Cyber Security Operations Lead

4 days ago


Melbourne, Australia Eightcap Pty Ltd Full time

Eightcap is a dynamic online trading provider focused on delivering great trading tools and pro trading insight to enable smarter trading. With a commitment to excellence and a passion for delivering trading technology direct to clients and via our network of strategic partners, we are looking for an experienced Integration Engineer to join our team to deliver growth across global markets.

The company is headquartered in Melbourne, Australia and has offices in the UK, Cyprus, Bulgaria, Guatemala, Philippines, and Bahamas.

**Responsibilities**

Security Operations Leadership
- Own and continuously improve Eightcap’s SIEM coverage, detection use cases, and log quality across core platforms.
- Act as the technical lead on incidents, overseeing containment, investigation, and resolution activities.
- Establish playbooks and workflows for common alert types and high-priority attack patterns.
- Provide training, guidance, and hands-on mentorship to junior Security Operations staff.
- Manage the relationship with Eightcap’s Managed SOC provider, ensuring efficient escalation processes and clear accountability for 24/7 monitoring coverage.
- Work with the CISO to prioritise security operations tasks against business risk and available resources.

Incident Detection and Response
- Coordinate and triage alerts generated by the SIEM or escalated by Eightcap’s managed SOC provider.
- Lead investigations into unauthorised access, data exfiltration, or policy violations.
- Forensically analyse audit logs and system-level telemetry.
- Document clear findings, timelines, and recommendations as part of post-incident reviews.

Platform Security Uplift
- Drive improvements in security visibility (event collection, monitoring, and alert coverage) across high-value systems.
- Identify configuration gaps or blind spots that hinder detection and work with system owners to address them.
- Ensure visibility over critical security events, including authentication, privileged activity, file sharing, and data access.

Team Capability Uplift
- Establish metrics and reporting for alert volume, mean time to detect/respond, and incident types.
- Manage and refine integrations with the SIEM platform and associated tooling.
- Build lightweight automation (where appropriate) to accelerate repetitive investigation or triage tasks.
- Maintain strong internal documentation and ensure knowledge transfer to junior staff.

Culture & Teamwork
- Approach security work with initiative, adaptability, and a shared sense of ownership for Eightcap’s broader objectives.
- Be comfortable stepping outside your immediate remit where appropriate to support the delivery of key security outcomes.
- Engage constructively with technical and non-technical teams, focusing on practical, embedded contributions that move the organisation forward.
- Contribute to a culture of clarity, accountability, and steady execution.

**About You**
- Tertiary qualifications in cyber security, information technology, or a related discipline. (desired)
- Hands-on experience with Microsoft Sentinel, Defender for Endpoint, and the broader Microsoft security stack.
- Strong capability in triaging, investigating, and responding to security incidents across diverse systems and cloud environments (AWS/Azure/GCP).
- Demonstrated hands-on expertise with SIEM platforms and endpoint detection and response (EDR) tooling.
- Ability to define and continuously improve alerting rules, detection logic, and escalation workflows.
- Strong grasp of modern attack techniques, TTPs (e.g. MITRE ATT&CK), and threat actor behaviours.
- Strong grasp of security fundamentals such as authentication, encryption, access control, and logging across modern enterprise environments.
- Experience collaborating with cross-functional stakeholders, including IT, engineering, and compliance, in high-pressure environments.
- Clear, concise communication skills, both written and verbal, including incident reporting and stakeholder updates.
- Experience working in high-velocity or regulated environments, including fintech, trading platforms, or financial services. (desired)
- Familiarity with Microsoft Sentinel, CrowdStrike, AWS GuardDuty, Security Hub, and other modern security tooling. (desired)
- Scripting or automation experience (e.g. Python, PowerShell) to reduce repetitive workload and improve SOC efficiency. (desired)
- Relevant certifications such as GCIA, GCIH, GCED, or equivalent. (desired)

**Why Eightcap?**
- Ongoing investment in your career development
- Wellness and lifestyle perks like monthly corporate massages
- Parental leave
- Staff referral bonus program
- Employee-purchased leave
- Perkbox reward and recognition
- Study assistance
- Annual flu vaccinations
- Complimentary fruit and snacks
- Multicultural environment
- A dynamic and collaborative team culture
- Great CBD location with easy access to public transport
- Regular social activities

