Tier 2 SOC Analyst with Threat Intelligence Experience - REMOTE
Boost your chances before you apply.
Binary Defense
Houston, TX, US
Summary
The role focuses on transforming the client's detection strategy by tuning rules, reducing alert fatigue, and managing cross-functional feedback loops. It also involves leading attack surface reduction efforts, including vulnerability management and penetration test remediation.
Job Description
Description
Binary Defense is seeking a client-facing Tier 2 SOC Analyst with Cyber Threat Intelligence (CTI) experience to serve as a hands-on contributor within a client’s Security Operations team.
This is a technical position responsible for transforming the client’s detection strategy, organizing detections, tuning rules, and creating and maintaining cross functional feedback loops. Additionally, leading analysis, design, and hands-on analysis and remediation for Attack Surface Reduction functions such as vulnerability management and penetration test remediation.
You’ll play a key role in growing capabilities with leading tools in the client’s environment such as Splunk, Proofpoint, SentinelOne, and more. This role requires deep technical expertise, strong cross-functional communication, and the ability to deliver operational results.
Responsibilities
- Create internal alert strategy and process documentation for how client identifies alerting opportunities, prioritizes based on threat level, with a focus and priority on gaps
- Review alerts that are too noisy to tune and drive down alert fatigue
- Assess alerts that haven’t triggered to determine whether logic needs to
- Be the main point of contact to the MDR Provider’s Detection team
- Work with the client’s Incident Responders on alert feedback loops; analyze true and false positive alerts
- Create regular reporting cadence for of all detections created, rules tuned
- Contribute to client’s homegrown “Signal to Noise ratio” detection metric
- Coordinate with MDR Threat Hunting team to request and implement Sentinel One STAR rules
- Map detections to standard frameworks such as the Cyber Kill Chain
- Work with MDR provider on an ongoing tuning of the on-call criteria
- Perform attack surface reduction including full-scope change management, cross functional coordination, enterprise communication planning/execution, execution of changes in support of security remediation
- Provide vulnerability prioritization and analysis, ticketing, reporting, trending, metrics, assistance to patch teams on troubleshooting root cause of patching challenges
- Analyze stale identities and accounts, admin privileges, and recommend and implement improvements
Requirements
- 5+ Years Security Operations or Equivalent Experience
- Cyber Threat Intelligence (CTI) experience.
- Experience with Security Information and Event Management (SIEM) and Endpoint Detection and Response (EDR) tools
- Experience mapping detections to common frameworks and risk reduction models
- Familiarity with the latest trends in attacker TTPs
About Binary Defense
Binary Defense is a leading Managed Detection and Response (MDR) provider, trusted by hundreds of organizations to protect what matters most. Our team of SOC analysts, threat hunters, detection engineers, and threat researchers work around the clock to deliver proactive, risk-focused security outcomes. We bring the attacker's mindset to defense, helping clients detect threats earlier, respond faster, and continuously improve their security posture.
For more information, visit our website, check out our blog, or follow us on LinkedIn.
Binary Defense offers competitive medical, dental and vision coverage for employees and dependents, a 401k match which vests every payroll, a flexible and remote friendly work environment, as well as training opportunities to expand your skill set (to name a few!). If you’re interested in joining a growing team with great perks, we encourage you to apply!
Most security programs are built to check boxes.
We’re built to stop what actually matters.
Binary Defense is a Managed Detection and Response provider focused on one thing: helping organizations respond to real threats with speed, clarity, and confidence. Not theoretical coverage. Not inflated metrics. Real outcomes.
We start with how adversaries actually operate inside environments. Then we build detection, investigation, and response around that reality. Because when seconds matter, assumptions break.
At the center of our approach is NightBeacon, our AI-powered intelligence infrastructure embedded directly into the SOC. It accelerates analysis, surfaces what matters, and helps our analysts move at the pace modern threats demand. Not by replacing human expertise, but by strengthening it.
This is what it looks like when AI is applied with purpose. Faster investigations. Clearer decisions. Better outcomes.
Founded by experts including David Kennedy, Binary Defense was created to solve a problem that still exists today: organizations are overwhelmed with data, under-equipped to act, and left exposed when it counts.
We changed that by building a model where experienced defenders lead, and technology works in service of their decisions.
Our services include Managed Detection and Response, Threat Hunting, and Digital Risk Protection, all designed to give organizations something most tools can’t:
The ability to understand what is happening and respond before it becomes something worse.
Company size
51-200 employees
Industry
Computer and Network Security
Org type
Privately Held
Headquarters
Stow, Ohio
Most security programs are built to check boxes.
We’re built to stop what actually matters.
Binary Defense is a Managed Detection and Response provider focused on one thing: helping organizations respond to real threats with speed, clarity, and confidence. Not theoretical coverage. Not inflated metrics. Real outcomes.
We start with how adversaries actually operate inside environments. Then we build detection, investigation, and response around that reality. Because when seconds matter, assumptions break.
At the center of our approach is NightBeacon, our AI-powered intelligence infrastructure embedded directly into the SOC. It accelerates analysis, surfaces what matters, and helps our analysts move at the pace modern threats demand. Not by replacing human expertise, but by strengthening it.
This is what it looks like when AI is applied with purpose. Faster investigations. Clearer decisions. Better outcomes.
Founded by experts including David Kennedy, Binary Defense was created to solve a problem that still exists today: organizations are overwhelmed with data, under-equipped to act, and left exposed when it counts.
We changed that by building a model where experienced defenders lead, and technology works in service of their decisions.
Our services include Managed Detection and Response, Threat Hunting, and Digital Risk Protection, all designed to give organizations something most tools can’t:
The ability to understand what is happening and respond before it becomes something worse.
Company size
51-200 employees
Industry
Computer and Network Security
Org type
Privately Held
Headquarters
Stow, Ohio