Identify novel vulnerabilities in industrial products and control systems through strategic acquisition and rigorous analysis.
Develop detection signatures (Suricata, YARA, internal analytics) and partner with product engineering to close gaps in the Dragos Platform's vulnerability detection.
Serve as a trusted internal resource to threat intelligence and incident response teams, assessing in-the-wild exploits and integrating findings into broader threat intelligence.
Conduct deep technical research into malware, firmware, and adversary tools targeting industrial environments.
Develop YARA signatures and detection strategies to protect critical infrastructure.
Collaborate with analysts and engineers to transform research into actionable defenses.
The company defends critical infrastructure from advanced cyber threats. It operates with a remote-first, mission-driven culture focused on innovation and transparency.
Lead deep-dive analysis of ICS-related malware and firmware, developing novel detection methods and Yara signatures.
Write persuasive customer-facing technical reports that translate complex malware findings into clear operational impact.
Collaborate across teams with hunters, intelligence analysts, and detection engineers to drive malware-related threat research.
Dragos is the global leader in xOT cybersecurity, combining technology, threat intelligence, and expert services. They have a remote-first mission-driven team across North America, Europe, the Middle East, and APAC built on authenticity, transparency, and trust.
You will hunt for and analyze adversary capabilities targeting ICS/OT networks.
You will develop tools and scripts for capability analysis and inform detection strategies.
Your work directly enhances Dragos' ability to defend against advanced threats.
Dragos is the global leader in xOT cybersecurity, combining technology, threat intelligence, and expert services. The company is a remote-first mission-driven team across North America, Europe, the Middle East, and APAC built on authenticity, transparency, and trust.
Perform incident response and forensic analysis of compromised systems, identifying and recommending remediation.
Formulate and direct incident response efforts, prioritizing actions and creating detailed reports on compromise vectors and attacker methodologies.
Build incident response plans, playbooks, and attack scenarios for customer tabletop exercises, maintaining sandbox environments to evaluate malicious code.
Check Point Software Technologies is the world's leading vendor of cyber security, facing sophisticated threats and attacks. Honored by Time Magazine as one of the World's Best Companies and on Forbes' list of the World's Best Places to Work, we have a global team of driven and innovative people.
Lead and execute incident response engagements for OT customers as Incident Commander, including triage, investigations, threat hunts, and compromise assessments across onsite and remote environments.
Conduct post-incident reviews, root-cause analysis, and integrate lessons learned into playbooks and response methodologies.
Develop and deliver advisory services including incident response planning workshops, maturity assessments, and tabletop exercises to advance customer readiness.
Dragos is a global leader in operational technology (OT) cybersecurity, combining technology, threat intelligence, and expert services. They have a remote-first mission-driven team across North America, Europe, the Middle East, and APAC built on authenticity, transparency, and trust.
Conduct vulnerability research and reverse engineering on diverse hardware and software targets.
Develop, test, and integrate cybersecurity tools and capabilities for critical missions.
Collaborate with specialized engineers to solve complex security challenges and shape next-generation solutions.
They are a cybersecurity firm focused on vulnerability research and development of advanced cyber capabilities for critical missions. They offer a collaborative environment with highly skilled professionals and significant autonomy for technical ownership.
Analyze and respond to advanced threats ranging from commodity phishing to zero-day exploits.
Monitor and triage alerts from network security monitoring, EDR platforms, and other log sources.
Create detailed incident reports and collaborate with threat intelligence and incident response teams.
Volexity is a cybersecurity company specializing in threat intelligence and incident response. They have a growing, industry-leading security operations team and value diversity and equal opportunity.
You'll lead the VIPR & VMDR function, integrating vulnerability intelligence, detection, and response for customers across APJ/APAC.
You'll operate and tune vulnerability detection tools like Tenable, Qualys, and Rapid7, and automate pipelines using Python and REST APIs.
You'll build risk dashboards and executive briefings, and collaborate with Customer Success and Security Engineering to improve remediation metrics.
ServiceNow is the AI control tower for business reinvention, bringing together AI, data, and workflows to help 85% of the Fortune 500 work smarter. The company fosters an AI-native culture where technology and talent are unstoppable together.
Responsible for daily incident management of customer incidents, including incident response and forensic analysis of compromised systems.
