Conduct vulnerability research to identify net-new vulnerabilities across operating systems, platforms, and devices.
Reverse engineer firmware and software to author original exploits and detection artifacts.
Apply agentic approaches to scale vulnerability discovery and exploit development.
VulnCheck delivers structured exploit intelligence on what is actively weaponized in the wild. Founded in 2021, it has a transparent, collaborative culture with a team of smart, humble, and supportive experts.
Drive offensive security through pen tests, red-team engagements, and threat modeling across Docker products and infrastructure.
Partner with engineering to implement secure architecture, automated reviews, and vulnerability management.
Build offensive tooling, develop exploits, and support incident response and security education.
Docker builds tools for developers to build, share, and run applications, including Docker Desktop, Docker Hub, and Docker Scout. It is a globally distributed, remote-first team trusted by 20M+ monthly users, focused on secure container development.
Plan and execute red team operations and adversary simulations focused on cloud environments.
Evaluate security of cloud infrastructure, identity architectures, CI/CD pipelines, and containerized workloads.
Assess detection and response coverage with blue team and detection engineering.
Motive empowers people who run physical operations with tools to make their work safer, more productive, and more profitable. We serve nearly 100,000 customers, from Fortune 500 enterprises to small businesses, and value diversity and inclusion.
Break AI and agentic systems and turn research into automated, repeatable attacks for NodeZero.
Design and execute prompt injection, defense evasion, and tool-use exploitation against AI infrastructure.
Build and extend LLM-powered applications and microservices, focusing on production safety and reliability.
Horizon3 is a cybersecurity company whose NodeZero platform delivers autonomous pentests to find exploitable attack vectors. It’s a fast-growing, fully remote team of engineers and former special ops operators with a culture of respect and ownership.
Lead the technical direction of a vulnerability intelligence practice, setting standards for validation and communication.
Research and validate newly disclosed vulnerabilities, including testing proof-of-concept exploits in isolated environments.
Build honeypots, detection methods, and automation to monitor real-world exploitation and deliver actionable intelligence.
They are a cybersecurity intelligence company focused on vulnerability research and real-world risk assessment. They are a remote-friendly international team with a collaborative culture built on openness, inclusion, integrity, and continuous learning.
Run continuous vulnerability scanning in Tenable and CrowdStrike Falcon to ensure full coverage of cloud assets.
Prioritize findings by real-world risk using exploitability, threat intelligence, and asset context, and validate high-priority findings hands-on.
Automate scan-to-ticket workflows with Python, push validated fixes through Jira, and help define vulnerability management standards and SLAs.
Revinate is the hotel data activation platform that connects and cleans guest data from every system into Rich Guest Profile data, powered by an AI intelligence layer trained on 17 years of hospitality data. Revinate powers 1.1 billion data points across 12,500+ hotels, driving over $24 billion in direct revenue, and is proud to be a Great Place To Work Certified company.
Apply your cybersecurity expertise to train next-generation AI systems with real-world input.
Analyze, debug, and resolve software bugs and vulnerabilities across diverse codebases.
Perform security audits, penetration testing, and contribute to backend development.
Our client is a venture-backed AI company developing intelligent systems via human expertise and machine learning. They are rapidly growing with over $40 million in funding and a global network of experts.
Conduct hands-on application security reviews threat modeling and code audits across the entire stack (backend frontend APIs infrastructure).
Build and improve security automation for vulnerability management including SAST DAST container scanning and secrets detection.
Drive remediation of findings from bug bounty scanners and audits partnering with engineering teams to prioritize and fix.
Close builds a communication-first AI-powered CRM that helps sales teams sell more and faster. With a 120-person 100% remote team they are bootstrapped profitable and focused on eliminating manual data entry for scaling businesses.
Design, implement, and maintain internal tooling for acquiring and parsing recaptured underground data.
Build and deploy cloud infrastructure using Infrastructure as Code technologies.
Collaborate with the research team to support targeting and collection of new data sources.
SpyCloud transforms recaptured darknet data to disrupt cybercrime. They have over 250 cybersecurity experts and foster a collaborative, innovative culture.
Partner with engineering teams on architecture reviews, threat modeling, and secure design to translate risks into practical recommendations.
Improve security tooling, strengthen SDLC and CI/CD controls, and serve as a GCP security subject matter expert.
Drive vulnerability management, coordinate penetration testing, and enable engineers through documentation and mentorship.
Doppel builds an AI-native platform for social engineering defense, protecting executives, employees, customers, and brands from phishing, impersonation, and fraud across digital channels. Backed by Andreessen Horowitz and Bessemer Venture Partners, it is a rapidly growing Series C startup with a team focused on cybersecurity expertise and startup velocity.
