Lead Cyber Security Operations Center

6 days ago


Sydney, Australia TikTok Full time

**Responsibilities**:
About the Team Our Cyber Security Operations Center (CSOC) team is the frontline of defense, responsible for protecting the organization from evolving cyber threats with precision, urgency, and purpose. We’re a mission-driven team that thrives in a high-tempo environment—where curiosity, accountability, and continuous improvement are at the core of everything we do. We operate a 24/7 global detection and response program, leveraging cutting-edge tools, advanced threat intelligence, and automation to detect, investigate, and respond to threats at scale. But more than the tech, it's our people that make the difference. We’re collaborative, detail-oriented, and deeply committed to safeguarding the business while enabling innovation. As part of our team, you’ll not only work on meaningful challenges—you’ll shape how Security Operations evolves. From driving detection engineering efforts to mentoring analysts and influencing process improvements, this is where tactical excellence meets strategic impact. In order to enhance collaboration and cross-functional partnerships, among other things, at this time, our organization follows a hybrid work schedule that requires employees to work in the office 3 days a week, or as directed by their manager/department. We regularly review our hybrid work model, and the specific requirements may change at any time. Tasks and Responsibilities: - As a Lead SOC Analyst, you’ll play a critical role at the intersection of frontline detection, incident response, and strategic defense engineering. This isn’t a passive monitoring role—you’ll be empowered to lead investigations, shape detection logic, and elevate the SOC’s analytical and operational rigor. - Lead high-fidelity investigations from triage to root cause, coordinating incident response efforts across threat surfaces including endpoint, cloud, identity, and SaaS. - Mentor and develop SOC analysts, raising the technical bar through case reviews, scenario-based training, and real-time guidance during critical events.

**Qualifications**:
Minimum Qualifications - 5+ years experience handling security-related incidents along with identifying and responding to advanced threats and threat actor TTPs - Excellent communication skills, ability to influence without authority while demonstrating leadership and collaboration skills, in particular in leading or contributing to global and multi-functional analyst SOC teams. - Demonstrated time management, problem-solving, effort prioritization and interpersonal skills as well as the ability to work well to solve problems and meet objectives - Excellent knowledge of industry-standard frameworks (e.g., MITRE ATT&CK) - Strong analytical/problem-solving skills and cross-functional expertise across multiple IT operational and security disciplines with the ability to communicate technical concepts to a broad range of technical and non-technical staff - Must possess a high degree of integrity, be trustworthy, and have the ability to lead and inspire change Preferred Qualifications - GCIA, GCIH, GREM or applicable experience in the Information Security field - One or more programming/scripting languages (e.g., Perl, Java, Python, etc.) / SQL - Experience writing and executing SQL queries - Experience in performing or overseeing static/dynamic malware analysis and performing digital forensics for incident response - High level of SIEM search and use case development/ detection experience - Strong Operating System Administration skills including conceptual knowledge of OS internals and experience with core service types along with strong experience in cloud hosted environments - including UNIX/Linux and Windows environments

Job Information

About USDS

TikTok is the leading destination for short-form mobile video. Our mission is to inspire creativity and bring joy. U.S. Data Security (“USDS”) is a subsidiary of TikTok in the U.S. This new, security-first division was created to bring heightened focus and governance to our data protection policies and content assurance protocols to keep U.S. users safe. Our focus is on providing oversight and protection of the TikTok platform and U.S. user data, so millions of Americans can continue turning to TikTok to learn something new, earn a living, express themselves creatively, or be entertained. The teams within USDS that deliver on this commitment daily span across Trust & Safety, Security & Privacy, Engineering, User & Product Ops, Corporate Functions and more.

Data Security Statement

Why Join Us

Inspiring creativity is at the core of TikTok's mission. Our innovative product is built to help people authentically express themselves, discover and connect - and our global, diverse teams make that possible. Together, we create value for our communities, inspire creativity and bring joy - a mission we work towards every day.

