Support the security team by monitoring and triaging security activity, investigating potential threats, and improving security operations across endpoint, network, and cloud platforms.
Assist with developing SIEM detection rules, analyzing security telemetry for anomalous behavior, and conducting targeted threat-hunting activities.
Work with vulnerability management, threat intelligence, and documentation to strengthen security practices and ensure adherence to policies.
Monitor, investigate, and respond to security alerts from SIEM, EDR/XDR, IDS/IPS, firewall, cloud, identity, and endpoint security platforms.
Perform incident response and threat hunting activities, including alert triage, root cause analysis, containment, and documentation.
Analyze endpoint, authentication, firewall, VPN, cloud, and network activity to identify indicators of compromise and suspicious behavior.
Clear Capital is a national real estate analytics, data solutions, and valuation technology company that builds confidence in real estate decisions. The company values integrity, kindness, grit, empathy, attention to detail, and raising the bar.
Monitor, detect, and respond to security events across enterprise environments using the SIEM.
Build and maintain dashboards, visualizations, and KPIs that demonstrate SIEM effectiveness and security visibility.
Use frameworks such as MITRE ATT&CK to contextualize detections and identify coverage gaps.
Horizon3.ai is a fast-growing, remote cybersecurity company that provides production-safe autonomous pentests through its NodeZero platform to organizations of all sizes. We are a fusion of former U.S. Special Operations cyber operators and startup engineers, committed to a culture of respect, collaboration, ownership, and results.
Monitor security tools and analyze logs, alerts, and data for suspicious activity.
Investigate potential threats, determine if alerts are real incidents, and identify vulnerabilities.
Contain threats, remediate vulnerabilities, document findings, and report to management.
Mercury Insurance helps people reduce risk and overcome unexpected events by providing insurance solutions for over 60 years. They are a midsize employer recognized as one of America's Best Midsize Employers for 2026, fostering a collaborative and inclusive culture.
Monitor and triage alerts across endpoint, network, cloud, runtime, and identity data sources.
Perform structured investigations on escalated or ambiguous alerts to build coherent timelines.
Participate in incident response, including evidence collection and containment actions.
AlphaSense provides AI-driven market intelligence and search to help enterprises make informed decisions. The company has over 2,000 employees globally and fosters a culture of innovation and collaboration.
Monitor, analyze, and respond to complex security incidents, guiding Level 1 engineers and contributing to the organization's security posture.
Conduct in-depth forensic analysis, manage vulnerabilities, and optimize security tools such as SIEM, IDS/IPS, and endpoint protection.
Collaborate with IT and security teams, participate in on-call support, and stay updated on the latest cybersecurity threats and best practices.
CTS delivers comprehensive IT solutions for mission-driven organizations, with deep expertise in nonprofits and education. The company is headquartered in Brooklyn, NY with 90+ employees across the US and several other countries, fostering a culture of growth and innovation.
Triage and investigate intrusions, analyze logs and forensic artifacts to determine root causes.
Perform dynamic malware analysis and refine detection capabilities to address emerging threats.
Collaborate with product and engineering teams to evolve human-led agentic workflows.
Huntress is a cybersecurity company founded in 2015 by former NSA cyber operators, making enterprise-grade security accessible to businesses of all sizes. They secure over 5 million endpoints and 14 million identities worldwide with a remote-first team and a 24/7 human-led Security Operations Center.
Lead cybersecurity investigations across cloud, endpoint, identity, SaaS, email, and network environments.
Partner with Engineering, Infrastructure, Fraud, Legal, Communications, and Product teams to manage incidents and communicate risk.
Support continuous improvement through automation, AI-assisted security workflows, and detection tuning.
Oportun is a mission-driven financial services company that empowers members with intelligent borrowing, savings, and budgeting capabilities. Since inception, it has provided over $21.3 billion in responsible credit and fosters a diverse, equitable, and inclusive culture.
Manage, tune, and continuously improve EDR and SIEM platforms to enhance detection quality.
Develop dashboards, reports, alerts, and security use cases to monitor threats.
Collaborate with infrastructure and IT teams to onboard new systems and improve visibility.
Sporty is a remote-first company focused on building sustainable technology. They offer a competitive salary, quarterly bonuses, and a global team culture.
Perform log source onboarding and telemetry analysis to support security assessments.
Write and tune detection logic, cut false positives, and build content for coverage gaps.
