Writing.io Jobs

Find the best remote jobs. Answer a few questions and we'll deploy a powerful assistant to help you search, create alerts, and more.

1 What roles are you open to?

2 Experience level

3 Work style

Did you know? If memory is enabled, Writing.io can remember your job search preferences and help you to improve your resume, craft customized outreach and more.

Security Senior Developer (Windows), Product Security

Develops Windows software and strengthens product security for 1Password.

Senior Posted about 3 hours ago Jobicy AI
What this role involves
1Password is growing. We’ve surpassed $400M in ARR and we’re continuing to accelerate, earning a spot on the Forbes Cloud 100 for four years in a row and teaming up...
Read the full description
Security Security Consultant

Manages security reviews, technical audits, and coordination of offensive security initiatives for a fully remote team.

Senior Remote Posted 1 day ago Himalayas
What this role involves
En Logicalis Spain actualmente estamos buscando a una persona con experiencia en gestión de revisiones de seguridad, auditorías técnicas y coordinación de iniciativas ofensivas para incorporar en uno de nuestros equipos como Security Review Manager en modalidad 100% remoto.
Read the full description
Security Engineering Manager - Grafana Application Security | EMEA | (Remote, Ireland) at Grafana Labs

Leads an application security engineering team, develops security strategies, prioritizes risk mitigation, and improves cloud SaaS security programs through automation.

Lead Remote Posted 2 days ago RemoteFirstJobs Product
What this role involves

Grafana Labs is the company behind Grafana Cloud, the fully managed observability platform trusted by more than 10,000 organizations to ensure reliability, resolve incidents faster, and optimize telemetry at scale. Built on open source and open standards and designed for interoperability across any stack, Grafana Cloud brings AI to observability and observability to AI, giving teams (and their agents) unified visibility so they can see, understand, and act on all their disparate data, wherever it lives, and move at the speed of their ambitions. Customers, including Anthropic, Bloomberg, NVIDIA, Microsoft, and Salesforce, rely on Grafana Labs. We are a 100% remote company with team members across 40+ countries, backed by leading investors including Lightspeed Venture Partners, Sequoia Capital, GIC, Coatue, J.P. Morgan, CapitalG, and Lead Edge Capital. Learn more at grafana.com and follow us on LinkedIn and X.

We’re scaling fast and staying true to what makes us different: an open-source legacy, a global collaborative culture, and a passion for meaningful work. Our team thrives in an innovation-driven environment where transparency, autonomy, and trust fuel everything we do.

You may not meet every requirement, and that’s okay. If this role excites you, we’d love you to raise your hand for what could be a truly career-defining opportunity.

This is a remote position and we’re considering candidates in the UK, Spain, and Ireland.

About the role:

We are looking for an engineering manager to lead our application security engineering team.  You will be responsible for developing and implementing security strategies, as well as liaising with other teams delivering parts of our overall security posture. You’ll be accountable for the security of software you don’t write, in teams that don’t report to you. The people who do well in this role get there by making the secure path the easiest one.

The ideal candidate will have a proven track record of implementing and improving the maturity of security programs, through the use of automation and systematic approaches in Cloud-based SaaS organizations, and possess excellent leadership and communication skills.  You can tell the difference between a finding and a risk, and know how to prioritise risk mitigation, guiding the squad towards the most effective use of their time.

You must have significant engineering acumen as this is a highly technology-driven role.  Your main role will be to support your engineering team and to do that you should be able to review a threat model, challenge a severity rating, and contribute to a design review.

Responsibilities:

  • Lead our application security team covering a range of areas, including application security, cloud security, and internal tooling development.
  • Lead 1st and 3rd party vulnerability management, including coordinated disclosure with external reporters and embargoed fixes.
  • Define, optimize, and implement the engineering strategy in concert with the security leadership team, ICs and stakeholders across the business.
  • Regular 1:1s, coaching and mentoring to ensure your team members are motivated, happy and engaged. Providing continuous feedback to ensure that they can add value while maintaining high standards.
  • Collaborating with our engineering leaders and other organization stakeholders to help define and influence wider product strategy, roadmaps and designs.
  • Be actively engaged with significant incidents, including preparation, simulation, response, and affected customer notification and communications.
  • Contributing to and reviewing design documents for upcoming projects. Ensuring projects are well-defined and ready for development. Advise on how to break down projects into tasks.

Requirements:

  • Prior experience running a security engineering team.
  • You have a strong engineering background and are capable of engaging in technical conversations and challenging teams to arrive at strong technical decisions themselves.
  • You will be comfortable working with engineering teams who have a strong sense of autonomy in their decision-making, be it technical or product-focused.
  • While you’re great with people and adept at managing relationships, you still keep up-to-date with the latest technical trends and shifts to maintain and enhance your understanding of the challenges your teams face.
  • You approach security with a DevOps mindset. You prefer security by enablement, automation, and guardrails over gates and roadblocks.
  • You have familiarity with securing and operating on public Cloud (AWS, GCP, Azure) providers, with Kubernetes, and with securing combined open-source software (OSS) and SaaS products.
  • You are an excellent written and verbal communicator. You can articulate complex cybersecurity concepts to both technical and non-technical audiences. You are adept at translating security problems to business impact.

