Monitor, investigate, and respond to security detections across the SIEM, driving alerts to resolution.
Develop, tune, and maintain SIEM use cases and correlation rules to improve detection coverage.
Build and deliver operational reports and dashboards from available SIEM log source data.
Authentic8 provides Silo, a cloud-native platform that enables digital analysts to conduct secure, anonymous investigations across the globe. They serve over 750 of the world's most sophisticated organizations, from government agencies to commercial entities, with a culture of integrity, collaboration, and transparency.
Lead detection engineering innovation by reimagining how unlimited AI capacity transforms SOC workflows.
Partner with engineering teams to encode expert detection knowledge into product, designing scoring rubrics for AI-generated content.
Stay current on emerging threats and conduct original research to develop novel AI-assisted detection approaches.
Dropzone's mission is to scale cybersecurity beyond human limits by augmenting security engineers with AI specialists. We are an award-winning, venture-backed company disrupting the $200B+ cybersecurity market with a team experienced in cybersecurity, AI/ML, and SaaS.
Monitor security events and provide technical analysis on alerts.
Lead information security incidents and employee insider investigations.
Coordinate building of services and technologies to support security operations.
Samsara is the pioneer of the Connected Operations Cloud, enabling organizations to harness IoT data for actionable insights. A recently public company, it fosters a collaborative and growth-minded culture focused on safety, efficiency, and sustainability.
Own, administer, and optimize SIEM and EDR platforms, including detection content and automation workflows.
Design SOAR playbooks and integrations across security tools to streamline triage, enrichment, and containment.
Investigate security events, conduct threat hunts, and support incident response alongside CSIRT Analysts.
Vultr provides high-performance cloud infrastructure for enterprises and AI innovators worldwide, with 33 global data centers. As the world's largest privately-held cloud infrastructure company, Vultr has grown significantly and values inclusion, offering comprehensive benefits and professional development.
Monitor security events and provide technical analysis on alerts
Lead information security incidents as Incident Commander, developing response strategies and coordinating across teams
Champion Samsara's cultural principles while delivering security guidance for incident response and insider threat initiatives
Samsara (NYSE: IOT) is the pioneer of the Connected Operations™ Cloud, a platform that enables organizations to harness IoT data for actionable insights and improved operations. They are a recently public company with a culture that encourages rapid career development and a focus on digitizing large sectors of the global economy.
Build into the product by writing investigation flows, building integrations with security tools, and fixing bugs.
Evolve the investigation logic and pipelines to handle new classes of security alerts, balancing accuracy, performance, and maintainability.
Contribute directly to the Python codebase while influencing architectural decisions and long-term product strategy.
Dropzone AI scales cybersecurity beyond human limits by augmenting security engineers with AI specialists. The venture-backed company is disrupting the $200B+ cybersecurity market and has a team with deep experience in cybersecurity, AI/ML, and SaaS.
Monitor and triage security alerts from SIEM, EDR, and other sources to identify threats.
Perform initial investigations to validate alerts, assess severity, and determine root cause.
Document findings and communicate with clients and internal teams for effective incident response.
Netrix Global provides holistic IT solutions to help businesses run and scale securely. The company is a top system integrator ranked in the CRN VAR500, with a culture focused on ownership, collaboration, and respect.
Own end-to-end security incident response, from triage to recovery, and drive post-incident learnings.
Build and improve detection coverage across cloud, endpoint, identity, and SaaS systems.
Develop security automation and workflows to reduce manual toil and improve response speed.
Front is the customer operations platform for B2B complexity, keeping teams, tools, and conversations in sync. Over 9,000 companies rely on Front, and it's backed by Sequoia Capital and Salesforce Ventures, with a highly recognized workplace culture.
Investigate security alerts using tools such as CrowdStrike Falcon Suite and Microsoft Sentinel to determine scope and impact.
Support incident response activities, including containment, remediation, and post-incident documentation.
Collaborate with cross-functional teams to improve detection quality, workflows, and response readiness.
Commvault is the gold standard in cyber resilience, empowering customers to uncover, take action, and rapidly recover from cyberattacks. For over 25 years, more than 100,000 organizations and a vast partner ecosystem have relied on Commvault to reduce risks and improve governance.
Own and lead building out the Insider Trust Team’s infrastructure to engineer and automate end-to-end detection and investigation workflows.
Develop, measure, and tune detection rules in Sigma to ensure effective and sustainable operations.
Drive projects with a focus on Insider Risks, ranging from access abuse and intellectual property theft, to novel risks emerging within the blockchain/Web3 space.
