SOC Analyst: Alert Tuning, IR & MITRE Coverage

3M HEALTHCARE

San Francisco (CA)

On-site

USD 115,000 - 145,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Health insurance
401k match
Parental leave
Paid vacation
Commuter pass
Free meals
Equipment provided

Job summary

BitGo is seeking a versatile SOC analyst to join the team and write, tune and respond to alerts across endpoints to cloud infrastructure. The role supports 24x7 coverage with occasional evenings and weekends. From time to time, evenings as well, with a future goal of 24x7 coverage.

Regular business hours are the baseline for this role. You will review alerts, tune rules to reduce false positives, write MITRE ATT&CK coverage rules, escalate incidents, and assist in incident response.

Qualifications

  • 2+ years responding to alerts.
  • Familiar with MITRE ATT&CK framework.
  • Comfortable writing and tuning detection rules.
  • Experience triaging alerts and establishing if an event rises to an incident.
  • Varied exposure to a variety of application, SaaS, cloud and end point logs.
  • Strong communication skills towards technical and non-technical people.
  • Preference for those who have experienced a real-life security incident that they detected.

Responsibilities

  • Review and triage security alerts from a wide variety of sources across the organization.
  • Carefully tune rules to reduce false positives.
  • Write new rules to ensure appropriate MITRE ATT&CK framework coverage.
  • Escalate potential incidents.
  • Assist in any incident response activities.
  • Ability to run projects from beginning to end.
  • Work with Engineering and IT on visibility coverage and detection.

Skills

MITRE ATT&CK
Alert tuning
Incident response
Log analysis
Communication skills

Job description

BitGo is seeking a versatile SOC analyst to join the team and write, tune and respond to alerts across endpoints to cloud infrastructure. The role supports 24x7 coverage with occasional evenings and weekends. From time to time, evenings as well, with a future goal of 24x7 coverage.

Regular business hours are the baseline for this role. You will review alerts, tune rules to reduce false positives, write MITRE ATT&CK coverage rules, escalate incidents, and assist in incident response.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

SOC Analyst — AI-Driven Detection & Incident Response
SOC Analyst — AI-Driven Detection & Incident Response

3M HEALTHCARE • Town of Montana (WI), Palo Alto (CA)

On-site
USD 115,000 - 145,000
Health insurance
Stock options
401k matching
+2
SOC Analyst
SOC Analyst

3M HEALTHCARE • Town of Montana (WI), Palo Alto (CA)

On-site
USD 115,000 - 145,000
Health insurance
Stock options
401k matching
+2
SOC Analyst
SOC Analyst

3M HEALTHCARE • San Francisco (CA)

On-site
USD 115,000 - 145,000
Health insurance
401k match
Parental leave
+4
Remote SOC Analyst — Automation-Driven Incident Response
Remote SOC Analyst — Automation-Driven Incident Response

OSIbeyond L.L.C. • Rockville (MD)

Remote
USD 70,000 - 105,000
Medical Insurance
Vision Insurance
Dental Insurance
+4
Remote SOC Analyst: Automation-Driven Incident Response
Remote SOC Analyst: Automation-Driven Incident Response

OSIbeyond L.L.C. • United States

Remote
USD 70,000 - 110,000
Medical Insurance
Vision and Dental Insurance
Life Insurance
+2
Senior SOC Analyst- Tuesday- Saturday
Senior SOC Analyst- Tuesday- Saturday

BNY Mellon • Town of Florida (NY)

On-site
USD 110,000 - 160,000
Security Operations Analyst
Security Operations Analyst

Intrinsicamerica • Northern (KY)

Hybrid
USD 70,000 - 90,000
24x7 SOC Analyst: Threat Detection & Incident Response
24x7 SOC Analyst: Threat Detection & Incident Response

Cyber8 • Utica (MI)

Hybrid
USD 65,000 - 90,000
Dynamic work environment
Challenging projects
Competitive compensation and benefits
SOC Analyst II: Threat Hunting & Incident Response
SOC Analyst II: Threat Hunting & Incident Response

Mbi Llc • Harrisburg

On-site
USD 60,000 - 90,000
SOC Analyst I — Remote 24/7 Security Operations
SOC Analyst I — Remote 24/7 Security Operations

SOClogix, Inc. • Catonsville (MD)

Hybrid
USD 55,000 - 75,000
Health insurance
Dental insurance
Vision insurance
+6