Design, develop, and maintain secure cloud environments for distributed LogRhythm deployments.
Act as a technical escalation point for SIEM engineers, solving complex security and infrastructure issues.
Build automation and operational tooling using PowerShell, SQL, Bash, or Python.
The company specializes in cybersecurity and managed SIEM services, focusing on protecting and scaling distributed LogRhythm environments. They offer a remote work environment with a collaborative culture and opportunities for professional growth.
Write, tune, and maintain detections in a modern SIEM across cloud, container, and SaaS log sources.
Run cloud security operations in AWS, triage alerts, and help execute incident-response playbooks.
Build and extend security-automation tooling with code fluency in Python or TypeScript.
SmarterDx uses clinical AI to help health systems capture the full value of patient care. They are a remote-first team with a mission to make healthcare more accurate and sustainable.
Analyze, investigate, document, and report on security alerts and potential incidents in customer environments.
Serve as an incident coordinator for urgent security events requiring response, containment, and remediation.
Stay up-to-date on security training, certifications, and emerging threats while providing security consultation to customers.
CyberSheath is a rapidly growing Managed Security Services Provider offering cybersecurity compliance and threat mitigation for the Defense Industrial Base. The company is expanding its team and fosters a fully remote work environment with a focus on security operations.
Log source onboarding and telemetry analysis for SIEM integration in live client environments.
Write and tune detection logic to reduce false positives and address coverage gaps.
Turn vulnerability scanner output into prioritized findings using exploitability and asset criticality.
EVOCS is an IT consulting firm helping businesses operate effectively and solve complex challenges through technology solutions. The company serves a loyal customer base with a focus on quality, consistency, and building lasting client relationships based on trust and mutual success.
Design, build, and maintain cybersecurity data pipelines using Cribl, managing data flows from source systems into SIEM and data lake platforms.
Develop and integrate connectors for security data ingestion, configure parsing, routing, and transformation, and support SIEM architecture and operations.
Troubleshoot complex pipeline issues, create documentation, and collaborate with cross-functional teams to ensure data accuracy, security, and performance.
Cribl is a cybersecurity and data engineering company that helps organizations manage and optimize security data pipelines for SIEM and data lake environments. As a growing company with a small team, they emphasize independent problem-solving, collaboration, and a culture that values technical excellence and clear communication.
Build and maintain SIEM for log collection and detection rules across corporate and production environments.
Design and deploy canary tokens and early warning mechanisms to detect threats before they reach critical assets.
Investigate security incidents end-to-end, including malware analysis, exfiltration assessment, and timeline reconstruction.
Quora operates two platforms: a global knowledge sharing platform with over 300M monthly unique visitors, and Poe, a platform for chatting and building with AI language models. The company is privately held, remote-first, and fosters a culture of transparency, collaboration, and experimentation.
Monitor, triage, and investigate security incidents across Kraken's infrastructure and client instances.
Develop and automate detection capabilities and incident response processes.
Collaborate with engineering and product teams to improve security posture and respond to incidents.
We power some of the most innovative global developments in energy by creating technology that redefines utilities. We are a growing global team committed to improving the lives of one billion humans within the decade.
Provide technical guidance and recommendations to clients to enhance their overall security posture within managed products.
Handle daily proactive maintenance and reactive troubleshooting/repair functions for security tools and systems.
Utilize SIEM and other tools to assist in network investigations, including firewalls, IDS/IPS and monitoring tools.
Avertium is a cyber fusion and MXDR leader, delivering comprehensive security and compliance services to mid-market and enterprise customers. The company provides a stimulating work environment with cutting-edge security technologies and opportunities for professional growth.
Lead cybersecurity investigations across cloud, endpoint, identity, SaaS, email, and network environments.
Partner with Engineering, Infrastructure, Fraud, Legal, Communications, and Product teams to manage incidents and communicate risk.
Support continuous improvement through automation, AI-assisted security workflows, and detection tuning.
Oportun is a mission-driven financial services company that empowers members with intelligent borrowing, savings, and budgeting capabilities. Since inception, it has provided over $21.3 billion in responsible credit and fosters a diverse, equitable, and inclusive culture.
Design, build, and maintain scalable security data ingestion pipelines for SIEM and cloud platforms like Azure Data Explorer.
Partner with application, infrastructure, and security teams to onboard and validate diverse log sources.
Ensure data integrity, timeliness, and quality for threat detection, incident response, and compliance.
