Information Security Operations Lead (Sydney, Australia)
Core
Lead a 24/7 SOC team and manage incident response operations for a global fintech group, protecting customers, assets, and systems across cloud and endpoint environments.
Role type
Senior IC Information Security Operations Lead (SOC Team Lead)
Builds
Incident response capabilities, detection engineering, and security readiness processes for a global bank and SaaS platform.
Domain
Fintech / Cybersecurity
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
SOC team leadership, incident response, digital forensics, cloud security (AWS/GCP), SIEM analytics, endpoint investigation, tabletop exercise facilitation, threat hunting, detection engineering
Preferred skills
Python/Go/Java programming, malware analysis, network security controls
Technologies
AWS, GCP, SIEM platforms, Endpoint Detection and Response tools
Responsibilities
Lead SOC analysts and SMEs to manage security operations; triage, respond to, and investigate incidents from cloud, endpoint, and perimeter sources; conduct detection engineering and threat hunting; facilitate tabletop exercises; document incidents and root cause analysis; mentor team members and share knowledge.
Seniority
Senior, hands-on IC with team leadership