Get hands-on with our Go codebase, AWS and Kubernetes environment, SIEM, and security services, contributing security feedback to design docs and shipping your first fix or detection.
Own a security domain end to end, such as cloud hardening or detection engineering, and ship reusable Go security middleware adopted by service teams.
Drive multi-quarter initiatives like default-deny networking, expand Kubernetes security, and automate compliance evidence for audits.
Bastion provides regulated infrastructure for businesses to hold, move, and issue stablecoins, combining custodial wallets, payment orchestration, and issuance. As a 40-person startup, we operate through our own regulated entities with built-in compliance and risk controls.
Partner with engineering teams on architecture reviews, threat modeling, and secure design to translate risks into practical recommendations.
Improve security tooling, strengthen SDLC and CI/CD controls, and serve as a GCP security subject matter expert.
Drive vulnerability management, coordinate penetration testing, and enable engineers through documentation and mentorship.
Doppel builds an AI-native platform for social engineering defense, protecting executives, employees, customers, and brands from phishing, impersonation, and fraud across digital channels. Backed by Andreessen Horowitz and Bessemer Venture Partners, it is a rapidly growing Series C startup with a team focused on cybersecurity expertise and startup velocity.
Lead threat modeling and security reviews across Wiz's products and cloud infrastructure, identifying attack surfaces and developing scalable mitigation strategies.
Build automation, policy-as-code, and security tooling that enables development teams to 'shift left' and integrate end-to-end security into their workflows.
Drive vulnerability management and remediation efforts, prioritizing issues, implementing mitigations, and designing strategic preventative controls in software supply chains from development through production.
Wiz is redefining security for the AI era, enabling teams to secure cloud and AI applications by connecting code, cloud, and runtime into a single shared context. As one of the fastest-growing startups ever, we are trusted by over 65% of the Fortune 100 and scan over 230 billion files daily, with a culture that values world-class talent and is now powered by Google.
Design and maintain secure architectures across AWS, Azure, and GCP with infrastructure-as-code and policy-as-code enforcement.
Secure AI/ML pipelines and LLM applications, addressing OWASP Top 10 for LLMs and implementing guardrails and content-filtering controls.
Drive security operations, including SIEM monitoring, incident response, and supporting HIPAA/HITRUST/SOC 2 compliance.
Reveleer delivers a unified platform for risk adjustment, quality improvement, clinical intelligence, and member management for health plans and provider organizations in value-based care. Trusted by 80+ customer organizations nationwide, the company fosters a collaborative, compliance-focused culture with transparent, human-in-the-loop AI at its core.
Shape the Cogent product at the frontier of AI and cybersecurity, working hand-in-hand with ML engineers.
Build the world's first AI-native cybersecurity organization, extending security posture and incident response.
Educate the market and elevate the industry through thought leadership and customer partnerships.
Cogent is an applied AI lab building next-generation AI agents for cybersecurity. The company is a rapidly growing startup backed by Greylock, with a team of experts from top universities and companies, fostering a culture of cutting-edge research and real-world execution.
Drive offensive security through pen tests, red-team engagements, and threat modeling across Docker products and infrastructure.
Partner with engineering to implement secure architecture, automated reviews, and vulnerability management.
Build offensive tooling, develop exploits, and support incident response and security education.
Docker builds tools for developers to build, share, and run applications, including Docker Desktop, Docker Hub, and Docker Scout. It is a globally distributed, remote-first team trusted by 20M+ monthly users, focused on secure container development.
Act as the bridge between architectural intent and operational reality, mediating conflicts between security requirements and feasible implementation.
Implement preventive, default-on security controls across cloud and enterprise environments, codified as policy- and infrastructure-as-code.
Define and enforce security requirements for AI-powered features, including model access controls, prompt-injection mitigations, and output validation.
Rithum is the world's most trusted commerce network, accelerating how brands, suppliers, and retailers work together to deliver seamless e-commerce experiences. More than 40,000 companies trust Rithum to grow their business across hundreds of channels, representing over $50 billion in annual GMV.
Own identity, SSO, and device management across Google Workspace and macOS, automating joiner and leaver flows from day one.
Secure cloud and SaaS environments by managing IAM, cloud guardrails, and vulnerability management end to end.
Bring a security perspective to incidents and audits, using AI-assisted workflows to reduce manual work.
Maze is a user research platform that helps product teams build the right products faster by making user insights accessible. With less than 150 team members and a global remote workforce, Maze fosters a culture of transparency and inclusion.
Own cloud and product security across AWS and GCP, setting baselines for IAM, networking, data protection, and workload configuration.
Partner with platform, SRE, and product teams to embed practical security controls into developer workflows and automate guardrails in delivery pipelines.
Perform security architecture reviews, threat modeling, and incident response, and drive systemic improvements with meaningful security metrics.
We create intelligent software development tools used by more than 15 million users and 300,000 companies, including 88 of the Fortune Global Top 100. Our mission is to make development teams more productive and AI adoptable at scale, and we foster an open and inclusive workplace.
Fix vulnerabilities across the stack by writing pull requests in application repositories and Terraform.