Bonus Points:

  • A technical background, ideally with programming or software engineering experience, before transitioning into security & leadership.
  • Working knowledge of Grafana Labs OSS projects and products. Experience in using observability tooling to solve security problems.
  • Experience working with OSS communities.
  • Experience securing large-scale distributed systems.

Compensation & Rewards:

In Ireland, the Base compensation range for this role is €117,600 - €141,120. Actual compensation may vary based on level, experience, and skillset as assessed throughout the interview process. All of our roles include Restricted Stock Units (RSUs), giving every team member ownership in Grafana Labs’ success. We believe in shared outcomes—RSUs help us stay aligned and invested as we scale globally.

#LI-Remote

*Compensation ranges are country specific. If you are applying for this role from a different location than listed above, your recruiter will discuss your specific market’s defined pay range & benefits at the beginning of the process.

Why You’ll Thrive at Grafana Labs:

  • 100% Remote, Global Culture - As a remote-only company, we bring together talent from around the world, united by a culture of collaboration and shared purpose.
  • Scaling Organization – Tackle meaningful work in a high-growth, ever-evolving environment.
  • Transparent Communication – Expect open decision-making and regular company-wide updates.
  • Innovation-Driven – Autonomy and support to ship great work and try new things.
  • Open Source Roots – Built on community-driven values that shape how we work.
  • Empowered Teams – High trust, low ego culture that values outcomes over optics.
  • Career Growth Pathways – Defined opportunities to grow and develop your career.
  • Approachable Leadership – Transparent execs who are involved, visible, and human.
  • Passionate People – Join a team of smart, supportive folks who care deeply about what they do.
  • In-Person onboarding- We want you to thrive from day 1 with your fellow new ‘Grafanistas’ to learn all about what we do and how we do it.
  • Balance is Key - We operate a global annual leave policy of 30 days per annum. 3 days of your annual leave entitlement are reserved for Grafana Shutdown Days to allow the team to really disconnect. *We will comply with local legislation where applicable.

Equal Opportunity Employer: Grafana Labs is an equal opportunities employer. We welcome applications from everyone regardless of race, colour, nationality, origin, caste, sex, gender reassignment identity or expression, sexual orientation, age, religion or belief, disability, veteran status, genetic information, pregnancy, maternity, marital, family or carer status, or any other characteristic which is protected by local law. We believe that equality and diversity build a strong organisation, and we work hard to ensure that is the foundation of our organisation as we grow.

Grafana Labs may utilize AI tools in its recruitment process to assist in matching information provided in CVs to job postings. The recruitment team will continue to review inbound CVs manually to identify alignment with current openings.

#LI-Remote

For information about how your personal data is used once you’ve applied to a job, check out our privacy policy.

Read the full description
Security Engineering Manager - Grafana Application Security | EMEA | (Remote, Spain) at Grafana Labs

Leads an application security engineering team, develops security strategies, prioritizes risk mitigation, and improves cloud SaaS security programs.

Lead Remote Posted 2 days ago RemoteFirstJobs Product
What this role involves

Grafana Labs is the company behind Grafana Cloud, the fully managed observability platform trusted by more than 10,000 organizations to ensure reliability, resolve incidents faster, and optimize telemetry at scale. Built on open source and open standards and designed for interoperability across any stack, Grafana Cloud brings AI to observability and observability to AI, giving teams (and their agents) unified visibility so they can see, understand, and act on all their disparate data, wherever it lives, and move at the speed of their ambitions. Customers, including Anthropic, Bloomberg, NVIDIA, Microsoft, and Salesforce, rely on Grafana Labs. We are a 100% remote company with team members across 40+ countries, backed by leading investors including Lightspeed Venture Partners, Sequoia Capital, GIC, Coatue, J.P. Morgan, CapitalG, and Lead Edge Capital. Learn more at grafana.com and follow us on LinkedIn and X.

We’re scaling fast and staying true to what makes us different: an open-source legacy, a global collaborative culture, and a passion for meaningful work. Our team thrives in an innovation-driven environment where transparency, autonomy, and trust fuel everything we do.

You may not meet every requirement, and that’s okay. If this role excites you, we’d love you to raise your hand for what could be a truly career-defining opportunity.

This is a remote position and we’re considering candidates in the UK, Spain, and Ireland.

About the role:

We are looking for an engineering manager to lead our application security engineering team.  You will be responsible for developing and implementing security strategies, as well as liaising with other teams delivering parts of our overall security posture. You’ll be accountable for the security of software you don’t write, in teams that don’t report to you. The people who do well in this role get there by making the secure path the easiest one.

