Talent.com
Starling Bank
Information Security Operations Lead (Toronto, Canada)Starling Bank • Toronto, Ontario, Canada
No longer accepting applications
Information Security Operations Lead (Toronto, Canada)

Information Security Operations Lead (Toronto, Canada)

Starling Bank • Toronto, Ontario, Canada
30+ days ago
Job type
  • Full-time
Job description

About the Starling Group

We are Starling. We started by building a new kind of bank because we knew technology had the power to transform how people save, spend, and manage their money. Today, our ambition and our footprint have grown.

Our ecosystem encompasses our pioneering, fully licensed UK bank (Starling), our global Software-as-a-Service technology platform (Engine by Starling), alongside a growing portfolio of specialist financial and software businesses.

While our roots are in the UK, our operations are expanding globally. Though you may be based in one of our international offices (such as Sydney or Toronto), this role is critical to the entire Starling Group. The work you do will support, empower, and protect our businesses worldwide.

Our technologists are at the very heart of Starling and enjoy working in a fast-paced environment that is all about building things, creating new stuff, and leveraging disruptive technology that keeps us on the cutting edge of fintech. We operate a flat structure to enable you to make decisions regardless of your location or primary responsibilities; innovation and collaboration will be at the core of everything you do. Help is never far away in our open, borderless culture - you will find support in your team and from across the global business. We are in this together!

The way to thrive and shine within Starling is to be a self-driven individual and take full ownership of everything around you: from building, discovering, and solving complex problems, to sharing knowledge with your international colleagues to ensure all processes are efficient and productive. Our purpose across all our businesses is underpinned by five Starling values: Listen, Keep It Simple, Do The Right Thing, Own It, and Aim For Greatness.

Hybrid Working

We have a Hybrid approach to working here at Starling - our preference is that you're located within a commutable distance of place of work in Sydney, so that we're able to interact and collaborate in person.

About the Role

To support our growth, we are looking for an experienced SOC Team Lead with Incident Response experience to join our growing cyber security function. This role will be supporting our 24/7 operational capabilities by providing coverage in working hours from Sydney and Toronto alongside our UK colleagues.

As a member of the Starling Group’s SOC team, you will be working with the industry's brightest SecOps professionals to protect Starling Group’s customers, assets, and systems using the latest technologies.

  • Lead a team of subject matter experts and analysts to ensure Information Security is managed and continuously improved in line with Bank policy and procedure.
  • Supporting the development and progression of the Information Security Analyst team from both a technical and professional perspective.
  • Incident Triage, Response, and Investigations based on Alerts received from multiple sources which include:
    - Cloud Infrastructure/Security.
    - Endpoint Detection and Response.
    - Perimeter detection tooling.
  • Conduct Quality Assurance for Triage case handling, mitigation actions and shift handover, collating lessons learned and implementing improvements where required.
  • Interpret logs from a variety of sources ( cloud, endpoint, network) to identify root cause and determine next steps for containment, eradication and recovery as part of incident response activities.
  • Work together with other teams in the organisation to analyse, contain, eradicate and recover from cyber security incidents
  • Continuous development and maintaining of incident handling, response and readiness processes.
  • Support the wider SecOps team with detection engineering - creating and optimising analytic triggers to enhance alert efficacy - and threat hunting based on threat intelligence.
  • Documentation of incidents and investigations, including analysis findings, containment steps and root cause.
  • Plan and participate in Tabletop Exercises.
  • Present investigation findings to technical and non-technical audiences.

Requirements

We’re open-minded when it comes to hiring and we care more about aptitude and attitude than specific experience or qualifications. Below is an overview:

  • 5+ years experience in an in-house SOC role and team, including cyber incident response and digital forensics function.
  • Experience in a similar role leading, developing and motivating a team of subject matter experts and other managers in Information and Cyber Security.
  • Understanding of AWS Security Solutions (or other Public Cloud Solutions)
  • Analysis and Incident Response experience with Cloud systems (GCP, AWS)
  • Experience working and supporting analytics/SIEM platforms.
  • Experience supporting and conducting Incident Response engagements.
  • Experience in endpoint based investigations.
  • Experience in cloud based investigations.
  • Experience with Incident Command and conducting Tabletop Exercises.
  • Experience in acting as both Commander and SME during incidents and investigations.
  • Be a Self Starter with the ability to lead, inspire and drive change through an organisation.
  • Excellent communication skills (both verbal and written), ability to communicate technical concepts to both technical and non-technical audiences.
  • Demonstrated teamwork and collaboration skills as part of a multi-functional team
  • Time management, problem-solving and interpersonal skills.
  • Eagerness to learn and apply knowledge to new security challenges.
  • Willingness to share knowledge with the team and mentor colleagues.
  • A high level understanding of mobile, network and operating system security controls.

