Design, build, and maintain cybersecurity data pipelines using Cribl, managing data flows from source systems into SIEM and data lake platforms.
Develop and integrate connectors for security data ingestion, configure parsing, routing, and transformation, and support SIEM architecture and operations.
Troubleshoot complex pipeline issues, create documentation, and collaborate with cross-functional teams to ensure data accuracy, security, and performance.
Design and implement data integrations with SIEM platforms such as Sentinel and Splunk.
Model complex data sources into performant analytics.
Collaborate with product engineering teams to deliver data solutions that enhance customer-facing products.
Dragos is the global leader in xOT cybersecurity, combining technology, threat intelligence, and expert services. The company is a remote-first mission-driven team across North America, Europe, the Middle East, and APAC built on authenticity, transparency, and trust.
Design, build, and maintain scalable security data ingestion pipelines for SIEM and cloud platforms like Azure Data Explorer.
Partner with application, infrastructure, and security teams to onboard and validate diverse log sources.
Ensure data integrity, timeliness, and quality for threat detection, incident response, and compliance.
The partner company operates in financial services and cybersecurity, focusing on building scalable security data infrastructure. It offers a global, collaborative working environment with opportunities to solve complex technical challenges.
Design, develop, and maintain secure cloud environments for distributed LogRhythm deployments.
Act as a technical escalation point for SIEM engineers, solving complex security and infrastructure issues.
Build automation and operational tooling using PowerShell, SQL, Bash, or Python.
The company specializes in cybersecurity and managed SIEM services, focusing on protecting and scaling distributed LogRhythm environments. They offer a remote work environment with a collaborative culture and opportunities for professional growth.
Execute day-to-day implementation, monitoring, and optimization of cybersecurity systems and data pipelines.
Support log onboarding, normalization, and validation, as well as detection engineering and SIEM platform operations.
Assist in client engagements, security architecture reviews, and automation of response workflows.
GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. The company has over 1,300 employees and maintains a culture of collaboration and mentorship.
Deliver on business-critical outcomes by owning backend and data services end-to-end, from design to production operation.
Design, build, and operate scalable data pipelines and streaming ingestion for high-volume security telemetry.
Contribute to data modeling and warehouse/lakehouse architecture decisions that serve detection, analytics, and product features.
Blackpoint Cyber is the leading provider of world-class cybersecurity threat hunting, detection and remediation technology. Founded by former National Security Agency (NSA) cyber operations experts, the company is in hyper-growth mode, fueled by a recent $190m series C round.
Design and build ingestion pipelines from enterprise source systems into the Databricks lakehouse using Delta Lake, owning Bronze-layer ingestion and building Silver-layer pipelines for cleansing and standardization.
Implement and maintain Databricks platform constructs for secure delivery, including catalogs, schemas, service principals, and job orchestration, and build CI/CD pipelines for data platform assets.
Apply data classification and segregation requirements within pipeline design, build data quality controls reflecting business meaning, and partner with teams to ensure reliable, governed data for downstream use.
Shield AI is a venture-backed defense-tech company founded in 2015 with the mission of protecting service members and civilians with intelligent systems, developing products like Hivemind autonomy software and V-BAT and X-BAT aircraft. The company has offices and facilities across the U.S., Europe, the Middle East, and Asia-Pacific, and its technology actively supports operations worldwide.
Build and maintain SIEM for log collection and detection rules across corporate and production environments.
Design and deploy canary tokens and early warning mechanisms to detect threats before they reach critical assets.
Investigate security incidents end-to-end, including malware analysis, exfiltration assessment, and timeline reconstruction.
Quora operates two platforms: a global knowledge sharing platform with over 300M monthly unique visitors, and Poe, a platform for chatting and building with AI language models. The company is privately held, remote-first, and fosters a culture of transparency, collaboration, and experimentation.
Build and maintain Synapse collection pipelines through Storm queries, automation, and data models.
Diagnose and resolve complex defects in Synapse tooling and collection systems independently.
Support threat hunting and adversary tracking using telemetry and malware analysis techniques.
Dragos is a global leader in OT cybersecurity, combining technology, threat intelligence, and expert services to protect critical infrastructure. The company is a remote-first mission-driven team built on authenticity, transparency, and trust.
Monitor, triage, and investigate security incidents across Kraken's infrastructure and client instances.
Develop and automate detection capabilities and incident response processes.
Collaborate with engineering and product teams to improve security posture and respond to incidents.
We power some of the most innovative global developments in energy by creating technology that redefines utilities. We are a growing global team committed to improving the lives of one billion humans within the decade.
