Act as the bridge between architectural intent and operational reality, mediating conflicts between security requirements and feasible implementation.
Implement preventive, default-on security controls across cloud and enterprise environments, codified as policy- and infrastructure-as-code.
Define and enforce security requirements for AI-powered features, including model access controls, prompt-injection mitigations, and output validation.
Rithum is the world's most trusted commerce network, accelerating how brands, suppliers, and retailers work together to deliver seamless e-commerce experiences. More than 40,000 companies trust Rithum to grow their business across hundreds of channels, representing over $50 billion in annual GMV.
Design, deploy, and manage cloud security solutions to protect AWS and Azure environments.
Perform security assessments, vulnerability remediation, and lead key security programs.
Automate security processes and integrate DevSec practices into the software development lifecycle.
Navitus is a pharmacy benefit manager (PBM) alternative that aims to make medications more affordable by removing cost from the drug supply chain. The company fosters a diverse, creative, and growth-oriented culture.
Lead security assessments of AI/ML models, data pipelines, and AI-enabled applications, identifying vulnerabilities such as prompt injection, model inversion, data poisoning, and adversarial inputs.
Partner with Data & Analytics and Engineering to embed security requirements and threat modeling into the AI development lifecycle, from data collection through model deployment.
Build and maintain guardrails, monitoring, and detection controls for AI systems in production, flagging anomalous model behavior and unauthorized data access.
Interra Health is a healthcare technology company that helps providers and patients navigate the prescription journey. It is a fast-growing, mission-driven team of about 100 employees, formed through the merger of DoseSpot, Arrive Health, and pVerify, and focused on reducing friction and improving access to medications.
Lead and mature cybersecurity compliance programs including SOC 2 Type 2 and ISO 27001 readiness.
Drive cloud and application security across AWS and Azure, integrating secure SDLC and DevSecOps practices.
Manage corporate IT operations, identity and access, and build the cybersecurity team as the organization grows.
Genea is a leader in property technology, providing cloud-based physical security, submeter billing, and on-demand HVAC solutions to over 1 million users across 39 countries. It has been recognized as a Top Workplace from 2021-2025 with a 4.3 Glassdoor rating, fostering a team-oriented and transparent culture.
Design and build security for future infrastructure, partnering with engineering and compliance teams.
Lead AI-native security initiatives, designing autonomous agents for threat detection and incident response.
Devise defense-in-depth frameworks, research threats, and maintain KPIs for a healthy cloud security program.
WeightWatchers is a global digital health company that blends science and community to help millions build sustainable healthy habits. The engineering team drives transformative change through technology, with a culture that thrives on urgency, collaboration, and passion for impactful work.
Implement and maintain AWS security configurations across development, staging, and production environments.
Operate SAST, DAST, and SCA tools integrated into CI/CD pipelines to remediate vulnerabilities.
Support compliance efforts such as SOC 2 Type II and ISO 27001 audits and improve security processes.
Pacvue is a leading software suite for eCommerce advertising, sales, and intelligence, helping brands grow on Amazon, Walmart, Instacart, and other marketplaces. The team is energetic, passionate, and focused on innovation, with a mission to help brands and sellers succeed.
Contribute to secure-by-design practices and maturing SAST, SCA, and DAST programs.
Develop Secure AI Development Lifecycle and AI-assisted threat modeling framework.
Mentor engineers on secure coding and foster cross-functional collaboration.
Spring Health is a global mental health company using an AI-native platform to deliver personalized mental health support. The company reaches over 170 million people worldwide and fosters a culture of innovation, collaboration, and commitment to eliminating barriers to mental health.
Lead threat modeling and security architecture for AI-enabled systems, including LLM applications and cloud-native platforms.
Define and implement secure engineering patterns and guardrails across AWS infrastructure, CI/CD pipelines, and third-party integrations.
Partner with engineering and security teams to embed security throughout the AI product lifecycle and drive cross-functional security initiatives.
Quanata is an insurance technology innovation company that engineers advanced risk prediction and prevention solutions for State Farm and HiRoad. We are a wholly owned subsidiary of State Farm with a remote-first culture that values inclusion and positive team dynamics.
Lead and expand the security function across application security, security compliance, infrastructure & cloud security, and business application security.
Build and run the AppSec program with AI-assisted code review and integrate security into CI/CD pipelines.
Own ISO 27001 and SOC 2 certification, manage audits, and secure cloud and business applications.
Constructor provides an all-in-one platform for education and research using machine intelligence and data science to address educational challenges like access inequality and low engagement. The company is led by a gender-balanced board and fosters an inclusive culture, though employee size is not specified.
Protect cloud infrastructure, applications, and customer data across a modern technology environment.
Identify and remediate vulnerabilities directly in application repositories and infrastructure code.
Build and tune SIEM detections, strengthen AWS security controls, and lead incident response.
