Turn this role into an interview — a resume and cover letter built around what this employer wants.
Secure Agility is seeking a senior Security Operations Lead in Australia to own detection engineering, CrowdStrike Falcon, Next-Gen SIEM, threat exposure management and technical leadership across enterprise and government customers.
You will stay hands-on while driving automated response, threat detection content, and clear risk communication to customers and senior stakeholders.
Secure Agility is an Australian technology services and cybersecurity provider delivering managed security, cloud, infrastructure, networking and digital services to enterprise and government customers.
Our cybersecurity capability spans:
We operate across complex customer environments and are continuing to invest heavily in our managed security and SOC capability.
Senior hands-on Security Operations Lead responsible for detection engineering, CrowdStrike Falcon, Next-Gen SIEM, threat exposure management and technical leadership across enterprise and government customers.
We are looking for a senior Security Operations Lead who can combine deep technical security operations experience with customer-facing consulting capability.
This is not a traditional SOC Manager position where you step away from the technology.
You will remain hands-on while taking technical ownership of how we detect threats, engineer security content, automate response, identify exposure and communicate risk to customers.
You will help set the technical standard for our SOC and act as an escalation point for analysts and customers.
The ideal candidate is likely to have built their career within a global Systems Integrator, MSSP, MDR provider, MSP, cybersecurity consultancy or large enterprise SOC.
You will typically have six or more years’ experience across security operations, detection engineering, threat hunting, incident response or related cyber defence disciplines, including experience at a senior, L3, lead or principal level.
You will also bring:
Experience within an MSSP, MDR provider, systems integrator, MSP, cybersecurity consultancy or multi-customer SOC will be highly regarded.
Strong practical experience with CrowdStrike Falcon, particularly Falcon Next-Gen SIEM, EDR and Falcon Fusion, is important. CrowdStrike certifications such as CCFA, CCFR or CCSE will be highly regarded; however, certification support may be considered for exceptional candidates with strong practical experience.
Experience with technologies such as Netskope, ExtraHop, Proofpoint, Microsoft Sentinel, Splunk, Palo Alto Networks, Entra ID, AWS, Azure, SOAR, Python, PowerShell or API integrations will also be valued.
An Australian Government NV1 security clearance, or eligibility to obtain one, is highly regarded.