Support DoD cybersecurity requirements by integrating security controls, automation, and compliance into DevSecOps pipelines, tooling, and configurations.
Design, implement, and maintain automated security controls for CI/CD pipelines, including SAST, DAST, SCA, container scanning, and vulnerability management.
Collaborate with engineering teams to ensure secure software supply chain practices, including SBOMs, artifact signing, and automated compliance evidence collection.
Raft is a customer-obsessed non-traditional defense tech company dedicated to empowering U.S. military and government agencies with cutting-edge AI/ML and data solutions. We are a hyper-collaborative team that values innovation, diversity, and a culture of Ubuntu, where each member adds unique value.
Design, build, and maintain CI/CD pipelines for secure application delivery.
Automate infrastructure provisioning and deploy cloud services using AWS and Terraform.
Integrate security controls and enforce cybersecurity standards in development and deployment.
LMI is a digital solutions provider dedicated to accelerating government impact with innovation and speed. Headquartered in Tysons, Virginia, LMI serves the defense, space, healthcare, and energy sectors, helping agencies navigate complexity.
Get hands-on with our Go codebase, AWS and Kubernetes environment, SIEM, and security services, contributing security feedback to design docs and shipping your first fix or detection.
Own a security domain end to end, such as cloud hardening or detection engineering, and ship reusable Go security middleware adopted by service teams.
Drive multi-quarter initiatives like default-deny networking, expand Kubernetes security, and automate compliance evidence for audits.
Bastion provides regulated infrastructure for businesses to hold, move, and issue stablecoins, combining custodial wallets, payment orchestration, and issuance. As a 40-person startup, we operate through our own regulated entities with built-in compliance and risk controls.
Design, implement, and maintain internal tooling for acquiring and parsing recaptured underground data.
Build and deploy cloud infrastructure using Infrastructure as Code technologies.
Collaborate with the research team to support targeting and collection of new data sources.
SpyCloud transforms recaptured darknet data to disrupt cybercrime. They have over 250 cybersecurity experts and foster a collaborative, innovative culture.
Own and harden the traditional infrastructure layer, including servers, virtualization, firewalls, and operating systems for a carrier-grade network.
Design and maintain production Linux systems, virtualized infrastructure (VMware, KVM, Hyper-V), and security perimeters at real scale.
Operate across cloud-native and traditional stacks, with working knowledge of at least one hyperscaler and Kubernetes exposure.
Share is a venture-backed company building the marketplace for bandwidth, connecting internet capacity suppliers to businesses globally. The company is a mission-driven, investor-backed team with a high-ownership environment and a steep learning curve.
Design and implement security-focused tooling and guardrails for infrastructure.
Collaborate with security, SRE, and platform teams to integrate trust principles.
Build internal automation to reduce developer cognitive load while enforcing security standards.
BlueCloud is a Snowflake Elite Partner that helps enterprises migrate to AI-ready data platforms. With 450+ consultants and 200+ successful transformations, they combine expertise with AI accelerators to deliver results 40-50% faster.
Conduct code and container vulnerability assessments using DoD scanning tools, DISA STIGs, and SRGs.
Apply SAST and DAST methodologies and integrate security controls into CI/CD pipelines.
Serve as GitLab security reviewer and coordinate remediation of security findings across teams.
This partner company supports cybersecurity and secure software delivery within U.S. Department of Defense and Navy environments. The organization offers a fully remote, mission-focused culture with opportunities to collaborate across engineering and program teams.
Deploy and automate CI/CD pipelines and establish IaC using modern DevSecOps techniques including serverless and Zero Trust patterns.
Own the POAM process end to end, develop plans of action with target dates, track progress, and close findings proactively.
Conduct Security Impact Analyses (SIAs) to achieve and maintain ATO, and maintain a live dashboard for all security findings.
Oddball brings quality software to the federal space, aiming to improve the daily lives of millions. It is a small company that values learning, growth, and making a big impact.
Translate security policy into practical, deployable solutions across applications, data environments, and AI systems.
Design, build, and deploy security controls for web applications, data pipelines, APIs, and Agentic AI systems.
Implement secure-by-design practices throughout the software development lifecycle, including code-level remediations and configuration hardening.
EnableComp provides Specialty Revenue Cycle Management solutions for healthcare organizations, leveraging over 24 years of industry-leading expertise. A multi-year recipient of the Top Workplaces award, they have been recognized as Black Book's #1 Specialty RCM Solution provider in 2024 and are among the top one percent of the Inc. 5000 fastest-growing private companies in the US for eleven years.
Design, build, and optimize secure CI/CD pipelines within GitLab, enforcing DevSecOps principles through automated vulnerability scanning and compliance gates.
Manage and scale AWS infrastructure, optimizing workloads on EKS, EC2, S3, and RDS.
Establish comprehensive monitoring, logging, and alerting systems across EKS and EC2 nodes to ensure maximum uptime.
LMI is a digital solutions provider that accelerates government impact with innovation and speed, offering commercial-grade platforms and mission-ready AI to federal agencies. Headquartered in Tysons, Virginia, the company serves defense, space, healthcare, and energy sectors, focusing on agility and collaboration.