Cloudbeds is a hospitality technology company providing cloud-based management solutions for lodging businesses. It operates as a remote-first organization with a globally distributed team across 40+ countries and a small, senior security team.
Own security architecture across Azure and AWS, covering tenant design, network segmentation, and workload isolation.
Raise the engineering bar with hardened infrastructure-as-code modules, secure defaults, and policy-as-code signals at commit time.
Own vulnerability and exposure management end to end, delivering findings as pull requests, not tickets.
One Identity enables organizations to secure, manage, monitor, protect, and analyze information and infrastructure to drive innovation. With a globally distributed team, we build enterprise products at scale and foster a collaborative, improvement-driven culture.
Develop playbooks and address security-related tasks in AWS serverless environments.
Drive improvements in security posture, including application, endpoint, and access management.
Collaborate with product engineering teams to raise the bar for security in CI/CD, dependency management, and secure design reviews.
Stedi is building a new healthcare clearinghouse and RCM engine, accessible via API. With $142 million in funding and a lean, passionate team, they ship products weekly and prioritize automation and eliminating toil.
Lead the technical vision for platform hardening across AWS and GCP, including tier-0 access and secrets services.
Own the hardening roadmap for critical cloud infrastructure and drive operational excellence with rigorous on-call practices.
Mentor a global team of engineers and partner cross-functionally to build secure-by-default controls.
DoorDash is a technology and logistics company building the most reliable delivery network for consumers, merchants, and dashers. The company is growing rapidly and fosters a culture of learning, customer obsession, and inclusive leadership.
Design and enforce cloud security controls and IAM policies across multi-account AWS environments.
Embed automated security tools into CI/CD pipelines to catch vulnerabilities pre-deployment.
Develop automated detection and remediation workflows using Python, Bash, or Go and IaC tools.
The Tripadvisor Group connects people to experiences worth sharing, aiming to be the world's most trusted source for travel and experiences. It is a publicly traded company with a global portfolio of travel brands, fostering a culture of collaboration, agility, and traveler-first mindset.
Own security of the software build and release pipeline, cloud environments, and AWS identity and access.
Operationalize a 15-domain cloud security framework and CrowdStrike CSPM across all AWS estates.
Mentor a junior cloud security engineer and build paved-road patterns for engineering teams.
Vermont Information Processing is a leading beverage industry technology provider trusted by over 1,600 suppliers for 50+ years. Backed by Warburg Pincus, VIP is investing in security with executive sponsorship and a funded roadmap.
Own and mature preventative security capabilities across cloud, SaaS, endpoint, identity, network, and data environments.
Translate broad security objectives into concrete technical requirements, controls, tooling, and implementation plans.
Partner across Engineering, Platforms, Product, and business teams to continuously strengthen security posture as we scale.
Backstory is the leading AI answers platform for sales teams, helping modern sales teams ask questions and get the right answer in real time. Backed by top investors like Andreessen Horowitz and ICONIQ Capital, Backstory is based in San Francisco and has been recognized by Gartner, Forrester, and the Forbes AI 50.
Design and develop AI/LLM-powered capabilities on Azure AI services, including RAG and orchestration.
Implement secure, cloud-native applications on Microsoft Azure with modern engineering practices.
Mentor engineers and establish reusable patterns for AI development, ensuring security and efficiency.
HealthEquity empowers healthcare consumers by providing HSAs and related solutions to connect health and wealth. With a vision to make HSAs as popular as retirement accounts by 2030, the company values a purple culture where team members are valued as individuals.
Lead the development, implementation, and ongoing maintenance of comprehensive security strategies and solutions.
Design and deploy advanced security controls to protect the business across disciplines.
Mentor and galvanize engineers to uphold security process standards.
Aledade PBC empowers independent primary care practices, helping them deliver better care and thrive in value-based care. Founded in 2014, Aledade has become the largest network of independent primary care in the US, with a collaborative, remote-first culture.
Drive offensive security through pen tests, red-team engagements, and threat modeling across Docker products and infrastructure.
Partner with engineering to implement secure architecture, automated reviews, and vulnerability management.
Build offensive tooling, develop exploits, and support incident response and security education.
Docker builds tools for developers to build, share, and run applications, including Docker Desktop, Docker Hub, and Docker Scout. It is a globally distributed, remote-first team trusted by 20M+ monthly users, focused on secure container development.
Provide architect-level thought leadership in securing enterprise AI programs, including models, applications, and data.
Lead complex client engagements as SME across AI security services, from assessment to executive readout.
Author reference architectures and enable teams to deliver coherent AI security solutions.
Trace3 is a leading Transformative IT Authority, providing unique technology solutions and consulting services to clients. With over 1,200 employees across the United States, the company embodies a startup spirit with a scalable business culture focused on innovation and growth.