The ideal candidate will have a proven track record of implementing and improving the maturity of security programs, through the use of automation and systematic approaches in Cloud-based SaaS organizations, and possess excellent leadership and communication skills.  You can tell the difference between a finding and a risk, and know how to prioritise risk mitigation, guiding the squad towards the most effective use of their time.

You must have significant engineering acumen as this is a highly technology-driven role.  Your main role will be to support your engineering team and to do that you should be able to review a threat model, challenge a severity rating, and contribute to a design review.

Responsibilities:

  • Lead our application security team covering a range of areas, including application security, cloud security, and internal tooling development.
  • Lead 1st and 3rd party vulnerability management, including coordinated disclosure with external reporters and embargoed fixes.
  • Define, optimize, and implement the engineering strategy in concert with the security leadership team, ICs and stakeholders across the business.
  • Regular 1:1s, coaching and mentoring to ensure your team members are motivated, happy and engaged. Providing continuous feedback to ensure that they can add value while maintaining high standards.
  • Collaborating with our engineering leaders and other organization stakeholders to help define and influence wider product strategy, roadmaps and designs.
  • Be actively engaged with significant incidents, including preparation, simulation, response, and affected customer notification and communications.
  • Contributing to and reviewing design documents for upcoming projects. Ensuring projects are well-defined and ready for development. Advise on how to break down projects into tasks.

Requirements:

  • Prior experience running a security engineering team.
  • You have a strong engineering background and are capable of engaging in technical conversations and challenging teams to arrive at strong technical decisions themselves.
  • You will be comfortable working with engineering teams who have a strong sense of autonomy in their decision-making, be it technical or product-focused.
  • While you’re great with people and adept at managing relationships, you still keep up-to-date with the latest technical trends and shifts to maintain and enhance your understanding of the challenges your teams face.
  • You approach security with a DevOps mindset. You prefer security by enablement, automation, and guardrails over gates and roadblocks.
  • You have familiarity with securing and operating on public Cloud (AWS, GCP, Azure) providers, with Kubernetes, and with securing combined open-source software (OSS) and SaaS products.
  • You are an excellent written and verbal communicator. You can articulate complex cybersecurity concepts to both technical and non-technical audiences. You are adept at translating security problems to business impact.

Bonus Points:

  • A technical background, ideally with programming or software engineering experience, before transitioning into security & leadership.
  • Working knowledge of Grafana Labs OSS projects and products. Experience in using observability tooling to solve security problems.
  • Experience working with OSS communities.
  • Experience securing large-scale distributed systems.

Compensation & Rewards:

In Spain, the Base compensation range for this role is €94,025 - €112,830. Actual compensation may vary based on level, experience, and skillset as assessed throughout the interview process. All of our roles include Restricted Stock Units (RSUs), giving every team member ownership in Grafana Labs’ success. We believe in shared outcomes—RSUs help us stay aligned and invested as we scale globally.

#LI-Remote

*Compensation ranges are country specific. If you are applying for this role from a different location than listed above, your recruiter will discuss your specific market’s defined pay range & benefits at the beginning of the process.

Why You’ll Thrive at Grafana Labs:

  • 100% Remote, Global Culture - As a remote-only company, we bring together talent from around the world, united by a culture of collaboration and shared purpose.
  • Scaling Organization – Tackle meaningful work in a high-growth, ever-evolving environment.
  • Transparent Communication – Expect open decision-making and regular company-wide updates.
  • Innovation-Driven – Autonomy and support to ship great work and try new things.
  • Open Source Roots – Built on community-driven values that shape how we work.
  • Empowered Teams – High trust, low ego culture that values outcomes over optics.
  • Career Growth Pathways – Defined opportunities to grow and develop your career.
  • Approachable Leadership – Transparent execs who are involved, visible, and human.
  • Passionate People – Join a team of smart, supportive folks who care deeply about what they do.
  • In-Person onboarding- We want you to thrive from day 1 with your fellow new ‘Grafanistas’ to learn all about what we do and how we do it.
  • Balance is Key - We operate a global annual leave policy of 30 days per annum. 3 days of your annual leave entitlement are reserved for Grafana Shutdown Days to allow the team to really disconnect. *We will comply with local legislation where applicable.

Equal Opportunity Employer: Grafana Labs is an equal opportunities employer. We welcome applications from everyone regardless of race, colour, nationality, origin, caste, sex, gender reassignment identity or expression, sexual orientation, age, religion or belief, disability, veteran status, genetic information, pregnancy, maternity, marital, family or carer status, or any other characteristic which is protected by local law. We believe that equality and diversity build a strong organisation, and we work hard to ensure that is the foundation of our organisation as we grow.

Grafana Labs may utilize AI tools in its recruitment process to assist in matching information provided in CVs to job postings. The recruitment team will continue to review inbound CVs manually to identify alignment with current openings.

