Drive product capability by bringing an offensive practitioner's perspective to scanning, fingerprinting, and attack surface data.
Conduct original research on emerging attack techniques using Internet-wide scan data and publish findings at major conferences.
Collaborate with engineering and product teams to translate research into new scanning modules, fingerprints, and detection features.
Censys provides real-time Internet intelligence and actionable threat insights to global governments, over 50% of the Fortune 500, and leading threat intelligence providers worldwide. The company values collaboration, innovation, and impact, with a team of world-class researchers and engineers.
Enhance security posture by managing Microsoft security platforms, investigating threats, and supporting enterprise security initiatives.
Deploy, configure, administer, and optimize Microsoft Defender security solutions across enterprise environments.
Collaborate with infrastructure, cloud, and security teams to improve security architecture and operational processes.
A partner company is seeking a skilled cybersecurity professional to strengthen enterprise security operations through advanced Microsoft security solutions. It offers a collaborative environment that values continuous learning, innovation, and operational excellence.
Conduct advanced vulnerability research and security assessments across modern application and cloud stacks.
Develop proof-of-concept exploits and collaborate with cross-functional teams to strengthen customer security.
Provide mentorship to junior researchers and represent Cobalt in the security research community.
Cobalt provides offensive security testing via a SaaS platform and a community of over 400 vetted testers. The company is fully remote and values diversity and inclusion.
Perform penetration tests of IT infrastructures, web applications, and web services.
Conduct security assessments in Active Directory, cloud environments (Azure, AWS), and mobile applications.
Analyze AI-powered applications and LLM integrations for vulnerabilities and misconfigurations.
SITS Deutschland GmbH is part of the SITS Group, a leading IT security provider offering holistic security solutions. The company has over 700 employees and fosters a culture of appreciation, team spirit, and work-life blending.
Design and implement identity architecture using Microsoft Entra ID, including Conditional Access, MFA, and identity governance.
Implement data security and compliance with Microsoft Purview, including sensitivity labels, DLP, and retention policies.
Configure Intune device compliance and support Defender XDR for endpoint, identity, and cloud app security.
GuidePoint Security provides trusted cybersecurity expertise, solutions, and services that help organizations make better decisions and minimize risk. With over 1,200 employees and strategic partnerships with leading security vendors, the company fosters a collaborative culture driven by firmly-defined core values.
Administer, configure, and troubleshoot Windows Server systems (2016-2025) and Microsoft Active Directory, including group policies, DNS, and domain controllers.
Utilize scripting languages (PowerShell/VB) to automate system administration tasks and maintain documentation for system configurations and procedures.
Collaborate with cross-functional teams in a fast-paced environment, managing multiple tasks and supporting incident resolution for critical issues.
Peraton is a next-generation national security company that delivers mission-critical solutions across land, sea, space, air, and cyberspace. As a leading mission capability integrator, the company supports essential government agencies and all branches of the U.S. armed forces with a team focused on solving complex challenges.
Provide engineering advice and technical solutions for client projects.
Develop custom solutions and integrate security products with client systems.
Document work, train customers, and support existing clients.
Anomalix is a Chicago-based cybersecurity solutions and services organization specializing in Identity and Access Management. Gartner-recognized, the company helps organizations improve security and compliance while enabling digital transformation.
You will perform restoration and recovery efforts for clients after cyber incidents, working closely with DFIR teams.
You will utilize expertise in Active Directory, PowerShell, and virtualization technologies to restore compromised systems.
You will provide after-hours support and maintain a clear record of recovery actions.
Surefire Cyber is a cybersecurity incident response firm that delivers swift recovery from cyber incidents such as ransomware and data theft. Our team of industry veterans fosters a client-centric culture focused on continuous learning and collaboration.
Continuously research emerging threats, malware, and vulnerability exploitation campaigns and translate findings into authoritative content.
Produce high-impact technical content including research papers, security reports, whitepapers, blogs, and conference presentations.
Partner with Product and Engineering to translate new product capabilities into clear, compelling technical narratives.
Picus Security is a leading exposure validation company that proves what attackers can exploit and what your defenses stop. Trusted by Fortune 500 enterprises and named a Gartner Peer Insights Customers' Choice, Picus offers a fast-growing, remote-first culture with unlimited opportunity.
Identify innovative ways to detect Windows OS threats and develop cross-platform features leveraging telemetry from OS subsystems.
Collaborate with Product, Engineering, and Security teams to implement detection logic and address gaps in product coverage.
Apply AI to improve research quality and speed, and mentor team members to advance technical expertise.
Huntress is a cybersecurity company founded by former NSA operators that provides enterprise-grade cybersecurity to businesses of all sizes. They are a remote-first team securing over 5 million endpoints and 11 million identities, with a culture focused on collaboration and making a meaningful impact.
