Zac Scott

Software Engineer · Software Engineer · Bastion Security Group · contact@zaci.dev

Drawing on my expertise in security automation and modern software engineering practices, I specialize in developing innovative solutions that enhance security operations and streamline processes across diverse technical environments. I work extensively with Python, cloud platforms, and containerization to build robust, scalable systems that deliver real business value.

I am an engaged, creative, and solutions-focused Software Engineer with deep experience in both Software Development and Cyber Security. I have a strong passion for problem-solving, infrastructure automation, Linux systems, and building reliable, type-safe code. When I'm not crafting automation solutions or tinkering with mechanical keyboards, you'll find me on the squash court or hiking in the ranges.


Experience

Software Engineer

Bastion Security Group - Full-Time

In my role, I leverage my expertise in security automation and software engineering to drive innovation across multiple workstreams. I develop comprehensive internal automation solutions, collaborating with teams across the company—including SOC, Service Delivery, Pentest/GRC Consulting, Finance, and Security Engineering—to streamline processes and make everyone's lives easier.

One significant component of my work involves helping maintain and improve our Cassini CTI SaaS platform. My contributions here lie around rewriting integral components and making changes to the core infrastructure and CI/CD pipelines to streamline safe and reliable deployments. Additionally, I collaborate with customers to help build and maintain their bespoke software solutions, ensuring robust security controls whilst meeting their specific business requirements. My work spans diverse environments including AWS, Azure, and on-premises deployments. I utilize modern development practices with Python, incorporating modern tools like UV, Pydantic, Ruff, and SqlAlchemy allowing for reliable, type-safe code development with high velocity. I also work extensively with Docker and Linux to enable robust, deterministic, and scalable deployments.

April 2024 - Present

Software Engineering Manager

InPhySec Security - Full-Time

During my tenure at InPhySec Security, I passionately advocated and championed the initiative to develop software solutions aimed at automating and enhancing business outcomes. Drawing upon my prior experience as a SOC analyst and my software engineering expertise, I dedicated my focus to creating software and automation tools that bolster the SOC team's capabilities.

Throughout my time in this position I wrote a variety of automation, spanning from assisting detection triage, ingesting threat feeds, automating customer assurance reporting for our MSS technologies, integrating with our internal SIEM and SOAR, building a robust case management system, and writing ad hoc scripts to help with incident response gigs.

September 2023 - April 2024

Security Engineer

InPhySec Security - Full-Time
May 2022 - September 2023

Security Engineer

InPhySec Security - Part-Time
February 2021 - May 2022

Graduate Security Engineer

Xero - Full-Time

Rotated into the Asset Security pod focusing on uplifting the platform security at Xero. My individual contributions were around automating Docker deployments with AWS CodePipeline and developing Python software for vulnerability management and reporting.

February 2022 - May 2022

Security Intern Engineer

Xero - Internship

Internship as a security engineer in the Identity & Access security team at Xero. My focus was working on an internal project and initiative to govern access to platform applications using a new Okta instance as the single-source of truth IdP.

November 2020 - February 2021

Cyber Security Analyst

InPhySec Security - Part-Time

Security analyst at InPhySec helping provide our MSSP service to our customers. In this position I would triage detections and initiate threat hunting across our customers' Falcon EDR, Netskope CASB, and Vectra NDR environments.

January 2020 - November 2020

Web Regression Tester

EDMI Ltd. - Internship

Developed an automation regression test suite for a Web Application interacting with smart meters using Robot Framework and Python.

November 2019 - January 2020

Engineering Computer Science (ECS) Tutor

Victoria University of Wellington

Computer Science tutor for the courses COMP112 , COMP103 , XMUT103 (Marking Only)

February 2019 - October 2019

Projects

Python-Injection-Framework (pif)

github.com/scottzach1/Python-Injection-Framework

A simple Python dependency injection framework.

June 2024 - Present

Mechanical Keyboard (Planck)

github.com/scottzach1/planck

One hobby of mine has been to develop the perfect keyboard layout to suite my needs using QMK Firmware.

December 2019 - Present

Linux Dotfiles

github.com/scottzach1/dotfiles

Configuration files for the different software I run on my personal Linux devices

April 2020 - Present

Bus Sharp

github.com/scottzach1/Bus-Sharp-Ionic
github.com/scottzach1/Bus-Sharp-React-Native

Mobile / web app to track Metlink services around Wellington, written in React + Ionic.

July 2020 - September 2020

Regression Testing Suite

edmi-meters.com/product/software/storm

Developing an automated regression test for a web application dealing with smart meters using Python, Selenium and Robot with TeamCity integration.

November 2019 - January 2020

Chap's Challenge

github.com/scottzach1/Chaps-Challenge

A SWEN225 group project developing a modern take on the iconic Chip’s Challenge using Java Swing.
September 2019 - October 2019

Movie Database

github.com/scottzach1/Movie-Database

A movie database server written in C++ for NWEN241 where a user can request movie information via another shell instance using a TCP connection.
September 2019

Soles for Syria

Google Drive link

A Bootstrap CSS website written for NGO organisation Soles for Syria.
September 2019

Many more projects can be seen at github.com/scottzach1/

Education

Victoria University of Wellington

BE(Hons) Bachelor of Engineering
Software Engineering - Networked Applications

Grade Average A

Dean's List 2018, 2019, 2020, 2021

2018 - 2021

Skills

Favourite Languages
All Languages
Language Context Project
Python Industry Bastion, InPhySec, Xero, Edmi Ltd.
TypeScript/JavaScript Industry, University Xero, BusSharp
Terraform Industry Xero
Robot Framework Industry Edmi. Ltd.
Java University Chaps Challenge
C/C++ University Movie Database, Planck
SQLite University INFO151
Bash/Fish Personal Dotfiles

Interests

Apart from software development, I also love to play with Linux. Researching into better programs and fiddling with my dotfiles. I also am a mechanical keyboard enthusiast, with a newfound love for small form factor and ortho-linear keyboards ( github.com/scottzach1/Planck ).

I also am a big fan of the outdoors, when given the opportunity. I love to go hiking in the Tararua's and Ruahine's, as well as mountain biking at Makara and Polhill reserve.


Awards & Certifications

  • Amazon Web Services (AWS)

    AWS Certified Cloud Practitioner 2023 (certificate)

  • CCFR - Crowdstrike Certified Falcon Responder 2020

    CCFA - Crowdstrike Certified Falcon Administrator 2020
    Crowdstrike Falcon certificate program.

  • Datacom Systems Scholarship in Computer Science 2019

    Victoria Scholarship and Internship offer.

  • Outward Bound NZ scholarship recipient 2016

    Mind Body Soul.

  • Aspire Program Candidate 2016

    Six rotated placements at TradeMe HQ Wellington.

  • Young Enterprise Scheme (YES) 2016

    NGO Charity event Soles for Syria. 1st Place Manawatu / Wanganui regional Dragons Den.