Architect and oversee advanced security monitoring and threat detection frameworks across diverse systems and log sources.
Lead the integration of security into the software development lifecycle, including Security-as-Code and automated SAST, DAST, and SCA capabilities within CI/CD pipelines.
Own the end-to-end vulnerability management strategy across infrastructure and applications, prioritizing remediation according to business risk.
The partner company operates a large-scale digital platform and a globally distributed technology ecosystem connected to gaming and esports communities. They maintain a flexible, distributed, and inclusive work environment focused on equal opportunity and technical ownership.
Get hands-on with our Go codebase, AWS and Kubernetes environment, SIEM, and security services, contributing security feedback to design docs and shipping your first fix or detection.
Own a security domain end to end, such as cloud hardening or detection engineering, and ship reusable Go security middleware adopted by service teams.
Drive multi-quarter initiatives like default-deny networking, expand Kubernetes security, and automate compliance evidence for audits.
Bastion provides regulated infrastructure for businesses to hold, move, and issue stablecoins, combining custodial wallets, payment orchestration, and issuance. As a 40-person startup, we operate through our own regulated entities with built-in compliance and risk controls.
Design and strengthen security features across Pigment's product and infrastructure, threat modeling new services and making architectural decisions.
Lead security investigations and incident response, manage vulnerability detection and remediation, and build detection engineering capabilities.
Drive the security roadmap end-to-end, working hands-on with code and infrastructure to balance risk and business benefit.
Pigment is an AI-powered business planning and performance management platform. Founded in 2019, the company has over 600 employees and has raised nearly $400M, recognized as a Gartner Visionary.
Collaborate with engineers, product managers, and designers to build well-scoped features.
Contribute to design, implementation, testing, and deployment of software.
Grow technical depth through pairing, code reviews, and production support.
Defense Unicorns delivers mission value by streamlining software delivery for defense and civil agencies, focusing on secure, cloud-native solutions. Our team of innovators, software engineers, and veterans brings decades of experience across the federal market, fostering a culture of action, ownership, and focus.
Identify and reduce security risk across AWS, Kubernetes, containerized workloads, and platform infrastructure.
Conduct threat modeling, architecture reviews, and technical risk assessments for platform and infrastructure systems.
Partner with infrastructure, platform, and SRE teams to design practical controls and secure-by-default patterns.
Supabase is the Postgres development platform, providing a complete backend solution including Database, Auth, Storage, Edge Functions, Realtime, and Vector Search. With over 540,000 community members and having raised over $1B, our globally distributed team of ~400 people operates across 60+ countries with deep open-source values.
Lead threat modeling and security reviews across Wiz's products and cloud infrastructure, identifying attack surfaces and developing scalable mitigation strategies.
Build automation, policy-as-code, and security tooling that enables development teams to 'shift left' and integrate end-to-end security into their workflows.
Drive vulnerability management and remediation efforts, prioritizing issues, implementing mitigations, and designing strategic preventative controls in software supply chains from development through production.
Wiz is redefining security for the AI era, enabling teams to secure cloud and AI applications by connecting code, cloud, and runtime into a single shared context. As one of the fastest-growing startups ever, we are trusted by over 65% of the Fortune 100 and scan over 230 billion files daily, with a culture that values world-class talent and is now powered by Google.
Drive offensive security through pen tests, red-team engagements, and threat modeling across Docker products and infrastructure.
Partner with engineering to implement secure architecture, automated reviews, and vulnerability management.
Build offensive tooling, develop exploits, and support incident response and security education.
Docker builds tools for developers to build, share, and run applications, including Docker Desktop, Docker Hub, and Docker Scout. It is a globally distributed, remote-first team trusted by 20M+ monthly users, focused on secure container development.
Design, develop, and maintain internal software, services, and automation using Go and Rust.
Build and operate Kubernetes-based infrastructure and improve developer workflows and CI/CD.
Collaborate across teams to solve ambiguous technical challenges and improve system reliability.
Our partner is a high-growth technology organization building internal platforms to enable efficient engineering. They operate with small, autonomous teams in a high-trust, collaborative remote environment with a focus on technical excellence.
Work with engineering teams to run security assessments and threat models for cloud-native and SaaS products.
Review cloud application architectures, build automation for security controls, and participate in incident response.
Communicate security risks to technical and non-technical audiences and champion improvements to security processes.
Atlassian provides collaboration software solutions designed to help teams work better together. The company has a global, inclusive culture where the unique contributions of all employees create success.
Partner with engineering teams on architecture reviews, threat modeling, and secure design to translate risks into practical recommendations.
