CrawlJobs Logo

IT Investigations Operating Model Lead

xcede.com Logo

Xcede

Location Icon

Location:
United Kingdom , London

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

We are supporting a large, globally regulated financial institution in establishing a formalised IT Investigations capability aligned to its enterprise Legal Investigations Framework. This engagement will design and stand up a Target Operating Model (TOM) for IT Investigations across EMEA, with integration into US-based SOC operations. The objective is to enable consistent, defensible, and timely IT investigation support across regions and investigation types, including insider risk matters. This is a strategic build role focused on operating model design, governance, and cross-functional integration — not day-to-day investigative casework.

Job Responsibility:

  • Target Operating Model Design
  • Governance & RACI
  • Triage & Case Management
  • Evidence & Defensibility
  • Insider Risk Integration
  • Tooling & Roadmap
  • Metrics & Continuous Improvement

Requirements:

  • 8 years in Digital Forensics, IT Investigations, or Forensic Technology
  • Experience designing or implementing an Investigations or Forensics Operating Model
  • Strong understanding of evidential handling and defensibility standards
  • Experience within financial services or other highly regulated environments
  • Proven ability to operate across Legal, HR, Compliance, Security, and Technology functions
  • Experience integrating Insider Risk or DLP-led investigations

Nice to have:

  • Big 4 forensic consulting background
  • Experience building investigations governance within global organisations
  • Familiarity with eDiscovery platforms and enterprise case management tooling
  • Experience aligning SOC and investigations functions

Additional Information:

Job Posted:
February 21, 2026

Expiration:
April 04, 2026

Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for IT Investigations Operating Model Lead

Sales Operation Analyst

Cogoport is currently looking for a Sales Operation Analyst to analyze sales dat...
Location
Location
India , Gurugram
Salary
Salary:
Not provided
https://cogoport.com/ Logo
Cogoport
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor/Master's degree in CSE, Mathematics, or Analytics
  • 1-3 years of experience in a similar role in logistics or any industry
  • experience using SQL and Python
  • experience in funnel analytics, customer segmentation, user activity modelling, churn analytics and A/B testing
  • excellent data analysis skills (investigation, modeling, mapping & gap analysis)
  • experience in handling large datasets - expert data modeling skills
Job Responsibility
Job Responsibility
  • allocation of leads and scoring of the leads to various sales teams
  • ensuring and monitoring the sales productivity
  • planning and forecasting sales revenue for all the sales channels and monitoring the adherence to forecasted revenue
  • analyze existing customer base and segment customers based on behavior, activity, business flows, and market trends
  • identify and assess potential risks related to sales processes and practices
  • conduct product training content for sales teams
  • suggest and recommend changes needed in the product to optimize the account allocation and monitoring process
What we offer
What we offer
  • equal opportunity employer
  • supportive and respectful work environment
  • Fulltime
Read More
Arrow Right

Lead Fraud Operations Analyst

As the Lead Fraud Operations Analyst at Apollo, you’ll be the hands-on technical...
Location
Location
United States
Salary
Salary:
92000.00 - 125000.00 USD / Year
apollo.io Logo
Apollo.io
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience in fraud operations, trust & safety, or security operations roles
  • Strong SQL proficiency (joins, CTEs, aggregates)
  • familiarity with Python and data visualization tools
  • Experience reviewing or debugging application code (Ruby preferred), using tools like Cursor, GitHub Copilot, or IDEs for root-cause exploration
  • Familiarity with payment systems (chargebacks, disputes, ACH) and the associated fraud lifecycle
  • Understanding of fraud detection models and risk-scoring logic
  • experience configuring or auditing rule-based systems
  • Demonstrated ability to lead investigations independently, prioritize in ambiguity, and deliver results across multiple teams
  • Exceptional written and verbal communication skills
  • capable of translating technical detail into operational action
Job Responsibility
Job Responsibility
  • Lead Fraud Operations and Investigations
  • Act as the primary escalation point for complex fraud and abuse investigations across Apollo’s ecosystem
  • Perform root-cause analysis of new exploit behaviors, account takeovers, transactions, and scaled abuse events using data queries (SQL, Python), system logs and testing
  • Conduct forensic investigations into fraud model classifications, rule bypasses, and external abuse tool behaviors
  • Build and maintain investigation frameworks that allow rapid detection and classification of fraud patterns
  • Develop and Optimize Fraud Detection Systems
  • Configure, tune, and evaluate rules-based and model-driven fraud detection systems (e.g., Stripe Radar, Signified, or internal models)
  • Collaborate with Engineering to enhance fraud detection logic and event pipelines
  • identify and close systemic gaps through code- or model-level feedback loops
  • Use Cursor or equivalent AI-assisted dev tools to review Ruby-based backend logic, reverse-engineer fraud actor patterns, and suggest mitigations
What we offer
What we offer
  • equity
  • company bonus or sales commissions/bonuses
  • 401(k) plan
  • at least 10 paid holidays per year, flex PTO, and parental leave
  • employee assistance program and wellbeing benefits
  • global travel coverage
  • life/AD&D/STD/LTD insurance
  • FSA/HSA and medical, dental, and vision benefits
  • Fulltime
Read More
Arrow Right
New

