Skip to content
All jobs

This job comes from Coinbase careers page, not from an Interstack member. You apply on their site, so Interstack can't track your application or tell you when it has been seen.

C

Specialist, CSIRT

Coinbase · Remote - India

Remote Security & Privacy Posted 1 month ago

Skills this job asks for

Web3 Mentoring M&A Python Bash Linux

About the role

Ready to do the most impactful work of your career? At Coinbase, we are uncompromising on our mission to increase economic freedom. The bar is high, the environment is intense, and we like it that way. This isn't a place for complacency, it’s a place to be pushed past your perceived limits. If you're ready to build the future of finance alongside people who refuse to settle for "good enough," you belong here. Coinbase is a remote-first, but not remote-only company. Expect to get together quarterly for intense in-person working sessions called “surges.” learn more about working at Coinbase. As a Security Operations Specialist on the Security Operations team, you'll defend Coinbase and its customers against some of the most sophisticated attackers in the world. This team - spanning CDRE, Insider Threat, Blockops and Threat Intelligence - protects billions of dollars in digital assets while scaling security coverage for the next billion crypto users. You'll own frontline incident response, build detection and automation capabilities, and partner across the organization to keep Coinbase safe as it launches new Web3 products globally. What you'll do: Own second-line triage and response for security alerts, leading incident management through resolution and driving post-incident improvements Build and maintain runbooks for repeatable response patterns, then define and implement automation to eliminate manual toil Partner with teams across Security Operations to develop monitoring strategies informed by attacker investigation findings Drive Security monitoring and incident response for emerging Web3 product launches Strengthen team capabilities by mentoring peers, sharing knowledge, and participating in 24/7 rotational coverage across time zones Required Skills and Experience: 3+ years of hands-on security operations experience including incident response, alert triage, and network/host forensics across cloud, SaaS, and container environments Demonstrated ability to identify detection gaps and build coverage across diverse log sources (cloud platforms, SaaS applications, container orchestration, M&A integrations) Proficiency scripting automation workflows that reduce manual investigation and response time (Python, Bash, or equivalent) Working knowledge of networking fundamentals and operating systems (Windows, Linux, macOS) sufficient to analyze host and network-level artifacts Experience working with SIEM platforms and threat intelligence tooling at scale, including tuning alerts and improving signal-to-noise ratios Utilizes generative AI responsibly, maintaining human oversight to deliver business-ready outputs and drive measurable improvements in workflow efficiency, cost, and quality. Position ID: P77687 #LI-Remote Pay Transparency Notice: The target annual base salary for this position can range as detailed below. Total compensation may also include equity and bonus eligibility and benefits (including medical, dental, and vision). Annual base salar...

A summary from the original listing. Read the full details on their site.

Apply on Coinbase's site

Opens in a new tab.

Similar jobs