Improve security tooling, strengthen SDLC and CI/CD controls, and serve as a GCP security subject matter expert.
Drive vulnerability management, coordinate penetration testing, and enable engineers through documentation and mentorship.
Doppel builds an AI-native platform for social engineering defense, protecting executives, employees, customers, and brands from phishing, impersonation, and fraud across digital channels. Backed by Andreessen Horowitz and Bessemer Venture Partners, it is a rapidly growing Series C startup with a team focused on cybersecurity expertise and startup velocity.
Be a technical contributor on a global software engineering team in Product Security, building robust and scalable systems.
Design and implement software and automation tools for security use cases like software supply chain security and AI-powered vulnerability discovery.
Own SRE excellence, CI/CD, and datastore operations for mission-critical security services, ensuring flawless performance.
CrowdStrike is a global leader in cybersecurity, protecting organizations with an AI-native platform to stop breaches. Founded in 2011, the company fosters a culture of flexibility, autonomy, and responsible AI adoption, with a large-scale distributed system processing trillions of events daily.
Embed security expertise within software engineering teams to influence product design and development.
Combine software engineering with proactive security practices like threat modeling, static analysis, and fuzzing.
Work extensively with Linux and open source technologies, contributing to upstream projects and strengthening security.
They are a leading open source software company behind Ubuntu, providing secure and scalable solutions. They operate with a globally distributed team, emphasizing collaboration and continuous learning.
Own cloud and product security across AWS and GCP, setting baselines for IAM, networking, data protection, and workload configuration.
Partner with platform, SRE, and product teams to embed practical security controls into developer workflows and automate guardrails in delivery pipelines.
Perform security architecture reviews, threat modeling, and incident response, and drive systemic improvements with meaningful security metrics.
We create intelligent software development tools used by more than 15 million users and 300,000 companies, including 88 of the Fortune Global Top 100. Our mission is to make development teams more productive and AI adoptable at scale, and we foster an open and inclusive workplace.
Investigate emerging vulnerabilities across the Ubuntu ecosystem, helping identify, assess, remediate, and document security issues.
Collaborate with internal engineering teams, upstream developers, and the broader open source community to deliver robust security fixes.
Contribute to security initiatives across the broader open source ecosystem and engage with industry communities.
They are a globally distributed security engineering team dedicated to protecting users and strengthening the security of open source software. The environment is highly technical, collaborative, and international, with opportunities to share knowledge through open source contributions and industry events.
Conduct application and cloud security assessments to identify risks and vulnerabilities.
Collaborate with development teams to integrate security best practices into the SDLC.
Support vulnerability management, incident response, and security awareness education.
Business Wire is a leading global news release distribution service. The company is a large organization with a remote-first culture and offers competitive benefits.
Own product features end to end, from design and implementation through rollout and iteration.
Extend agentic AI capabilities into customer-facing product experiences.
Contribute to architectural decisions while collaborating with Product and front-end teams.
This company builds next-generation products at the intersection of software supply chain security, AI, and developer tooling. It has a small, fast-moving engineering team in a remote-first environment focused on practical tools for developers.
Design and build automation systems for package creation, test generation, and image building.
Develop AI-powered tooling using LLMs for manifest generation and validation.
Write production Go code and create quality tools to improve customer reliability.
Chainguard delivers hardened, secure, and production-ready builds of open source software. Backed by leading investors, they serve Fortune 500 enterprises and global industry leaders.
Act as a strategic security leader by defining and driving cloud security principles, standards, and reference architectures across the organization.
Partner with DevOps and CI/CD engineers to embed shift-left security practices throughout the software development lifecycle.
Assess, design, and implement security processes and controls to meet security, compliance, and audit requirements.
LastPass delivers Secure Access Essentials, helping individuals and organizations manage and protect access to AI, applications, and credentials straight from the browser. Trusted by more than 100,000 businesses and millions of users worldwide, they blend strong security with everyday simplicity in a remote-first, collaborative culture.
Build, maintain, and improve secure cloud-native software for mission-critical environments.
Collaborate with engineers and open source contributors on features, code reviews, and releases.
Engage with open source communities and represent project capabilities through technical content.
They are building secure, interoperable cloud-native software for defense and mission environments. The company is mission-driven, remote-first, and collaborative with a focus on open source.
Own and ship high-impact features end-to-end, from technical design through production.
Work directly with customers and internal stakeholders to understand pain points and build solutions.
Set a high technical bar through design reviews, code review, and hands-on execution.
Float Health builds a marketplace for specialty pharmacy to bring care home. The Y Combinator-backed startup has a small engineering team, facilitated over 100,000 patient visits with 1,400 nurses, and emphasizes high autonomy.