We strive to do great things with great people. We lead with curiosity, humility, and a desire to make impact



  • Sydney, New South Wales, Australia Skylight Cyber Security Full time

    About Skylight CyberAt Skylight Cyber, we're young, transparent, and culture-focused boutique cyber security firm specialising in providing high-end services to enterprises globally. We provide our customers with world class expertise to build and continuously evolve an effective security stack across people, process, and technology.We thrive and are...


  • Sydney, Australia TikTok Full time

    Responsibilities About TikTok U.S. Data Security TikTok is the leading destination for short-form mobile video. Our mission is to inspire creativity and bring joy. U.S. Data Security (“USDS”) is a subsidiary of TikTok in the U.S. This new, security-first division was created to bring heightened focus and governance to our data protection policies and...

  • Cyber Security Lead

    6 days ago


    Sydney, Australia Charterhouse Full time

    **Responsibilities**- The core functions to be performed by the Cyber Security Bundle Lead include, but are not limited, to the following:- Work closely with the Sourcing Lead and the Program Office Lead in defining, scoping and managing the delivery of assigned outcomes.- - Works with the Cyber and Protective Security Branch to identify and document ICT and...

  • Cyber Security Analyst

    15 hours ago


    Sydney, Australia Commonwealth Bank Full time

    **You are**a problem solver with a strong IT and or engineering background. - **We are**one of the best and most advanced Cyber Security teams in Australia. - **Together we**can contribute to protecting the Group, Customers and Community **Do work that matters**: The Technology division delivers the Group’s information technology and banking operations...


  • Sydney, Australia Milestone Technologies, Inc. Full time

    **Company Overview**: Milestone Technologies is a global IT managed services firm that partners with organizations to scale their technology, infrastructure and services to drive specific business outcomes such as digital transformation, innovation, and operational agility. Milestone is focused on building an employee-first, performance based culture and for...

  • Cyber Security Lead

    2 weeks ago


    Sydney, Australia Evolution Mining Full time

    About us Evolution Mining was founded in late 2011 and has operations across Australia and in Ontario, Canada. We currently operate five wholly owned operations across NSW, QLD, WA and Canada with a leadership team that continually focuses on embedding a values driven culture aligned with our company vision to create a premier, global gold company. Our...

  • Cyber Security Lead

    2 weeks ago


    Sydney, Australia Cleared ICT Full time

    Location: - Sydney - Sectors: - Cyber Security - Employment type: - Permanent - Salary: - Negotiable - Contact name: - Danny Fleming- Job reference: - BBBH592_1656481653 - Published: - about 6 hours ago - Startdate: - ASAP Cleared are looking to speak to experienced Cyber Security professionals who are searching for their next permanent opportunity...


  • Sydney, Australia Illuvium Full time

    **About Illuvium**: **Responsibilities**: - Design, build, hire, train and manage a team of analysts in the context of a 24/7-running Security Operations Center - Establish 24/7/365 continuous monitoring of security event feeds - Establish SLAs and performance metrics for the SOC - Be the central point of contact for suspected security incident on our...


  • Sydney, Australia ACM Healthcare Full time

    **Cyber Security Bundle Lead** - **Location**:Full time. On site 3 days per week in ACT Canberra. - **Initial Contract Duration**:12 Months - **Extension Term**:12 months (potential for two extensions) - **Security Clearance**:Must have Negative Vetting Level 1 **Primary Technologies**: - Windows Server - Windows Desktop - Applications Packager - Rapid 7 -...

  • Cyber Security Lead

    2 weeks ago


    Sydney, Australia Protecht Group Full time

    Protecht is redefining the way the world thinks about risk. Our cloud-based SaaS platform - Protecht.ERM - is what makes us really stand out. It’s one of the most comprehensive, flexible and dynamic risk management solutions available today. **Join us at Protecht!** We are seeking an exceptional Cyber Security professional with a commercial focus with...