We are the team behind Chainlink, the industry-standard oracle platform bringing capital markets onchain and powering the majority of DeFi. We have enabled tens of trillions in transaction value and secure the vast majority of DeFi, with a culture of security and innovation.
Deploy, configure, and maintain endpoint detection and response, email security, and network security solutions.
Support incident response activities, including containment, remediation, and recovery efforts.
Collaborate with infrastructure, applications, and governance teams to implement security best practices.
New Era Technology securely connects people, places, and information with end-to-end technology solutions at scale. With a global team of over 3,000 professionals, they foster a team-oriented culture prioritizing personal and professional development.
Investigate and analyze security alerts and incidents across endpoint, network, cloud, and identity environments.
Conduct proactive threat hunting, malware analysis, and deobfuscation of suspicious scripts.
Collaborate with senior analysts, document findings, and provide remediation recommendations.
The company operates a global Managed Detection and Response environment, protecting organizations from cyber threats. It has a remote-first culture with a collaborative team and opportunities for professional growth.
Lead the development, rollout, and operations of security operations tools and services such as SIEM, EDR, NDR, email, and cloud, building detection rules, automated playbooks, and integrations.
Apply a detections-as-code approach with version-controlled, peer-reviewed detection rules tuned against alert quality metrics.
Architect and implement security engineering capabilities including endpoint security, data loss prevention, email security, network security, SIEM enhancements, detection engineering, and security automation.
Delinea is a pioneer in securing human and machine identities through intelligent, centralized authorization, empowering organizations to govern interactions across the modern enterprise. It is a global team with a culture of innovation, respect, and fairness, backed by strategic investment from TPG.
Monitor IT infrastructure and analyze alerts from SIEM and EDR systems.
Perform malware analysis and behavioral analysis to detect anomalies.
Support proactive threat hunting using AI-based tools and document findings.
RTB House is a demand-side platform that uses proprietary Deep Learning AI algorithms to help brands grow. Founded in 2012, it operates in 90+ markets and embraces a private-by-design, innovative culture.
Own deployment, configuration, and tuning of EDR platforms like CrowdStrike across endpoints and servers.
Manage SIEM platforms such as Splunk, developing detection rules and investigating alerts.
Lead SOC 2 Type II compliance operations, including maintaining control evidence and coordinating with auditors.
Volexity is a cybersecurity firm specializing in incident response and threat intelligence. The company values diversity and offers a collaborative culture with a focus on professional development.
Manage and optimize SIEM use cases to enhance threat detection and incident response.
Analyze security events and lead threat hunting activities to identify emerging risks.
Investigate incidents and produce technical documentation for corrective actions.
Inetum is a European leader in digital services, helping businesses and public sector entities achieve digital transformation. With 28,000 consultants and specialists across 19 countries, the company generated €2.5 billion in sales in 2023 and fosters a collaborative and innovative culture.
Lead the Security Detection & Response team, owning incident response, detection engineering, and automation.
Oversee security observability, detection strategy, and AI-assisted workflows to improve speed and reliability.
Build and retain a high-performing remote team, collaborating across Engineering, IT, and other departments.
Apollo.io is a leading go-to-market platform for revenue teams, trusted by over 500,000 companies. The company is one of the fastest-growing SaaS firms, raising ~$250 million and valued at $1.6 billion, backed by top-tier investors like Sequoia Capital and Bain Capital Ventures.
Lead investigation and response for security incidents, suspicious activity, and emerging threats.
Design, implement, and improve security monitoring, detection, and response capabilities across AWS.
Develop detection rules, conduct post-incident reviews, and partner with teams to strengthen security controls.
CoLab is an AI platform that helps mechanical engineering teams bring life-changing products to market faster by driving stronger engineering decisions. Founded in 2019 and based in St. John's, Newfoundland, CoLab has grown rapidly, earning recognition on Deloitte's Fast 50 and Fast 500 lists.
Analyze and respond to advanced threats ranging from commodity phishing to zero-day exploits.
Monitor and triage alerts from network security monitoring, EDR platforms, and other log sources.
Create detailed incident reports and collaborate with threat intelligence and incident response teams.
Volexity is a cybersecurity company specializing in threat intelligence and incident response. They have a growing, industry-leading security operations team and value diversity and equal opportunity.
Monitor and investigate security alerts and events across enterprise environments
Perform proactive threat hunting and support incident response efforts
Use Splunk SIEM for log analysis and work with EDR technologies like CrowdStrike and Cisco AMP
Cyderes builds practical Identity & Access Management and Exposure Management programs, helping organizations stop active threats fast with Managed Detection & Response integrated with existing tools. The company is a Great Place to Work® Certified™ global team operating across the United States, Canada, United Kingdom, and India.