About the company
Fireblocks provides a suite of applications to manage digital asset operations and a complete development platform to build your business on the blockchain
Job Summary
What You’ll Do
📍Investigate alerts, triage, deep dive, and come up with proper action items and remediation plans. 📍Perform host-based analysis, artifact analysis, and malware analysis in support of security investigations and incident response. 📍Coordinate investigation, containment, and other response activities with business stakeholders and groups. 📍Develop incident analysis and findings reports for management, including gap identification and recommendations for improvement. 📍Recommend or develop new detection logic and tune existing sensors/security controls based on Threat Intelligence reports. 📍Work with security solutions owners to assess existing security solutions' ability to detect/mitigate the abovementioned TTPs. 📍Creating custom SIEM queries and dashboards to support the monitoring and detection of advanced TTPs against the company network. 📍Analyze and produce intelligence reports tailored to technical and non-technical audiences, translating complex threats into actionable insights. 📍Conduct in-depth research, contextual analysis, and campaign correlations associated with threat actors, adversary tactics, and emerging attack techniques. 📍Leverage intelligence frameworks such as the Intelligence Cycle, Cyber Kill Chain, and MITRE ATT&CK to assess threats and map attacker techniques.
What You’ll Bring
📍4+ years of experience in Security Operations (SecOps), Cyber Threat Intelligence (CTI), Incident Response, or Threat Hunting roles. 📍Experience performing root cause analysis, incident containment 📍Hands-on experience investigating and responding to security incidents involving host-based, network-based, and cloud-based threats. 📍Experience working with SIEM platforms (e.g., Splunk, ELK, Sentinel, Chronicle, etc.), including creating custom queries, dashboards, and alerts. 📍Ability to develop custom detection logic and threat-hunting playbooks based on Threat Intelligence insights. 📍Experience with security monitoring of cloud environments (AWS, GCP, Azure). 📍Understanding of container security and Kubernetes security (EKS, GKE). 📍Strong analytical and problem-solving skills with a structured approach to security investigations.
If this role isn’t the perfect fit, there are plenty of exciting opportunities in blockchain technology, cryptocurrency startups, and remote crypto jobs to explore. Check them on our Jobs Board.