Security Analyst, CSIRT at Coinbase - May 24

< Back to results

Security Analyst, CSIRT


Coinbase Jobs · US - Remote · Technical Services
Coinbase logo
This job post has now expired. Please see the other Coinbase jobs available.
Job Overview

Security is a primary competency at Coinbase, and the Security Operations team keeps a watchful eye over every aspect of it. Every day, we go to battle against some of the most sophisticated attackers in the world to protect billions of dollars worth of digital assets and ensure that our customers and employees can enjoy a safe, trusted experience. As Coinbase scales globally, our team is scaling along with it, using a blend of tooling, automation, and strategic team growth to ensure that we’re well-equipped to protect the next billion users of crypto.

What you’ll be doing (ie. job duties):

The Security Operations group is a multi-functional organization that includes our CSIRT, Trust & Safety, Insider Threat, and Threat Intelligence. While no two days will end up looking the same, generally-speaking you’ll be responsible for the following things:

  • You’ll serve as the first line of response when a security alert needs to be triaged, and lead the incident response/ management as needed
  • You’ll also refine our alerting rules to improve our signal/noise ratio, because no one wants to be a button-pusher or SOC monkey
  • If something happens twice, you’ll write a runbook for it. If it happens three times, you’ll figure out a way to automate that runbook
  • You’ll partner with Trust & Safety and Threat Intelligence on some of our attacker investigations to build TTP profiles
  • You’ll have a clear communication strategy and be able to assist with Coinbase emerging Web3 launches around the lines of Incident Response and Threat Detection
  • You’ll be part of a light on-call rotation with counterparts in multiple time zones
  • You’ll lead a culture of excellence by mentoring peers and share knowledge
  • You’ll collaborate with cross functional teams like engineering, product development, compliance to ensure timely Incident Response

What we look for in you (ie. job requirements):

Some security teams have strict requirements about certifications, degrees, years of experience, and things like that. Not us! We’re more interested in the unique perspectives and expertise you’ll bring to the team, rather than the acronyms on your resume. However, you’ll be much more likely to be successful in this role if these bullet points seem like a good description of you:

  • You’ve been doing practical security things (incident response, phishkit/malware analysis, investigating account compromises, etc) for a while now, probably in the realm of 5+ years
  • You have got a knack for identifying threats and measuring coverage / visibility across a vast amount of log sources - Multicloud, SaaS, Container Environment, MnAs log sources
  • You are good in understanding and analyzing multitude of artifacts across network and host level
  • You consider “Automation as a Force Multiplier”, you prefer spending time in building automation so you don’t have to do manual work tasks
  • You don’t just reflexively open up a Jupyter Notebook during an investigation, you’ve actually got favorite Jupyter Notebooks you’ve built up over the years, because you like backing up your conclusions with data, and you like automating things
  • You frequently get praise from your peers and coworkers about your communication skills, both written and verbal
  • Your high degree of empathy means that your coworkers trust you to help solve their security problems, because you never come across as judgmental or condescending
  • Pressure doesn’t get to you, even in high intensity situations or environments

Nice to haves:

  • You would bring a diverse perspective to the team: for example, maybe you took an unconventional route to get into your current security career
  • You’ve got a passing familiarity with blockchains and cryptocurrency, or at least a good story about how you thought about investing in Bitcoin in 2014 but decided not to
  • You’re comfortable doing some basic scripting and writing alert rules in Python and running queries in SQL/Snowflake
  • You’ve good understanding of Cloud and SaaS technologies
  • You are good in analyzing data at scale and perform investigations to identify adversary behavior
  • You’ve got some experience with OSINT and threat hunting
  • You‘ve got some experience doing incident response in the cloud
  • You’d prefer if everyone just settled on using the ATT&CK framework already
  • You have got experience in analyzing attacker methodologies and build detections that will enhance the existing security posture

Job #: P52416

Pay Transparency Notice: Depending on your work location, the target annual salary for this position can range as detailed below. Full time offers from Coinbase also include target bonus + target equity + benefits (including medical, dental, vision and 401(k)).Pay Range: $140,250—$165,000 USD

More Jobs at Coinbase


Coinbase Overview

Founded in June of 2012, Coinbase is a digital currency wallet and platform where merchants and consumers can transact with new digital currencies like bitcoin, ethereum, and litecoin. Our vision is to bring more innovation, efficiency, and equality of opportunity to the world by building an open financial system. Our first step on that journey is making digital currency accessible and approachable for everyone. Two principles guide our efforts. First, be the most trusted company in our domain. Second, create user-focused products that are easier and more intuitive to use.

Website Twitter LinkedIn Job Archive

Coinbase Jobs by Location

Check below to see all of the open Coinbase jobs organised by office location.

Coinbase Jobs by Team

Check below to see all of the open Coinbase jobs organised by team.

Latest Crypto Blog Posts

From Blockchain To Bureaucracy: Web3 Vs Civil Service Jobs


In recent years, the job market in the UK has seen a significant evolution with the emergence of Web3 jobs alongside traditional roles in the Civil Se...

Posted by Jane Lepson · 4th November 2023 12:53 PM

The Role Of Cryptocurrency In Decentralized Digital Identity Solutions


Cryptocurrency, often associated with financial transactions and investments, has an important role to play in the development of decentralized digita...

Posted by Jackson Matlock · 2nd August 2023 12:14 PM

The Impact Of Cryptocurrencies On The Aerospace And Defense Industry: A New Era Of Innovation


Cryptocurrencies have been a game changer for the financial industry, but their impact is now being felt in other sectors as well. One such sector is ...

Posted by Jackson Matlock · 2nd August 2023 05:38 AM

Understanding Cryptocurrency Trading Regulations: Compliance And Legal Considerations


Cryptocurrency trading has become increasingly popular over the years, but it has also come under increased scrutiny from regulators and lawmakers. Un...

Posted by Sean Lakers · 1st August 2023 11:31 AM

Cryptocurrency And The Medical Industry: A New Era Of Patient Care And Innovation


Cryptocurrency and blockchain technology have been making waves in the finance industry for some time now, but their potential applications outside of...

Posted by Tommy Layton · 31st July 2023 01:38 AM

The Role Of Cryptocurrency In Decentralized Finance (DeFi) Derivatives Markets


Decentralized finance (DeFi) is an emerging sector in the cryptocurrency industry that is rapidly gaining traction. DeFi aims to provide an alternativ...

Posted by Tommy Layton · 30th July 2023 11:38 AM

The Impact Of Cryptocurrencies On The Media And Entertainment Industry: A New Era Of Creativity


The Rise of Cryptocurrencies in the Media and Entertainment Industry The rise of cryptocurrencies has not only revolutionized the financial industry ...

Posted by Ramon Cretlin · 30th July 2023 04:40 AM

Understanding Cryptocurrency Trading Platforms: From Centralized To Decentralized Exchanges


Cryptocurrency trading platforms have revolutionized the way we buy, sell, and exchange digital currencies. These platforms come in different forms, i...

Posted by Jane Lepson · 30th July 2023 07:26 AM

Cryptocurrency And The Consumer Goods Industry: A New Era Of Retail And Manufacturing


The consumer goods industry is on the verge of a major transformation, thanks to the rise of cryptocurrency. With blockchain technology enabling secur...

Posted by Ramon Cretlin · 27th July 2023 11:40 AM

The Role Of Cryptocurrency In Decentralized Intellectual Property Solutions


As the world becomes more digitized, intellectual property protection has become a more complex task. Intellectual property, including patents, tradem...

Posted by Jackson Matlock · 27th July 2023 12:14 PM