24 Aug
|
Jobtailor
|
New South Wales
24 Aug
Jobtailor
New South Wales
Job Description
n
Lead a team of subject matter experts and analysts to ensure Information Security is managed and continuously improved in line with Bank policy and procedure.
n
Supporting the development and progression of the Information Security Analyst team from both a technical and qualified perspective.
n
Incident Triage, Response, and Investigations based on Alerts received from multiple sources which include:n
n
Cloud
Infrastructure/Security.
n
Endpoint Detection and Response.
n
Perimeter detection tooling.
n
n
Conduct Quality Assurance for Triage case handling, mitigation actions and shift handover, collating lessons learned and implementing improvements where required.
n
Interpret logs from a variety of sources (e.g. cloud, endpoint, network) to identify root cause and determine next steps for containment, eradication and recovery as part of incident response activities.
n
Work together with other teams in the organisation to analyse, contain, eradicate and recover from cyber security incidents
n
Continuous development and maintaining of incident handling, response and readiness processes.
n
Support the wider SecOps team with detection engineering - creating and optimising analytic triggers to enhance alert efficacy - and threat hunting based on threat intelligence.
n
Documentation of incidents and investigations, including analysis findings, containment steps and root cause.
n
Plan and participate in Tabletop Exercises.
n
Present investigation findings to technical and non-technical audiences.
n
n
Requirements
n
n
5+ years experience in an in-house SOC role and team, including cyber incident response and digital forensics function.
n
Experience in a similar role leading,
developing and motivating a team of subject matter experts and other managers in Information & Cyber Security.
n
Understanding of AWS Security Solutions (or other Public Cloud Solutions)
n
Analysis and Incident Response experience with Cloud systems (GCP, AWS)
n
Experience working and supporting analytics/SIEM platforms.
n
Experience supporting and conducting Incident Response engagements.
n
Experience in endpoint based investigations.
n
Experience in cloud based investigations.
n
Experience with Incident Command and conducting Tabletop Exercises.
n
Experience in acting as both Commander and SME during incidents and investigations.
n
Be a Self Starter with the ability to lead, inspire and drive change through an organisation.
n
Excellent communication skills (both verbal and written), ability to communicate technical concepts to both technical and non-technical audiences.
n
Demonstrated teamwork and collaboration skills as part of a multi-functional team
n
Time management, problem-solving and interpersonal skills.
n
Eagerness to learn and apply knowledge to new security challenges.
n
Willingness to share knowledge with the team and mentor colleagues.
n
- A high level understanding of mobile, network and operating system security controls.
n
Preferred
n
Experience in forensics: cloud (GCP, AWS); endpoint/server (Windows, MacOS, Linux); and/or network.
n
Any experience of programming in Python, Go and/or Java.
n
A Cyber/Information Security related degree and/or relevant cyber security qualification(s) would be desired but not required
n
Understanding of malware analysis techniques
n
n
Core Competencies
n
Demonstrates expertise in Incident Response, Cyber Security, and Team Leadership, with a strong focus on developing and mentoring teams while managing security incidents effectively. Proficient in utilizing Cloud Security Solutions and analytics platforms to enhance security posture and incident handling processes.
n
Highest-signal resume keywords
n
n
Incident Response Management
n
Cloud Security Solutions (AWS, GCP)
n
Team Leadership and Development
n
Analytic/SIEM Platform Support
n
Digital Forensics Expertise
n
n
ATS Optimization Keywords
n
Hard Skills
n
n
Incident Triage
n
Cloud Systems Analysis
n
Endpoint Investigation
n
Malware Analysis Techniques
n
Programming (Python, Go, Java)
n
n
Soft Skills
n
n
Excellent Communication Skills
n
Teamwork and Collaboration
n
Time Management
n
Problem-Solving
n
Interpersonal Skills
n
n
Certifications & Qualifications
n
n
Cyber/Information Security Degree
n
Relevant Cyber Security Qualifications
n
n
Industry Keywords
n
n
Information Security
n
Cyber Security
n
Digital Forensics
n
Incident Command
n
Tabletop Exercises
n
n
Tools & Technologies
n
n
Cloud Infrastructure Security
n
Endpoint Detection and Response
n
Perimeter Detection Tooling
n
SIEM Platforms
n
Incident Command Systems
n
#J-*****-Ljbffr
📌 Information Security Operations Lead (New South Wales)
🏢 Jobtailor
📍 New South Wales