#LI-Remote

For information about how your personal data is used once you’ve applied to a job, check out our privacy policy.

Read the full description
Security Senior DevOps & Security Engineer at Synapticure

Builds and secures AWS and Kubernetes infrastructure, automates delivery, manages vulnerabilities, and supports HIPAA and SOC 2 compliance.

Senior Posted 2 days ago RemoteFirstJobs Product
What this role involves

About Synapticure

Synapticure is the largest, most comprehensive specialty care and life sciences company in the country for those living with neurodegenerative diseases. Founded by patients and caregivers living with these diseases, we are redefining the care and the research paradigm for conditions like Alzheimer’s, Parkinson’s, and ALS in all 50 states.

Our business is powered by two connected engines.

The CARES Engine (Clinical Operations)

A scalable, 50-state virtualized clinical network providing timely access to expert neurologists and cutting edge treatments with wraparound care coordination and behavioral health support. Our team creates personalized care plans focused on education and empowerment, connecting patients with a multidisciplinary team of subspecialty neurologists, geriatricians, psychologists, and care coordinators who collaborate to deliver comprehensive care.

The CURES Engine (Research & Innovation)

Leveraging our deeply engaged, well characterized national patient cohort, CURES partners with life science, pharma, biotech, and medical device companies to accelerate the development of neurodegenerative treatments, spanning discovery stage lab services, clinical trial services, and real world evidence data and analytics.

Partnering with providers, health plans, and life sciences companies, including CMS’ GUIDE dementia care model, Synapticure is dedicated to transforming the lives of millions of individuals and their families living with neurodegenerative diseases.

About the Role

The Senior DevOps & Security Engineer is a hands-on technical role responsible for building, operating, securing, automating, and improving our cloud infrastructure and software delivery environments. Reporting to the Director of IT, DevOps & Security, this role works across Engineering, Data, and other teams to maintain secure, reliable, and well-monitored systems.

The role focuses heavily on cloud security, compliance, vulnerability management, AWS, Terraform, Kubernetes, CI/CD, observability, and production reliability.

This is a strong fit for someone who enjoys working across cloud infrastructure, security engineering, compliance, and broader technical problem-solving.

The Day to Day

  • Translate security and compliance requirements into practical technical controls and directly support HIPAA, SOC 2, and related activities.
  • Build, maintain, secure, and improve AWS infrastructure, Kubernetes/EKS environments, identity and access controls (IAM), networking, databases, storage, logging, monitoring, and SIEM integrations.
  • Develop and maintain Terraform, secure CI/CD pipelines, deployment tooling, and related automation.
  • Manage vulnerability scanning, security telemetry, incident response support, and application/infrastructure hardening.
  • Partner with Engineering, Data, and other internal teams to automate workflows, connect systems, and reduce manual work.
  • Build scripts, integrations, internal tools, and API-based automations across technical and business systems.
  • Maintain clear technical documentation, architecture diagrams, and infrastructure security standards.
  • Research and evaluate new tools, security practices, and infrastructure approaches to determine how they can be applied effectively in our environment.
  • Participate in on-call or escalation coverage as operational needs evolve. Our production environment is generally stable and relatively low-traffic, so after-hours work tends to focus more on planned maintenance, upgrades, and proactive security improvements than on responding to outages.

Minimum Qualifications

  • 4+ years of experience in cloud security engineering, DevOps, cloud infrastructure, SRE, or a related field.
  • Strong understanding of cloud security, IAM, networking, vulnerability management, observability, and incident response.
  • Hands-on experience supporting or implementing security controls in regulated environments (e.g., HIPAA, SOC 2).
  • Hands-on experience with SentinelOne (or similar EDR/endpoint security platforms), AWS, Terraform, Kubernetes, and securing CI/CD pipelines.
  • Ability to write scripts (Python, Bash, etc.) and work with APIs, integrations, and security automation.
  • Excellent written and verbal communication skills, with a proven ability to produce clear technical writing, architecture documentation, and cross-functional collaboration.
  • Ability to work independently, research unfamiliar problems, and take projects from problem definition through implementation.

Preferred Qualifications

  • Experience in healthcare, healthtech, financial services, or another highly regulated sector.
  • Familiarity with tools such as Datadog, SentinelOne, Argo CD, GitHub Actions, or Google Workspace administration.
  • Direct experience with SIEM setup, detection engineering, or penetration testing remediation.
  • Background in disaster recovery planning and backup restoration testing.

$150,000 - $170,000 a year

Compensation

Final compensation will be determined based on location, experience, and qualifications.

