28 Aug
|
Jobtailor
|
New South Wales
28 Aug
Jobtailor
New South Wales
Job Description
n
- Lead a team of subject matter experts and analysts to ensure Information Security is managed and continuously improved in line with Bank policy and procedure.
n
- Supporting the development and progression of the Information Security Analyst team from both a technical and professional perspective.
n
- Incident Triage, Response, and Investigations based on Alerts received from multiple sources which include:n n
- Cloud Infrastructure/Security.
n
- Endpoint Detection and Response.
n
- Perimeter detection tooling.
n
n
- Conduct Quality Assurance for Triage case handling, mitigation actions and shift handover, collating lessons learned and implementing improvements where required.
n
- Interpret logs from a variety of sources (e.g. cloud, endpoint, network) to identify root cause and determine next steps for containment, eradication and recovery as part of incident response activities.
n
- Work together with other teams in the organisation to analyse, contain, eradicate and recover from cyber security incidents
n
- Continuous development and maintaining of incident handling, response and readiness processes.
n
- Support the wider SecOps team with detection engineering - creating and optimising analytic triggers to enhance alert efficacy - and threat hunting based on threat intelligence.
n
- Documentation of incidents and investigations, including analysis findings, containment steps and root cause.
n
- Plan and participate in Tabletop Exercises.
n
- Present investigation findings to technical and non-technical audiences.
n
n
Requirements
n
n
- 5+ years experience in an in-house SOC role and team, including cyber incident response and digital forensics function.
n
- Experience in a similar role leading,
developing and motivating a team of subject matter experts and other managers in Information & Cyber Security.
n
- Understanding of AWS Security Solutions (or other Public Cloud Solutions)
n
- Analysis and Incident Response experience with Cloud systems (GCP, AWS)
n
- Experience working and supporting analytics/SIEM platforms.
n
- Experience supporting and conducting Incident Response engagements.
n
- Experience in endpoint based investigations.
n
- Experience in cloud based investigations.
n
- Experience with Incident Command and conducting Tabletop Exercises.
n
- Experience in acting as both Commander and SME during incidents and investigations.
n
- Be a Self Starter with the ability to lead, inspire and drive change through an organisation.
n
- Excellent communication skills (both verbal and written), ability to communicate technical concepts to both technical and non-technical audiences.
n
- Demonstrated teamwork and collaboration skills as part of a multi-functional team
n
- Time management, problem-solving and interpersonal skills.
n
- Eagerness to learn and apply knowledge to current security challenges.
n
- Willingness to share knowledge with the team and mentor colleagues.
n
- - A high level understanding of mobile, network and operating system security controls.
n
- Preferred
n
- Experience in forensics: cloud (GCP, AWS); endpoint/server (Windows, MacOS,
Linux); and/or network.
n
- Any experience of programming in Python, Go and/or Java.
n
- A Cyber/Information Security related degree and/or relevant cyber security qualification(s) would be desired but not required
n
- Understanding of malware analysis techniques
n
n
Core Competencies
n
Demonstrates expertise in Incident Response, Cyber Security, and Team Leadership, with a strong focus on developing and mentoring teams while managing security incidents effectively. Proficient in utilizing Cloud Security Solutions and analytics platforms to enhance security posture and incident handling processes.
n
Highest-signal resume keywords
n
n
- Incident Response Management
n
- Cloud Security Solutions (AWS, GCP)
n
- Team Leadership and Development
n
- Analytic/SIEM Platform Support
n
- Digital Forensics Expertise
n
n
ATS Optimization Keywords
n
Hard Skills
n
n
- Incident Triage
n
- Cloud Systems Analysis
n
- Endpoint Investigation
n
- Malware Analysis Techniques
n
- Programming (Python, Go, Java)
n
n
Soft Skills
n
n
- Excellent Communication Skills
n
- Teamwork and Collaboration
n
- Time Management
n
- Problem-Solving
n
- Interpersonal Skills
n
n
Certifications & Qualifications
n
n
- Cyber/Information Security Degree
n
- Relevant Cyber Security Qualifications
n
n
Industry Keywords
n
n
- Information Security
n
- Cyber Security
n
- Digital Forensics
n
- Incident Command
n
- Tabletop Exercises
n
n
Tools & Technologies
n
n
- Cloud Infrastructure Security
n
- Endpoint Detection and Response
n
- Perimeter Detection Tooling
n
- SIEM Platforms
n
- Incident Command Systems
n
n
#J-18808-Ljbffr
📌 Information Security Operations Lead (New South Wales)
🏢 Jobtailor
📍 New South Wales