and build internal tooling.
  • Design and build APIs and integrations between AI services, internal business systems, and the security tooling stack.
  • Apply infrastructure-as-code (Terraform preferred) andGitOpspatterns across the AI and DevOps estate.
  • Embed security, observability, and cost discipline into every platform and pipeline you build.

Cross-functional Contribution

  • Contribute to the wider DevOps roadmap and on-call rotation as a senior member of the team.
  • Document architecture, runbooks, and standards so the rest of the business can adopt and extend the platforms you build.
  • Coach engineers and non-engineers on safe, effective use of AI tooling and automation.
  • Stay current with the open-weight model ecosystem,hyperscalerAI service roadmaps, and the broader AI platform engineering discipline.
  • Minimum 5 years of professional experience in DevOps, platform engineering, or SRE, with a cleartrack recordof operating production workloads at scale.
  • Extremely strong AWS experience acrosscompute, networking, IAM, data, and AI/ML services. Equivalent depth in Azure alsorequired.
  • Demonstrated experience operating LLMs in production via managed inference services (AWS Bedrock or equivalent) and self-hosting open-weight models on a majorhyperscaler, with the judgement to choose between them based on cost, quality, latency, and operational fit.
  • Demonstrated ability to model the unit economics of AI workloads and design cost-effective architectures, including cost-per-task and cost-per-outcome views across multiple model and hosting options.
  • Heavy scripting and AI-assisted software engineering ability across Python and TypeScript/Node, including API design, integration patterns, and asynchronous workloads.
  • Hands-on experience with enterprise search and retrieval platforms, including vector search and retrieval-augmented generation patterns.
  • Working knowledge of low-code workflow orchestration and agent automation platforms.
  • Strong understanding of security fundamentals: identity, secrets, network segmentation, data classification, and threat modelling.
  • Excellent written and verbal communication; able to translate complex platform decisions into outcomes business stakeholders understand.
  • Australian citizen with the ability to obtain andmaintainBaseline or NV1 clearance preferred.

Nice to Have

  • Prior experience in a cybersecurity, MSSP, or MDR environment.
  • Experience with the Microsoft enterprise security and AI stack.
  • Experience operating PaaS and managed backend platforms at productionscale, andmigrating off them intohyperscaler-native services.
  • Experience building evaluation and observability frameworks for LLM-based systems.
  • Contributions to open-source AI,MLOps, or DevOps tooling.
  • Relevant certifications: AWS Solutions Architect Professional, AWS Certified AI Practitioner, AWS DevOps Engineer, Microsoft Certified Azure AI Engineer Associate, Azure Solutions Architect Expert.
  • A key role in a sovereign Australian cybersecurity business with a clear independent growth strategy through FY27.
  • A genuinely modern, hands-on AI and platform engineering remit, not legacy maintenance dressed up as transformation.
  • Broad exposure across a wide range of infrastructure and security technologies.
  • High-trust, high-accountability culture with direct exposure to executive leadership and real influence on technical direction.
  • Competitive salary aligned to senior engineering market rates, with performance-based incentives.
  • Investment in training, certification, and conference attendance.
  • Hybrid working from our Melbourne office.

How to Apply

Pleasesubmita CV and a short cover note outlining the most relevant production AI platform or DevOps work you have led, including the technical decisions you owned and the outcomes delivered.

Triskele Labs is an equal opportunity employer and welcomes applications from candidates of all backgrounds.

#J-18808-Ljbffr

Is this job a match or a miss?
Apply Now

Head of GRC - Strategic Leader for Australian Cyber Risk

Melbourne Triskele Labs

Posted today

Job Viewed

Tap Again To Close

Job Description

Job Description

About Triskele Labs

Triskele Labs is one of Australia's leading sovereign cyber security firms. We deliver Managed Detection and Response (MDR), Digital Forensics and Incident Response (DFIR), Offensive Security, and Governance, Risk and Compliance (GRC) services to regulated enterprises, government, and the higher education sector.

Built over more than a decade, founder-led and independently owned, we partner with clients operating under some of Australia's most demanding regulatory regimes: APRA, AUSTRAC, ASIC, SOCI, PCI-DSS, IRAP and PSPF.

Our GRC practice is a well-established part of that offering, delivering strategic advisory, framework implementation, audit, risk assessment, and assurance engagements to clients across financial services, government, critical infrastructure, healthcare and education. As we enter our next phase of growth, we are investing further in the leadership of this practice.

The opportunity

We are seeking a Head of Governance, Risk & Compliance to lead and grow our GRC practice. This is a senior leadership role for a strategic, commercially-minded consulting leader who has built and scaled advisory teams within a Big 4, mid-tier, or specialist cyber firm, and who is energised by the prospect of leading a high-calibre practice inside a sovereign Australian business.

You will set the strategic direction of the practice, develop our people, deepen our client relationships, and ensure our GRC offering continues to evolve in step with the regulatory and threat landscape facing Australian organisations.

This is a leadership role focused on strategy, client outcomes, and team development. It is not a personal billable delivery role.

What you'll do

Practice leadership and strategy

  • Own the GRC strategy, defining the future shape of the practice, our service portfolio, and our positioning in the Australian market.
  • Set the operating rhythm, establishing the standards, playbooks, and ways of working that enable the team to deliver consistent, high-quality outcomes at scale.
  • Partner with the Executive Leadership team to align GRC into the broader Triskele growth strategy.
  • Represent the practice externally as a visible voice for Triskele in the Australian GRC and cyber risk community.