Preferred

  • Experience in forensics: cloud (GCP, AWS); endpoint/server (Windows, MacOS, Linux); and/or network.
  • Any experience of programming in Python, Go and/or Java.
  • A Cyber/Information Security related degree and/or relevant cyber security qualification(s) would be desired but not required
  • Understanding of malware analysis techniques

Interview Process

Interviewing is a two way process and we want you to have the time and opportunity to get to know us, as much as we are getting to know you! Our interviews are conversational and we want to get the best from you, so come with questions and be curious. In general you can expect the below, following a chat with one of our Talent Team:

  • First Interview: 45 minutes
  • Technical Interview: 90 minutes
  • Final Interview: 30 minutes

Please Note

We require our successful candidates to pass background checks (including but not limited to employment references, fraud checks, financial probity, social media, and criminal history).

Starling welcomes and encourages applications from people with disabilities. Accommodations are available on request for candidates taking part in all aspects of the selection process.

Benefits

  • A discretionary benefits stipend, payable on a monthly basis, is provided
  • 20 days annual leave plus public holidays

You may be put off applying for a role because you don't tick every box. Forget that! While we can’t accommodate every flexible working request, we're always open to discussion. So, if you're excited about working with us, but aren’t sure if you're 100% there yet, get in touch anyway. We’re on a mission to radically reshape banking – and that starts with our brilliant team. Whatever came before, we’re proud to bring together people of all backgrounds and experiences who love working together to solve problems.

Starling is an equal opportunity employer, and we’re proud of our ongoing efforts to foster diversity & inclusion in the workplace. Individuals seeking employment at Starling are considered without regard to race, religion, national origin, age, sex, gender, gender identity, gender expression, sexual orientation, marital status, medical condition, ancestry, physical or mental disability, military or veteran status, or any other characteristic protected by applicable law.

When you provide us with this information, you are doing so at your own consent, with full knowledge that we will process this personal data in accordance with our Privacy Notice. By submitting your application, you agree that the Starling Group will collect your personal data for recruiting and related purposes. Our Privacy Notice explains what personal information we will process, where we will process your personal information, its purposes for processing your personal information, and the rights you can exercise over our use of your personal information.

Create a job alert for this search

Information Security Operations Lead (Toronto, Canada) • Toronto, Ontario, Canada

Similar jobs

Senior IAM & Security Operations Lead

Rubicon PathToronto, ON, CA
Full-time

A leading tech company in Toronto is seeking a Senior Security Specialist to develop and support OPS Secure environments.The role requires over 10 years of experience in identity and access managem... Show more

 • Promoted

Information Security Analyst in Downtown Toronto

DelpathToronto, ON, CA
Full-time

Become a key player in cybersecurity as an Information Security Analyst, working hybrid in downtown Toronto.Focus on data loss prevention and optimize security measures across the organization.This... Show more

 • Promoted

Information Security Consultant

CONFLUX SYSTEMSMarkham, York Region, CA
Full-time

This request is to on-board resource for Application security team focusing on threat modelling, security architecture.Work with application teams and complete threat model.Develop and deliver secu... Show more

 • Promoted

Crypto Platform Engineer: Security & Operations Lead

ScotiabankToronto, ON, CA
Full-time

A leading bank in the Americas is seeking a Crypto Platform Engineer to enhance security operations and manage the deployment of cryptographic products.The ideal candidate should have over 5 years ... Show more

 • Promoted

Information Security Governance Analyst

Ontario Medical AssociationToronto, ON, CA
Full-time

Advance the cybersecurity landscape as an Information Security Governance Analyst.Focus on compliance oversight, risk management strategies, and security improvements in a flexible hybrid environme... Show more

