Triage, validate, and remediate security vulnerabilities across products, infrastructure, and internal systems.
Develop, maintain, and contribute to internal and open-source security tooling, writing production-grade code.
Improve secure development practices through code reviews, threat modeling, and security design reviews.
Tiger Data provides the fastest PostgreSQL platform for transactional, analytical, and agentic workloads. With over 2,000 customers and 3 million active databases, it is a remote-first team backed by $180 million in funding.
Design and develop a highly available, scalable, and secure ClickHouse Cloud platform for regulated environments.
Build innovative deployment automation across cloud, hybrid, and on-prem systems, including disconnected environments.
Collaborate with Security, Dataplane, and Infrastructure teams to ensure compliance with NIST and FedRAMP frameworks.
ClickHouse is a fast-growing private cloud company offering real-time analytics, data warehousing, observability, and AI workloads. With over 3,000 customers and a $400M Series D, the company fosters a culture of innovation and collaboration.
Partner with engineering teams to review cloud and compute architecture design changes.
Establish threat models for cloud and compute paved roads to identify security risks.
Write code for automations that support security requirements like threat detection and incident containment.
Quora operates two platforms: a global knowledge sharing platform with over 300 million monthly unique visitors, and Poe, a platform for AI language models. The company is remote-first with a culture rooted in transparency, idea-sharing, and experimentation.
Lead the technical direction of infrastructure security initiatives across cloud-native platforms and distributed systems.
Design and establish secure architectural patterns, reference implementations, and automation frameworks.
Conduct comprehensive security assessments, threat modeling, and risk analysis to drive effective remediation.
The partner company focuses on building secure, scalable cloud infrastructure and modern software platforms. They foster a collaborative engineering culture with a focus on security and innovation.
You will strengthen the security posture of cloud-native platforms by identifying and remediating vulnerabilities.
You will design and implement secure infrastructure patterns across cloud environments, containers, and Kubernetes.
You will automate security updates, compliance checks, and environment hardening using modern automation tools.
The company is a cloud-native engineering organization that embeds security into every stage of platform development. It fosters a collaborative environment with experienced engineering and security professionals.
Architect and maintain secure, resilient, and optimized cloud environments primarily in GCP, with AWS and Azure.
Partner with Developer Platform and IAM teams to embed security into architecture and identity strategies.
Harden cloud platforms against emerging threats, bring a DevOps mindset with Terraform/IaC and Kubernetes, and help secure AI-driven pipelines.
Chainguard is the trusted source for open source software, delivering hardened and secure builds. They are a venture-backed late-stage startup serving Fortune 500 enterprises and global industry leaders.
Design and automate controls, detection mechanisms, and tooling to improve Information Security of Algolia's infrastructure and products.
Partner with engineering and product teams to integrate Information Security into new features, systems, and development pipelines.
Conduct Information Security risk assessments and threat models of core systems, services, and third-party vendors.
Algolia is a pioneer and market leader in AI Search, empowering 17,000+ businesses with blazing-fast, predictive search experiences. The company raised $150M in Series D funding, quadrupling its valuation to $2.25B, and has a global team with offices in Paris, NYC, London, Sydney, and Bucharest.
Design and ship scalable security solutions to bridge the gap between security and engineering teams.
Build cooperative partnerships with product and engineering teams to integrate robust security capabilities at scale.
Drive security risk reduction through technical leadership, security reviews, and mentorship across engineering teams.
Twilio is a communications platform that delivers innovative solutions to hundreds of thousands of businesses and empowers millions of developers worldwide to craft personalized customer experiences. The company has a remote-first work culture with a strong focus on connection, global inclusion, and diverse experiences, making a global impact each day.
Conduct security reviews and penetration tests across Brave products including the browser and search engine.
Triaging and fixing security reports, and designing secure code in C++ and other languages.
Work asynchronously with a geographically-distributed team to secure AWS infrastructure and web security models.
Brave builds a privacy-focused web browser that blocks trackers and ads, a private search engine, a crypto wallet, and an opt-in private ad network. With over 110 million monthly active users and a small, distributed team, Brave is dedicated to protecting user privacy and challenging Big Tech.
United States
Unlimited PTO
12w maternity
12w paternity
Own our approach to AI and agentic security: guardrails for agentic access to cloud and data, and the security of AI/ML workloads.
Own our detection platform (Panther): detection strategy and coverage across cloud, container, and SaaS log sources.
