Tier 2 SOC Analyst with AI Tools Experience - REMOTE

Binary Defense

$80K — $95K *
US-AnywhereRemote in Houston, TX
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 3+ years in Security Operations or related field
  • Experience with AI tools
  • Familiarity with SIEM and EDR tools
  • Knowledge of common threat detection frameworks
  • Awareness of current attacker tactics, techniques, and procedures (TTPs)

Responsibilities

  • Develop and document internal alert strategies for clients
  • Reduce alert fatigue by tuning noisy alerts
  • Evaluate and adjust alerts that haven't triggered
  • Serve as primary liaison for MDR Provider's Detection team
  • Collaborate with Incident Responders to refine alert processes
  • Establish regular reporting on detections and tuning efforts
  • Help implement detection metrics aligned with current best practices
  • Request and apply Sentinel One STAR rules with Threat Hunting team
  • Align detections with recognized frameworks like Cyber Kill Chain
  • Coordinate cross-functional changes for effective security remediation
  • Prioritize and analyze vulnerabilities, assisting patch teams
  • Examine stale accounts and recommend improvements

Benefits

  • Medical, dental, and vision coverage for employees and dependents
  • 401k match that vests with each payroll
  • Flexible and remote-friendly work environment
  • Training opportunities for skill enhancement
Full Job Description
Job Type

Full-time

Description

Binary Defense is seeking a client-facing Tier 2 SOC Analyst with Artificial Intelligence (AI) tools experience to serve as a hands-on contributor within the Security Operations team.

This is a technical position responsible for transforming the client's detection strategy, organizing detections, tuning rules, and creating and maintaining cross functional feedback loops. Additionally, leading analysis, design, and hands-on analysis and remediation for Attack Surface Reduction functions such as vulnerability management and penetration test remediation.

You'll play a key role in growing capabilities with leading tools such as AI, Splunk, Proofpoint, SentinelOne, and more. This role requires deep technical expertise, strong cross-functional communication, and the ability to deliver operational results.

Responsibilities

  • Create internal alert strategy and process documentation for how client identifies alerting opportunities, prioritizes based on threat level, with a focus and priority on gaps
  • Review alerts that are too noisy to tune and drive down alert fatigue
  • Assess alerts that haven't triggered to determine whether logic needs to
  • Be the main point of contact to the MDR Provider's Detection team
  • Work with the client's Incident Responders on alert feedback loops; analyze true and false positive alerts
  • Create regular reporting cadence for of all detections created, rules tuned
  • Contribute to client's homegrown "Signal to Noise ratio" detection metric
  • Coordinate with MDR Threat Hunting team to request and implement Sentinel One STAR rules
  • Map detections to standard frameworks such as the Cyber Kill Chain
  • Work with MDR provider on an ongoing tuning of the on-call criteria
  • Perform attack surface reduction including full-scope change management, cross functional coordination, enterprise communication planning/execution, execution of changes in support of security remediation
  • Provide vulnerability prioritization and analysis, ticketing, reporting, trending, metrics, assistance to patch teams on troubleshooting root cause of patching challenges
  • Analyze stale identities and accounts, admin privileges, and recommend and implement improvements


Requirements

  • 3+ Years Security Operations or Equivalent Experience
  • Artificial Intelligence (AI) tools experience.
  • Experience with Security Information and Event Management (SIEM) and Endpoint Detection and Response (EDR) tools
  • Experience mapping detections to common frameworks and risk reduction models
  • Familiarity with the latest trends in attacker TTPs


Binary Defense offers competitive medical, dental and vision coverage for employees and dependents, a 401k match which vests every payroll, a flexible and remote friendly work environment, as well as training opportunities to expand your skill set (to name a few!). If you're interested in joining a growing team with great perks, we encourage you to apply!

Similar Jobs

More Jobs at Binary Defense

More Information Technology Jobs

Find similar Tier 2 SOC Analyst with AI Tools Experience - REMOTE jobs: