Lead security risk assessments across engineering, IT, operations, and business functions.
Maintain a risk register and provide leadership with a clear view of the company's risk posture.
Partner with teams to drive remediation of risks and map controls to compliance frameworks like NIST 800-171.
Muon Space is an end-to-end Space Systems Provider that designs, builds, and operates LEO satellite constellations delivering mission-critical data. Founded in 2021, the company operates a state-of-the-art facility in Silicon Valley and is committed to fostering a diverse and dynamic workforce.
Lead and expand the security function across application security, security compliance, infrastructure & cloud security, and business application security.
Build and run the AppSec program with AI-assisted code review and integrate security into CI/CD pipelines.
Own ISO 27001 and SOC 2 certification, manage audits, and secure cloud and business applications.
Constructor provides an all-in-one platform for education and research using machine intelligence and data science to address educational challenges like access inequality and low engagement. The company is led by a gender-balanced board and fosters an inclusive culture, though employee size is not specified.
Own and mature preventative security capabilities across cloud, SaaS, endpoint, identity, network, and data environments.
Translate broad security objectives into concrete technical requirements, controls, tooling, and implementation plans.
Partner across Engineering, Platforms, Product, and business teams to continuously strengthen security posture as we scale.
Backstory is the leading AI answers platform for sales teams, helping modern sales teams ask questions and get the right answer in real time. Backed by top investors like Andreessen Horowitz and ICONIQ Capital, Backstory is based in San Francisco and has been recognized by Gartner, Forrester, and the Forbes AI 50.
Lead and mature enterprise and technology risk management, including AI governance for machine learning and generative AI.
Translate regulatory and control expectations into actionable policies, risk frameworks, and processes.
Collaborate with technology, security, privacy, compliance, and business teams to strengthen the control environment.
The company is a growing technology organization operating in the financial-services sector. It fosters a diverse and inclusive workplace and supports professional development and continuous learning.
Support governance, risk, privacy, and compliance programs to ensure alignment with regulatory requirements.
Conduct risk assessments for vendors and new technologies, and maintain compliance with GDPR and other regulations.
Manage data governance, privacy evaluations, and cybersecurity awareness training.
RMI is an independent nonprofit transforming global energy systems for a zero-carbon future. Founded in 1982, the organization has a global team and a remote-ready culture.
Design and implement an end-to-end Enterprise Cybersecurity Risk Register.
Lead governance lifecycle, establish risk ownership, and drive cross-functional stakeholder alignment.
Deliver audit-ready documentation and ensure post-contract sustainability through structured knowledge transfer.
ASSYST is a technology consulting firm that provides staffing and solutions. The company seeks to place experienced professionals in client engagements, though size and culture are not specified.
Provide architect-level thought leadership in securing enterprise AI programs, including models, applications, and data.
Lead complex client engagements as SME across AI security services, from assessment to executive readout.
Author reference architectures and enable teams to deliver coherent AI security solutions.
Trace3 is a leading Transformative IT Authority, providing unique technology solutions and consulting services to clients. With over 1,200 employees across the United States, the company embodies a startup spirit with a scalable business culture focused on innovation and growth.
Lead and mature cybersecurity compliance programs including SOC 2 Type 2 and ISO 27001 readiness.
Drive cloud and application security across AWS and Azure, integrating secure SDLC and DevSecOps practices.
Manage corporate IT operations, identity and access, and build the cybersecurity team as the organization grows.
Genea is a leader in property technology, providing cloud-based physical security, submeter billing, and on-demand HVAC solutions to over 1 million users across 39 countries. It has been recognized as a Top Workplace from 2021-2025 with a 4.3 Glassdoor rating, fostering a team-oriented and transparent culture.
Deliver accurate security assessments of software, code, and firmware, evaluating resilience against AI-driven attacks.
Build and pressure-test novel AI-enabled security tooling and workflows, then drive adoption across the security org.
Partner cross-functionally to define and drive Samsara's medium- and long-term AI security strategy.
Samsara provides a Connected Operations Cloud platform that helps organizations improve safety, efficiency, and sustainability of physical operations. As a publicly traded company, they foster a culture of rapid career development and hyper growth, with a high-caliber team.
Lead end-to-end service delivery for cybersecurity professional services, ensuring quality, timelines, and compliance for a portfolio of customers.
Drive operational strategy, governance frameworks, and KPIs for predictable delivery across FedRAMP advisory, implementation, and continuous monitoring programs.
Mentor and grow high-performing technical teams including project managers, cloud architects, security engineers, and analysts.
Quantum Sky engineers cybersecurity and cloud solutions for U.S. Federal agencies, focusing on FedRAMP, RMF, and post-quantum mission needs. The company fosters a collaborative, innovative, mission-driven culture with a high-performing team of technical professionals.