Our Values

We are a remote-first company. While our team is located all across the United States, these core principles tie us together around a common identity:

  • Relentless focus on patients and caregivers: We are determined to provide an exceptional experience for every patient we have the privilege to serve, and we put our patients first in everything we do.
  • Embody the spirit and humanity of those living with neurodegenerative disease: Inspired by our founders, families, and personal experiences, we recognize the seriousness of our patients’ circumstances and meet that challenge every day with empathy, compassion, kindness, joy, and hope.
  • Seek to understand, and stay curious: We start by listening to one another, our partners, our patients, and their caregivers. We communicate with authenticity and humility, prioritizing honesty and directness while recognizing we always have something to learn.
  • Embrace the opportunity: We are energized by the importance of our mission and maintain a strong bias toward action.

Benefits & Perks

Full time employees are eligible for:

  • Remote First: Work from anywhere in the 50 United States, with home office technology provided.
  • Comprehensive Healthcare: Medical, dental, and vision insurance options for you and your family.
  • Financial & Retirement Support: 401(k) plan with employer matching, plus short and long-term disability, and basic and supplemental life insurance.
  • Time Off & Leave: 15 vacation days, 5 sick days, 12 paid holidays, and 2 floating holidays, plus a fully paid end-of-year company holiday break (typically Christmas through New Year’s).
  • Wellness & Family Growth: Comprehensive family-building and fertility services through Kindbody (where available) at a 20% discount, 24⁄7 mental health support via Health Advocate and Talkspace (including 12 free on-demand sessions per year), and access to One Medical.

Travel Requirements & Remote Workplace Setup

We’re a remote-first company and provide the necessary technology to work from home. Most roles involve only occasional travel, such as for team meetings or professional collaboration events, unless otherwise specified in the job-specific details above.

Equal Opportunity Employer

Synapticure is an equal opportunity employer and a remote-first workplace. We believe that embedding equity, inclusion, compliance, and operational excellence across all aspects of our employee lifecycle directly reflects our core values. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status, or any other characteristic protected by law. Please apply even if you feel you do not meet all qualifications.

At this time, Synapticure is unable to provide work visa sponsorship.

If you require reasonable accommodation in completing this application, interviewing, completing any pre-employment testing, or otherwise participating in the employee selection process, please direct your inquiries to [email protected].

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

Read the full description
Security Senior Security Engineer at Anduril Industries

Designs and implements defensive security controls, automation, architecture reviews, and incident response across cloud, application, and corporate infrastructure.

Senior Posted 2 days ago RemoteFirstJobs Product
What this role involves

Anduril Industries is a defense technology company with a mission to transform U.S. and allied military capabilities with advanced technology. By bringing the expertise, technology, and business model of the 21st century’s most innovative companies to the defense industry, Anduril is changing how military systems are designed, built and sold. Anduril’s family of systems is powered by Lattice OS, an AI-powered operating system that turns thousands of data streams into a realtime, 3D command and control center. As the world enters an era of strategic competition, Anduril is committed to bringing cutting-edge autonomy, AI, computer vision, sensor fusion, and networking technology to the military in months, not years.

ABOUT THE TEAM

Anduril’s Security Engineering team is looking for a security engineer to focus on building world class defensive controls to protect the infrastructure around our defense technology products.

WHAT YOU’LL DO

  • Design and implement security controls across cloud, production, and corporate infrastructure
  • Develop tools and systems to improve security posture and operational efficiency
  • Conduct security architecture and design reviews for systems and applications
  • Build automation to detect, monitor, and remediate security issues
  • Work across infrastructure, application, and operational security domains

REQUIRED QUALIFICATIONS

  • Strong programming ability in one or more general purpose languages (Python, Go, Rust, etc)
  • Experience with one or more infrastructure as code languages (e.g., Terraform, AWS CDK) in a production capacity
  • Experience conducting security architecture or design reviews around custom business applications
  • Solid understanding of modern attack vectors and defensive mitigation strategies
  • Experience working with cloud platforms and deploying applications through CI/CD pipelines
  • Experience developing and implementing defensive controls around endpoint and SaaS applications
  • Ability to work autonomously, take ownership of projects, and collaborate across teams
  • Have participated in or supported incident response events
  • Eligible to obtain and maintain a U.S. TS clearance

PREFERRED QUALIFICATIONS

  • Experience building bespoke solutions in high-growth and high-complexity environments
  • Experience with log aggregation, secrets management, or endpoint security tools
  • Experience with AWS, Azure, or GCP security ecosystem and tooling
  • Strong experience with Linux operating systems

US Salary Range

$166,000—$220,000 USD

The salary range for this role is an estimate based on a wide range of compensation factors, inclusive of base salary only. Actual salary offer may vary based on (but not limited to) work experience, education and/or training, critical skills, and/or business considerations. Highly competitive equity grants are included in the majority of full time offers; and are considered part of Anduril’s total compensation package. Additionally, Anduril offers top-tier benefits for full-time employees, including:

Benefits

At Anduril, we invest in our people. Our comprehensive, competitive benefits package (available at little to no cost to employees) ensures you’re supported in health, recovery, and whatever comes next. For more information, Explore Our Benefits.