Security Operations Center Manager

We are seeking an experienced Security Operations Center Manager to lead day-to-...
Location
Location
United States , Sunnyvale
Salary
Salary:
185000.00 - 225000.00 USD / Year
cerebras.net Logo
Cerebras Systems
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience in security operations, incident response, detection and response, or security engineering
  • Experience leading SOC or shift operations as a manager, team lead, or equivalent
  • Demonstrated experience operating in or building a 24/7 security operations environment
  • Hands-on experience investigating security events across endpoint, identity, cloud, and network telemetry
  • Experience leading incident response efforts during high-severity events
  • Working proficiency in at least one programming or scripting language
  • Strong operational judgment and the ability to make sound escalation decisions under pressure
  • Experience defining and using operational metrics to manage performance and drive improvements
  • Proven ability to hire, develop, and manage technical teams
  • Strong written communication and documentation skills
Job Responsibility
Job Responsibility
  • Design, build, and mature a sustainable 24/7 security operations model with resilient coverage across time zones and after-hours periods
  • Ensure sustainable workload balance and consistently high-quality investigations
  • Own and enforce standards for investigation quality, incident management, documentation, and escalation
  • Serve as the technical escalation point and lead response during high-severity incidents
  • Identify and lead initiatives that materially improve SOC performance, tooling, and operational maturity
  • Hire, onboard, coach, and manage performance of SOC analysts
  • Define and track SOC performance metrics and use them to drive operational improvements
  • Coordinate cross-functionally during significant incidents and drive post-incident follow-through
What we offer
What we offer
  • Bonus
  • Equity
  • Job stability with startup vitality
  • Simple, non-corporate work culture that respects individual beliefs
  • Fulltime
Read More
Arrow Right
New

Global Payroll Operations Lead

At OpenAI, payroll is not a back-office function — it is mission-critical infras...
Location
Location
United States , San Francisco
Salary
Salary:
221000.00 - 245000.00 USD / Year
openai.com Logo
OpenAI
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years of experience leading global payroll operations, preferably in a fast-paced and high-growth environment
  • Strong working knowledge of global payroll regulations, tax requirements, and standard payroll practices with an expert level understanding of US federal, state, and local payroll compliance
  • Hands-on experience with Workday or other large HCM/payroll systems
  • The ability to autonomously manage multiple strategic priorities simultaneously, taking full ownership of outcomes, and delivering high-quality work under tight deadlines
  • Strong analytical and problem-solving skills with excellent attention to detail
  • Clear and concise communication skills, with the ability to partner effectively with internal and external stakeholders
  • Bachelor's degree in Finance, Accounting, HR, or a related field, or equivalent practical experience
Job Responsibility
Job Responsibility
  • Own the end-to-end execution of global payroll processing and deliver accurate, compliant, and on-time payroll results across multiple regions, entities, and pay frequencies
  • Build, lead, and continuously develop a world-class payroll operations organization, including both internal teams and outsourced partners
  • Act as the operational authority for payroll, accountable for the integrity of all employee pay data across multiple systems
  • Serve as the payroll lead for mergers and acquisitions, including transition payrolls, compliance, and system administration
  • Proactively identify, investigate, and resolve payroll issues
  • Design and build OpenAI’s payroll support operating model, including case workflows, intake channels, escalation paths, service-level agreements, and quality standards
  • Build strategic partnerships with HR, Finance, Accounting, and other cross-functional teams to ensure global data integrity and accurate downstream reporting
  • Build and maintain a robust control environment, including process documentation, approvals, reconciliations, and audit-ready evidence
  • Continuously re-architect payroll workflows using automation and AI-powered tools to drive improvements in speed, accuracy, efficiency, and scalability
What we offer
What we offer
  • Offers Equity
  • Medical, dental, and vision insurance for you and your family, with employer contributions to Health Savings Accounts
  • Pre-tax accounts for Health FSA, Dependent Care FSA, and commuter expenses (parking and transit)
  • 401(k) retirement plan with employer match
  • Paid parental leave (up to 24 weeks for birth parents and 20 weeks for non-birthing parents), plus paid medical and caregiver leave (up to 8 weeks)
  • Paid time off: flexible PTO for exempt employees and up to 15 days annually for non-exempt employees
  • 13+ paid company holidays, and multiple paid coordinated company office closures throughout the year for focus and recharge, plus paid sick or safe time
  • Mental health and wellness support
  • Employer-paid basic life and disability coverage
  • Annual learning and development stipend to fuel your professional growth
  • Fulltime
Read More
Arrow Right
New

