AI SecOps Tech Lead
Fireblocks is a digital asset infrastructure platform that helps financial institutions, fintechs, and businesses store, transfer, issue stablecoins, and manage digital assets securely.
Projects
About Fireblocks
Fireblocks provides digital asset infrastructure for financial institutions, fintechs, and businesses handling digital assets at scale. Users can secure custody, issue stablecoins, tokenize assets, process payments, and manage wallets through a unified platform. The platform uses multi-party computation cryptography with policy-based governance to secure private keys and automate transaction workflows.
Skills
About the Role
You will lead the design and implementation of AI-driven detection and response strategies for complex security investigations. You will serve as the primary escalation point for critical security alerts, conduct DFIR investigations and threat hunting, direct incident response, and lead SecOps projects through implementation and maintenance. You will improve triage and automated response using security telemetry, refine agentic workflows, coordinate containment activities, conduct forensic and cloud investigations, and prepare incident findings reports with improvement recommendations.
Requirements
- Have 5+ years of experience in incident response or a cybersecurity operations center.
- Have extensive experience managing the lifecycle of security incidents in a global, 24/7 production environment.
- Collaborate with cross-organizational stakeholders on incident response and remediation.
- Develop runbooks for frequent or critical incident types.
- Have strong development fundamentals and experience maintaining production-grade code.
- Have hands-on programming and scripting experience with Python and Bash.
- Have expertise in attack and mitigation methods in cloud and SaaS environments.
- Understand system and security controls on at least two operating systems, including Windows, Linux or Unix, and macOS.
- Have host-based forensic experience and experience analyzing operating-system artifacts.
- Communicate effectively and work collaboratively with other teams.
Responsibilities
- Lead the design and implementation of AI-driven detection and response strategies.
- Serve as the primary escalation point for critical security alerts.
- Perform DFIR investigations, analyze attacker techniques and vectors, hunt threats, and direct incident response activities.
- Lead SecOps projects from inception through execution and maintenance.
- Research security telemetry and existing security solutions to improve triage and automated response.
- Refine agentic workflows for automated security operations.
- Coordinate investigation, containment, and response activities with stakeholders.
- Conduct forensic investigations, log reviews, cloud investigations, and root-cause analysis.
- Develop incident analysis and findings reports with gap identification and improvement recommendations.
