Job Description
About the Role
n
We are partnering with a global financial services organization as they continue to mature and modernise their cyber security operations capability. This newly shaped SOC Lead role will play a critical part in strengthening how the organization detects, responds to and recovers from cyber threats across its global environment.
n
This is a hands‐on leadership role sitting close to the tools, the people and the incidents. You'll lead the hybrid 24/7 SOC activity, influence operational strategy and act as the bridge between internal teams and external security partners.
n
What's a typical day look like?
n
n
- Lead the day-to-day operations of a hybrid 24/7 SOC
n
- Oversee threat detection, incident response and threat hunting across global regions
n
- Collaborate with external MSSP partners, aligning on SLAs, KPIs and threat intelligence sharing
n
- Design and implement SOC processes, playbooks and metrics to measure operational maturity
n
- Lead incident response lifecycle - detection, containment, eradication and recovery
n
- Drive continuous improvement initiatives, leveraging automation and AI
n
- Ensure alignment with frameworks including NIST, SOC 2 and MITRE ATT&CK;
n
- Provide leadership and mentorship to SOC analysts and engineers
n
- Challenge existing processes, identify gaps and drive operational enhancements
n
n
About you
n
n
- 5+ years' experience in Cyber Security Operations or SOC management roles within Financial Services
n
- Strong understanding of threat modelling, incident response and adversary tactics (TTPs)
n
- Proficiency with SIEM, SOAR and threat intelligence platforms
n
- Experience managing hybrid SOC environments and external MSSP partnerships
n
- Hands‐on understanding of network, endpoint, identity and cloud security (especially Azure/M365)
n
- Familiarity with automation/scripting (Python, PowerShell) and use of AI tools to optimise SOC workflows
n
- Knowledge of key frameworks - MITRE ATT&CK;, NIST, SOC 2
n
- Experience integrating Active Directory, SSO (Single-Sign On)
n
- Proven leadership and communication skills, with the ability to engage across technical and executive levels.
n
- Experience working within a global setting
n
- Relevant certifications such as CISSP, CISM, GCIA, GCIH, CSA (highly regarded)
n
- Must be an Australian Citizen or Permanent Resident
n
n
Apply now
n
or reach out to Shannon Stobbs at
[email protected] to find out more!
n
Kapital Consulting is a niche Fintech Recruitment Business specialising in Technology, Project Services and Data Recruitment across Australia. For more information connect with us on www.kapitalconsulting.com.au and follow us on www.linkedin.com/company/kapital-consulting
#J-18808-Ljbffr
📌 Cyber Security Operations Lead (New South Wales)
🏢 Kapital Consulting
📍 New South Wales