Tier 2 SOC Analyst, AI Tools Experience

🔥 0 minutes ago

🤠 Texas – Remote

infoinfo

⏰ Full Time

🟡 Mid-level

🟠 Senior

🛡️ Security Operations

👻 Ghost score 10%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Binary Defense

Binary Defense

51 - 200 employees

Founded 2014

💼 Consulting

🎖️ Defense

🏥 Healthcare

💰 Private Equity Round on 2022-11

Consulting • Defense • Healthcare

Binary Defense is a cybersecurity firm that provides a range of security services designed to protect businesses from digital threats. The company operates as an extension of client teams, offering managed detection and response, co-managed SIEM, threat hunting, and digital risk protection services around the clock. With a focus on increasing security visibility and reducing complexity, Binary Defense uses a combination of human expertise and technology to offer comprehensive threat detection and response. Their services also include phishing response and incident response, all delivered through a 24/7 security operations center. By integrating advanced threat intelligence and tactical remediation strategies, Binary Defense aims to stay ahead of emerging cyber threats, ensuring the safety of client digital assets.

📋 Description

• Transform the client’s detection strategy • Organize detections, tune rules, and create and maintain cross-functional feedback loops • Lead analysis, design, and hands-on analysis and remediation for attack surface reduction functions such as vulnerability management and penetration test remediation • Create internal alert strategy and process documentation for how clients identify alerting opportunities and prioritize based on threat level, with a focus on gaps • Review noisy alerts and tune them to reduce alert fatigue • Assess alerts that have not triggered to determine whether logic needs adjustment • Serve as the main point of contact to the MDR provider’s Detection team • Work with client Incident Responders on alert feedback loops and analyze true and false positive alerts • Create regular reporting on detections created and rules tuned • Contribute to the client’s “Signal to Noise ratio” detection metric • Coordinate with the MDR Threat Hunting team to request and implement SentinelOne STAR rules • Map detections to standard frameworks such as the Cyber Kill Chain • Work with the MDR provider on ongoing tuning of on-call criteria • Perform attack surface reduction, including change management, cross-functional coordination, enterprise communication planning and execution, and security remediation changes • Provide vulnerability prioritization and analysis, ticketing, reporting, trending, metrics, and assistance to patch teams troubleshooting root causes of patching challenges • Analyze stale identities and accounts and admin privileges, and recommend and implement improvements

🎯 Requirements

• 3+ years Security Operations or Equivalent Experience • Artificial Intelligence (AI) tools experience • Experience with Security Information and Event Management (SIEM) and Endpoint Detection and Response (EDR) tools • Experience mapping detections to common frameworks and risk reduction models • Familiarity with the latest trends in attacker TTPs

🏖️ Benefits

• Competitive medical coverage for employees and dependents • Dental coverage for employees and dependents • Vision coverage for employees and dependents • 401k match which vests every payroll • Flexible and remote friendly work environment • Training opportunities to expand your skill set

Apply Now

Similar Jobs

🔥 10 hours ago

AspenView Technology Partners

11 - 50

🤝 B2B

🏢 Enterprise

🤖 Artificial Intelligence

Senior Manager leading enterprise SOC, incident response, threat management, and vulnerability remediation. AspenView builds nearshore IT teams serving North American organizations.

🕒 4 days ago

GuidePoint Security

201 - 500

💼 Consulting

🏥 Healthcare

📦 Logistics

SecOps Engineer implementing SIEM, detection, and SOAR solutions for GuidePoint Security, a cybersecurity services provider. Supporting client security operations, telemetry onboarding, and SOC optimization.

🕒 6 days ago

Horizon3.ai

51 - 200

🔒 Cybersecurity

🤖 Artificial Intelligence

☁️ SaaS

SOC Analyst monitoring and improving SIEM-based detection and response for Horizon3.ai’s autonomous cybersecurity platform. Investigating threats across cloud, endpoint, network, and application environments.

🕒 August 25

ClickHouse

51 - 200

☁️ SaaS

🏢 Enterprise

🤖 Artificial Intelligence

Incident Response Security Engineer protecting ClickHouse’s real-time analytics and cloud data platform. Building detection, response automation, and security logging capabilities.

🕒 August 24

Atria Institute

51 - 200

🏥 Healthcare

⚕️ Healthcare Insurance

🔬 Science

Security Operations Administrator maintaining cybersecurity platforms for Atria Health Institute’s preventive healthcare practice. Supporting alerts, asset management, access controls, documentation, and security operations maturity.