Conduct security risk assessments of third parties, evaluating overall maturity and mapping data flows to assess supplier security risks.
Build security tooling and automation, contributing to development of internal applications and scripts.
Execute incident response efforts by identifying, investigating, and remediating security incidents.
BetterHelp is on a mission to make mental health care accessible to everyone by providing affordable online therapy. Founded in 2013, it is now the world's largest online therapy service with a network of over 30,000 licensed therapists, and it deeply invests in its team's well-being and professional development.
Monitor and investigate security alerts across cloud, identity, endpoint, and network environments.
Write scripts to automate repetitive security tasks and support incident response.
Work with internal teams to identify risks and support remediation, compliance, and audit activities.
Cision is a global leader in PR, marketing and social media management technology and intelligence, helping brands connect with customers and stakeholders. They have offices in 24 countries and a network of over 1.1 billion influencers, committed to diversity and inclusion with a "Top Diversity Employer" designation.
Monitor security events and provide technical analysis on alerts
Lead information security incidents as Incident Commander, developing response strategies and coordinating across teams
Champion Samsara's cultural principles while delivering security guidance for incident response and insider threat initiatives
Samsara (NYSE: IOT) is the pioneer of the Connected Operations™ Cloud, a platform that enables organizations to harness IoT data for actionable insights and improved operations. They are a recently public company with a culture that encourages rapid career development and a focus on digitizing large sectors of the global economy.
Perform enterprise risk assessments using NIST CSF, SOC 2, and CIS frameworks.
Develop and execute security awareness programs including training and phishing simulations.
Support governance and control management by maintaining policies and control libraries.
Protective helps protect customers against life's uncertainties by providing insurance and peace of mind. The company offers a collaborative environment with a focus on employee wellbeing and work-life balance.
Partner with product and engineering teams to identify application security risks and recommend mitigations.
Read application code, configuration, and pull requests to understand security risks and suggest improvements.
Contribute to vulnerability management, automation, and security tooling to scale AppSec efforts.
Affirm is reinventing credit to make it more honest and friendly, providing consumers the flexibility to buy now and pay later without hidden fees. We are a remote-first company with a culture centered on people, transparency, and offering competitive benefits including health coverage and flexible spending.
Investigate and resolve customer technical issues across cloud security posture management, vulnerability scanning, and threat detection in AWS, Azure, and GCP environments.
Troubleshoot cloud connector and integration failures, including IAM, network connectivity, and API authentication issues.
Design and implement automation leveraging AI agents to improve triage accuracy and resolution efficiency.
Wiz provides an AI-powered cloud security platform that connects code, cloud, and runtime to secure cloud and AI applications, trusted by over 65% of the Fortune 100. As one of the fastest-growing startups, powered by Google, Wiz has a culture that values world-class talent and encourages creative thinking.
Act as a trusted advisor to business leaders, bridging security risks and business priorities.
Lead security assessments, risk reviews, and remediation planning for new products and enterprise changes.
Maintain clear visibility of security risk, control health, metrics, and dashboards, escalating when needed.
Experian is a global data and technology company, powering opportunities for people and businesses around the world. With a team of 25,200 people in 32 countries, they foster an inclusive, purpose-driven culture and have been recognized as a World's Best Workplace in 2025.
Lead the GRC strategy, shifting from bureaucratic to strategic enabler focused on real business risk.
Manage cyber risk quantification, third-party risk, and continuous compliance programs.
Oversee information security governance, AI governance, and IAM governance, reporting to the CISO.
Grupo QuintoAndar is the largest real estate ecosystem in Latin America, covering all phases of the housing journey. The company is valued at over USD 5.1 billion, with a culture of innovation, collaboration, and high performance working with top professionals.
Design and implement cloud security posture and automation to protect customer trust.
Enable cyber resilience and lead zero trust initiatives across the infrastructure.
Collaborate with engineering teams to enhance reliability and security of cloud systems.
Mercury is a fintech company providing banking and financial services for startups, focusing on simplicity and security. With a team of around 500 employees, the culture is collaborative, innovative, and values diversity.
Partner with engineering teams to review cloud and compute architecture design changes.
Establish threat models for cloud and compute paved roads to identify security risks.
Write code for automations that support security requirements like threat detection and incident containment.
Quora operates two platforms: a global knowledge sharing platform with over 300 million monthly unique visitors, and Poe, a platform for AI language models. The company is remote-first with a culture rooted in transparency, idea-sharing, and experimentation.
