Develop processes, tooling and automation to scale incident management response and mitigate risks.
Collaborate with security, engineering, product, support, and business operations to identify detection use cases.
Maintain security logging platform and stay updated on threats to improve detection mechanisms.
ClickHouse is a leading real-time analytics, data warehousing, observability, and AI workloads company with over 4,000 customers and rapid growth, validated by a $400M Series D funding round. The company values innovation and collaboration, offering a remote-friendly culture with a global team.
Design, implement, and maintain SIEM platform architectures across AWS, Azure, and GCP environments.
Build and operate reliable log collection and ingestion pipelines using forwarders, connectors, APIs, syslog, and agents.
Support FedRAMP continuous monitoring and compliance requirements while partnering with detection engineering and security operations teams.
Coalfire is a leading cybersecurity solutions provider that advises, assesses, automates, and helps clients navigate the ever-changing cybersecurity landscape. The company has offices across the U.S. and U.K. and fosters a culture of passionate problem-solvers who are hungry to learn and grow.
Lead security incident response in a 24/7 global rotation, managing incidents from detection through recovery.
Create and maintain comprehensive incident response documentation, including runbooks and procedures.
Design and implement automated security processes to improve operational efficiency and reduce manual intervention.
GitLab is the intelligent orchestration platform for DevSecOps, helping organizations improve developer productivity, operational efficiency, and security. With over 50 million users and a high-performance culture, GitLab values innovation, continuous knowledge exchange, and inclusion.
Develop and implement effective cybersecurity strategies aligned with client objectives and industry best practices.
Design and implement advanced security controls and technologies, including SIEM, DLP, and endpoint protection.
Lead complex cybersecurity projects, manage client relationships, and contribute to thought leadership.
Avertium provides cybersecurity consulting and managed security services, focusing on Microsoft Cloud and other platforms. The company fosters a culture of remote teamwork, self-discipline, and innovation, leveraging industry best practices to deliver cost-effective solutions.
Design and implement scalable, secure, and reliable cloud solutions in AWS and other platforms.
Lead complex production incidents and drive automation to reduce operational toil.
Mentor junior engineers and establish cloud engineering best practices.
Peraton is a national security company that provides mission capability integration and transformative IT solutions to government agencies and the U.S. armed forces. They employ a large, diverse workforce and emphasize innovation and reliability in their operations.
Design, develop, and maintain security automation and SOC tooling, including integrations with SIEM, EDR, cloud services, and internal security platforms.
Participate in security detection engineering, including log parsing, data normalization, and detection logic implementation.
Assist in security incident response, including triage, investigation, containment, eradication, and post-incident analysis.
Binance is a leading global blockchain ecosystem behind the world's largest cryptocurrency exchange by trading volume and registered users. We are trusted by 300+ million users in 100+ countries with a focus on security and innovation.
Lead cybersecurity investigations across cloud, endpoint, identity, SaaS, email, and network environments.
Partner with Engineering, Infrastructure, Fraud, Legal, Communications, and Product teams to manage incidents and communicate risk.
Support continuous improvement through automation, AI-assisted security workflows, and detection tuning.
Oportun is a mission-driven financial services company that empowers members with intelligent borrowing, savings, and budgeting capabilities. Since inception, it has provided over $21.3 billion in responsible credit and fosters a diverse, equitable, and inclusive culture.
Translate security policy into practical, deployable solutions across applications, data environments, and AI systems.
Design, build, and deploy security controls for web applications, data pipelines, APIs, and Agentic AI systems.
Implement secure-by-design practices throughout the software development lifecycle, including code-level remediations and configuration hardening.
EnableComp provides Specialty Revenue Cycle Management solutions for healthcare organizations, leveraging over 24 years of industry-leading expertise. A multi-year recipient of the Top Workplaces award, they have been recognized as Black Book's #1 Specialty RCM Solution provider in 2024 and are among the top one percent of the Inc. 5000 fastest-growing private companies in the US for eleven years.
Deploy and administer cloud infrastructure ensuring reliability, security, and efficiency of networks.
Collaborate with development and operations teams to enhance network performance and support cloud services.
Automate infrastructure management using Infrastructure as Code (IaC) tools and scripting languages.
Millennium is a cybersecurity firm providing Red Team, Defensive Cyber, Software Engineering, and Technical Engineering services. Since 2004, an elite team of over 300 professionals delivers threat intelligence and battle-tested expertise to the Department of Defense and federal civilian customers.
