Secure AI systems and use AI to scale security, conducting security reviews and threat modeling of AI-integrated product features.
Deliver end-to-end application security reviews for high-risk features, working directly with engineering teams to surface and close risk.
Advance CI/CD pipeline security by operating and evolving security scanning controls in GitLab pipelines.
Smartsheet empowers teams to manage work and scale solutions by uniting human teams with AI agents. They are a large company with over 20 years of experience, fostering a culture where ideas are heard and contributions have real impact.
Partner with engineering teams to perform security reviews, threat modeling, and risk assessments for product features, APIs, mobile applications, and backend services.
Develop and maintain scalable security tools and pipelines to automate vulnerability detection, dependency scanning, and security testing across the software development lifecycle.
Serve as a product security point of contact for incidents, contributing to investigation, root-cause analysis, and post-incident improvement.
Lime is a global leader in micromobility, on a mission to build a future where transportation is shared, affordable, and carbon-free. A Time Magazine 100 Most Influential Company, Lime has powered more than one billion rides across 30 countries and is a fast-paced, lean, remote-first company.
Architect, design, and implement end-to-end security solutions including firewalls, intrusion detection, and cloud security controls.
Collaborate with DevOps to integrate security into CI/CD pipelines and automate secure deployments.
Conduct regular security assessments, threat modeling, and architecture reviews to identify risks and design mitigations.
Figure is transforming capital markets through blockchain, powering real products used by hundreds of thousands of consumers and institutions. With over 170 partners and $22 billion in home equity loans originated, Figure is the largest non-bank provider of home equity financing in the U.S., recognized as one of Forbes' Most Innovative Fintech Startups in 2025.
Execute the security architecture process for business initiatives, from engagement through to implementation.
Support the Information Security Architect across analysis, reviews, and outputs as needed.
Act as a point of contact for InfoSec queries and use security tooling to identify and analyze risks.
StackAdapt is a leading technology company that provides an AI-powered marketing platform for programmatic advertising. The company has a diverse, remote-first culture with a supportive workplace.
Triage, validate, and remediate security vulnerabilities across products, infrastructure, and internal systems.
Develop, maintain, and contribute to internal and open-source security tooling, writing production-grade code.
Improve secure development practices through code reviews, threat modeling, and security design reviews.
Tiger Data provides the fastest PostgreSQL platform for transactional, analytical, and agentic workloads. With over 2,000 customers and 3 million active databases, it is a remote-first team backed by $180 million in funding.
Partner with product and engineering teams to identify application security risks and recommend mitigations.
Read application code, configuration, and pull requests to understand security risks and suggest improvements.
Contribute to vulnerability management, automation, and security tooling to scale AppSec efforts.
Affirm is reinventing credit to make it more honest and friendly, providing consumers the flexibility to buy now and pay later without hidden fees. We are a remote-first company with a culture centered on people, transparency, and offering competitive benefits including health coverage and flexible spending.
Design and ship scalable security solutions to bridge the gap between security and engineering teams.
Build cooperative partnerships with product and engineering teams to integrate robust security capabilities at scale.
Drive security risk reduction through technical leadership, security reviews, and mentorship across engineering teams.
Twilio is a communications platform that delivers innovative solutions to hundreds of thousands of businesses and empowers millions of developers worldwide to craft personalized customer experiences. The company has a remote-first work culture with a strong focus on connection, global inclusion, and diverse experiences, making a global impact each day.
Partner with engineering teams to perform security reviews, threat modeling, and risk assessments for product features and APIs.
Develop and maintain scalable security tools and automation pipelines for vulnerability detection across the SDLC.
Contribute to security architecture reviews and support bug bounty programs and incident response.
Lime is a global leader in micromobility on a mission to make transportation shared, affordable, and carbon-free. A Time Magazine 100 Most Influential Company, Lime has powered over a billion rides in 30 countries and is a fast-paced, lean, remote-first team.
Operate and sustain Chainguard’s technology platforms (cloud, IAM, and AI) and help implement access controls and identity policies.
Support the hardening and monitoring of cloud infrastructure, assist in securing AI/ML pipelines, and troubleshoot systems.
Document processes, contribute to runbooks, and adapt to shifting priorities while learning security best practices.
Chainguard delivers hardened, secure, and production-ready builds of open source software. It is a venture-backed late-stage startup with Fortune 500 customers including Anduril, Canva, and OpenAI.
