Multi-million-dollar investment pairs onshore analysts with LevelBlue’s global threat intelligence and 24/7 security operations, helping critical infrastructure organizations address SOCI Act obligations and Australia’s cybersecurity skills shortage
Sidney, Australia – August 27, 2026 – LevelBlue, the world's largest independent pure-play managed security services provider, today announced a multi-million-dollar investment in a new local Security Operations Center (SOC) in Sydney. Designed to support Australian organizations, particularly critical infrastructure owners and operators, the Sydney SOC provides access to onshore security analysts, local escalation pathways, and expertise in the Australian regulatory environment, backed by the scale, threat intelligence, and 24/7 coverage of LevelBlue's global security operations.
Australia’s critical infrastructure organizations are under growing pressure to identify and manage cyber risk, respond quickly to incidents, and meet obligations under the Security of Critical Infrastructure Act 2018 (SOCI Act). Applicable entities may be required to report critical cyber incidents within 12 hours and other cyber incidents within 72 hours. Certain entities must also adopt, maintain, and comply with a written Critical Infrastructure Risk Management Program. At the same time, organizations are seeking greater access to local expertise, clearer escalation pathways, and security support aligned with Australian operating hours.
LevelBlue’s Sydney SOC addresses these needs by combining onshore analysts and market knowledge with global security operations. This model helps critical infrastructure organizations strengthen cyber resilience and support their broader SOCI and Essential Eight initiatives while maintaining access to global threat visibility and round-the-clock coverage.
“Australian organizations want a security partner that understands the local regulatory environment and can quickly escalate when an incident occurs,” said Jo Salisbury, Regional Director Growth & Performance – APAC, LevelBlue. “Geopolitical tensions are intensifying the threat landscape, and our Sydney SOC gives Australian organizations access to local analysts and context, together with global threat intelligence and 24/7 coverage that critical infrastructure operators need to manage risk, support their SOCI obligations, and strengthen cyber resilience.”
The new facility expands LevelBlue’s security operations presence within the Five Eyes region and strengthens its ability to provide Australian organizations with locally delivered services informed by global threat intelligence, telemetry, and expertise.
“This investment reflects LevelBlue’s commitment to the Australian market and the critical infrastructure sector,” said Allison Clelan, Senior Vice President, Managed Global Security Solutions, LevelBlue. “As a vendor-agnostic MSSP, we bring local delivery and global scale together to help clients strengthen resilience while retaining greater choice and flexibility across their security environments.”
The Sydney SOC provides:
"As a LevelBlue customer for six years, we have consistently valued the strength and reliability of our partnership. We are proud to be the first organization to transition to LevelBlue’s Australian SOC, giving us greater access to local expertise and escalation backed by LevelBlue’s global intelligence and expertise," said Anthony Tomai, Melbourne Airport Chief Information Officer. "For Melbourne Airport, this local capability strengthens our ability to manage cyber risk and support our obligations under the Security of Critical Infrastructure Act. It is exactly the kind of investment Australian critical infrastructure needs from a trusted security partner.”
The SOCI Act requires applicable critical infrastructure entities to embed risk management, preparedness, and resilience into their operations. LevelBlue supports these efforts through continuous monitoring, local escalation, threat intelligence, and incident response capabilities. LevelBlue can also help organizations strengthen their Essential Eight maturity as part of a broader cyber resilience strategy. The Essential Eight complements, but does not replace, an organization’s SOCI obligations.
Demand for local cybersecurity capability is increasing across Australia and New Zealand, driven by regulatory obligations, heightened scrutiny of operational and third-party risk, evolving data-handling expectations, and a persistent cybersecurity skills shortage. LevelBlue’s Sydney SOC expands access to this capability for critical infrastructure organizations and other public- and private-sector organizations across the region.
For more information about LevelBlue’s managed security, consulting, and threat intelligence services, visit www.levelblue.com.
LevelBlue reduces risk and builds lasting resilience so organizations can innovate and advance their mission with confidence. As the world’s most analyst-recognized and largest pure-play managed security services provider, LevelBlue elevates client outcomes that matter: stronger defense, faster response, and sustained business continuity. LevelBlue combines AI-powered security operations, advanced threat intelligence, and elite human expertise to provide the most comprehensive portfolio of strategic advisory, managed security, offensive security, and incident response services. Learn more at LevelBlue.com.