Senior Security Operations Specialist protecting Relay's digital banking platform from security threats. Implementing advanced threat detection and incident response protocols for optimal business security.
Responsibilities
Monitor, triage, and investigate high-severity security alerts across cloud infrastructure, identity, SaaS, endpoints, and production systems
Validate threats versus noise and determine severity and impact
Execute containment actions and coordinate response across teams
Act as Incident Commander or deputy during security incidents
Build and maintain investigation runbooks and response playbooks
Work horizontally across Risk, AppSec, Engineering, Product, and business teams to ensure security findings lead to meaningful improvements in systems, practices, and outcomes.
Contribute to SOAR automation and alert enrichment
Produce high-quality incident documentation and post-incident remediation
Design and implement advanced threat detection logic using SIEM/XDR telemetry.
Perform threat hunting engagements to proactively detect stealthy adversaries.
Ensure security compliance and regulatory alignment: Partner with Compliance, Security, and Risk teams to implement and enforce security controls, standards, and policies across systems and services.
Requirements
5+ years in security operations, incident response, or related cybersecurity roles.
Strong cloud security and identity security experience (AWS preferred).
Comfortable making structured, high-impact decisions during active incidents.
Deep knowledge of common attack techniques, adversary TTPs (MITRE ATT&CK, etc.), and fraud/ATO patterns.
Strong written and verbal communication skills — able to explain complex technical issues to both technical and business audiences.
Ownership mindset with a bias toward action and continuous improvement.
Skilled in building detection logic and workflows for cloud-native environments and security tooling.
Experience with SOAR platforms and building/optimizing automated response playbooks.
Ability to communicate complex security issues clearly to both technical and business stakeholders.
Benefits
Compensation follows impact
Ongoing conversation with recruiters about compensation
SOC analyst monitoring and responding to cyber threats for Wepoint’s digital transformation clients. Investigating escalated alerts and improving 24×7 security operations.
SOC cybersecurity analyst monitoring and responding to cyber threats for Wepoint’s digital transformation clients. Improving 24×7 detection, investigation, and incident response capabilities.
Senior Security Operations Engineer monitoring incidents and leading forensics for Samsara’s IoT - connected operations platform. Building security automation and supporting insider - threat investigations.
Senior SOC analyst leading threat detection, investigations, and incident response for Financeit, a Canadian point - of - sale financing provider. Building its new SOC’s automation, AI - threat coverage, and operational standards.
Security Operations Engineer securing Tailscale’s networking platform through device, identity, access, and vulnerability management. Supporting distributed teams and automating security operations across core business systems.