The partner company operates in financial services and cybersecurity, focusing on building scalable security data infrastructure. It offers a global, collaborative working environment with opportunities to solve complex technical challenges.
Design and optimize threat detection capabilities using SIEM, SOAR, EDR, and NDR technologies.
Develop automation playbooks and cybersecurity data solutions to improve detection accuracy.
Collaborate with customer teams to close detection gaps and adapt defenses to emerging threats.
Our partner is a cybersecurity firm focused on building threat detection capabilities for enterprise environments. They foster a collaborative, engineering-led culture with significant autonomy for engineers.
Monitor, detect, and respond to security events across enterprise environments using the SIEM.
Build and maintain dashboards, visualizations, and KPIs that demonstrate SIEM effectiveness and security visibility.
Use frameworks such as MITRE ATT&CK to contextualize detections and identify coverage gaps.
Horizon3.ai is a fast-growing, remote cybersecurity company that provides production-safe autonomous pentests through its NodeZero platform to organizations of all sizes. We are a fusion of former U.S. Special Operations cyber operators and startup engineers, committed to a culture of respect, collaboration, ownership, and results.
Conduct hands-on detection engineering for custom alerting, integrating threat intelligence and building agentic tooling.
Work with structured and unstructured telemetry to produce meaningful security signals across cloud, endpoints, and marketplace.
Collaborate with cross-functional teams and mentor engineers to improve detection capabilities and maintain standards.
DoorDash is a technology and logistics company that enables door-to-door delivery, empowering local economies. We grow rapidly and constantly change, with a diverse and inclusive team committed to supporting employees' happiness and well-being.
Architect the SOC strategy and roadmap, defining threat intelligence operations, detection frameworks, and defensive maturity metrics.
Build and tune detection logic across cloud stacks, identity layers, and endpoints, rejecting noise to accelerate incident response velocity.
Own incident command, leading containment and recovery operations while driving engineering change through rigorous post-mortems.
Second Front Systems is a public-benefit software company that accelerates secure software development and deployment for government and regulated networks. Founded by national security veterans, the company is a high-growth startup backed by top-tier venture capital with a culture of accountability and technical craft.
Monitor security events and provide technical analysis on alerts
Lead information security incidents as Incident Commander, developing response strategies and coordinating across teams
Champion Samsara's cultural principles while delivering security guidance for incident response and insider threat initiatives
Samsara (NYSE: IOT) is the pioneer of the Connected Operations™ Cloud, a platform that enables organizations to harness IoT data for actionable insights and improved operations. They are a recently public company with a culture that encourages rapid career development and a focus on digitizing large sectors of the global economy.
Own end-to-end security incident response, from triage to recovery, and drive post-incident learnings.
Build and improve detection coverage across cloud, endpoint, identity, and SaaS systems.
Develop security automation and workflows to reduce manual toil and improve response speed.
Front is the customer operations platform for B2B complexity, keeping teams, tools, and conversations in sync. Over 9,000 companies rely on Front, and it's backed by Sequoia Capital and Salesforce Ventures, with a highly recognized workplace culture.
Oversee daily operations of the Security Operations Center (SOC) and manage a team of security professionals.
Develop and implement security policies, incident response protocols, and security monitoring strategies.
Lead as a highly technical leader delivering high business impact across multiple projects.
Aledade empowers independent primary care practices to thrive in value-based care. Founded in 2014, it has become the largest network of independent primary care in the country, fostering a collaborative, inclusive, and remote-first culture.
Monitor, analyze, and respond to complex security incidents, guiding Level 1 engineers and contributing to the organization's security posture.
Conduct in-depth forensic analysis, manage vulnerabilities, and optimize security tools such as SIEM, IDS/IPS, and endpoint protection.
Collaborate with IT and security teams, participate in on-call support, and stay updated on the latest cybersecurity threats and best practices.
CTS delivers comprehensive IT solutions for mission-driven organizations, with deep expertise in nonprofits and education. The company is headquartered in Brooklyn, NY with 90+ employees across the US and several other countries, fostering a culture of growth and innovation.
Design and implement robust security monitoring, logging, and incident response for FSA IAM systems.
Ensure compliance with FISMA, NIST RMF, and FedRAMP through advanced logging (EL3) and SIEM processes.
Manage security remediation, POA&M tracking, and vulnerability management to maintain Authority to Operate.
PingWind delivers outstanding services to the federal government in cybersecurity, development, IT infrastructure, and supply chain management. It is an SBA-certified Service-Disabled Veteran-Owned Small Business with offices in Northern Virginia and Huntsville, AL.