Design and optimize threat detection capabilities using SIEM, SOAR, EDR, and NDR technologies.
Develop automation playbooks and cybersecurity data solutions to improve detection accuracy.
Collaborate with customer teams to close detection gaps and adapt defenses to emerging threats.
Our partner is a cybersecurity firm focused on building threat detection capabilities for enterprise environments. They foster a collaborative, engineering-led culture with significant autonomy for engineers.
Log source onboarding and telemetry analysis for SIEM integration in live client environments.
Write and tune detection logic to reduce false positives and address coverage gaps.
Turn vulnerability scanner output into prioritized findings using exploitability and asset criticality.
EVOCS is an IT consulting firm helping businesses operate effectively and solve complex challenges through technology solutions. The company serves a loyal customer base with a focus on quality, consistency, and building lasting client relationships based on trust and mutual success.
Own operational excellence for the Databricks platform, including monitoring, alerting, and incident response.
Design and maintain CI/CD standards for Databricks assets and production reliability patterns.
Partner with teams to ensure ingestion, observability, and compliance in a regulated environment.
Shield AI is a venture-backed defense-tech company protecting service members and civilians with intelligent systems. With offices across the U.S., Europe, the Middle East, and Asia-Pacific, its technology supports operations worldwide.
Develop processes, tooling and automation to scale incident management response and mitigate risks.
Collaborate with security, engineering, product, support, and business operations to identify detection use cases.
Maintain security logging platform and stay updated on threats to improve detection mechanisms.
ClickHouse is a leading real-time analytics, data warehousing, observability, and AI workloads company with over 4,000 customers and rapid growth, validated by a $400M Series D funding round. The company values innovation and collaboration, offering a remote-friendly culture with a global team.
Own end-to-end delivery of data pipelines and data products from design through deployment and production support.
Develop and optimize scalable data pipelines using Azure Databricks, DBT, and Python.
Support large-scale data migrations from Snowflake to Azure Databricks and manage infrastructure with Terraform.
Coforge is a global IT solutions company that provides digital services and solutions to enterprises. They employ thousands of professionals worldwide and focus on innovation and collaboration.
Design, develop, and maintain security automation and SOC tooling, including integrations with SIEM, EDR, cloud services, and internal security platforms.
Participate in security detection engineering, including log parsing, data normalization, and detection logic implementation.
Assist in security incident response, including triage, investigation, containment, eradication, and post-incident analysis.
Binance is a leading global blockchain ecosystem behind the world's largest cryptocurrency exchange by trading volume and registered users. We are trusted by 300+ million users in 100+ countries with a focus on security and innovation.
Build out and configure a dedicated Government Databricks workspace within the existing environment
Design and implement data ingestion pipelines from core agency systems including financial, HR, CRM, and ITSM
Implement Databricks Unity Catalog for centralized data governance, metadata management, and end-to-end lineage tracking
Peraton is a next-generation national security company that drives missions of consequence globally. As a leading mission capability integrator and enterprise IT provider, the company serves essential government agencies and supports every branch of the U.S. armed forces.
Lead cybersecurity investigations across cloud, endpoint, identity, SaaS, email, and network environments.
Partner with Engineering, Infrastructure, Fraud, Legal, Communications, and Product teams to manage incidents and communicate risk.
Support continuous improvement through automation, AI-assisted security workflows, and detection tuning.
Oportun is a mission-driven financial services company that empowers members with intelligent borrowing, savings, and budgeting capabilities. Since inception, it has provided over $21.3 billion in responsible credit and fosters a diverse, equitable, and inclusive culture.
Monitor security events and provide technical analysis on alerts
Lead information security incidents as Incident Commander, developing response strategies and coordinating across teams
Champion Samsara's cultural principles while delivering security guidance for incident response and insider threat initiatives
Samsara (NYSE: IOT) is the pioneer of the Connected Operations™ Cloud, a platform that enables organizations to harness IoT data for actionable insights and improved operations. They are a recently public company with a culture that encourages rapid career development and a focus on digitizing large sectors of the global economy.
Monitor and investigate security alerts across cloud, identity, endpoint, and network environments.
Write scripts to automate repetitive security tasks and support incident response.
Work with internal teams to identify risks and support remediation, compliance, and audit activities.
Cision is a global leader in PR, marketing and social media management technology and intelligence, helping brands connect with customers and stakeholders. They have offices in 24 countries and a network of over 1.1 billion influencers, committed to diversity and inclusion with a "Top Diversity Employer" designation.