Cameron Lonsdale

Security Engineer at Canva

Brisbane City, Queensland, Australia

About

Automating security and making it more accessible

Experience

  • Canva (Full-time · 3 yrs 11 mos)
    • Staff Security Engineer
      Oct 2025 - Present · 9 mos

    • Senior Security Engineer
      Aug 2022 - Dec 2025 · 3 yrs 5 mos

  • Atlassian (3 yrs 2 mos)
    • Senior Security Engineer
      Mar 2022 - Aug 2022 · 6 mos

    • Security Engineer
      Oct 2020 - Mar 2022 · 1 yr 6 mos

    • Associate Security Engineer
      Jul 2019 - Oct 2020 · 1 yr 4 mos

  • Commonwealth Bank (1 yr 9 mos)
    • Security Engineer
      Mar 2018 - Jul 2019 · 1 yr 5 mos

      Worked remotely with security and systems engineering teams to automate security. Helped build framework for OCI image scanning tools to integrate with CI/CD. Lead vendor procurement process for container security runtime monitoring, including vendor engagement and product evaluation. Adhoc vulnerability research both internal and external. Promoted from Associate to Engineer after 1 year.

    • Security Architecture Intern
      Nov 2017 - Feb 2018 · 4 mos

      Found flaws during security assessment of 3rd party software solution. Designed and built a generic reverse proxy to provide 2FA to any 3rd party service. Pentested Kubernetes and Docker deployments. Engineered security solutions for beem it. Influenced the security culture of the team - Including patching and locking laptops.

  • Course Administrator at UNSW
    Jan 2018 - Jul 2018 · 7 mos

    COMP6443/6843 Web Application Security Helped plan the course content structure and project manage the resource creation. Assisted with lecturing and assignment marking. Co-ran a 24 hour exam providing on-demand support for students. Provided semester long admin support for a cohort of over 80 students.

  • Security Engineer Intern at Beem It - Making better money moments
    Nov 2017 - Feb 2018 · 4 mos

    Found and PoC’d bypass of design flaw in 3rd party software solution in two days. Designed and built a generic reverse proxy to provide 2FA to any 3rd party service. Pentested Kubernetes and Docker infrastructure. Helped onboard several services to our logging framework. Influenced the security culture of the team - Including patching and locking laptops.