CoinDesk is the most trusted media, events, indices and data company for the global crypto economy. Since 2013, CoinDesk Media has led the story of the future of money and investing, illuminating the transformation in society and culture that comes with it. Our award-winning team of journalists delivers news and unparalleled insights that bring transparency, comprehension and context. CoinDesk Events gathers the global crypto, blockchain and Web3 communities at annual events such as Consensus, the world’s largest and longest-running crypto festival. CoinDesk Indices offers expertise in digital asset indices, data and research to educate and empower investors. For more information on CoinDesk media and events, please visithttp://coindesk.com [coindesk.com]and for breaking headlines, data and indices visithttp://coindeskmarkets.com [coindeskmarkets.com]
In November 2023, CoinDesk was acquired by the Bullish group, owner of Bullish, a regulated, digital assets exchange. For more information on Bullish, please visit https://bullish.com . CoinDesk operates as an independent subsidiary with an editorial committee to protect journalistic independence.
Reports to:
Head of Security Engineering
We are seeking a SeniorSecurity Operations Analyst to join our global security operations and incident response team. In this highly critical role, you will be responsible for monitoring and analyzing security incidents, responding to threats in real-time, and ensuring the integrity of our systems and platforms. Your expertise will help identify vulnerabilities and enhance our security posture through proactive measures and collaboration with cross-functional teams. This position requires a keen analytical mindset, a strong understanding of security technologies, and the ability to thrive in a fast-paced environment.
Role & Responsibilities
- Work closely with the SOC Manager across daily activities of the Security Operations Center (SOC) to ensure Service Level Objectives are achieved.
- Continuously monitor security alerts and incidents using SIEM tools and other security technologies.
- Create detection use cases in the SIEM, analyze security event data for proactive threat hunting, and conduct research on the latest threats and vulnerabilities to enhance incident response readiness and capabilities.
- Respond to security incidents, performing initial analysis and escalation as necessary.
- Participate in incident response planning and execution, ensuring timely containment and remediation of security breaches.
- Research and analyze emerging threats and vulnerabilities to adapt security measures accordingly.
- Document security incidents, identify gaps from incidents and recommend improvements, develop and maintain incident response plans and SOPs.
- Prepare detailed reports for stakeholders on security incidents and trends.
- Work closely with cross functional technical teams to ensure the security of systems and data.
- Participating in the on-call rotation for after-hours coverage, which include responding to security incidents, performing containment and forensic investigations
Experience & Qualifications
- BS/BA degree in Cyber Security/Computer Science or equivalent combination of related work experience desired.
- CISSP, CISM, GCIA, GCIH, GCFE, GCFA, GREM, Splunk Power User and/or similar certifications is preferred
- Verifiable experience in Security Operations and Incident Response.
- Experience in performing analysis with SIEM technologies such as Splunk and/or Google Chronicle.
- Experience in performing proactive and reactive threat hunting using MITRE ATT&CK or similar frameworks.
- In-depth understanding and working knowledge of security appliances/tools such as host-based and network-based IDS/IPS, WAF, EDR, etc.
- Very strong understanding of networking protocols, operating systems and cyber security concepts and technologies.
- Experience in forensic tools and malware analysis is a plus.
- Experience with Cloud environments such as AWS/GCP/Azure is a plus.
- Ability to work across different regions in a process/procedure driven organization.
- Excellent verbal and written communication and presentation skills.
EQUAL OPPORTUNITY
In an effort to attract, retain, develop and promote the most qualified individuals, CoinDesk is committed to treating all applicants and employees in a nondiscriminatory manner with respect to the terms and conditions of employment, without regard to race, color, religion or belief, sex, national or ethnic origin, ancestry, age, marital status, sexual orientation, gender identity, veteran status/service, physical or mental disability, or any other classification protected by applicable law. This mandate governs all aspects of employment, including recruitment, selection, promotion, training, education, social and recreation programs, compensation, discipline, termination and access to benefits.
For more information on our DEI initiatives, please visit:https://www.coindesk.com/dei/.
ACCOMMODATION
CoinDesk is also committed to providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation because of a disability for any part of the application process, please send an e-mail toaccomodations@coindesk.comand let us know the nature of your request.
Please note that only a member of CoinDesk’s Talent Acquisition team will reach out to you directly from an @coindesk.com or @coindesk-indices.com email in regards to any and all opportunities at CoinDesk. Disregard emails from any other addresses or persons. If you’re selected to move onto the next phase of our hiring process, a member of our team will reach out to guide you through our interview process. We look forward to connecting!