Lead DLP incident response, including investigation, containment, and remediation.
Deploy and tune DLP controls across endpoints, network, and cloud.
Develop DLP policies and automated playbooks.
Included Health is a healthcare company that delivers integrated virtual care and navigation. They have a remote-first culture and offer comprehensive benefits.
Design, implement, and maintain security controls across AWS environments, including IAM, VPC, encryption, and logging.
Integrate security checks into CI/CD pipelines and harden Kubernetes/EKS workloads using Terraform and policy-as-code.
Automate vulnerability management, security monitoring, and incident response to reduce cloud and application risk.
Electric Power Engineers provides consulting expertise and energy intelligence software solutions for power and energy clients, focusing on modern, secure, and resilient grid challenges. They are leaders in the renewables space and emphasize collaboration, innovation, and making an impact on communities and the environment.
Act as a senior member of the SOC, independently managing and resolving security incidents end-to-end.
Lead incident investigations, perform root cause analysis, and drive lessons learned.
Collaborate with global security teams to develop and improve processes, tooling, and operational best practices.
Netrix Global provides the people, processes, and technology needed to run and scale modern, data-driven businesses that are always on and always secure. The company is consistently ranked in the CRN VAR500 as a top system integrator and fosters a culture of ownership, teamwork, and respect.
Design and build security for future infrastructure, partnering with engineering and compliance teams.
Lead AI-native security initiatives, designing autonomous agents for threat detection and incident response.
Devise defense-in-depth frameworks, research threats, and maintain KPIs for a healthy cloud security program.
WeightWatchers is a global digital health company that blends science and community to help millions build sustainable healthy habits. The engineering team drives transformative change through technology, with a culture that thrives on urgency, collaboration, and passion for impactful work.
Design, develop, and maintain secure cloud environments for distributed LogRhythm deployments.
Act as a technical escalation point for SIEM engineers, solving complex security and infrastructure issues.
Build automation and operational tooling using PowerShell, SQL, Bash, or Python.
The company specializes in cybersecurity and managed SIEM services, focusing on protecting and scaling distributed LogRhythm environments. They offer a remote work environment with a collaborative culture and opportunities for professional growth.
Combine security operations, software engineering, and site reliability to protect complex digital infrastructure.
Design, build, and operate security platforms, tooling, and automation for threat detection and incident response.
Mentor engineers, influence operational strategy, and contribute to open source security initiatives.
They build and operate a world-class Security Operations function. They are a distributed, agile engineering organization that values technical excellence and continuous learning.
Monitor and triage alerts across endpoint, network, cloud, runtime, and identity data sources.
Perform structured investigations on escalated or ambiguous alerts to build coherent timelines.
Participate in incident response, including evidence collection and containment actions.
AlphaSense provides AI-driven market intelligence and search to help enterprises make informed decisions. The company has over 2,000 employees globally and fosters a culture of innovation and collaboration.
Monitor, detect, and respond to security events across enterprise environments using the SIEM.
Build and maintain dashboards, visualizations, and KPIs that demonstrate SIEM effectiveness and security visibility.
Use frameworks such as MITRE ATT&CK to contextualize detections and identify coverage gaps.
Horizon3.ai is a fast-growing, remote cybersecurity company that provides production-safe autonomous pentests through its NodeZero platform to organizations of all sizes. We are a fusion of former U.S. Special Operations cyber operators and startup engineers, committed to a culture of respect, collaboration, ownership, and results.
Design, implement, and secure hybrid cloud environments across Microsoft Azure, AWS, and Microsoft 365.
Lead SOC 2 Type II audit support, cybersecurity operations, and incident response.
Develop automation and security monitoring using Sentinel, Defender, and PowerShell.
XO Health is the first health plan designed by and for self-insured employers, delivering a unified health experience for all stakeholders. The company is growing a multi-disciplinary team of diverse and digitally empowered employees focused on rebuilding trust in healthcare.
Provide technical guidance and recommendations to clients to enhance their overall security posture within managed products.
Handle daily proactive maintenance and reactive troubleshooting/repair functions for security tools and systems.
Utilize SIEM and other tools to assist in network investigations, including firewalls, IDS/IPS and monitoring tools.
Avertium is a cyber fusion and MXDR leader, delivering comprehensive security and compliance services to mid-market and enterprise customers. The company provides a stimulating work environment with cutting-edge security technologies and opportunities for professional growth.