Build and tune SIEM detections, mapping coverage to MITRE ATT&CK and reducing false positives.
Lead incident response, harden AWS estate, and automate security workflows with code.
Cloudbeds is a hospitality management platform powering hotels across 150 countries, processing billions in bookings annually. The company is a remote-first team of 650+ across 40+ countries, recognized for innovation and an inclusive culture.
Lead and grow a team of security engineers focused on protecting cloud-native environments and CI/CD pipelines.
Drive technical strategy, threat modeling, and security automation across multi-cloud infrastructure.
Partner with engineering and DevOps teams to embed secure-by-design principles and manage vulnerability and supply chain security.
Wiz is a cybersecurity company that provides a cloud security platform connecting code, cloud, and runtime to secure cloud and AI applications. It is one of the fastest-growing startups, trusted by over 65% of the Fortune 100, and now powered by Google, with a culture that values world-class talent.
Design and strengthen security features across Pigment's product and infrastructure, threat modeling new services and making architectural decisions.
Lead security investigations and incident response, manage vulnerability detection and remediation, and build detection engineering capabilities.
Drive the security roadmap end-to-end, working hands-on with code and infrastructure to balance risk and business benefit.
Pigment is an AI-powered business planning and performance management platform. Founded in 2019, the company has over 600 employees and has raised nearly $400M, recognized as a Gartner Visionary.
Own the configuration, tuning, and management of our SIEM solution to diagnose unusual threats.
Perform architecture reviews, code reviews, and penetration testing on web and mobile apps.
Build and maintain vulnerability management CI/CD pipeline and collaborate with engineering teams.
Engine is the AI-native platform for intelligent travel, serving over 38,000 customers and nearly 2 million travelers. Recognized as one of Fast Company's Best Workplaces for Innovators (2025) and Built In's Best Places to Work (2020–2026), we have a culture of exponential growth and high-caliber colleagues.
Contribute to secure-by-design practices and maturing SAST, SCA, and DAST programs.
Develop Secure AI Development Lifecycle and AI-assisted threat modeling framework.
Mentor engineers on secure coding and foster cross-functional collaboration.
Spring Health is a global mental health company using an AI-native platform to deliver personalized mental health support. The company reaches over 170 million people worldwide and fosters a culture of innovation, collaboration, and commitment to eliminating barriers to mental health.
Design and build security for future infrastructure, partnering with engineering and compliance teams.
Lead AI-native security initiatives, designing autonomous agents for threat detection and incident response.
Devise defense-in-depth frameworks, research threats, and maintain KPIs for a healthy cloud security program.
WeightWatchers is a global digital health company that blends science and community to help millions build sustainable healthy habits. The engineering team drives transformative change through technology, with a culture that thrives on urgency, collaboration, and passion for impactful work.
Own security of the software build and release pipeline, cloud environments, and AWS identity and access.
Operationalize a 15-domain cloud security framework and CrowdStrike CSPM across all AWS estates.
Mentor a junior cloud security engineer and build paved-road patterns for engineering teams.
Vermont Information Processing is a leading beverage industry technology provider trusted by over 1,600 suppliers for 50+ years. Backed by Warburg Pincus, VIP is investing in security with executive sponsorship and a funded roadmap.
Lead security assessments of AI/ML models, data pipelines, and AI-enabled applications, identifying vulnerabilities such as prompt injection, model inversion, data poisoning, and adversarial inputs.
Partner with Data & Analytics and Engineering to embed security requirements and threat modeling into the AI development lifecycle, from data collection through model deployment.
Build and maintain guardrails, monitoring, and detection controls for AI systems in production, flagging anomalous model behavior and unauthorized data access.
Interra Health is a healthcare technology company that helps providers and patients navigate the prescription journey. It is a fast-growing, mission-driven team of about 100 employees, formed through the merger of DoseSpot, Arrive Health, and pVerify, and focused on reducing friction and improving access to medications.
Design and enforce cloud security controls and IAM policies across multi-account AWS environments.
Embed automated security tools into CI/CD pipelines to catch vulnerabilities pre-deployment.
Develop automated detection and remediation workflows using Python, Bash, or Go and IaC tools.
The Tripadvisor Group connects people to experiences worth sharing, aiming to be the world's most trusted source for travel and experiences. It is a publicly traded company with a global portfolio of travel brands, fostering a culture of collaboration, agility, and traveler-first mindset.
Bridge security and platform engineering to make infrastructure secure by design and provable at audit.
Own infrastructure vulnerability management and automate security guardrails on Azure and Kubernetes.
Build detection as code, widen SIEM coverage, and eliminate long-lived credentials.
360Learning is a collaborative learning platform for turning internal experts into champions for employee, customer, and partner growth. Founded in 2013, it has 400+ employees across North America and EMEA with an inclusive Convexity culture.
Design, prototype, and deploy technical controls to close high-impact abuse vectors.
Translate empirical attacker evidence into precise technical requirements and control specifications.
Collaborate with cross-functional teams to run experiments and build regression testing suites.
Stripe is a financial infrastructure platform for businesses, enabling millions of companies to accept payments and grow revenue. It is a large company with a mission-driven culture focused on increasing the GDP of the internet.