Formulate and direct incident response efforts, prioritize response actions, and create legible incident reports describing compromise vectors and attacker methodologies.
Build and maintain incident response plans, playbooks, and sandbox/test lab environments to evaluate malicious code.
We protect over 100,000 organizations worldwide from increasingly sophisticated cyber and AI-driven threats, securing their AI transformation with a prevention-first approach. We are recognized by TIME, Newsweek, and Forbes for our excellence and workplace culture, and we value ownership, curiosity, and solving complex problems.
Analyze, assess, reproduce, and triage incoming security vulnerability reports from the bug bounty program.
Communicate clearly with security researchers and drive the lifecycle of submissions through to resolution.
Understand root causes of vulnerabilities and advise on mitigation strategies to improve security posture.
Stripe is a financial infrastructure platform for businesses, enabling millions of companies to accept payments, grow revenue, and accelerate new business opportunities. As a large, mission-driven company, Stripe fosters a culture of passion, grit, and integrity with diverse perspectives.
Leads product security work across Black Duck's portfolio, including architecture reviews, threat models, vulnerability triage, and customer-facing security inquiries.
Maintains detection content in CrowdStrike NG-SIEM and Sumo Logic, contributes to SOAR automations, and coordinates vulnerability fixes with engineering teams.
Acts as an informal technical resource for less experienced team members, explains complex security topics to diverse stakeholders, and documents runbooks and SOPs.
Black Duck Software, Inc. helps organizations build secure, high-quality software, minimizing risks while maximizing speed and productivity. A recognized pioneer in application security with industry-leading tools and services, they partner with teams to maximize security and quality in DevSecOps.
Diagnose and resolve customer-reported issues quickly, from investigation through durable fix.
Deliver high-quality engineering work that improves platform reliability and directly addresses customer needs.
Partner closely with Customer Success to align on technical solutions and maintain backend systems, APIs, and data pipelines.
VulnCheck is The Exploit Intelligence Company, delivering structured exploit intelligence for exploitation prevention. Founded in 2021, the company has a transparent, collaborative, and supportive culture with a team of cybersecurity experts.
Build and maintain Synapse collection pipelines through Storm queries, automation, and data models.
Diagnose and resolve complex defects in Synapse tooling and collection systems independently.
Support threat hunting and adversary tracking using telemetry and malware analysis techniques.
Dragos is a global leader in OT cybersecurity, combining technology, threat intelligence, and expert services to protect critical infrastructure. The company is a remote-first mission-driven team built on authenticity, transparency, and trust.
Investigate and analyze security alerts and incidents across endpoint, network, cloud, and identity environments.
Conduct proactive threat hunting, malware analysis, and deobfuscation of suspicious scripts.
Collaborate with senior analysts, document findings, and provide remediation recommendations.
The company operates a global Managed Detection and Response environment, protecting organizations from cyber threats. It has a remote-first culture with a collaborative team and opportunities for professional growth.
Provide technical leadership and assist sales teams by presenting products and managing trials.
Conduct file analysis, malware analysis, and reverse engineering for enterprise clients.
Maintain relationships with technical staff and complete RFPs and security questionnaires.
ReversingLabs develops cyber threat detection and mitigation tools that address advanced persistent threats and polymorphic malware. The company has an international team and fosters a collaborative, growth-oriented culture.
Lead advanced penetration tests and adversary emulation in ICS/OT environments, performing hands-on exploitation of customer networks and systems.
Conduct deep technical analysis of network data to identify attack paths and vulnerabilities, while researching threat actor TTPs.
Deliver clear reports and briefings to customers, mentor team members, and contribute to the OT security community.
Dragos defends industrial organizations providing essentials like water, electricity, and safe working environments. As a market leader in ICS/OT cybersecurity, we are remote-first with global operations and seek mission-oriented teammates embodying authenticity, transparency, and trust.
Build and maintain SIEM for log collection and detection rules across corporate and production environments.
Design and deploy canary tokens and early warning mechanisms to detect threats before they reach critical assets.
Investigate security incidents end-to-end, including malware analysis, exfiltration assessment, and timeline reconstruction.
Quora operates two platforms: a global knowledge sharing platform with over 300M monthly unique visitors, and Poe, a platform for chatting and building with AI language models. The company is privately held, remote-first, and fosters a culture of transparency, collaboration, and experimentation.