Senior Security Operations Specialist protecting Relay's digital banking platform from security threats. Implementing advanced threat detection and incident response protocols for optimal business security.
Responsibilities
Monitor, triage, and investigate high-severity security alerts across cloud infrastructure, identity, SaaS, endpoints, and production systems
Validate threats versus noise and determine severity and impact
Execute containment actions and coordinate response across teams
Act as Incident Commander or deputy during security incidents
Build and maintain investigation runbooks and response playbooks
Work horizontally across Risk, AppSec, Engineering, Product, and business teams to ensure security findings lead to meaningful improvements in systems, practices, and outcomes.
Contribute to SOAR automation and alert enrichment
Produce high-quality incident documentation and post-incident remediation
Design and implement advanced threat detection logic using SIEM/XDR telemetry.
Perform threat hunting engagements to proactively detect stealthy adversaries.
Ensure security compliance and regulatory alignment: Partner with Compliance, Security, and Risk teams to implement and enforce security controls, standards, and policies across systems and services.
Requirements
5+ years in security operations, incident response, or related cybersecurity roles.
Strong cloud security and identity security experience (AWS preferred).
Comfortable making structured, high-impact decisions during active incidents.
Deep knowledge of common attack techniques, adversary TTPs (MITRE ATT&CK, etc.), and fraud/ATO patterns.
Strong written and verbal communication skills — able to explain complex technical issues to both technical and business audiences.
Ownership mindset with a bias toward action and continuous improvement.
Skilled in building detection logic and workflows for cloud-native environments and security tooling.
Experience with SOAR platforms and building/optimizing automated response playbooks.
Ability to communicate complex security issues clearly to both technical and business stakeholders.
Benefits
Compensation follows impact
Ongoing conversation with recruiters about compensation
Security operations manager defending Forward Financing’s fintech infrastructure and AI systems. Leading incident response, detection engineering, cybersecurity risk assessments, and AI security team development.
Security Training & Operations Team Lead at OLG overseeing security operations and developing training programs for personnel across various locations. Requires strong leadership in managing safety and compliance protocols.
Lead SOC Team at Starling Group ensuring information security and response for global operations. Collaborate with top SecOps professionals managing incident response and continuous improvement.
Head of Fusion & Cybersecurity Operations at TD responsible for strategic direction and operational oversight of protect operations. Safeguarding data and systems from cyber threats and managing teams in cyber crime prevention.
Intermediate Security Operations Centre Analyst at Long View managing security incidents and working with IT systems. Engaging with teams across Canada in a dynamic IT environment.
SOC Analyst responsible for monitoring security events and assessing risks while collaborating with global customers. Working with Fortinet's SOC - as - a - Service team to improve security posture.
IAM Operations Lead responsible for daily administration, governance, and security of identity infrastructure, ensuring correct access and minimizing risks.
CSOC Analyst responsible for managing security incidents and threat investigation at Just Eat Takeaway. Working with an internal team to detect, investigate, and respond to significant threats.
Security Operations Engineer at Supabase providing front - line coverage for security alerts and customer security tickets. Supporting internal IT operations and improving security processes in a remote setup.