Support ransomware and cyber extortion engagements by managing threat actor communications and maintaining clear negotiation records.
Perform light threat intelligence research on threat actor trends, tactics, techniques, and tooling to support engagement strategy.
Draft and organize communication logs, negotiation notes, timelines, and case records to keep the engagement team informed.
Vector3, Inc., an incident response firm supporting TMHCC Cyber and Professional Lines Group, specializes in responding to Business Email Compromise and Ransomware incidents. Tokio Marine HCC, with over 50 years of service, offers over 100 products to commercial customers in 180 countries and has grown its workforce to 4,300 worldwide.
Apply deep expertise in cyber threat intelligence, analyzing advanced threat actors and attack methodologies.
Lead strategic threat intelligence initiatives, developing methodologies and providing thought leadership.
Convey complex intelligence findings through reports and briefings to diverse technical and executive audiences.
NBCUniversal is a leading media and entertainment company, creating and distributing content across film, television, streaming, and theme parks. As a subsidiary of Comcast Corporation, it employs a large global workforce and fosters an inclusive culture with a commitment to community engagement.
Analyze, investigate, document, and report on security alerts and potential incidents in customer environments.
Serve as an incident coordinator for urgent security events requiring response, containment, and remediation.
Stay up-to-date on security training, certifications, and emerging threats while providing security consultation to customers.
CyberSheath is a rapidly growing Managed Security Services Provider offering cybersecurity compliance and threat mitigation for the Defense Industrial Base. The company is expanding its team and fosters a fully remote work environment with a focus on security operations.
Lead and execute complex digital forensics and incident response investigations across a range of engagement types.
Deliver high-quality analysis, client communication, and tailored deliverables for both technical and managerial audiences.
Collaborate with peers to improve methodologies, tooling, and automation to respond to emerging threats.
GuidePoint Security provides trusted cybersecurity expertise, solutions and services to help organizations make better decisions and minimize risk. With over 1,300 employees and a focus on collaboration and mentorship, the company serves Fortune 500 companies and government agencies.
Lead cybersecurity operations and platform delivery, aligning security capabilities with business objectives and client needs.
Guide incident response, evaluate emerging technologies, and influence strategic investments to improve security maturity.
Advise executives and clients on cybersecurity risks, while partnering with sales and account teams to translate security into business outcomes.
The company is a cybersecurity services provider focused on managed security and consulting. The size and culture are not specified, but the role emphasizes ownership, continuous improvement, and high performance.
Triage, investigate, and respond to alerts from the Huntress platform daily.
Perform tactical review of EDR telemetry, log sources, and forensic artifacts to determine root causes and provide remediations.
Contribute to detection engineering and collaborate with a passionate team dedicated to protecting companies from cyber-attacks.
Huntress is a cybersecurity company founded in 2015 by former NSA cyber operators, providing enterprise-grade cybersecurity to businesses of all sizes. They secure over 5M endpoints and 14M identities worldwide with a 24/7 human-led SOC and a remote-first culture.
Triage and investigate intrusions, analyze logs and forensic artifacts to determine root causes.
Perform dynamic malware analysis and refine detection capabilities to address emerging threats.
Collaborate with product and engineering teams to evolve human-led agentic workflows.
Huntress is a cybersecurity company founded in 2015 by former NSA cyber operators, making enterprise-grade security accessible to businesses of all sizes. They secure over 5 million endpoints and 14 million identities worldwide with a remote-first team and a 24/7 human-led Security Operations Center.
Lead enterprise-wide response to high-risk cybersecurity incidents as Cyber Incident Commander, directing cross-functional efforts and driving containment to resolution.
Provide executive incident leadership by delivering updates to senior leaders and supporting decision-making during incidents.
Strengthen the incident response program through post-incident reviews, root cause analysis, and continuous improvements to response plans and playbooks.
Experian is a global data and technology company that powers opportunities for people and businesses across financial services, healthcare, automotive, and more. The company has a team of 25,200 employees in 32 countries and is known for its award-winning, people-first culture.
Monitor, investigate, and respond to security alerts from SIEM, EDR/XDR, IDS/IPS, firewall, cloud, identity, and endpoint security platforms.
