A global hedge fund is hiring a hands-on Security Operations Lead. You will own the Security Operations (SOC) function, manage an external 24/7 managed SOC, and remain technically involved across Sentinel, Defender XDR, detection engineering and incident response.
Key Responsibilities
- Own monitoring and detection, threat intelligence, vulnerability management, security awareness and posture reporting.
- Manage the external SOC, including SLAs, alert quality, escalations and the detection backlog.
- Set detection strategy using MITRE ATT&CK and remain hands-on with Sentinel, Defender XDR, KQL and advanced hunting.
- Support the Incident Response Manager across investigation, evidence collection, containment and recovery.
- Govern vulnerability and patch-remediation service levels across the infrastructure estate.
- Manage and develop the Security Operations Analyst and participate in the on-call rota.
- Deliver executive security metrics and maintain audit-ready evidence aligned with MAS TRM, MAS Notice 658 and NIST CSF 2.0.
- Support tabletop exercises, playbook development and post-incident improvements.
Requirements
- At least eight years of experience across security operations, SOC or cyber defence.
- At least two years leading a team or function within a regulated environment.
- Hands-on experience supporting major cybersecurity incidents.
- Experience owning an outsourced SOC, MSSP or MDR provider.
- Operational experience with Microsoft Sentinel, Defender XDR, KQL and detection engineering.
- Practical experience with MITRE ATT&CK and vulnerability-remediation governance.
- Azure and identity-security experience, including Entra ID and Defender for Cloud.
- Financial services, asset management or hedge-fund experience is preferred.
Candidates with less experience may also be considered for the Security Operations Analyst position.