Lead the technical direction for Security Product Engineering at DoorDash globally.
Set and execute the vision for Proactive Security, Bug Bounty, and Vulnerability Management teams.
Partner cross-functionally to build proactive security controls that enable secure by design practices.
DoorDash is a technology and logistics company that built a scalable delivery network for consumers, merchants, and Dashers. They are growing rapidly and committed to diversity and inclusion.
Lead the technical roadmap for FedRAMP Continuous Monitoring, moving from manual reporting to automated, real-time telemetry.
Architect compliance outcomes by translating NIST 800-53 Rev. 5 and FedRAMP CR26 rulesets into scalable engineering solutions.
Engineer evidence generation frameworks to reduce manual effort for 3PAO assessments and automate compliance validation.
Wiz provides an AI-powered platform to secure cloud and AI applications by connecting code, cloud, and runtime into a single shared context. It is one of the fastest-growing startups, trusted by over 65% of the Fortune 100, with a global team and a culture that values world-class talent.
Provide technical expertise around a broad range of security solutions and act as a liaison between sales and customer technical stakeholders.
Support pre-sales campaigns by developing strategies, conducting architecture chalk talks, and product demonstrations.
Design hybrid, multicloud, and AI security strategies and solutions, and engage with internal engineering teams.
Trace3 is a leading Transformative IT Authority, providing unique technology solutions and consulting services to clients. The company employs over 1,200 people across the US, with a culture that combines startup spirit with scalable business advantages.
Own cybersecurity compliance for connected hardware products, including RED, EN 18031, and CRA.
Perform threat modeling, security validation, and manage vulnerability risks across firmware, cloud, and devices.
Collaborate with engineering teams to integrate security early and translate technical findings into compliance evidence.
Nabu Casa builds cloud services and hardware for the open-source Home Assistant smart home platform. It is a profitable, fully remote company with no external investors, funded by users, and supports several open-source projects.
Serve as acting CISO for multiple client organizations and SGP, providing strategic security leadership and executive guidance.
Lead cybersecurity and compliance programs aligned with NIST SP 800-171, CMMC Levels 1-2, and ISO/IEC 27001.
Conduct security assessments, gap analyses, and risk reviews; develop SSPs, POA&Ms, and policies.
Strategic Growth Partners provides cybersecurity and compliance services to clients across multiple time zones. They foster a collaborative, innovative, and diverse work environment.
Get involved early in new products and features, using threat modeling and security design reviews to find problems before they reach production.
Dig into application architecture, APIs, authentication, authorization, data flows, cloud services, and third-party integrations to understand how systems could be attacked.
Own and improve security tooling across the development lifecycle, including SAST, DAST, dependency scanning, and secret scanning.
YipitData is a leading market research and analytics firm for the disruptive economy, raising $475M from The Carlyle Group at a valuation over $1B. They operate globally with offices in the US, APAC, and India, and have been recognized by Inc. as a Best Workplace for three consecutive years, emphasizing transparency, ownership, and continuous mastery.
Support ransomware and cyber extortion engagements by managing threat actor communications and maintaining accurate case documentation.
Conduct research on threat actor groups, campaigns, and malware to provide actionable intelligence for active cases.
Coordinate with internal teams and external partners to ensure timely and accurate communication throughout engagements.
The company specializes in ransomware and cyber extortion incident response, supporting active engagements. They foster a collaborative remote culture with opportunities for professional growth and development.
This internship offers hands-on experience supporting the development of secure engineering standards for software and production engineering teams.
You will help enhance existing guidance with specific implementation details and may support the development of custom libraries and resources.
Ideal candidates have programming experience in Python, Rust, C++, or Solidity and familiarity with Generative AI tooling.
Galaxy Digital Inc. is a global leader in digital assets and data center infrastructure, growing the economy that runs on code. The company is headquartered in New York City with offices across North America, Europe, the Middle East, and Asia, and values a culture of high performance, transparent feedback, and mission-first approach.
Break things on purpose by threat-modeling and reviewing Solidity contracts, Rust blockchain state transition functions, and other critical systems.
Own protocol components from design review through production, ensuring secure architecture and implementation.
Track the adversary, follow industry hacks and exploits, and convert lessons into concrete improvements.
Matter Labs builds private settlement infrastructure using zero-knowledge cryptography for regulated institutions. They are a fully remote team of about 70, backed by a16z and Union Square Ventures, with eight years of production zero-knowledge infrastructure.
Lead the architecture and implementation of access controls across a Databricks Lakehouse environment.
Translate security and compliance requirements into scalable technical controls and policies.
Provide technical leadership and partner with data engineering, platform, and identity teams.
The company is a technology firm specializing in data security and modern cloud data platforms. It is a large enterprise with a strong emphasis on security, automation, and cross-functional collaboration.