Manage and implement complex controls frameworks for large systems consisting of Cloud infrastructure and SaaS services.
Design and develop automation solutions for evidence collection across Cloud infrastructure, endpoints, and SaaS services.
Conduct risk assessments across business units and processes, identifying risk findings and recommending remediation strategies.
Virtru is a data protection platform that enables secure sharing without sacrificing security or privacy. Backed by top venture capital firms, the company helps Fortune 500 companies and government agencies achieve true data security with freedom to share.
Integrate security into the SDLC through automation, testing, and continuous improvement.
Identify, investigate, and remediate application and infrastructure vulnerabilities.
Develop tools and automation in Python, Go, or Terraform to improve security and developer productivity.
Corbalt is a technology company that partners with federal agencies to modernize and operate complex technology ecosystems, building shared platforms and reusable services. They are a remote-first team that values curiosity, kindness, ownership, and continuous learning, with roots in the Healthcare.gov recovery effort.
Act as a trusted consultant guiding clients through complex security and compliance challenges.
Develop security strategies aligned with frameworks like CMMC, NIST 800-171, and NIST 800-53.
Design and implement AWS and/or GCP security tools with deep expertise in cloud security.
Aprio is a Top 20 CPA and advisory firm that provides compliance and advisory services to fast-growing industries. With over 3,200 team members across 40 US and international offices, they foster a top-rated culture and collaborative environment.
Design and implement security capabilities to satisfy FedRAMP KSIs within your team's specialty domains.
Build automated, repeatable deployments using infrastructure-as-code and CI/CD pipelines.
Deploy into client environments as a subject-matter expert, integrating and hardening capabilities.
Coalfire is a cybersecurity firm that helps clients navigate the ever-changing cybersecurity landscape through advisory, assessment, and automation. The company is headquartered in Chicago with offices across the U.S. and U.K., and fosters a collaborative team culture of passionate problem-solvers.
Build production-grade security applications and services using Python.
Develop internal security platforms and tooling from scratch.
Design and enforce secure cloud architectures (AWS) and implement policy enforcement for IAM least-privilege models.
Binance is a leading global blockchain ecosystem behind the world’s largest cryptocurrency exchange by trading volume and registered users. They are trusted by 300+ million people in 100+ countries and have a diverse workforce.
Design and implement security controls across applications, cloud infrastructure, and development environments.
Conduct architecture reviews, threat modeling, and security assessments for new products.
Identify, prioritize, and remediate vulnerabilities across the technology stack.
SignalFire partners with top early-stage startups that are shaping the future of technology. They have a portfolio of over 200 innovative companies across AI, cybersecurity, healthtech, fintech, developer tools, and enterprise SaaS.
Design and evolve security architecture across cloud infrastructure, applications, and CI/CD pipeline.
Conduct threat modeling, architecture reviews, and define secure design patterns for GCP-based environment.
Evaluate emerging technologies like AI and GenAI platforms to identify risks and define secure adoption patterns.
Airship provides a no-code, AI-powered platform for brands like Alaska Airlines and BBC to create personalized cross-channel customer experiences. The company fosters a digital-first, flexible remote culture with a collaborative team across time zones.
Design, develop, and maintain automated workflows for RMF, A&A, and continuous monitoring.
Develop integrations between GRC platforms, security tools, and reporting solutions.
Automate evidence collection, control validation, and compliance activities to improve efficiency.
True Zero Technologies is a veteran-owned small business that enables people and technology to deliver top-tier cybersecurity services. With a people-first approach, the company has been recognized as a Best Places to Work honoree and made the Inc. 5000 list, reflecting a culture of driven and passionate individuals.
You will own KPA's enterprise security platforms and lead technical security initiatives.
You will manage vulnerability remediation, endpoint security, identity security, and incident response.
You will secure cloud environments across Azure, AWS, and Microsoft 365, integrating security into CI/CD pipelines.
KPA provides compliance and risk management software for the automotive and equipment industries. The company values trust, innovation, excellence, and results, fostering a collaborative culture with a team of security and IT professionals.
You will own end-to-end compliance audits (SOC 1, SOC 2, HITRUST) and manage compliance automation platforms.
You will run the vulnerability management program and remediate security findings across AWS.
You will support security incident response, fraud investigations, and third-party risk assessments.
We are transforming post-acute care as the leading digital ordering platform for medical equipment and supplies. We connect major health systems, health plans, and suppliers to help patients get life-saving products at home, with a network of 300,000+ clinicians and 3,000+ supplier locations across all 50 states.