Perform incident response and threat hunting activities, including alert triage, root cause analysis, containment, and documentation.
Analyze endpoint, authentication, firewall, VPN, cloud, and network activity to identify indicators of compromise and suspicious behavior.
Clear Capital is a national real estate analytics, data solutions, and valuation technology company that builds confidence in real estate decisions. The company values integrity, kindness, grit, empathy, attention to detail, and raising the bar.
Lead complex customer escalations from assessment through resolution, restoring trust with enterprise clients.
Coordinate cross-functional investigations across R&D, Engineering, Product, and Support teams.
Translate technical findings into clear communication for operational and executive stakeholders.
Our partner is a company in enterprise cybersecurity, focused on restoring customer trust through high-impact technical support. They are a fast-moving organization that values empathy and strong cross-functional collaboration, seeking a Critical Situation Manager to lead complex escalations.
Provide advanced cybersecurity expertise to support secure system operations and compliance initiatives.
Analyze system designs and architectures to ensure appropriate security controls and protection mechanisms.
Collaborate with technical teams and security organizations to align priorities and security objectives.
The partner company is a mission-driven organization that strengthens cybersecurity capabilities for critical information systems. It offers a collaborative culture with opportunities for professional growth and impactful work.
Develop threat intelligence content including advisories, briefs, reports, blogs, and executive summaries.
Translate IOCs, TTPs, and attack trends into narratives for practitioners and executives.
Track the threat landscape, pitch stories, and manage webinars and publication calendars.
SecurityScorecard is the global leader in cybersecurity ratings, with over 12 million companies continuously rated and operating in 64 countries. Founded in 2013 and funded by world-class investors, its culture has been recognized as a Best Workplace and one of the world's most innovative companies.
Coordinate cybersecurity awareness campaigns and training programs.
Maintain documentation for data classification, retention, and security controls.
Support compliance with frameworks like ISO and NIST.
Our partner is a mission-driven organization focused on strengthening information security and compliance. They foster a collaborative, remote-first culture with emphasis on professional growth and continuous learning.
Lead MLB's threat intelligence and incident response programs across the league office, 30 Clubs, and affiliates.
Manage vulnerability intelligence, digital risk monitoring, incident coordination, and forensic investigations.
Own security awareness programming and use automation to shorten research, triage, and reporting cycles.
Major League Baseball (MLB) is the most historic professional sports league in the United States and Canada. With a league office, 30 Clubs, and affiliates, MLB fosters a culture of growth, teamwork, and professionalism, empowering employees to take initiative and put the team first.
Lead deep-dive analysis of ICS-related malware and firmware, developing novel detection methods and Yara signatures.
Write persuasive customer-facing technical reports that translate complex malware findings into clear operational impact.
Collaborate across teams with hunters, intelligence analysts, and detection engineers to drive malware-related threat research.
Dragos is the global leader in xOT cybersecurity, combining technology, threat intelligence, and expert services. They have a remote-first mission-driven team across North America, Europe, the Middle East, and APAC built on authenticity, transparency, and trust.
Monitor, analyze, and respond to complex security incidents, guiding Level 1 engineers and contributing to the organization's security posture.
Conduct in-depth forensic analysis, manage vulnerabilities, and optimize security tools such as SIEM, IDS/IPS, and endpoint protection.
Collaborate with IT and security teams, participate in on-call support, and stay updated on the latest cybersecurity threats and best practices.
CTS delivers comprehensive IT solutions for mission-driven organizations, with deep expertise in nonprofits and education. The company is headquartered in Brooklyn, NY with 90+ employees across the US and several other countries, fostering a culture of growth and innovation.
Act as a liaison between partners and the Security Operations Center, providing exceptional customer support via phone, email, and chat.
Break down complex SOC concepts and product behavior into digestible guidance for partners, ensuring understanding during incidents.
Collaborate with internal teams to clarify detection coverage and product issues, while advocating for partner needs and improving documentation.
Huntress is a cybersecurity company that provides enterprise-grade managed security products to protect businesses. Founded in 2015, the company protects over 4 million endpoints and 7 million identities worldwide with a fully remote team.