Are you interested in this opportunity but don’t meet ev


  • Cyber Security Lead

    6 days ago


    Melbourne, Australia Victorian Government Full time

    **Overview**: **Work Type**:Ongoing - Full-time **Salary**: $124,888 - $136,747 **Grade**:VPS 5.2 **Occupation**:IT and telecommunications **Location**:Melbourne - CBD and Inner Metro suburbs **Reference**:VG/VGSO881 - Lead strategic initiatives to enhance VGSO's cyber security governance - Join a supportive team environment - Hybrid work - enjoy the...


  • Melbourne, Australia NTT Full time

    **Title: Cyber Security Operations Team lead.** **Location: Melbourne.** **Permanent role.** **Overview**: The NTT Cyber Security Managed Services Team is a dynamic and high-performing team that provides services to NTT Australia’s largest corporate clients. The MS Operations Team Lead is responsible for leading a team of Cyber Security engineers and...

  • Cyber Security Lead

    6 days ago


    Melbourne City Centre, Australia Department of Justice and Community Safety Full time

    Lead strategic initiatives to enhance VGSO's cyber security governance - Join a supportive team environment - Hybrid work - enjoy the flexibility of office and remote work - Ongoing | Full-time - VPS 5.2 $124,888 - $136,747 plus superannuation per annum **About the VGSO** The Victorian Government Solicitor's Office (VGSO) serves the rule of law exclusively...

  • Cyber Operations Lead

    2 weeks ago


    Melbourne, Australia Australian Bureau of Meteorology Full time

    Executive Level 1, Ongoing/Non-ongoing - $103,085 - $116,115 + 15.4% super - Melbourne The Cyber Operations Lead is an information security specialist who oversess and contributes to the implementation and administration of information security policies and procedures and ensures the effective operations and response to cyber security incidents and...

  • Cyber Security Lead

    6 days ago


    Melbourne, Australia Triple Zero Victoria Full time

    Location: Melbourne | Eastern Metropolitan Job type: Full Time - Fixed Term Organisation: Triple Zero Victoria **Salary**: $160,518 - $160,519 Occupation: IT and Telecommunications Reference: 1966 - Own and deliver cyber security projects within a significant technology transformation program to improve security maturity and manage cyber risks -...


  • Melbourne, Australia Quigly Cyber Full time

    Supportive team - Multi-tasker - Good communicator Quigly are a boutique consultancy with a great network of clients across many industries. Currently we are looking for a Project Support Co-Ordinator for our fantastic client to join the Canberra based team as part of the Information Security Office. This is a 12 month fixed term contract with possibility...


  • Melbourne, Australia Decipher Bureau Full time

    Melbourne CBD office / WFH flex - Salary circa $200K inc super plus bonus - Newly created role in growing co This enterprise needs a Cyber Security Operations Manager to help build, lead and manage a cyber security ops team as the company grows by acquisition. Reporting to the Head of Information Security, you will be responsible for managing the day to day...


  • Melbourne, Australia VLine Full time

    **Cyber Security Operations Manager** - Leadership position within the Cyber Security team - Permanent position reporting to the Head of Enterprise Cyber Security - Hybrid working environment with free Myki provided V/Line is experiencing significant growth. We’re delivering more services, more trains, cheaper fares, and major projects. With more than...

  • Cyber Security Lead

    2 weeks ago


    Melbourne Eastern Suburbs, Australia HAYS Full time

    Are you keen to be a part of Transformation program within Cyber space? If yes, look no further! **Your new company** HAYS TECHNOLOGY & City of Boroondara are proud to announce a joint campaign to find their next senior hire to come and be a part of the Boroondara team as the Cyber Security Lead. You will be leading the information security function within...


  • Melbourne, Victoria, Australia Deakin University Full time $120,000 - $150,000 per year

    Why work with us?At Deakin University, we offer more than just a job - we offer a lifestyle. Across our campuses in Geelong, Melbourne and regional Victoria, you'll find everything you need to thrive: on-site childcare, gyms, medical centres, cafes, accessible public transport and convenient parking. Enjoy flexible working arrangements that support your...