Lead application security reviews, threat modeling, and secure code review for new features and significant product changes.
Operate and improve SAST, DAST, and SCA tooling, triage findings, and partner with engineering teams to harden the codebase.
Plan and execute internal penetration tests against web applications, APIs, and mobile clients, and own the vulnerability management lifecycle.
ButterflyMX empowers people to automate property access, operations, and security from a single platform, serving over 20,000 properties worldwide. As a distributed, primarily remote workforce, they seek intelligent, passionate, and collaborative individuals driven by a shared commitment to excellence and innovation.
Lead bug bounty program strategy and vulnerability management initiatives.
Collaborate with engineering and security teams to drive remediation efforts.
Conduct code reviews and develop security tooling to improve efficiency.
This company operates a global technology platform. It values security, collaboration, and continuous learning, with a team dedicated to protecting user privacy and safety.
Own and scale Mozilla’s web bug bounty program, including strategy, prioritization, KPIs, and continuous improvement.
Lead triage and technical validation of incoming reports across multiple intake channels, driving end-to-end vulnerability remediation.
Collaborate with the Security Incident Response Team on active incidents and perform targeted code reviews.
Mozilla Corporation is a non-profit-backed technology company that has shaped the internet for the better over the last 25 years. With over 225 million people using our products monthly, we are a mission-driven organization focused on privacy, open-source software, and reclaiming the internet for people.
Design and implement security controls across Mable's platform, applications, and infrastructure
Embed security into the software development lifecycle through design reviews, threat modeling, and code reviews
Lead vulnerability assessments and coordinate remediation efforts across engineering teams
Mable is one of Australia's leading healthtech platforms connecting people with disability and older Australians with independent support workers. With over 25 million hours of support facilitated since 2014, they have been recognized on AFR's Top 100 and Deloitte Tech Fast 50, fostering a purpose-driven and dynamic team environment.
Lead multifaceted security conversations with Canada Finserv customers, addressing AI and cloud security concerns.
Support pre- and post-sales efforts by responding to questionnaires, conducting customer calls, and presenting at conferences.
Contribute to security messaging, incident investigations, and contract negotiations as a cloud security expert.
ServiceNow is the AI control tower for business reinvention, helping 85% of the Fortune 500 work smarter. We are a global team of forward-thinking security professionals, embracing a disruptive, hardworking, and humble culture.
You will securely and scalably operate systems moving hundreds of millions of benefit dollars through retail partners.
You will ensure computing environments are fast and available, facing exponential growth and spiky workloads during benefit reload windows.
You will own automated security tooling, manage vulnerability detection, and route events to the SIEM.
Evermore is a technology company that administers Smart Benefits to connect people to products and services they need for healthier lives. It is a Series B stage company backed by leading investors including General Catalyst and Lightspeed Venture Partners.
RainFocus provides an industry-disrupting event management platform for Fortune 500 companies like Adobe, Cisco, and IBM. The company is well-funded, rapidly growing, and fosters a culture of innovation, teamwork, and fun.
Analyze, assess, reproduce, and triage incoming security vulnerability reports from the bug bounty program.
Communicate clearly with security researchers and drive the lifecycle of submissions through to resolution.
Understand root causes of vulnerabilities and advise on mitigation strategies to improve security posture.
Stripe is a financial infrastructure platform for businesses, enabling millions of companies to accept payments, grow revenue, and accelerate new business opportunities. As a large, mission-driven company, Stripe fosters a culture of passion, grit, and integrity with diverse perspectives.
Manage and monitor vulnerability management processes to identify and mitigate risks.
Investigate security events and support incident response and containment activities.
Contribute to SIEM operations, IAM initiatives, and AWS cloud security enhancements.
Our partner is a fast-growing company focused on innovation, operating in the cybersecurity space. They foster a dynamic, collaborative culture with a focus on remote work and employee well-being.
Partner with engineering, product, and DevOps teams to integrate security practices throughout the SDLC, focusing on cloud-native environments and automated pipelines.
Design, implement, and maintain security tooling and gates within CI/CD pipelines covering SAST, DAST, SCA, secrets detection, and container scanning.
Lead threat modeling, conduct application security assessments including code review and manual penetration testing, and triage bug bounty reports.
Hyland is the pioneer of the Content Innovation Cloud, delivering ubiquitous enterprise intelligence to organizations. With a team of nearly 4,000 employees, the company fosters an employee-centric culture focused on community impact and innovation.