 • Promoted

Senior Security Operations Specialist - C$140,000 - C$154,000 A Year

RelayEast York, Canada
Full-time

Senior Security Operations Specialist to join a digital banking platform.Responsibilities include monitoring, investigating, and containing security threats in real-time, building detection logic, ... Show more

 • Promoted

Senior Specialist in Cloud Security Toronto

City of TorontoToronto, ON, CA
Full-time

Accelerate your career as a Senior Specialist in Cloud Security with Aliant Resources, located in vibrant downtown Toronto.This senior-level role emphasizes technical leadership in cyber architectu... Show more

 • Promoted

Senior Iam & Security Operations Lead

Rubicon PathToronto, Canada
Full-time

A leading tech company in Toronto is seeking a Senior Security Specialist to develop and support OPS Secure environments.The role requires over 10 years of experience in identity and access managem... Show more

 • Promoted

Incident Management, Lead

Interac Corp.Toronto, ON, CA
Full-time

Be among the first 25 applicants.Get AI-powered advice on this job and more exclusive features.At Interac, we design and deliver products and solutions that give Canadians control over their money ... Show more

 • Promoted

Security Operations Analyst - Copperleaf

IFSToronto, ON, CA
Full-time

Security Operations Analyst – Copperleaf.You’ll build and refine detection logic, respond to incidents, and coordinate vulnerability remediation.The role supports compliance with ISO 27001, SOC 2 a... Show more

 • Promoted

Manager, Security Incident Response

TechAlliance of Southwestern Ontario, London Economic Development CorporationToronto, ON, CA
Full-time

Security Incident Response Manager.This role is critical to protecting our business, data, and clients by ensuring rapid, effective, and efficient responses to cybersecurity incidents and threats.T... Show more

 • Promoted

Senior Consultant in Information Security

Control Gap Inc.Toronto, ON, CA
Full-time

Make an impact as a Senior Consultant at CyberGuard Advantage, focusing on cybersecurity and compliance.Deliver insights into risk management and strengthen clients’ security postures.As a Senior I... Show more

 • Promoted

Information Security Analyst

BDO CanadaToronto, ON, CA
Full-time

BDO is a firm built on a foundation of positive relationships with our people and clients.Reporting to the Manager, Information Security, the Information Security Analyst supports security operatio... Show more

 • Promoted

Information Security Consultant

ExperisToronto, ON, CA
Full-time

This range is provided by Experis.Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.Direct message the job poster from Experis.IT Security Consult... Show more

 • Promoted

Senior Information Security Specialist, AI (B3617)

TDToronto
Full-time

Senior Information Security Specialist, AI (B3617).TD is committed to providing fair and equitable compensation opportunities to all colleagues.Growth opportunities and skill development are defini... Show more

 • Promoted

Senior Manager, Information Security - C$95,000 - C$142,400 A Year

MeridianToronto, Canada
Full-time

The Senior Manager will lead the cybersecurity team, implement the Cyber Security Strategy, and manage incident response. Show more

 • Promoted

Information Security Specialist

TD BankToronto
Full-time

Lieu de travail : Toronto, Ontario, Canada.Secteur d’activité : Solutions technologiques.Détails de la rémunération : $96,900 - $136,800 CAD.Provide consultation and advice to partners on a broad r... Show more

 • Promoted

Director, Cybersecurity & Information Security - C$160,000 - C$170,000 A Year

FinanceitNorth York, Canada
Full-time

Seeking a Director of Cybersecurity & Information Security to manage enterprise-wide security risk, assess threats, and ensure compliance in a fast-paced financial services environment. Show more

 • Promoted

Canada Regional IT Leader: Strategy, Ops & Security

IPH LimitedToronto
Full-time

A leading technology solutions provider is seeking a Regional Head of IT to oversee technology operations across Canadian firms.The ideal candidate will manage regional IT teams, maintain high serv... Show more

 • Promoted

Information Security Manager

Insight GlobalToronto, ON, CA
Full-time

Demonstrated history of technical leadership and strategic thinking in security roles.Extensive experience leading and managing complex security investigations and threat hunting engagements.Bachel... Show more