Identify and validate realistic attack paths across applications and infrastructure.
Develop safe proof-of-concept exploits to demonstrate security risks.
Partner with engineering teams to validate fixes and improve security posture.
A fast-growing technology environment focused on product security, protecting products used by millions of consumers. The culture emphasizes collaboration, proactive security practices, and leveraging AI to improve efficiency.
Lead the long-term technical strategy for offensive security, including red teaming and adversary simulations.
Conduct deep-dive vulnerability research and partner with DevOps to build automated security guardrails.
Mentor senior and mid-level engineers to foster a security-minded development culture.
Greenlight is a family technology company that helps families raise financially smart kids through its suite of products including the Greenlight app, debit card, and safety features. With over 6.5 million family members, Greenlight fosters a culture of innovation and collaboration to make family life easier.
Help shape technical direction of security tooling and AppSec practices. - Lead secure design across major engineering projects, from threat modeling through architecture. - Perform advanced offensive security work, chaining vulnerabilities and proving business impact.
Super.com is a fast-paced, high-growth tech company that maximizes lives for customers and employees. It offers a remote-first culture, invests in career progression, and provides generous benefits including unlimited PTO and parental leave.
Perform high quality penetration testing on software, platforms, and services.
Conduct manual code review and vulnerability hunting to find security flaws.
Collaborate with engineering teams to strengthen security controls and mentor other security practitioners.
Atlassian develops software products that help teams collaborate and unleash their potential. With a distributed-first culture, they value diversity and inclusion, and employ thousands worldwide.
Conduct sophisticated security assessments across client environments, identifying vulnerabilities missed by conventional approaches.
Develop targeted attack plans based on bespoke hypotheses and client-specific objectives.
Produce actionable, threat-based reports that translate technical discoveries into meaningful security improvements.
Jobgether uses AI-powered matching to connect candidates with roles. It is a platform focused on efficient, objective hiring, with a culture emphasizing technical excellence, radical candor, and collaboration.
Plan and execute red team assessments, penetration tests, and advanced security engagements for large organizations.
Communicate attack paths, findings, and strategic insights to technical and executive stakeholders.
Develop scripts, tools, and methodologies to improve offensive security capabilities and service delivery.
They are a specialized consulting firm focused on adversary simulation and offensive security. They maintain a remote-first culture with an emphasis on continuous improvement, transparency, and empathy.
Plan and execute realistic attack scenarios simulating sophisticated threat actors' TTPs.
Perform penetration testing of networks, applications, and systems using tools like Burp Suite, Metasploit, Cobalt Strike.
Prepare detailed reports and collaborate with blue teams to improve incident detection and response.
Insight Assurance is a global audit firm delivering next-generation cybersecurity and compliance services across SOC 2, ISO 27001, PCI DSS, and more. With 170+ professionals, it is one of the fastest-growing global audit firms serving nearly 2,000 clients.
Plan and execute application security testing across the software development lifecycle to identify vulnerabilities.
Communicate findings and risks to stakeholders and collaborate with teams to drive secure design practices.
Lead AI security initiatives including threat modeling and auditing third-party models and APIs.
Clear Capital is a national real estate analytics and valuation technology company that builds confidence in real estate decisions. Established in 2001, the company values integrity, empathy, and excellence in its team.
United StatesCanadaDominican Republic
Unlimited PTO
Conduct manual penetration tests against core systems and AI systems, and build AI-assisted tooling to extend testing coverage.
Help define how we pentest AI, including LLM applications, agents, and agent-generated code.
Triage findings from SAST tools, fix vulnerabilities, and tune rules to reduce false positives.
Forward Financing is a fintech company that unlocks capital for small businesses across America. Since 2012, they have provided over $4.8 billion in funding to more than 92,000 small businesses and are recognized as a Best Place to Work.
Conduct comprehensive penetration tests across applications, APIs, cloud environments, and infrastructure to identify vulnerabilities.
Assess security controls in multi-cloud environments (AWS, GCP) and review Infrastructure as Code configurations.
Collaborate with engineering teams to improve security practices and create high-quality technical documentation.
The company develops and secures products in a multi-cloud environment, focusing on cybersecurity. It fosters a collaborative and inclusive culture that encourages innovation and technical excellence.
