Remote Cyber security Jobs · SCA

Job listings

  • Act as customers technical PoC post-sales
  • Work on integrating the XBOW product with customer environments
  • Lead self-hosted product deployments, support and upgrades

XBOW is redefining cybersecurity with an AI-powered autonomous pentester. Backed by Sequoia Capital and Altimeter, their team includes the creators of GitHub Copilot and GitHub Advanced Security and is dedicated to scaling offensive security and shaping the future of cybersecurity.

$80,000–$110,000/yr

  • Collaborate with internal teams to define the scope of application security testing activities.
  • Plan and carry out application security testing in all phases of the software development life cycle to identify vulnerabilities.
  • Assess discovered vulnerabilities and recommend solutions to reduce risk and mitigate security impacts to the application environment.

Clear Capital is a national real estate analytics, data solutions and valuation technology company with a simple purpose: to build confidence in real estate decisions to strengthen communities and improve lives. They value commitment, integrity, kindness, and attention to detail, providing a mission-driven environment where work makes a measurable impact.

US Unlimited PTO

  • Support the design and implementation of secure application architectures under guidance from senior engineers.
  • Apply secure coding practices and assist in threat modeling and vulnerability assessments.
  • Conduct and support application security testing (SAST, DAST, SCA, and manual reviews).

Edgesource Corporation is an innovative technology service provider for the Department of Defense (DOD), Department of Homeland Security (DHS), Department of State (DOS), the U.S. Intelligence Community, Law Enforcement, and other federal, state, and commercial clients locally, nationally, and abroad. They are an ISO 9001:2015 certified and CMMI Level 3 appraised small business specializing in providing a variety of technical solutions.

$180,000–$190,000/yr

  • Embed security into the SDLC by partnering with Engineering to implement secure design patterns, conduct threat modeling, and deliver developer-focused AppSec training.
  • Lead and perform application security assessments including SAST, DAST, SCA, and manual code review across web, mobile, and API surfaces.
  • Own and mature the vulnerability management program, including prioritization frameworks, SLA tracking, and cross-functional remediation coordination.

Branch is on a mission to empower workers with financial freedom by helping companies accelerate payments and providing working Americans with accessible, free financial services. They are committed to building inclusive and transparent financial products while valuing diversity of opinions and working styles, fostering innovation, and promoting teamwork.

Global Unlimited PTO

  • Own and enforce DevSecOps practices across CI/CD pipelines.
  • Drive vulnerability identification, triage, and remediation across infrastructure and applications.
  • Act as the primary security SME for the engineering organization.

Teramind is pioneering a predictive, AI-driven approach to safeguarding organizations' people, data, and operations. As a global leader in user behavior analytics, insider risk management, and workforce intelligence, we empower businesses to transform data into a strategic asset.

$435,468–$458,056/yr
US Unlimited PTO

  • Design, implement, and manage the integration of security tooling into CI/CD pipelines.
  • Develop and maintain automation scripts to streamline security processes and workflows.
  • Own the vulnerability management lifecycle: identification, triage, prioritization, and reporting.

MoonPay is a unified payments platform for digital currency, making it easy for anyone to buy, sell, swap, and pay in digital currencies. Trusted by over 30 million customers and over 500 ecosystem partners, MoonPay's secure, enterprise-grade platform is driving mainstream crypto adoption worldwide.

  • Integrate security activities across all SDLC phases.
  • Partner closely with engineering teams to ensure secure development practices.
  • Review security controls for new features, services, and architectural changes.

Infiterra simplifies subscription service delivery, enabling IT distributors, Managed Service Providers (MSPs), and telcos to succeed in the subscription economy. They are recognized as a global leader in subscription commerce, combining innovation, performance excellence, and trusted expertise to help partners transform and grow.