Protecting Yourself from Recruitment Scams

Anduril is committed to maintaining the integrity of our Talent acquisition process and the security of our candidates. We’ve observed a rise in sophisticated phishing and fraudulent schemes where individuals impersonate Anduril representatives, luring job seekers with false interviews or job offers. These scammers often attempt to extract payment or sensitive personal information.

To ensure your safety and help you navigate your job search with confidence, please keep the following critical points in mind:

  • No Financial Requests: Anduril will never solicit payment or demand personal financial details (such as banking information, credit card numbers, or social security numbers) at any stage of our hiring process. Our legitimate recruitment is entirely free for candidates.

  • Please always verify communications:

    • Direct from Anduril: If you receive an email from one of our recruiters, it will only come from an @anduril.com address.
    • Via Agency Partner: If contacted by a recruiting agency for an Anduril role, their email will clearly identify their agency. If you suspect any suspicious activity, please verify the agency’s authenticity by reaching out to contact@anduril.com.
  • Exercise Caution with Unsolicited Outreach: If you receive any communication that appears suspicious, contains grammatical errors, or makes unusual requests, do not engage. Always confirm the sender’s email domain is @anduril.com before providing any personal information or clicking on links.

  • What to Do If You Suspect Fraud: Should you encounter any questionable or fraudulent outreach claiming to be from Anduril, please report it immediately to contact@anduril.com. Your proactive caution is invaluable in protecting your personal information and upholding the security and trustworthiness of our recruitment efforts.

Data Privacy

To view Anduril’s candidate data privacy policy, please visit https://anduril.com/applicant-privacy-notice/.

By submitting your application, you consent to Anduril Industries using a third-party service provider to conduct pre-employment risk, integrity, and due diligence screening and assessing potential risks as part of your application process. This third-party service provider provides risk-intelligence services that may include analysis of sanctions and watchlists, adverse media, public-record information, and other lawful open-source or commercial data sources. This third-party service provider does not act as a consumer reporting agency. Use of this provider helps to ensure compliance with applicable laws and protect technology, intellectual property, and organizational security.

Read the full description
Security Senior Security Engineer OT at Anduril Industries

Designs and implements defensive security controls, risk assessments, and threat detection for operational technology and industrial control systems.

Senior Posted 2 days ago RemoteFirstJobs Product
What this role involves

Anduril Industries is a defense technology company with a mission to transform U.S. and allied military capabilities with advanced technology. By bringing the expertise, technology, and business model of the 21st century’s most innovative companies to the defense industry, Anduril is changing how military systems are designed, built and sold. Anduril’s family of systems is powered by Lattice OS, an AI-powered operating system that turns thousands of data streams into a realtime, 3D command and control center. As the world enters an era of strategic competition, Anduril is committed to bringing cutting-edge autonomy, AI, computer vision, sensor fusion, and networking technology to the military in months, not years.

ABOUT THE TEAM

Anduril’s Security Engineering team is looking for a security engineer to focus on building world class defensive controls to protect the infrastructure around our advanced defense technology products. This is a role with a direct focus on securing Anduril’s OT (Operational Technology) and ICS (Industrial Control Systems) environments. In this role, you will design and implement foundational security solutions playing a critical role in Anduril’s rollout of cutting edge factory systems.

ABOUT THE JOB

WHAT YOU’LL DO

  • Lead OT risk assessments, gap analyses, and develop a multi-year OT security roadmap
  • Architect and implement defensive security controls for cloud, production, and corporate environments
  • Support the deployment, configuration, and maintenance of security tools
  • Build systems to support automation, visibility, and threat detection for efforts across various information security and infrastructure teams
  • Independently drive security initiatives and foster a security-first mindset across the organization
  • Work closely with factory production teams to review designs and use-cases, ensuring our environments are secure by design

REQUIRED QUALIFICATIONS

  • Experience with routing, switching, and network design principles
  • Familiarity with zero trust architecture and segmentation strategies when it comes to OT networks
  • Experience conducting security architecture or design reviews for OT/ICS environments
  • Experience with threat modeling frameworks and applying these concepts to the OT/ICS domain (e.g. MITRE ATT&CK for ICS)
  • Experience with programming in one or more general purpose languages (Python, Go, Rust, etc)
  • Experience developing and implementing defensive controls in corporate and industrial production environments
  • Ability to work autonomously and take ownership of complex projects
  • Have participated in or supported incident response events
  • Eligible to obtain and maintain an active U.S. Top Secret security clearance
  • Ability to travel up to 50%

PREFERRED QUALIFICATIONS

  • Familiarity with OT protocols (e.g., Modbus, DNP3, Ethernet/IP) and ICS environments
  • Experience with specific ICS/SCADA vendor platforms (Siemens, Rockwell, Honeywell, etc.)
  • Experience building bespoke solutions in high-growth high-complexity network environments
  • Strong experience with Linux operating systems

US Salary Range

$166,000—$220,000 USD

The salary range for this role is an estimate based on a wide range of compensation factors, inclusive of base salary only. Actual salary offer may vary based on (but not limited to) work experience, education and/or training, critical skills, and/or business considerations. Highly competitive equity grants are included in the majority of full time offers; and are considered part of Anduril’s total compensation package. Additionally, Anduril offers top-tier benefits for full-time employees, including:

Benefits

At Anduril, we invest in our people. Our comprehensive, competitive benefits package (available at little to no cost to employees) ensures you’re supported in health, recovery, and whatever comes next. For more information, Explore Our Benefits.