Director/Senior Director, Manufacturing

Beam is looking for a highly energetic Director / Senior Director, Manufacturing...
Location
Location
United States , Durham
Salary
Salary:
210000.00 - 320000.00 USD / Year
beamtx.com Logo
Beam Therapeutics
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • BS, MS a plus, in Life Sciences or Engineering with minimum of 15 years of relevant experience
  • Proven experience as a direct manager of people and as a leader in clinical and commercial cGMP manufacturing operations
  • experience leading cell/gene therapy manufacturing operations preferred
  • Demonstrated deep technical knowledge of facility design considerations, process strategies, technology transfer, and manufacturing operations in a biotech/pharmaceutical environment
  • Strong background in drug development and regulatory requirements
  • Outstanding written and verbal written communication skills, with the ability to convey strategies and results to a diverse audience
  • Demonstrated business acumen, including long range planning and budget management
  • Dynamic interpersonal skills and the ability to manage through influence
  • Ability to juggle multiple projects and priorities and adapt quickly to changing circumstances
  • High degree of customer focus (internal/external) and demonstrated collaboration in a team environment
Job Responsibility
Job Responsibility
  • Cultivate Beam’s culture and our values-driven organization focused on people
  • Define and implement the mission, vision, and strategy for Beam internal cGMP Manufacturing, supporting both clinical and commercial operations
  • Ensure safety, compliance, efficiency, and sustainability throughout cGMP operations
  • Lead and coordinate resources to ensure quality standards are met and products are delivered on time and within budget
  • Champion development of a learning culture that embraces innovation and continuous improvement
  • Prepare and maintain departmental budget and workforce model
  • Support establishment of long range and business continuity plans
  • Develop and implement metrics/KPIs to monitor operational health, inform strategic decisions, and present materials at management reviews
  • Build collaborative and empowered teams that put patients first
  • Recruit, retain, and develop high-performing and diverse teams
  • Fulltime
Read More
Arrow Right
New

Reliability Engineer

Make an Immediate Impact on High‑Tech Manufacturing at ResMed! Are you a problem...
Location
Location
Australia , Sydney
Salary
Salary:
Not provided
resmed.com Logo
ResMed
Expiration Date
March 16, 2026
Flip Icon
Requirements
Requirements
  • Lead Continuous Improvement & Insights
  • Build Best‑Practice Condition Monitoring
  • Own the KPIs That Matter
  • Optimise Preventive Maintenance & Documentation
  • Support Asset Lifecycle & Obsolescence Planning
  • Improve CMMS & Data Integrity
Job Responsibility
Job Responsibility
  • Act as the primary investigator for unplanned events leading structured Root Cause Investigations and driving corrective actions to completion
  • Translate investigation outcomes into Preventive Maintenance Optimisation (PMO), work practice improvements, and spares recommendations
  • Establish and sustain a reliability feedback loop where improvements are validated through measurable KPI uplift
  • Design, deploy, and mature condition based maintenance applications for critical Bella Vista assets where detectable P F failure modes exist
  • Select and apply condition monitoring technologies aligned to failure modes and business value (e.g. vibration, oil analysis, thermography, ultrasound, electrical/motor analysis)
  • Define monitoring standards, alarm thresholds, escalation triggers, and investigation workflows appropriate to a site based operating model
  • Own and report weekly and monthly Maintenance & Reliability KPIs for the Bella Vista site, translating data into actionable insights for site leadership
  • Track and trend key reliability, maintenance health, cost, and compliance indicators to support decision making and prioritisation
  • Optimise Preventive Maintenance plans in collaboration with technicians and engineering, moving from time based to condition and risk informed strategies where appropriate
  • Maintain and improve Plant Manuals, PM task quality, and execution standards for Bella Vista assets
  • Fulltime
Read More
Arrow Right

