Security Analyst, CSIRT @ Coinbase | Jobright.ai
JOBSarrow
RecommendedLiked
0
Applied
0
Security Analyst, CSIRT jobs in Phoenix, AZH1B Visa Sponsored Security Analyst, CSIRT jobs in Phoenix, AZ
Be an early applicantLess than 25 applicants
company-logo

Coinbase · 2 days ago

Security Analyst, CSIRT

Wonder how qualified you are to the job?

ftfMaximize your interview chances
BitcoinBlockchain
check
H1B Sponsorship
check
Comp. & Benefits

Insider Connection @Coinbase

Discover valuable connections within the company who might provide insights and potential referrals, giving your job application an inside edge.

Responsibilities

You’ll serve as the first line of response when a security alert needs to be triaged, and lead the incident response/ management as needed
You’ll also refine our alerting rules to improve our signal/noise ratio, because no one wants to be a button-pusher or SOC monkey
If something happens twice, you’ll write a runbook for it. If it happens three times, you’ll figure out a way to automate that runbook
You’ll partner with Trust & Safety and Threat Intelligence on some of our attacker investigations to build TTP profiles
You’ll have a clear communication strategy and be able to assist with Coinbase emerging Web3 launches around the lines of Incident Response and Threat Detection
You’ll be part of a light on-call rotation with counterparts in multiple time zones
You’ll lead a culture of excellence by mentoring peers and share knowledge
You’ll collaborate with cross functional teams like engineering, product development, compliance to ensure timely Incident Response

Qualification

Find out how your skills align with this job's requirements. If anything seems off, you can easily click on the tags to select or unselect skills to reflect your actual expertise.

Incident ResponseMalware AnalysisThreat IdentificationLog AnalysisAutomationJupyter NotebooksArtifact AnalysisNetwork AnalysisHost AnalysisMulticloudSaaSContainer EnvironmentMnAs Log SourcesProblem-SolvingCommunicationEmpathyBlockchainCryptocurrencyPythonSqlSnowflakeSaas technologiesData analysisOsintThreat huntingAtt&ck frameworkAttacker methodologiesDetection enhancementAnalytical thinkingTeamwork

Required

You've been doing practical security things (incident response, phishkit/malware analysis, investigating account compromises, etc) for a while now, probably in the realm of 3+ years
You have got a knack for identifying threats and measuring coverage / visibility across a vast amount of log sources - Multicloud, SaaS, Container Environment, MnAs log sources
You are good in understanding and analyzing multitude of artifacts across network and host level
You consider 'Automation as a Force Multiplier', you prefer spending time in building automation so you don’t have to do manual work tasks
You don’t just reflexively open up a Jupyter Notebook during an investigation, you’ve actually got favorite Jupyter Notebooks you’ve built up over the years, because you like backing up your conclusions with data, and you like automating things
You frequently get praise from your peers and coworkers about your communication skills, both written and verbal
Your high degree of empathy means that your coworkers trust you to help solve their security problems, because you never come across as judgmental or condescending
Pressure doesn’t get to you, even in high intensity situations or environments

Preferred

You would bring a diverse perspective to the team: for example, maybe you took an unconventional route to get into your current security career
You’ve got a passing familiarity with blockchains and cryptocurrency, or at least a good story about how you thought about investing in Bitcoin in 2014 but decided not to
You’re comfortable doing some basic scripting and writing alert rules in Python and running queries in SQL/Snowflake
You’ve good understanding of Cloud and SaaS technologies
You are good in analyzing data at scale and perform investigations to identify adversary behavior
You’ve got some experience with OSINT and threat hunting
You‘ve got some experience doing incident response in the cloud
You’d prefer if everyone just settled on using the ATT&CK framework already
You have got experience in analyzing attacker methodologies and build detections that will enhance the existing security posture

Benefits

Medical Insurance
Dental Insurance
Vision Insurance
401(k)

Company

Coinbase

company-logo
Coinbase is a cryptocurrency exchange and cryptocurrency wallet platform that allows users to buy, sell, and store various cryptocurrencies.

H1B Sponsorship

Coinbase has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Trends of Total Sponsorships
2023 (69)
2022 (233)
2021 (235)
2020 (75)

Funding

Current Stage
Public Company
Total Funding
$1.78B
Key Investors
ARK Investment ManagementDFJ GrowthTiger Global Management
2024-03-13Post Ipo Debt· $1.1B
2023-09-05Post Ipo Debt· $180M
2022-11-09Post Ipo Equity· $21.4M

Leadership Team

leader-logo
Brian Armstrong
Co-founder and CEO
linkedin
leader-logo
Alesia Haas
Chief Financial Officer
linkedin
Company data provided by crunchbase
logo

Orion

Your AI Copilot