Act as the senior security resource across cloud security and security reviews, mentoring teammates.
SmarterDx is a clinical AI platform that helps health systems capture revenue and improve quality metrics using clinically-validated EHR data. The company is a remote-first team with a small, collaborative engineering culture focused on making healthcare more accurate and effective.
You will own and drive the AppSec/DevSecOps program roadmap, defining security strategy across the SDLC.
You will design and maintain DevSecOps tooling in Kubernetes and GCP, including support for AI/ML workloads.
You will lead integration of security into CI/CD pipelines, building secure paths and guardrails that reduce developer friction.
Censys provides real-time internet intelligence and threat insights to global governments and over 50% of the Fortune 500. We are a security company with a culture of innovation and trust, and we serve leading threat intelligence providers worldwide.
Identify and remediate vulnerabilities across the product ecosystem using code reviews and automation.
Integrate security tools and practices into CI/CD pipelines to ensure secure development.
Collaborate with engineering teams to apply threat modeling and secure-by-design principles.
They are a partner company specializing in digital product security. The team size is not specified, but the culture emphasizes trust, collaboration, and remote work.
Integrate and automate security controls into CI/CD pipelines for continuous vulnerability scanning and secure software delivery.
Design, implement, and maintain secure Infrastructure as Code across GCP environments, enforcing IAM and network security policies.
Drive compliance and continuous auditing, acting as technical point for PCI-DSS and SOC 2 evidence collection.
Zact is a leading fintech innovator specializing in cutting-edge payments apps. They are a remote-first company with a focus on hiring in India, fostering a security-first engineering culture.
Provide strong leadership as a security thought leader across Delinea's product offerings.
Perform end-to-end security architecture reviews and threat modeling.
Maintain and mature Product Security tooling such as SAST, SCA, DAST, ASPM.
Delinea is a pioneer in securing human and machine identities through intelligent, centralized authorization. They are a global team of passionate problem-solvers, with a culture of innovation, respect, and fairness.
Lead bug bounty program strategy and vulnerability management initiatives.
Collaborate with engineering and security teams to drive remediation efforts.
Conduct code reviews and develop security tooling to improve efficiency.
This company operates a global technology platform. It values security, collaboration, and continuous learning, with a team dedicated to protecting user privacy and safety.
Operate and sustain Chainguard’s technology platforms (cloud, IAM, and AI) and help implement access controls and identity policies.
Support the hardening and monitoring of cloud infrastructure, assist in securing AI/ML pipelines, and troubleshoot systems.
Document processes, contribute to runbooks, and adapt to shifting priorities while learning security best practices.
Chainguard delivers hardened, secure, and production-ready builds of open source software. It is a venture-backed late-stage startup with Fortune 500 customers including Anduril, Canva, and OpenAI.
Strengthen company-wide security posture through hands-on engineering, collaboration, and pragmatic standards, focusing on application security, cloud and infrastructure security, and secure development practices.
Define and implement scalable security standards supporting SOC 2 readiness through practical, automated, and auditable solutions, partnering with Engineering, Infrastructure, IT, Product, Legal, and other teams.
Build and maintain internal security tools, automation, and services that support secure development, compliance workflows, vulnerability management, and operational visibility.
Later is the world’s most intelligent influencer marketing company, built to give brands the confidence to create unforgettable campaigns by combining real creator relationships, trusted intelligence, and expert guidance. Trusted by leading enterprise brands including Nike, Wayfair, Unilever, and Southwest Airlines, Later bridges creativity and performance so campaigns deliver results.
Act as a strategic security leader by defining and driving cloud security principles, standards, and reference architectures across the organization.
Use your knowledge of security architecture to help engineers build and securely operate products and services from the ground up.
Assess, design, and implement security processes and controls to meet security, compliance, and audit requirements.
LastPass delivers Secure Access Essentials, helping individuals and organizations manage and protect access to AI, applications, and credentials. Trusted by more than 100,000 businesses and millions of users worldwide, LastPass blends strong security with everyday simplicity.
Lead security strategy and develop scalable practices to protect systems, products, and customers.
Partner with engineering teams to improve resilience, reduce risk, and embed security into development.
Manage security incidents, evaluate emerging technologies, and build a high-performing security team.
The company is a fast-growing technology firm focused on innovation and engineering excellence. It operates with a distributed international team and emphasizes trust, autonomy, and ownership.