Design, implement, and maintain security controls across AWS environments, including IAM, VPC, encryption, and logging.
Integrate security checks into CI/CD pipelines and harden Kubernetes/EKS workloads using Terraform and policy-as-code.
Automate vulnerability management, security monitoring, and incident response to reduce cloud and application risk.
Electric Power Engineers provides consulting expertise and energy intelligence software solutions for power and energy clients, focusing on modern, secure, and resilient grid challenges. They are leaders in the renewables space and emphasize collaboration, innovation, and making an impact on communities and the environment.
Improve security design and controls within GCP and Kubernetes.
Champion secure development by integrating security best practices early into the software development lifecycle.
Build and automate security tooling for vulnerability detection, remediation, and compliance verification.
Virta Health is a healthcare company that reverses type 2 diabetes and obesity through individualized nutrition and clinical support. They have raised over $350 million from top-tier investors and partner with major health plans, employers, and government organizations.
Design and build secure CI/CD pipelines with integrated security tooling to accelerate product delivery.
Harden cloud infrastructure on AWS and Azure using infrastructure-as-code and enforce policy with OPA or Sentinel.
Lead threat modeling, incident response, and mentor engineers on secure coding and operational security.
PAR Technology provides software and hardware solutions for over 100,000 restaurants in 110+ countries. A publicly traded company with a focus on innovation and collaboration, it fosters a culture of continuous improvement.
Own CI/CD and infrastructure design across application teams, using agentic AI to build and validate pipelines.
Implement security, testing, and observability as designed-in requirements across all shipped products.
Collaborate with DevSecOps peers to build shared standards and coach engineers on AI-driven development practices.
ComPsych is the worldwide leader in organizational mental health, well-being, and absence management. Their solutions touch more than 160 million lives across 200 countries, and 40% of the Fortune 500 choose them.
Review system designs and implementations to identify security issues and align with best practices.
Develop cloud security architecture and implement automated security testing tools.
Promote DevSecOps principles through CI pipeline integration and Infrastructure as Code scanning.
Iterable is the leading AI-powered customer engagement platform that helps brands like Redfin and SeatGeek create dynamic experiences. With nearly 1,200 clients globally and a diverse workforce, we foster a culture of innovation and inclusion, recognized as one of Inc's Best Workplaces.
Build and harden secure CI/CD pipelines with security gates to catch issues before production.
Lead security architecture reviews and threat models for Kubernetes-based workloads on GCP and AWS.
Harden container images, Kubernetes configurations, and cloud IAM to minimize attack surface.
Chainguard is the trusted source for open source, delivering hardened, secure, and production-ready builds of open source software. The company is venture-backed by leading investors and serves Fortune 500 enterprises, with a culture that values customer obsession, intentional action, and trust.
Own cloud security posture management, including Kubernetes and container security strategies and environment hardening.
Manage vulnerability lifecycles, prioritizing remediation based on production exposure, and execute incident response.
Embed security into the SDLC by performing design reviews, code reviews, and translating control gaps into engineering proposals.
Redox accelerates healthcare transformation with real-time data exchange via its interoperability platform, connecting over 12,000 systems. The company is a fully remote, senior team that operates with radical transparency and a strong bias toward ownership.
Build, deploy, and maintain cloud-based IAM systems using DevSecOps practices and cloud-native architecture.
Ensure rapid and reliable delivery of code changes through CI/CD, automated testing, and deployment into production.
Lead evergreening activities, environment support, and compliance with federal requirements.
PingWind delivers services to the federal government in cybersecurity, development, IT infrastructure, and supply chain management. They are an SBA certified Service-Disabled Veteran-Owned Small Business with offices in Northern Virginia and Huntsville AL.
Architect and automate security workflows across CI/CD and compliance operations.
Integrate and monitor security tooling within automated pipelines.
Build automation for compliance and ATO artifacts.
Our partner is a technology company that builds secure, automated cloud environments for mission-critical programs. They offer a fully remote work model with a focus on autonomy and work-life balance.
Design and implement security controls across applications, cloud infrastructure, and development environments.
Conduct architecture reviews, threat modeling, and security assessments for new products.
Identify, prioritize, and remediate vulnerabilities across the technology stack.
SignalFire partners with top early-stage startups that are shaping the future of technology. They have a portfolio of over 200 innovative companies across AI, cybersecurity, healthtech, fintech, developer tools, and enterprise SaaS.
Assist customers with application security testing tool configurations and triage support.
Lead AppSec Program maturity assessments using frameworks like BSIMM and SSDF.
Develop Strategic Roadmaps and deliver presentations to executive leadership.
