Monitor, triage, and investigate security incidents across Kraken's infrastructure and client instances.
Develop and automate detection capabilities and incident response processes.
Collaborate with engineering and product teams to improve security posture and respond to incidents.
We power some of the most innovative global developments in energy by creating technology that redefines utilities. We are a growing global team committed to improving the lives of one billion humans within the decade.
Lead cybersecurity investigations across cloud, endpoint, identity, SaaS, email, and network environments.
Partner with Engineering, Infrastructure, Fraud, Legal, Communications, and Product teams to manage incidents and communicate risk.
Support continuous improvement through automation, AI-assisted security workflows, and detection tuning.
Oportun is a mission-driven financial services company that empowers members with intelligent borrowing, savings, and budgeting capabilities. Since inception, it has provided over $21.3 billion in responsible credit and fosters a diverse, equitable, and inclusive culture.
Develop processes, tooling and automation to scale incident management response and mitigate risks.
Collaborate with security, engineering, product, support, and business operations to identify detection use cases.
Maintain security logging platform and stay updated on threats to improve detection mechanisms.
ClickHouse is a leading real-time analytics, data warehousing, observability, and AI workloads company with over 4,000 customers and rapid growth, validated by a $400M Series D funding round. The company values innovation and collaboration, offering a remote-friendly culture with a global team.
Monitor and triage alerts across endpoint, network, cloud, runtime, and identity data sources.
Perform structured investigations on escalated or ambiguous alerts to build coherent timelines.
Participate in incident response, including evidence collection and containment actions.
AlphaSense provides AI-driven market intelligence and search to help enterprises make informed decisions. The company has over 2,000 employees globally and fosters a culture of innovation and collaboration.
Monitor, analyze, and respond to complex security incidents, guiding Level 1 engineers and contributing to the organization's security posture.
Conduct in-depth forensic analysis, manage vulnerabilities, and optimize security tools such as SIEM, IDS/IPS, and endpoint protection.
Collaborate with IT and security teams, participate in on-call support, and stay updated on the latest cybersecurity threats and best practices.
CTS delivers comprehensive IT solutions for mission-driven organizations, with deep expertise in nonprofits and education. The company is headquartered in Brooklyn, NY with 90+ employees across the US and several other countries, fostering a culture of growth and innovation.
Monitor, investigate, and respond to security alerts from SIEM, EDR/XDR, IDS/IPS, firewall, cloud, identity, and endpoint security platforms.
Perform incident response and threat hunting activities, including alert triage, root cause analysis, containment, and documentation.
Analyze endpoint, authentication, firewall, VPN, cloud, and network activity to identify indicators of compromise and suspicious behavior.
Clear Capital is a national real estate analytics, data solutions, and valuation technology company that builds confidence in real estate decisions. The company values integrity, kindness, grit, empathy, attention to detail, and raising the bar.
Architect the SOC strategy and roadmap, defining threat intelligence operations, detection frameworks, and defensive maturity metrics.
Build and tune detection logic across cloud stacks, identity layers, and endpoints, rejecting noise to accelerate incident response velocity.
Own incident command, leading containment and recovery operations while driving engineering change through rigorous post-mortems.
Second Front Systems is a public-benefit software company that accelerates secure software development and deployment for government and regulated networks. Founded by national security veterans, the company is a high-growth startup backed by top-tier venture capital with a culture of accountability and technical craft.
Own end-to-end security incident response, from triage to recovery, and drive post-incident learnings.
Build and improve detection coverage across cloud, endpoint, identity, and SaaS systems.
Develop security automation and workflows to reduce manual toil and improve response speed.
Front is the customer operations platform for B2B complexity, keeping teams, tools, and conversations in sync. Over 9,000 companies rely on Front, and it's backed by Sequoia Capital and Salesforce Ventures, with a highly recognized workplace culture.
Design, develop, and maintain security automation and SOC tooling, including integrations with SIEM, EDR, cloud services, and internal security platforms.
Participate in security detection engineering, including log parsing, data normalization, and detection logic implementation.
Assist in security incident response, including triage, investigation, containment, eradication, and post-incident analysis.
Binance is a leading global blockchain ecosystem behind the world's largest cryptocurrency exchange by trading volume and registered users. We are trusted by 300+ million users in 100+ countries with a focus on security and innovation.
Analyze, investigate, document, and report on security alerts and potential incidents in customer environments.
Serve as an incident coordinator for urgent security events requiring response, containment, and remediation.
