06 Oct
|
Secure Agility
|
Sydney
06 Oct
Secure Agility
Sydney
Job Description
About Secure Agility n
Secure Agility is an Australian technology services and cybersecurity provider delivering managed security, cloud, infrastructure, networking and digital services to enterprise and government customers.
n
Our cybersecurity capability spans:
n
n
- Managed Detection & Response
n
- Security Operations
n
- CrowdStrike Falcon
n
- Detection Engineering
n
- Vulnerability Management
n
- Identity Security
n
- SSE and SASE
n
- Penetration Testing
n
n
We operate across complex customer environments and are continuing to invest heavily in our managed security and SOC capability.
Job Summary n
Senior hands-on Security Operations Lead responsible for detection engineering, CrowdStrike Falcon, Next-Gen SIEM, threat exposure management and technical leadership across enterprise and government customers.
The Opportunity n
We are looking for a senior Security Operations Lead who can combine deep technical security operations experience with customer-facing consulting capability.
n
This is not a traditional SOC Manager position where you step away from the technology.
n
You will remain hands-on while taking technical ownership of how we detect threats, engineer security content, automate response, identify exposure and communicate risk to customers.
n
You will help set the technical standard for our SOC and act as an escalation point for analysts and customers.
n
The ideal candidate is likely to have built their career within a global Systems Integrator, MSSP, MDR provider, MSP, cybersecurity consultancy or large enterprise SOC.
You will n
n
- Develop, test and improve detection use cases and content.
n
- Improve detection coverage, signal quality and false-positive management.
n
- Lead complex investigations and support threat-hunting activities.
n
- Develop automation using Falcon Fusion, SOAR and platform integrations.
n
- Help customers prioritise vulnerabilities and exposures based on genuine business risk.
n
- Mentor SOC analysts and improve investigation standards and playbooks.
n
- Lead technical workshops and security operations reviews.
n
- Present technical findings and risk recommendations to senior stakeholders, including CIOs and CISOs.
n
- Help shape our approach to emerging security risks, including AI-related exposure.
n
What you’ll bring n
You will typically have six or more years’ experience across security operations, detection engineering, threat hunting, incident response or related cyber defence disciplines, including experience at a senior, L3, lead or principal level.
n
You will also bring:
n
n
- Strong practical experience with SIEM, EDR/XDR and detection engineering.
n
- Experience developing and tuning detections—not simply responding to alerts.
n
- Strong incident investigation and threat-hunting capability.
n
- Experience translating vulnerability and exposure data into clear remediation priorities.
n
- Confidence working directly with customers and senior stakeholders.
n
- Strong written communication, consulting and report-writing skills.
n
- The ability to explain complex security issues clearly to technical and non-technical audiences.
n
n
Experience within an MSSP, MDR provider, systems integrator, MSP, cybersecurity consultancy or multi-customer SOC will be highly regarded.
n
Strong practical experience with CrowdStrike Falcon , particularly Falcon Next-Gen SIEM, EDR and Falcon Fusion, is key. CrowdStrike certifications such as CCFA, CCFR or CCSE will be highly regarded; however, certification support may be considered for exceptional candidates with strong practical experience.
n
Experience with technologies such as Netskope, ExtraHop, Proofpoint, Microsoft Sentinel, Splunk, Palo Alto Networks, Entra ID, AWS, Azure, SOAR, Python, PowerShell or API integrations will also be valued.
n
An Australian Government NV1 security clearance, or eligibility to obtain one , is highly regarded.
Why Join Secure Agility n
n
- Remain hands-on while leading and mentoring others.
n
- Influence the future direction of our managed security capability.
n
- Work across complex enterprise and government environments.
n
- Build new detections, automation, processes and security services.
n
- Work closely with CrowdStrike and other strategic security vendors.
n
- Receive support for relevant technical development and certifications.
n
- Work directly with senior technical and business leaders.
n
#J-18808-Ljbffr
📌 Security Operations Lead (Sydney)
🏢 Secure Agility
📍 Sydney