Develop and maintain a multi-platform implant in Rust for Windows, Linux, and macOS.
Build C2 infrastructure, post-exploitation modules, and AV/EDR evasion techniques.
Design network pivoting and tunneling capabilities, and write integration tests.
Horizon3 is a cybersecurity company that provides the NodeZero autonomous pentesting platform to help organizations find and fix exploitable attack vectors. They are a remote team of former U.S. Special Operations cyber operators and engineers, committed to a culture of respect, collaboration, and ownership.
Design, implement, support, and optimize enterprise infrastructure across Windows Server, VMware, storage, and cloud platforms including AWS and Azure.
Strengthen identity, security, and resiliency across Active Directory and Microsoft Entra through modern authentication and disaster recovery planning.
Advance automation through PowerShell and emerging technologies, partnering with development teams on DevOps practices for reliable application delivery.
The Bancorp is a financial services company that has spent over 25 years driving innovation in fintech, providing banking capabilities for fintech solutions, institutional banking, and lending. The company fosters a culture of urgency and rigor, with a small team handling enterprise-scale infrastructure.
Contribute to practice development and marketing initiatives through research, speaking, and tool creation.
GuidePoint Security provides trusted cybersecurity expertise, solutions and services to help organizations minimize risk. The company has over 1,200 employees and focuses on a collaborative, enjoyable workplace atmosphere.
Design, implement, and maintain privileged access solutions to secure critical systems and accounts.
Administer Delinea PAM operations, including integration with enterprise identity and security tooling.
Troubleshoot and resolve PAM issues, ensuring compliance and audit readiness.
Cotiviti is a healthcare analytics company that provides data-driven solutions to improve payment accuracy and quality outcomes. It is a large organization with a culture focused on innovation, collaboration, and security.
Design and ship security workflows combining deterministic analysis with LLM reasoning to find real vulnerabilities across languages and frameworks.
Engineer agentic pipelines and prompts that are precise, cost-aware, and trustworthy for security-critical work.
Push on hard problems in automated triage and validation to close the gap between finding and actionable fix.
Semgrep is a code security platform that helps teams catch and fix vulnerabilities before they ship. They are a venture-backed startup with a transparent culture that values respect and honesty.
Partner with clients to assess risk, design, and implement Microsoft security solutions across identity, endpoint, threat protection, and compliance.
Configure and support Microsoft Entra ID, Defender technologies, Sentinel, and Intune to enhance security posture.
Deliver trusted advisory services and help clients increase security maturity and operational readiness.
Quisitive is a leading global Microsoft partner specializing in cloud transformation, cybersecurity, and AI solutions. With significant growth since 2016, they have a collaborative culture and a team of experts across the US, Canada, and India.
Conduct advanced offensive security research across cloud infrastructure (AWS, GCP), production services, internal tooling, and AI platforms.
Design and execute realistic adversary simulations targeting identity systems, cloud control planes, supply chains, and distributed architectures.
Research emerging attack vectors against LLMs, AI agents, retrieval systems, MCP integrations, prompt orchestration, and autonomous workflows.
This venture-backed AI company combines world-class human expertise with advanced machine learning workflows to help leading AI organizations build and improve cutting-edge models. Backed by over $40 million in funding and a rapidly expanding international network, it operates as a distributed, remote-first team.
Lead end-to-end penetration testing and red team engagements for customer environments including internal networks, web applications, and cloud infrastructure.
Perform in-depth testing with manual techniques to find business-logic flaws and high-impact attack chains that automated tools miss.
Deliver high-quality client-ready reports with clear risk ratings, business impact, and practical remediation guidance.
Horizon3 is a fast-growing cybersecurity company whose NodeZero platform delivers autonomous pentests and assessment operations for organizations of all sizes. The team is a fusion of former U.S. Special Operations cyber operators, startup engineers, and cybersecurity practitioners, committed to a culture of respect, collaboration, ownership, and results.
Implement and optimize Microsoft 365 E5 security solutions, including Entra ID, Intune, Defender, and Sentinel.
Participate in security operations, incident response, threat detection, and vulnerability management.
Support cloud security posture management across Azure and AWS environments.
Numeris is Canada's most trusted source for broadcast measurement and consumer behavior data, serving broadcasters, advertisers, and agencies. The company fosters a collaborative culture with a focus on continuous learning, career advancement, and community support.
Conduct vulnerability research and reverse engineering on diverse hardware and software targets.
Develop, test, and integrate cybersecurity tools and capabilities for critical missions.
Collaborate with specialized engineers to solve complex security challenges and shape next-generation solutions.
They are a cybersecurity firm focused on vulnerability research and development of advanced cyber capabilities for critical missions. They offer a collaborative environment with highly skilled professionals and significant autonomy for technical ownership.