Stay up-to-date on security training, certifications, and emerging threats while providing security consultation to customers.
CyberSheath is a rapidly growing Managed Security Services Provider offering cybersecurity compliance and threat mitigation for the Defense Industrial Base. The company is expanding its team and fosters a fully remote work environment with a focus on security operations.
You will own KPA's enterprise security platforms and lead technical security initiatives.
You will manage vulnerability remediation, endpoint security, identity security, and incident response.
You will secure cloud environments across Azure, AWS, and Microsoft 365, integrating security into CI/CD pipelines.
KPA provides compliance and risk management software for the automotive and equipment industries. The company values trust, innovation, excellence, and results, fostering a collaborative culture with a team of security and IT professionals.
Write, tune, and maintain detections in a modern SIEM across cloud, container, and SaaS log sources.
Run cloud security operations in AWS, triage alerts, and help execute incident-response playbooks.
Build and extend security-automation tooling with code fluency in Python or TypeScript.
SmarterDx uses clinical AI to help health systems capture the full value of patient care. They are a remote-first team with a mission to make healthcare more accurate and sustainable.
Monitor, detect, and respond to security events across enterprise environments using the SIEM.
Build and maintain dashboards, visualizations, and KPIs that demonstrate SIEM effectiveness and security visibility.
Use frameworks such as MITRE ATT&CK to contextualize detections and identify coverage gaps.
Horizon3.ai is a fast-growing, remote cybersecurity company that provides production-safe autonomous pentests through its NodeZero platform to organizations of all sizes. We are a fusion of former U.S. Special Operations cyber operators and startup engineers, committed to a culture of respect, collaboration, ownership, and results.
Lead high-impact incident response in a complex cloud environment, shaping how Atlassian responds to security events at scale.
Manage a team of 5-8 US-based incident responders, coaching them in investigations, decision-making, and executive communication.
Drive adoption of investigative AI tools and automation to improve triage speed, signal relevance, and operational consistency.
Atlassian creates software products that help teams collaborate globally. The company values diversity and inclusion, with a culture focused on unleashing team potential.
Design, test, and implement security configurations to meet controls within Security Platforms.
Collaborate with stakeholders on emerging controls and guide intake discussions with engineers.
Troubleshoot and respond to security platform errors or incidents, monitoring health and coverage across the enterprise.
Nir Yu is a company that focuses on technology, with a security engineering team. The company is remote-first in Latin America and values collaboration, innovation, and a customer service oriented culture.
Design, implement, and maintain SIEM platform architectures across AWS, Azure, and GCP environments.
Build and operate reliable log collection and ingestion pipelines using forwarders, connectors, APIs, syslog, and agents.
Support FedRAMP continuous monitoring and compliance requirements while partnering with detection engineering and security operations teams.
Coalfire is a leading cybersecurity solutions provider that advises, assesses, automates, and helps clients navigate the ever-changing cybersecurity landscape. The company has offices across the U.S. and U.K. and fosters a culture of passionate problem-solvers who are hungry to learn and grow.
Design, implement, and secure hybrid cloud environments across Microsoft Azure, AWS, and Microsoft 365.
Lead SOC 2 Type II audit support, cybersecurity operations, and incident response.
Develop automation and security monitoring using Sentinel, Defender, and PowerShell.
XO Health is the first health plan designed by and for self-insured employers, delivering a unified health experience for all stakeholders. The company is growing a multi-disciplinary team of diverse and digitally empowered employees focused on rebuilding trust in healthcare.
Design, develop, and maintain secure cloud environments for distributed LogRhythm deployments.
Act as a technical escalation point for SIEM engineers, solving complex security and infrastructure issues.
Build automation and operational tooling using PowerShell, SQL, Bash, or Python.
The company specializes in cybersecurity and managed SIEM services, focusing on protecting and scaling distributed LogRhythm environments. They offer a remote work environment with a collaborative culture and opportunities for professional growth.
Respond to monitoring alerts and support incident response to maintain cloud environment availability.
Interact with customers, partners, and internal teams to understand needs and resolve ticket requests.
Assist with cloud infrastructure, networking, and hosting tools while following best practices for issue resolution.
Hyland is a content services platform provider that delivers enterprise intelligence through its Content Innovation Cloud, enabling automation and actionable insights. The company has nearly 4,000 employees and fosters an inclusive, employee-centric culture with a focus on career development and community impact.