We're a venture-scaler powered by CommBank. That means we build, buy, and invest in start-ups that could benefit the bank's 15 million customers and beyond.
Because of what we do, we're really neither corporate, nor start-up – instead we're happily navigating the space between both worlds. We're close enough to benefit from the bank's strategy, scale, and stability, but separate enough that we have the autonomy to try new things.
What it's like to work here
We're a community of galvanisers, thinkers, and doers. We have a big, bold vision, which so far no-one has nailed (including us). That excites, rather than deters, us.
We never lose sight of the impact we can have on people's lives, and the role that each of us plays in shaping the bank of the future. We don't take ourselves too seriously and make time to connect to celebrate and grow our people.
At x15, we're guided by three values: Care, courage, and commitment. And what does that mean? We're aware, attuned, and always act to help our people and our customers. We're more than just job titles and we don't hide the human stuff. We lead with grit and grace and do what's right – even if it's hard. And, whatever happens, we always find a way.
Where would you fit?
We are looking for a Security Operations Engineer to support x15 and its portfolio of ventures, which includes financial technology brands such as TruYu, Kit, Credit Savvy, Home-In, and Doshii. In this role, you will work under the guidance of our security operations lead to build out our security operations capability based on Sentinel to support heterogeneous workloads across both Azure and AWS.
This will involve aggregating data sources, building intelligent detections tuned to each business, and performing a full range of blue team duties that include incident response and remediation. In this role, you will report to the Lead SecOps Engineer. You will contribute to the cyber security program for x15 and all its ventures and be responsible for key security deliverables across our portfolio as we grow and innovate.
In this role you will
1. Conduct security monitoring, event analysis, and response using all available tools used by x15 Security.
2. Investigate and remediate security incidents through the entire incident response lifecycle.
3. Integrate security tools and technologies with the Security Information and Event Management (SIEM) platform.
4. Build the capability to integrate log collection from different types of workloads such as IaaS, PaaS, and SaaS logs.
5. Ensure essential data sources for security investigation are logging and flowing through the SIEM platform.
6. Develop detection content for high-quality signals and alerting.
7. Develop SOAR capability to automatically enrich and contextualize security events to streamline investigations and security response.
8. Analyse vulnerabilities, threats, and risks and provide recommendations to the x15 core team as well as to the ventures to improve the security posture.
9. Contribute to improving effective SOC processes and procedures.
10. Execute threat hunts using threat intelligence to discover malicious activity, risks, and anomalies.
11. Ensure delivery of detection and response services and guidance for x15 ventures in identifying control objectives and any potential control gaps.
Experience
Tertiary qualifications in a relevant field would be highly regarded. Experience with managing SIEM / SOAR platforms such as Microsoft Sentinel, Splunk, or other similar platforms. 2-3 years' experience in a security operations or security engineering role. Experience with endpoint security, vulnerability management, and data loss prevention tools. Ability to solve complex problems and communicate / document solutions. Excellent communication and interpersonal skills to collaborate and influence a diverse range of stakeholders.
Desired skills:
1. Experience with automation and scripting languages such as Python, PowerShell, or Bash.
2. Experience / Knowledge of Azure and AWS cloud technologies.
3. System engineering or network engineering skills.
4. Proactive approach and passion for information security.
Research shows that people from underrepresented backgrounds sometimes hesitate to apply for roles if they don't meet every requirement. If this is you, don't worry - we still encourage you to apply. We are committed to creating a workplace that supports long-lasting and meaningful careers for everyone, and your unique skills and perspective might be just what we're looking for!
Why Join Us?
Enjoy a flexible and dynamic start-up environment. We nurture a safe space for our people to show up as they are! Competitive salary and bonus structure. Opportunities for professional growth and development. Access to the best-in-class benefits that CommBank offers.
#J-18808-Ljbffr