Conduct vulnerability analysis and turn scanner output into prioritized remediation.
EVOCS empowers businesses with advisory expertise and technology solutions to help them grow and prosper. Founded by a team of passionate experts, we have grown into a trusted partner with a commitment to quality, consistency, and client success, operating with an employee-managed culture.
Independently execute endpoint security, identity management, and vulnerability remediation across Windows, macOS, Linux, and cloud platforms.
Monitor and analyze alerts within SIEM and EDR, conduct initial investigations, and escalate complex findings as needed.
Partner with IT, Engineering, DevOps, and IAM teams to maintain security controls and support compliance frameworks like SOC 2, HIPAA, and ISO 27001.
Accela is an industry leader in designing and delivering government software to improve efficiency, increase citizen engagement, and enable the development of thriving communities. The company has been operating for nearly 20 years, fosters a diverse and inclusive culture, and is committed to equity and belonging.
Independently triage security alerts and incident reports.
Investigate incidents using forensic and threat hunting skills.
Drive incidents to closure and enhance response platforms.
LinkedIn is the world's largest professional network, built to create economic opportunity for every member of the global workforce. The company is committed to a culture built on trust, care, inclusion, and fun, offering transformational opportunities for employees.
Act as a senior member of the SOC, independently managing and resolving security incidents end-to-end.
Lead incident investigations, perform root cause analysis, and drive lessons learned.
Collaborate with global security teams to develop and improve processes, tooling, and operational best practices.
Netrix Global provides the people, processes, and technology needed to run and scale modern, data-driven businesses that are always on and always secure. The company is consistently ranked in the CRN VAR500 as a top system integrator and fosters a culture of ownership, teamwork, and respect.
Execute day-to-day implementation, monitoring, and optimization of cybersecurity systems and data pipelines.
Support log onboarding, normalization, and validation, as well as detection engineering and SIEM platform operations.
Assist in client engagements, security architecture reviews, and automation of response workflows.
GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. The company has over 1,300 employees and maintains a culture of collaboration and mentorship.
Work hands-on with IBM QRadar to support security monitoring, detection, and investigation.
Create and maintain detection rules and use cases to identify suspicious activity.
Perform threat hunting activities to investigate potential threats and improve detection.
Our partner is a cybersecurity firm specializing in SIEM and security operations, particularly with IBM QRadar. They offer a structured career plan with semi-annual reviews and a remote-first culture, supporting large-scale Security Operations Center initiatives.
Log source onboarding and telemetry analysis for SIEM integration in live client environments.
Write and tune detection logic to reduce false positives and address coverage gaps.
Turn vulnerability scanner output into prioritized findings using exploitability and asset criticality.
EVOCS is an IT consulting firm helping businesses operate effectively and solve complex challenges through technology solutions. The company serves a loyal customer base with a focus on quality, consistency, and building lasting client relationships based on trust and mutual success.
Build and maintain SIEM infrastructure and detection systems to identify malicious behavior across corporate and production environments.
Investigate security incidents end-to-end, including malware analysis and timeline reconstruction, and develop runbooks for scalable response.
Partner with IT to enforce security standards on employee devices and drive implementation of Zero-Trust VPN and other corporate security controls.
Quora operates two platforms: Quora, a global knowledge sharing platform, and Poe, a platform for chatting with AI language models. The company fosters a culture of transparency, idea-sharing, and collaboration among its global teams.
Jobgether is an AI-powered job matching platform that connects candidates with hiring companies. It operates as a distributed team with a focus on international cybersecurity roles, offering stable remote work and professional support.
Develop processes, tooling and automation to scale incident management response and mitigate risks.
Collaborate with security, engineering, product, support, and business operations to identify detection use cases.
Maintain security logging platform and stay updated on threats to improve detection mechanisms.
ClickHouse is a leading real-time analytics, data warehousing, observability, and AI workloads company with over 4,000 customers and rapid growth, validated by a $400M Series D funding round. The company values innovation and collaboration, offering a remote-friendly culture with a global team.
Monitor threats and investigate suspicious activities using logs and detection systems.
Analyze attack patterns and build detailed threat scenarios from collected data.
Improve detection and blocking mechanisms for automated attacks and malicious behaviors.
Sigma Software is a technology company that provides advanced cybersecurity solutions and application protection services. The remote team is collaborative, experienced, and operates within European time zones.