Partner with engineering, product, and DevOps teams to integrate security practices throughout the SDLC, focusing on cloud-native environments and automated pipelines.
Design, implement, and maintain security tooling and gates within CI/CD pipelines covering SAST, DAST, SCA, secrets detection, and container scanning.
Lead threat modeling, conduct application security assessments including code review and manual penetration testing, and triage bug bounty reports.
Hyland is the pioneer of the Content Innovation Cloud, delivering ubiquitous enterprise intelligence to organizations. With a team of nearly 4,000 employees, the company fosters an employee-centric culture focused on community impact and innovation.
You will own and drive the AppSec/DevSecOps program roadmap, defining security strategy across the SDLC.
You will design and maintain DevSecOps tooling in Kubernetes and GCP, including support for AI/ML workloads.
You will lead integration of security into CI/CD pipelines, building secure paths and guardrails that reduce developer friction.
Censys provides real-time internet intelligence and threat insights to global governments and over 50% of the Fortune 500. We are a security company with a culture of innovation and trust, and we serve leading threat intelligence providers worldwide.
Contribute to secure-by-design practices and advance the S-SDLC program.
Mentor engineers on secure coding and career growth.
Evaluate and recommend AI-assisted security tooling.
Spring Health is a global mental health company eliminating every barrier to mental health. They reach more than 170 million people worldwide and are an AI-native company focused on expanding the reach, quality, and humanity of care.
Secure AI systems and use AI to scale security, conducting security reviews and threat modeling of AI-integrated product features.
Deliver end-to-end application security reviews for high-risk features, working directly with engineering teams to surface and close risk.
Advance CI/CD pipeline security by operating and evolving security scanning controls in GitLab pipelines.
Smartsheet empowers teams to manage work and scale solutions by uniting human teams with AI agents. They are a large company with over 20 years of experience, fostering a culture where ideas are heard and contributions have real impact.
Deliver AI red teaming security assessments for enterprise clients, defining scopes and authoring detailed reports.
Build and improve frameworks and tooling to scale AI red teaming service delivery and automate repetitive tasks.
Develop novel red teaming methodologies for emerging AI modalities and stay ahead of the latest AI security threats.
Check Point protects over 100,000 organizations worldwide from cyber and AI-driven threats using a prevention-first approach. They are recognized by TIME, Newsweek, and Forbes for excellence and workplace culture.
Design and implement security controls and governance frameworks for AI and machine learning systems.
Develop threat models and security architectures tailored to LLMs, AI applications, and training data pipelines.
Identify and mitigate AI-specific risks like prompt injection, model abuse, and data exfiltration.
Jobgether is a platform that uses AI-powered matching to connect candidates with job opportunities. They operate as a technology-focused company with a remote team, emphasizing fair and efficient hiring processes.
Lead secure design reviews, threat modeling, and risk assessments for AI-driven products and APIs.
Embed security practices throughout the software and AI development lifecycle.
Architect and enforce security controls for AI/ML systems and cloud-native infrastructure.
AlphaSense provides AI-driven market intelligence and search platform trusted by over 6,000 enterprise customers. Founded in 2011, the company has more than 2,000 employees globally with offices in multiple countries.
United StatesCanadaDominican Republic
Unlimited PTO
Lead application and product security across Forward-built, third-party, and AI-built software.
Evolve the pentest program and proactively build AI solutions within the appsec function.
Own remediation workflows and partner with teams to build controls for external exposure.
Forward Financing is a financial technology company that unlocks capital for small businesses across America. They are a recognized Best Place to Work with a remote-first culture and team members across the US, Canada, and Dominican Republic.
Architect, design, and implement end-to-end security solutions including firewalls, intrusion detection, and cloud security controls.
Collaborate with DevOps to integrate security into CI/CD pipelines and automate secure deployments.
Conduct regular security assessments, threat modeling, and architecture reviews to identify risks and design mitigations.
Figure is transforming capital markets through blockchain, powering real products used by hundreds of thousands of consumers and institutions. With over 170 partners and $22 billion in home equity loans originated, Figure is the largest non-bank provider of home equity financing in the U.S., recognized as one of Forbes' Most Innovative Fintech Startups in 2025.
Drive security engineering initiatives and embed security across engineering teams.
Manage threats and respond to incidents with advanced automation and AI agents.
Architect secure solutions for AI/ML workloads and mentor team members.