Build and maintain security infrastructure across AWS and Kubernetes, including telemetry pipelines, cryptographic material lifecycle, and compliance automation.
Engineer agentic AI workflows using tools like Claude Code and MCP integrations to automate security tasks such as code review and drift detection.
Develop threat models and embed security controls into deployment pipelines to prevent vulnerabilities at build time.
Lumin Digital provides cloud-native digital banking solutions for credit unions and banks. The company fosters a culture of trust, respect, and boldness, encouraging innovation and collaboration in a fully remote, async-first environment.
Lead the security design, implementation, and controls for Jasper’s AI infrastructure and AI-powered internal workflows.
Own threat modeling for AI-specific risks and design controls for validating, logging, and auditing AI outputs.
Build security tooling and automated checks to let internal teams adopt AI capabilities without slowing down.
Jasper is the marketing agents platform that helps enterprises orchestrate AI agents for marketing execution. Founded in 2021, Jasper has team members across the U.S., Australia, and France, and is trusted by hundreds of enterprises including nearly 20% of the Fortune 500.
Hunt for and close security vulnerabilities across Counterpart Assistant using custom tooling and AI-driven frameworks.
Harden systems, services, and endpoints while establishing strong security monitoring and safeguarding PHI.
Raise the security bar by reviewing critical pull requests, running training, and mentoring engineers on secure coding practices.
Counterpart Health, a subsidiary of Clover Health, builds an AI-enabled primary care tool called Counterpart Assistant that helps physicians diagnose and manage chronic conditions earlier. The company employs a remote-first culture with a diverse and inclusive team focused on transforming healthcare at scale.
Deliver AI red teaming security assessments for enterprise clients, defining scopes and authoring detailed reports.
Build and improve frameworks and tooling to scale AI red teaming service delivery and automate repetitive tasks.
Develop novel red teaming methodologies for emerging AI modalities and stay ahead of the latest AI security threats.
Check Point protects over 100,000 organizations worldwide from cyber and AI-driven threats using a prevention-first approach. They are recognized by TIME, Newsweek, and Forbes for excellence and workplace culture.
Embed security into every phase of the SDLC and champion secure design for Gen AI and agentic AI tools.
Perform secure code reviews, threat modeling, and establish secure API patterns across engineering teams.
Operate the application vulnerability management lifecycle and communicate risk to engineering and business leaders.
GameChanger builds a platform for youth sports, helping families elevate the next generation through community and technology. They are a remote-first, dynamic tech company based in New York City, solving major challenges in youth sports.
Plan and conduct offensive security engagements, effectively communicating findings to stakeholders.
Build scripts, tools, or methodologies to enhance services and stay current with adversary tradecraft.
Serve as a subject matter expert and mentor less experienced staff while contributing to training courses.
SpecterOps provides offensive security assessment services, including red team assessments and penetration tests, for large commercial enterprises. The company fosters a culture of passionate curiosity and continuous improvement, with a remote team that values empathy and transparency.
Plan and conduct offensive security engagements of varying size, scope, and focus.
Communicate findings and recommendations to technical and executive stakeholders through reports and presentations.
Build scripts, tools, or methodologies to enhance offensive services and mentor less experienced staff.
SpecterOps is an offensive security consultancy that delivers red team assessments, penetration tests, and adversary simulation services to large commercial enterprises. The company fosters a culture of passionate curiosity, consistent improvement, empathy, sustainability, humility, and empowerment through transparency.
Lead complex offensive security projects and adversary simulation activities.
Develop stealthy tools and automation to continuously evolve offensive capabilities.
Collaborate with cyber defense and insider threat teams to improve detection and response.
The company operates at the forefront of offensive cybersecurity within a large, complex enterprise environment. They emphasize continuous learning, innovation, and collaboration across diverse teams.
Review system designs and implementations to identify security issues and align with best practices.
Develop cloud security architecture and implement automated security testing tools.
Promote DevSecOps principles through CI pipeline integration and Infrastructure as Code scanning.
Iterable is the leading AI-powered customer engagement platform that helps brands like Redfin and SeatGeek create dynamic experiences. With nearly 1,200 clients globally and a diverse workforce, we foster a culture of innovation and inclusion, recognized as one of Inc's Best Workplaces.