Lead security monitoring, incident response, and threat hunting across cloud and AI-enabled environments.
Establish operational priorities, metrics, and playbooks based on organizational risk.
Drive responsible adoption of AI-assisted detection and response capabilities.
Backblaze is a cloud storage and backup provider that helps customers protect their data across over 175 countries. The company fosters a culture centered on fairness, goodness, and work-life balance, with a strong commitment to diversity and inclusion.
Lead the design and implementation of secure enterprise solutions for Professional Services clients across AMER.
Assess complex security architectures and guide migrations to GitLab security capabilities, including CI/CD and compliance frameworks.
Provide technical leadership throughout the engagement lifecycle, from pre-sales scoping to delivery and enablement.
GitLab is the intelligent orchestration platform for DevSecOps, enabling organizations to increase developer productivity, improve operational efficiency, and reduce security risk. With more than 50 million registered users and 50% of the Fortune 100 as customers, GitLab fosters a high-performance, all-remote culture driven by values and continuous learning.
Partner with engineering teams on architecture reviews, threat modeling, and secure design to translate risks into practical recommendations.
Improve security tooling, strengthen SDLC and CI/CD controls, and serve as a GCP security subject matter expert.
Drive vulnerability management, coordinate penetration testing, and enable engineers through documentation and mentorship.
Doppel builds an AI-native platform for social engineering defense, protecting executives, employees, customers, and brands from phishing, impersonation, and fraud across digital channels. Backed by Andreessen Horowitz and Bessemer Venture Partners, it is a rapidly growing Series C startup with a team focused on cybersecurity expertise and startup velocity.
Lead large cross-product initiatives designing AI-native security experiences.
Drive end-to-end user experience and design frameworks for strategic initiatives.
Provide strategic direction and leadership for multidisciplinary teams.
ServiceNow provides an AI control tower platform for business reinvention, helping 85% of the Fortune 500 work smarter. With a focus on AI-native culture, they empower employees to make a meaningful impact.
Lead security assessments of AI/ML models, data pipelines, and AI-enabled applications, identifying vulnerabilities such as prompt injection, model inversion, data poisoning, and adversarial inputs.
Partner with Data & Analytics and Engineering to embed security requirements and threat modeling into the AI development lifecycle, from data collection through model deployment.
Build and maintain guardrails, monitoring, and detection controls for AI systems in production, flagging anomalous model behavior and unauthorized data access.
Interra Health is a healthcare technology company that helps providers and patients navigate the prescription journey. It is a fast-growing, mission-driven team of about 100 employees, formed through the merger of DoseSpot, Arrive Health, and pVerify, and focused on reducing friction and improving access to medications.
Take ownership of information security governance, including policies, risk registers, and control documentation.
Manage day-to-day security program operations, mentor analysts, and coordinate cross-functional initiatives.
Lead incident response, compliance support, and serve as primary counterpart to the vCISO.
Aries is a financial technology company building modern infrastructure and products for active investors and traders. As a growing organization, they are investing in a practical, accountable security program deeply integrated into how the company operates.
Act as the bridge between architectural intent and operational reality, mediating conflicts between security requirements and feasible implementation.
Implement preventive, default-on security controls across cloud and enterprise environments, codified as policy- and infrastructure-as-code.
Define and enforce security requirements for AI-powered features, including model access controls, prompt-injection mitigations, and output validation.
Rithum is the world's most trusted commerce network, accelerating how brands, suppliers, and retailers work together to deliver seamless e-commerce experiences. More than 40,000 companies trust Rithum to grow their business across hundreds of channels, representing over $50 billion in annual GMV.
Drive SOC 2, ISO 27001, and PCI 4.0 compliance audit cycles: gather evidence, design controls, and coordinate with auditors.
Own the compliance automation platform Vanta: monitor control status, chase failing checks, and update risk register.
Run vendor and third-party risk reviews, security assessments, and respond to customer security questionnaires.
AssemblyAI builds the best-in-class Voice AI models powering the next generation of voice applications. With under 100 people, it is a capital-efficient AI company generating roughly $500K ARR per employee and operating as a true meritocracy with no bureaucracy.
Monarch is an all-in-one personal finance platform that simplifies finances. Since 2021, they have become the top-recommended app, with a fully remote, AI-driven team focused on building a product people love.
Lead complex, cloud-scale technical security programs aligned with strategic objectives.
Drive responsible AI adoption and identify automation opportunities within security operations.
Establish metrics-driven decision-making and communicate security priorities to senior stakeholders.
Guidewire provides cloud-based software solutions for the insurance industry. The company fosters a collaborative, technically sophisticated culture focused on innovation and security.