Protecting Yourself from Recruitment Scams

Anduril is committed to maintaining the integrity of our Talent acquisition process and the security of our candidates. We’ve observed a rise in sophisticated phishing and fraudulent schemes where individuals impersonate Anduril representatives, luring job seekers with false interviews or job offers. These scammers often attempt to extract payment or sensitive personal information.

To ensure your safety and help you navigate your job search with confidence, please keep the following critical points in mind:

  • No Financial Requests: Anduril will never solicit payment or demand personal financial details (such as banking information, credit card numbers, or social security numbers) at any stage of our hiring process. Our legitimate recruitment is entirely free for candidates.

  • Please always verify communications:

    • Direct from Anduril: If you receive an email from one of our recruiters, it will only come from an @anduril.com address.
    • Via Agency Partner: If contacted by a recruiting agency for an Anduril role, their email will clearly identify their agency. If you suspect any suspicious activity, please verify the agency’s authenticity by reaching out to contact@anduril.com.
  • Exercise Caution with Unsolicited Outreach: If you receive any communication that appears suspicious, contains grammatical errors, or makes unusual requests, do not engage. Always confirm the sender’s email domain is @anduril.com before providing any personal information or clicking on links.

  • What to Do If You Suspect Fraud: Should you encounter any questionable or fraudulent outreach claiming to be from Anduril, please report it immediately to contact@anduril.com. Your proactive caution is invaluable in protecting your personal information and upholding the security and trustworthiness of our recruitment efforts.

Data Privacy

To view Anduril’s candidate data privacy policy, please visit https://anduril.com/applicant-privacy-notice/.

By submitting your application, you consent to Anduril Industries using a third-party service provider to conduct pre-employment risk, integrity, and due diligence screening and assessing potential risks as part of your application process. This third-party service provider provides risk-intelligence services that may include analysis of sanctions and watchlists, adverse media, public-record information, and other lawful open-source or commercial data sources. This third-party service provider does not act as a consumer reporting agency. Use of this provider helps to ensure compliance with applicable laws and protect technology, intellectual property, and organizational security.

Read the full description
Security Security & Compliance Associate at Healthie

Supports security and compliance programs by coordinating controls, documentation, audits, risk management, and customer security requests.

Junior Posted 2 days ago RemoteFirstJobs Product
What this role involves

Our Mission

Healthie is an AI-Native, ONC Certified EHR for modern outpatient healthcare.

Healthie is proud to power clinically excellent healthcare for over 40,000 providers who deliver clinically excellent healthcare - longitudinal and collaboratively, with patient and provider experiences at the center. Both healthcare and technology are undergoing unparalleled industry innovation, and it’s incredible to see the momentum - from consumers, from providers, and from reimbursement for this type of healthcare - grow exponentially.

We provide the powerful infrastructure every care delivery organization needs. On the surface this includes EHR, Scheduling, Engagement, Billing, Data, and much more. Underneath the iceberg are thousands of configurations, settings, widgets, automations, and limitless capabilities because we are an API-first platform. Our fully brandable platform makes it easy for clinics and organizations of any size to scale and never reach a limit.

Today, over 3 billion API calls are made to Healthie every month, as thousands of organizations who work with more than 21 million patients in total, rely on Healthie to deliver clinically excellent healthcare in over 35 specialties, from behavioral healthcare to complex chronic care management and personalized medicine.

We believe in the power of technology to improve access to healthcare and we’re building the rails that make this a reality. We work fast and with quality because we provide business-critical, healthcare-critical software that clinicians and patients need for a better healthcare system. We’re customer-obsessed, operate with lightning-fast processes and responses, and always share our product roadmap publicly-  so customers can see what we’re building, and remain relentlessly focused on how care gets delivered.

Healthie is backed by leading investors, and while we’ve $42M raised to date, more importantly, we operate with fiscal responsibility and have been profitable for more than half of our time as a company. We know that building an ONC-Certified EHR is a lifetime’s body of work, and we are here to build for our customers forever.

Learn more at https://www.gethealthie.com/

About the role

As a Security and Compliance Associate, you’ll work closely with Healthie’s VP of Security and Compliance to help operate and strengthen the security and compliance programs that support our business, customers, and platform. This is a hands-on role for someone who is highly organized, detail-oriented, and comfortable owning work from intake through completion.

