Assist customers with application security testing tool configurations and triage support.
Lead AppSec Program maturity assessments using frameworks like BSIMM and SSDF.
Develop Strategic Roadmaps and deliver presentations to executive leadership.
Black Duck Software, Inc. helps organizations build secure, high-quality software, minimizing risks while maximizing speed and productivity. It is a recognized pioneer in application security, providing SAST, SCA, and DAST solutions.
Architect and automate security workflows across CI/CD and compliance operations.
Integrate and monitor security tooling within automated pipelines.
Build automation for compliance and ATO artifacts.
Our partner is a technology company that builds secure, automated cloud environments for mission-critical programs. They offer a fully remote work model with a focus on autonomy and work-life balance.
Lead and maintain ATO documentation and coordinate with security, engineering, and project teams to ensure compliance.
Monitor security events, investigate threats, and assess vulnerabilities across cloud and enterprise environments.
Develop and implement security policies, conduct risk analysis, and provide cybersecurity guidance to stakeholders.
The company is a partner organization focused on cybersecurity and federal technology modernization. It offers a fully remote, mission-driven culture with opportunities for growth in a technology-focused environment.
Build and maintain security infrastructure across AWS and Kubernetes, including telemetry pipelines, cryptographic material lifecycle, and compliance automation.
Engineer agentic AI workflows using tools like Claude Code and MCP integrations to automate security tasks such as code review and drift detection.
Develop threat models and embed security controls into deployment pipelines to prevent vulnerabilities at build time.
Lumin Digital provides cloud-native digital banking solutions for credit unions and banks. The company fosters a culture of trust, respect, and boldness, encouraging innovation and collaboration in a fully remote, async-first environment.
Secure cloud infrastructure, applications, APIs, and AI-driven workflows.
Partner with engineering to embed security controls into production.
Lead vulnerability management and incident response activities.
Jobgether is an AI-powered job matching platform that connects candidates with hiring companies. The company is a high-growth startup with a remote-first culture, emphasizing transparency, autonomy, and technical craftsmanship.
Research and remediate prioritized security vulnerabilities in PHP code, including injection, authentication, and deserialization defects.
Perform AWS-side remediation and deployment, including configuration hardening, IAM adjustments, and secret rotation.
Validate fixes with automated tests and document closure evidence for the client's risk program.
CI&T helps large enterprises transform the potential of AI into real business impact with AI deployment, AI-native execution, and tech-integrated business solutions. With 30 years of experience and 8,000 employees across more than 25 countries, the company fosters a collaborative culture focused on building secure, resilient software.
Lead security and IT for Cardlytics, overseeing security engineering, IT operations, and compliance for a fully remote team.
Manage SOX/SOC 2 compliance, identity and access management, and cloud security across AWS environment.
Drive AI adoption company-wide while partnering with executives and the board to align security priorities with business strategy.
Cardlytics is a purchase intelligence and incentives platform that helps businesses attract and incentivize consumers through digital reward programs. As a public company (NASDAQ: CDLX) with a lean, high-trust team, they prioritize integrity and growth.
Design and manage enterprise PKI, including certificate lifecycle and automation via ACME.
Integrate with AWS Private CA, ACM, and CloudHSM, supporting Federal/DoD PKI and CAC/PIV.
Establish monitoring, governance, and troubleshooting for certificate-related issues across environments.
True Zero Technologies is a veteran-owned small business focused on cybersecurity and technology solutions. Recognized as a Best Place to Work in 2023 and 2025, it has appeared on the Inc. 5000 list multiple times, fostering a people-first culture.
Integrate security into the SDLC through automation, testing, and continuous improvement.
Identify, investigate, and remediate application and infrastructure vulnerabilities.
Develop tools and automation in Python, Go, or Terraform to improve security and developer productivity.
Corbalt is a technology company that partners with federal agencies to modernize and operate complex technology ecosystems, building shared platforms and reusable services. They are a remote-first team that values curiosity, kindness, ownership, and continuous learning, with roots in the Healthcare.gov recovery effort.
Build and deliver technical solutions with national security partners.
Deliver world-class demos and training experiences to partners.
Speak at conferences and communicate technical concepts with excellence.
Wiz is a cloud security company that enables teams to secure cloud and AI applications by connecting code, cloud, and runtime into a single context. As one of the fastest-growing startups ever, it is trusted by over 65% of the Fortune 100, powered by Google, and values world-class talent in a culture of innovation and fun.