Security Operations Manager

As the Security Operations Manager, you will lead Cyera’s security operations fu...
Location
Location
United States , St. Louis
Salary
Salary:
Not provided
cyera.io Logo
Cyera
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 6–8 years of progressive experience in security operations, incident response, or threat management roles
  • 2+ years of experience managing or leading a SOC or security operations function
  • Deep technical understanding of modern security tools and technologies (SIEM, EDR, SOAR, IDS/IPS, CSPM, vulnerability scanners)
  • Strong knowledge of cloud security (AWS, Azure, GCP) and modern DevSecOps practices
  • Proven ability to lead cross-functional incident response efforts and drive resolution under pressure
  • Excellent communication, leadership, and stakeholder management skills
  • Solid understanding of compliance frameworks (SOC 2, ISO 27001, NIST, etc.)
Job Responsibility
Job Responsibility
  • Own the Security Operations function, including 24/7 monitoring, detection, triage, and incident response
  • Develop and maintain Cyera’s Security Operations Center (SOC) processes, playbooks, and escalation paths
  • Lead investigations of security alerts and incidents, ensuring timely response, containment, and remediation
  • Manage and continuously improve security tooling (SIEM, EDR, SOAR, vulnerability management, etc.)
  • Build and mentor a high-performing team of security analysts and engineers
  • Partner with Engineering, IT, and Product to embed security into all stages of the development lifecycle
  • Conduct regular threat modeling, risk assessments, and post-incident reviews to identify and mitigate systemic weaknesses
  • Oversee vulnerability management and coordinate patching or mitigations across infrastructure and SaaS environments
  • Collaborate with Compliance to support audit readiness (SOC 2, ISO 27001, GDPR, etc.) and maintain evidence of operational controls
  • Develop and report security KPIs and metrics to leadership and key stakeholders
What we offer
What we offer
  • Ability to work remotely, with office setup reimbursement
  • Competitive salary
  • Unlimited PTO
  • Paid holidays and sick time
  • Health, vision, and dental insurance
  • Life, short and long-term disability insurance
  • Fulltime
Read More
Arrow Right

Gaming Principal, Cloud Threat Detection & Incident Response Engineer

We are seeking a Gaming Principal, Cloud Threat Detection & Incident Response En...
Location
Location
United States , Multiple Locations
Salary
Salary:
139900.00 - 274800.00 USD / Year
https://www.microsoft.com/ Logo
Microsoft Corporation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Doctorate in Statistics, Mathematics, Computer Science, or related field AND 3+ years experience in software development lifecycle, large-scale computing, threat modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response
  • OR Master's Degree in Statistics, Mathematics, Computer Science, or related field AND 4+ years experience in software development lifecycle, large-scale computing, threat modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response
  • OR Bachelor's Degree in Statistics, Mathematics, Computer Science, or related field AND 6+ years experience in software development lifecycle, large-scale computing, threat modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response
  • OR equivalent experience
Job Responsibility
Job Responsibility
  • Architect and drive Gaming’s cloud-first detection and response vision by integrating Azure, AWS, and GCP (Google Cloud Platform) native security services and telemetry sources into TDIR (Threat Detection, Investigation, and Response) workflows
  • Lead adoption and optimization of Microsoft Defender for Cloud, Sentinel, Entra ID security, Defender for Cloud Apps, and other cloud-native security controls
  • Establish standards and reference architectures for cloud telemetry ingestion, normalization, enrichment, and threat analytics across diverse studio environments
  • Build and maintain high-fidelity, cloud-native detections targeting threat actors across identity, SaaS, PaaS, IaaS, and Kubernetes environments
  • Develop behavioral detections leveraging KQL (Kusto Query Language), automation, analytics, and ML-assisted methodologies
  • Partner with threat intelligence to map adversary TTPs (Tactics, Techniques, and Procedures) to cloud control surfaces and turn insights into durable detection engineering roadmaps
  • Serve as principal technical authority during major cloud-related incidents, providing expert guidance on identity compromise, lateral movement, key/material theft, resource manipulation, and multi-cloud attack paths
  • Formalize standards for cloud investigations, including telemetry requirements, visibility gaps, and automated triage workflows
  • Drive post-incident cloud hardening by influencing product teams, studio engineering, and platform owners
  • Architect and implement automation for detection deployment, evidence collection, containment, and remediation using Azure Functions, Logic Apps, and modern SOAR patterns
  • Fulltime
Read More
Arrow Right