EarnIn is a pioneer of earned wage access, building products that deliver real-time financial flexibility for those living paycheck to paycheck. They have an experienced leadership team and world-class funding partners, and are growing fast with a healthy core business.
Bridge the gap between traditional infrastructure security and modern DevSecOps, defining secure-by-design frameworks and implementing high-impact DevSecOps pipelines across multi-cloud environments.
Lead critical security reviews for emerging technologies, including artificial intelligence, and act as a collaborative partner to internal teams fostering proactive security and cyber vigilance.
Manage security lifecycles within multi-cloud environments, own the end-to-end vulnerability management program, and leverage SIEM platforms for real-time threat intelligence.
NPR is a thriving, mission-driven multimedia organization that produces award-winning news, information, and music programming in partnership with hundreds of independent public radio stations across the nation. They are innovators and leaders in diverse fields, from journalism and digital media to IT and development, committed to building an inclusive workplace where collaboration is essential and diverse voices are heard.
Own key security domains such as vulnerability management, application security, API security, and supply chain security.
Partner with engineering teams to integrate security into design reviews, threat modeling, CI/CD pipelines, and developer workflows.
Develop and improve security tooling and automation to reduce manual effort and leverage AI for triage and detection.
NinjaTrader is an industry-leading trading platform and futures broker that empowers traders with award-winning software and brokerage services. Since 2003, the company has grown to over 2 million users and is the number one rated futures brokerage worldwide, fostering a dynamic culture focused on social connection, professional development, and employee recognition.
Design and ship security workflows combining deterministic analysis with LLM reasoning to find real vulnerabilities across languages and frameworks.
Engineer agentic pipelines and prompts that are precise, cost-aware, and trustworthy for security-critical work.
Push on hard problems in automated triage and validation to close the gap between finding and actionable fix.
Semgrep is a code security platform that helps teams catch and fix vulnerabilities before they ship. They are a venture-backed startup with a transparent culture that values respect and honesty.
Define the strategic direction and security frameworks for AI systems at scale.
Lead research into emerging AI threats and drive threat modeling.
Serve as the technical authority for AI security across Canva.
Canva is a design platform that empowers the world to design. We have campuses in Sydney, Melbourne, and other Australian cities, with a culture that trusts our Canvanauts to choose the balance that empowers them.
Design, build, and operate an AI-augmented red teaming harness using frontier LLM APIs.
Conduct adversarial testing across four attack perspectives to discover and chain vulnerabilities.
Assume ownership of security stage-gates within our CI/CD pipeline.
We provide a cloud-native platform called Silo that enables digital analysts to securely and anonymously investigate threats. We serve over 750 organizations and value integrity, collaboration, and innovation.
Lead application and product security across Forward-built, third-party, and AI-built software.
Evolve the pentest program to aggressively test and remediate vulnerabilities in existing and new software.
Build and integrate AI solutions within the appsec function.
Forward Financing is a financial technology company that unlocks capital for small businesses across America. Recognized as a Best Place to Work, it invests in employees, technology, and customer experience with a long-term focus.
Perform hands-on security testing and code review across web applications and APIs.
Conduct threat modeling and embed secure development practices into the SDLC.
Build and tune security tooling, including SAST, DAST, and CI/CD automation.
Prolific builds human data infrastructure for AI development, connecting researchers with a global participant pool to collect high-quality, ethically sourced behavioral data. They are a mission-driven company trusted by world-leading research institutions and AI labs, with a remote-first culture.
Take ownership of protecting product, users, and collaborators as a Security Engineer on a fast-growing AI dating platform.
Perform weekly code reviews, coordinate security audits, and maintain risk register to ensure safety of AI-generated content.
Monitor emerging AI security threats, manage IT access and device security, and run phishing simulations company-wide.
EverAI builds the world's largest AI companionship platform, redefining relationships for millions with a proprietary moderation system, EverGuard. With 50 million users in two years, the team of about 100 is enthusiastic, passionate, and hardworking, led by experienced entrepreneurs.
Design and implement security controls for autonomous and multi-agent AI systems, including RAG pipelines and vector databases.
Perform AI threat modeling to assess risks like prompt injection, data poisoning, and adversarial inputs, and develop mitigation strategies.
Build guardrails and monitoring for responsible AI governance, ensuring explainability, auditability, and compliance with federal standards.
LTS builds an AI-native engineering platform to modernize mission-critical healthcare systems for federal agencies, serving millions of Veterans. Their culture emphasizes innovation, collaboration, and secure, transparent AI development.