Dissect and outmaneuver sophisticated cyber attack techniques across endpoint and cloud environments.
Translate complex threat research into scalable detection recommendations and engineer attack code.
Collaborate with detection engineers, intelligence analysts, and threat hunters to prioritize and refine deliverables.
Zscaler provides a cloud security platform that securely connects users to applications, protecting customers from cyberattacks and data loss. It is the world's largest in-line cloud security platform with an AI-native culture.
Own vulnerability management across code, dependencies, images, and cloud config, automating triage and remediation.
Build and expand security gates in CI/CD pipelines, define secure cloud baselines, and drive least privilege identity.
Partner with DevOps on paved roads for secure-by-default development and lead incident response.
Aegis AI is a startup founded by ex-Google engineers who built Safe Browsing and reCAPTCHA, focused on stopping adversarial AI attacks. The team is flat, flexible, and fast, with engineers owning decisions and clear KPIs.
Design, configure, and support ServiceNow Vulnerability Response (VR) to manage the end-to-end vulnerability lifecycle.
Build and maintain remediation workflows, vulnerability groups, assignment rules, and calculators using Flow Designer and other ServiceNow technologies.
Configure and manage vulnerability scanning and security tool integrations via APIs including Qualys, Tenable, Rapid7, Microsoft Defender, and CrowdStrike.
GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations minimize risk and make better decisions. Since 2011, the company has grown to over 1,300 employees and serves as a trusted advisor to more than 6,200 customers, with a culture driven by core values and collaboration.
Plan and execute realistic adversary simulations using threat intelligence to assess security and detection capabilities.
Hunt for vulnerabilities across AI systems, payment infrastructure, autonomous delivery hardware, and emerging technologies.
Build custom tools, exploits, and payloads tailored to DoorDash's tech stack and partner with Blue Teams.
DoorDash is a technology and logistics company that empowers local economies by enabling door-to-door delivery for consumers, merchants, and Dashers. The company is growing rapidly and constantly changing, with a culture focused on empathy, diversity, and employee well-being.
Design and strengthen security features across Pigment's product and infrastructure, threat modeling new services and making architectural decisions.
Lead security investigations and incident response, manage vulnerability detection and remediation, and build detection engineering capabilities.
Drive the security roadmap end-to-end, working hands-on with code and infrastructure to balance risk and business benefit.
Pigment is an AI-powered business planning and performance management platform. Founded in 2019, the company has over 600 employees and has raised nearly $400M, recognized as a Gartner Visionary.
Operate and manage cloud infrastructure security, threat hunting, logging/alerting, and endpoint security.
Support internal AI security by leveraging HiddenLayer tools and joining customer calls to demonstrate threat hunting.
Manage vulnerability and risk tooling, cloud hardening, and security controls across compliance frameworks.
HiddenLayer protects the world's most valuable technologies from adversarial AI attacks. Founded by AI professionals and security specialists, we have been recognized with prestigious awards and recently raised $100M in Series B funding, achieving 10x revenue growth and 50+ enterprise customers.
Conduct application and cloud security assessments to identify risks and vulnerabilities.
Collaborate with development teams to integrate security best practices into the SDLC.
Support vulnerability management, incident response, and security awareness education.
Business Wire is a leading global news release distribution service. The company is a large organization with a remote-first culture and offers competitive benefits.
Shape the Cogent product at the frontier of AI and cybersecurity, working hand-in-hand with ML engineers.
Build the world's first AI-native cybersecurity organization, extending security posture and incident response.
Educate the market and elevate the industry through thought leadership and customer partnerships.
Cogent is an applied AI lab building next-generation AI agents for cybersecurity. The company is a rapidly growing startup backed by Greylock, with a team of experts from top universities and companies, fostering a culture of cutting-edge research and real-world execution.
Execute penetration testing engagements across web applications, APIs, networks, and cloud environments.
Identify, validate, and document security vulnerabilities with clear proof-of-concepts and remediation guidance.
Collaborate with clients and internal teams through scoping calls, kickoffs, report reviews, and quality assurance.
A security consulting firm that provides penetration testing services for web applications, APIs, networks, and cloud environments. The company fosters a collaborative, remote-first culture with a focus on quality assurance and continuous improvement.
Plan and execute red team operations, adversary simulations, and targeted security assessments focused on cloud environments.
Evaluate the security of cloud infrastructure, identity architectures, CI/CD pipelines, and containerized workloads.
Identify and validate attack paths involving IAM misconfigurations, overprivileged roles, and secrets exposure.
We empower the people who run physical operations with tools to make their work safer, more productive, and more profitable. We serve nearly 100,000 customers across industries, from Fortune 500 enterprises to small businesses, fostering a diverse and inclusive workplace.