Client and advisory leadership

  • Build trusted advisor relationships with senior leaders at our key clients, including CISOs, CIOs, CFOs, audit committee chairs, and boards.
  • Shape cohesive programs of work that bring together the right combination of GRC services and broader Triskele capability.
  • Provide executive-level advisory at client audit, risk and security committee meetings.
  • Lead complex pursuits across regulated industries, government and higher education.
  • Continue to grow the discrete engagement portfolio: strategic advisory, framework implementation, audits, assessments and assurance.

Team leadership and capability

  • Lead, develop and grow the GRC team. Set clear expectations, coach senior consultants, and build the next generation of practice leaders.
  • Shape the operating model, including team structure, role profiles, and career pathways as we scale.
  • Build playbooks, methodologies and IP so the practice operates consistently and scales without dependency on any individual.
  • Set the tone for client presence, commercial instinct, and consulting excellence across the team.

Cross-business integration

  • Partner with our MDR, DFIR, Offensive Security and Platform Engineering teams to ensure clients benefit from the full breadth of our capability.
  • Bring practical threat context into advisory work, grounding recommendations in real-world threat and detection insight rather than framework theory alone.
  • Support enterprise and government pursuits alongside the CRO and sales leadership where senior advisory representation strengthens our position.

Commercial performance

  • Drive the commercial performance of the practice. Accountable for growth, profitability and client retention across the GRC portfolio.
  • Evolve the service mix to reflect the changing regulatory environment and emerging client needs.
  • Contribute to Triskele's broader commercial trajectory and strategic plan.
About you

Essential experience

  • 12+ years in cyber, technology or risk advisory, with significant time at Big 4, mid-tier, or specialist cyber firms. Prior practice leadership, capability leadership, or partner-track experience strongly preferred.
  • Direct experience working within or alongside a managed services or MSSP business, with a clear view of how managed delivery and advisory fit together.
  • Extensive advisory experience across multiple Australian regulated environments. You have led or materially contributed to engagements covering several of:
    • APRA-regulated entities (CPS 234, CPS 230, CPG 234)
    • ASIC-regulated and listed entities (cyber risk disclosure, RG 271, director duties)
    • AUSTRAC-reporting entities (cyber controls aligned to AML/CTF obligations)
    • SOCI Act and critical infrastructure (risk management programs, incident reporting)
    • PCI-DSS environments (merchants, service providers, payment processors)
    • Commonwealth and State government (PSPF, ISM, IRAP context, Essential Eight uplift)
    • Higher education, healthcare and not-for-profit
  • Substantive experience with ISO/IEC 27001 and 27002, NIST CSF, NIST 800-53, the ACSC Essential Eight, and the Australian Privacy Principles.
  • Owned or contributed to the P&L of a consulting practice, portfolio or business unit.
  • Built, led and developed advisory or consulting teams. Demonstrated track record of attracting and retaining senior talent.

Capabilities we value

  • Strategic and systems thinker who can design an operating model and translate strategy into execution.
  • Technically credible. Engages substantively on modern security architecture (Microsoft, identity, detection, cloud, data protection) and holds a credible conversation with engineering audiences.
  • Frameworks-literate but outcomes-led. Uses standards as scaffolding for client outcomes, not as the end product.
  • Strong executive presence with CISOs, executive committees, audit and risk committees, and boards.
  • Genuine leader of people who develops others and holds a high bar.
  • Collaborative operator who builds cohesive outcomes rather than protecting turf.

Highly regarded

  • Established relationships across the Australian CISO, CIO, and audit committee community.
  • Credentials such as CISSP, CISM, CRISC, CGEIT, ISO 27001 Lead Auditor/Implementer, or PCI-QSA.
  • Contribution to industry bodies, working groups, or regulatory consultations.
What this role is not
  • It is not a billable delivery role. The Head of GRC is not measured on personal utilisation.
  • It is not an internal compliance officer or internal-audit role. This is a client-facing, externally-focused leadership role.
  • It is not a framework-implementer role. We hire and develop excellent practitioners to do that work. We are hiring the leader who builds the team that delivers it.
  • It is not a sales role, but it is commercially accountable. The successful candidate will materially influence the growth of the practice.
What we offer
  • A genuine leadership seat in one of Australia's most established sovereign cyber security firms.
  • The autonomy to shape a practice, develop a team, and build something enduring.
  • A high-trust executive team that backs its leaders and moves quickly.
  • Competitive remuneration including base, performance incentive and benefits, commensurate with senior consulting and practice leadership experience.
  • Flexible working arrangements, with a preference for Melbourne-based candidates.
Working at Triskele Labs

Triskele Labs is a sovereign Australian business, founder-led and independently owned. We are direct, we value honest and rigorous thinking, and we expect our leaders to set the tone for our people. We back our team, we hold a high bar, and we are building something genuinely differentiated in the Australian market.

If this opportunity resonates, we would welcome a confidential conversation.

Triskele Labs. Sovereign Australian Cyber Security.

#J-18808-Ljbffr

Is this job a match or a miss?
Apply Now