Black Duck Software, Inc. helps organizations build secure, high-quality software, minimizing risks while maximizing speed and productivity. It is a recognized pioneer in application security, providing SAST, SCA, and DAST solutions.
Maintain and improve FedRAMP compliance within an AWS environment using Terraform and infrastructure-as-code.
Identify and remediate vulnerabilities in Golang and containers, and investigate cloud misconfigurations.
Develop CI/CD automation with GitHub Actions and integrate security into the software development lifecycle.
Epsilon ASI is a cloud security company that maintains FedRAMP-compliant environments. They are a growing organization seeking a skilled engineer to strengthen security and compliance.
Ensure delivery stream teams use available tooling and platform elements, and upskill them in modern development practices.
Deliver technical life-cycling changes and help design systems that meet non-functional requirements for reliability and maintainability.
Assist in diagnosing platform and tooling issues, and deliver software infrastructure to projects.
Software Mind develops solutions that make an impact for companies around the globe. The company builds cross-functional engineering teams and embraces a culture of openness, respect, grit, and enjoyment.
Lead threat modeling and security reviews across Wiz's products and cloud infrastructure, identifying attack surfaces and developing scalable mitigation strategies.
Build automation, policy-as-code, and security tooling to enable development teams to shift left and integrate security into workflows.
Design and implement secure baselines for cloud resources and Kubernetes-based infrastructure, and drive vulnerability management efforts.
Wiz is a cloud security company enabling teams to secure cloud and AI applications by connecting code, cloud, and runtime. As one of the fastest-growing startups, trusted by over 65% of the Fortune 100, Wiz values world-class talent and creativity.
Own cloud and platform security end to end across AWS and Azure, including architecture, detection, and response.
Build self-serve security tooling and guardrails to replace manual processes and reduce risk.
Partner with engineering teams to embed security into CI/CD pipelines and product development.
Ada is an AI customer service platform that enables enterprise companies to deliver instant, proactive, and personalized customer experiences. Established in 2016, the Canadian company has powered over 5.5 billion interactions for brands like Square and YETI, backed by over $250M in funding from top-tier investors.
Own production security across a multi-cloud footprint (AWS, GCP, Azure, Vercel) and secure multi-tenant SaaS, dedicated VPC, and air-gapped deployments.
Secure the Hermes Agent platform with sandboxing, kernel-level isolation, and agent identity controls, and lead SOC 2 compliance.
Harden identity management, vulnerability management, incident response, and secure software development lifecycle practices.
Nous Research builds open-source AI language models and agents, including Hermes Agent, used by consumers and Fortune 500 enterprises across various deployment environments. The company is a fast-growing startup with a high-velocity, open-source-native engineering culture that values security and pragmatism.
Designs, engineers, and automates secure enterprise cloud environments supporting mission-critical government workloads.
Provides technical leadership across AWS GovCloud, cloud architecture, infrastructure automation, container platforms, and CI/CD.
Develops standardized hosting models and integrates AWS IaaS, PaaS, and SaaS capabilities with enterprise applications.
True Zero Technologies is a veteran-owned small business that enables people and technology to drive quality outcomes. With a people-first culture, it has been recognized as a Best Place to Work in 2023 and 2025, and made the Inc. 5000 list of fastest-growing companies in America in 2022, 2023, and 2025.
Lead threat modeling and security architecture reviews with engineering teams by translating security risks into concrete development actions.
Architect, build, and maintain security tooling and integrations that make secure development the default in our CI/CD pipelines.
Design and deploy automated security testing to identify vulnerabilities early in the development process.
Abnormal Security protects the humans behind the world's most critical organizations from AI-powered cybercrime. More than 4,500 enterprises trust its behavioral AI platform.
Own cloud security posture across AWS environment using Wiz and AWS-native services.
Harden CI/CD pipelines, manage vulnerability intake, prioritization, and remediation.
Build automation, instrument telemetry, and operate WAF for cloud and application security.
Beyond Finance helps everyday Americans escape debt through compassionate, individualized care and supportive technology. They are a rapidly growing organization with over 1 million clients served and a culture focused on compliance and ethics.
You'll build DevOps discipline from scratch, owning reliability, delivery, cloud, data, and security across all products.
You'll define reliability standards, build observability, establish incident response, and ensure CI/CD pipelines are safe and repeatable.
You'll manage cloud footprint across AWS and Google Cloud, control costs, and maintain production database reliability with automated backups.
InfoTrust is a global, privately-owned products and solutions company dedicated to unlocking the power of data to drive marketing performance and business growth. They have earned multiple Best Places to Work awards, including Great Place to Work certification for 7 consecutive years and #1 place to work in Ohio.