Lead threat modeling and security reviews across Wiz's products and cloud infrastructure, identifying attack surfaces and developing scalable mitigation strategies.
Build automation, policy-as-code, and security tooling that enables development teams to 'shift left' and integrate end-to-end security into their workflows.
Drive vulnerability management and remediation efforts, prioritizing issues, implementing mitigations, and designing strategic preventative controls in software supply chains from development through production.
Wiz is redefining security for the AI era, enabling teams to secure cloud and AI applications by connecting code, cloud, and runtime into a single shared context. As one of the fastest-growing startups ever, we are trusted by over 65% of the Fortune 100 and scan over 230 billion files daily, with a culture that values world-class talent and is now powered by Google.
Act as a strategic security leader by defining and driving cloud security principles, standards, and reference architectures across the organization.
Partner with DevOps and CI/CD engineers to embed shift-left security practices throughout the software development lifecycle.
Assess, design, and implement security processes and controls to meet security, compliance, and audit requirements.
LastPass delivers Secure Access Essentials, helping individuals and organizations manage and protect access to AI, applications, and credentials straight from the browser. Trusted by more than 100,000 businesses and millions of users worldwide, they blend strong security with everyday simplicity in a remote-first, collaborative culture.
Operate, scale, and troubleshoot Bitsight's SaaS cloud infrastructure with focus on reliability, efficiency, and security.
Tackle complex system-level designs and proactively anticipate performance and scalability issues.
Pioneer self-optimizing infrastructure systems using AI, ensuring manual and staging validation before production deployment.
Bitsight is a cyber risk management leader transforming how companies manage exposure, performance, and risk. Over 3,500 customers and 600 teammates work across Boston, Raleigh, New York, Lisbon, Singapore, and remote locations.
Design, build, and maintain CI/CD pipelines for application and infrastructure delivery.
Automate infrastructure provisioning and configuration using Terraform and Ansible.
Integrate security scanning, vulnerability detection, and automated testing into software delivery pipelines.
This company delivers secure, reliable technology for critical federal acquisition systems. They offer a remote work environment and support mission-critical government technology initiatives.
Own the platform including GCP, Kubernetes, Temporal, GPU fleet, and deploy/rollback machinery.
Contribute to AI enablement substrate: GPU capacity, training/inference pipelines, and cost optimization.
Strengthen team practices through tooling, standards, tests, observability, and release processes.
Descript is building a simple, intuitive, fully-powered editing tool for video and audio — an editing tool built for the age of AI. They are a team of 150 backed by top investors like OpenAI and Andreessen Horowitz, with a culture that values collaboration and serendipitous discovery.
Support the architecture, deployment, and testing of bare-metal infrastructure including GPU compute, storage, and networking.
Deploy, configure, maintain, and troubleshoot UDS and Kubernetes-based platform services.
Develop and manage infrastructure as code (IaC) to enable consistent, repeatable deployments.
Defense Unicorns delivers mission value by streamlining software delivery for mission-focused customers. The team is composed of innovators, software engineers, and veterans with decades of experience.
Design, develop, and maintain scalable, secure software services with an emphasis on backend systems, microservices, and APIs. - Implement DevSecOps practices including CI/CD pipelines, Infrastructure as Code, and containerization. - Collaborate with cross-functional teams to improve security, reliability, and delivery of healthcare technology solutions.
Bellese is a mission-driven digital services company pioneering innovative technology solutions in civic healthcare. They foster a collaborative, remote-first culture with a focus on learning and making a meaningful impact on public health outcomes.
Own the reliability, performance, and scalability of Runlayer's infrastructure across AWS and GCP.
Manage Kubernetes clusters, database reliability, and CI/CD pipelines for rapid deployments.
Lead incident response and partner with product engineers to design resilient systems for enterprise customers.
Runlayer builds a unified platform for MCPs, Skills, and AI Agents, providing enterprises with security, governance, and observability to deploy AI safely and at scale. Founded by engineers who built AI Actions for OpenAI and Zapier Agents, the team has raised $42M from Felicis and Khosla Ventures, serving companies like Gusto, Instacart, and Opendoor.
Define DevOps strategy and lead infrastructure architecture across multi-environment, multi-region cloud systems.
Architect and own scalable Kubernetes platforms, infrastructure as code, and DevSecOps implementation.
Drive platform reliability, performance SLAs, cost optimization, and lead complex migrations and AI/ML platform infrastructure.
Robots & Pencils is an applied AI engineering firm that designs and ships AI co-workers for enterprise operations. Founded in 2009, the company has delivery centers across Canada, the US, Eastern Europe, and Latin America, with teams averaging over 15 years of experience.
Design, implement, and maintain reliable, scalable, and secure infrastructure to support applications and automation systems.
Automate infrastructure provisioning, configuration management, and deployment pipelines using tools like Terraform and ArgoCD.
Implement observability solutions and enforce security best practices to ensure uptime and system performance.
Bright Machines is a next-generation, AI-enabled manufacturer focused on data center infrastructure production, using proprietary AI-based robotics and software to assemble hardware products for hyperscalers and OEMs. The company is headquartered in San Francisco, California, with an integration center in Guadalajara, Mexico, and has been recognized by Forbes' AI 50 and other leading organizations.