You’ll support third-party audits, assess vendor risk, respond to customer and internal security and compliance requests, and help keep the day-to-day work of the function moving. You’ll collaborate across technical and business teams and will be trusted to work with sensitive information, follow through on open items, and know when something needs to be escalated.

The work will include:

  • Helping with third party audits such as SOC 2, annual HIPAA assessment, and HITRUST, including gathering evidence and following-up on the artifacts that are missing
  • Assessing third party’s security risk, interacting with  vendors and driving remediation items to closure
  • Answering internal and customer questions regarding security and compliance
  • Answering security and compliance questionnaires from customers and prospective customers
  • Prioritizing incoming requests across multiple channels to security and compliance, and answering, escalating, or delegating them. Some of this is routing, and some is assigning compliance work to people senior to you and following up until it is done
  • Collaborating with other departments, primarily IT, Operations, Platform, R&D, and the offices of the CEO and CTO

What a week may look like: A few customer questionnaires, a vendor review or two, and evidence pulled for whatever audit is in flight. The queue gets cleared daily, including whatever Vanta  flags and the questions from other teams who are blocked until they get an answer. Audit season is the exception. When evidence requests land, that is the week.

Note that you will have access to some of the company’s most sensitive information, including data entrusted to our protection by customers and their clients. You must follow access rules exactly, raise your own mistakes before anyone else finds them, and keep confidence when it would be easier not to. Colleagues should be able to watch how you work and copy it.

This position might be suitable for someone with work experience in compliance and/or IT SOX work. But you might also be a fresh JD, BA, or MA that has an affinity for this kind of work in a dynamic, challenging, and exciting environment.

About you

  • You must be based in the United States. (The reason for this is that on occasion you may need to see protected health information [PHI], and our customers have contracts that forbid access to such information from outside the United States.)
  • You must be an excellent and fluent writer, speaker, and communicator in English. Those skills must be at least as good as any AI (in other words, you should be able to write, speak, and communicate without the aid of AI). You can compress a dense control requirement into two sentences a customer’s security team will accept, and document an exception so it still holds up when someone audits it next year.
  • You must understand or have an aptitude for the scope of the security and compliance challenges faced by a modern healthcare software company.
  • You must be adept with AI. You are not an expert, but you are able to write useful prompts that get answers to the questions you want. You are also skilled at identifying AI slop and wading through and correcting AI bloviation. You can spot when a model is confidently wrong, and you know when to rewrite it rather than pass it along.
  • You are interested in software, technology, and its impact on humans. You are curious and will ask why a control exists before you enforce it, creative at finding a workable answer when the framework doesn’t give you one, and empathetic enough to understand why the person on the other end of the request is frustrated. Healthie’s scope is quite large, and you will be asked to provide perspective with regard to how the technology fits with human expectations, both of Healthie’s customers, and the clients of Healthie’s customers.
  • You can hold a position with people more senior than you when the requirement is clear, and change it when someone gives you a better reason. You will be new to a lot of this and expected to ask early rather than guess.

Nice to Have

  • You are familiar with modern GRC tooling such as Vanta, Drata, SecureFrame, or Thoropass.
  • You are familiar with some of the regulatory frameworks in healthcare security and compliance: HIPAA, state level regulations, GDPR, the EU AI Act.
  • Any of CISA, CISM, CISSP, CIPP/US, CIPP/E. Note that this is not a requirement and a narrow professional background in these areas is not what we are looking for.

Details, details

  • This is a full-time, NYC-Hybrid position.
  • U.S. work authorization is required.
  • The salary for this position is a base between $100,000 - $130,000.

Interview Process

  • Quick chat with Katie from our Talent team (15 minutes)
  • Interview with John, VP Security & Compliance (30 minutes)
  • Talk with Edgar, Director of IT & Cindy, Director of People Operations: (30 minutes)
  • Interview with Sean, Staff AppSec Engineer(20 minutes)
  • Exec Interview with Cavan, CTO + cofounder (20 minutes)
  • Reference checks

Learn more at gethealthie.com/careers.

Healthie is subject to HIPAA and other security and privacy frameworks, and this job entails training and conformance to expectations regarding security and compliance.

Healthie participates in e-verify.

Healthie is committed to equal employment opportunity. All qualified applicants will receive consideration for employment without regard to and will not be discriminated against based on age, race, gender, color, religion, national origin, sexual orientation, gender identity, veteran status, disability or any other protected category. We’re proud to be building a diverse and inclusive environment that encourages collaboration, creativity, and growth. Whatever your background, please apply if this is a role that would make you excited to come into work every day.

Read the full description
Security SailPoint Engineer (IIQ/ISC) - (Remote in the US) at GuidePoint Security

Implements and integrates SailPoint identity governance solutions, develops workflows and connectors, supports deployments, and advises clients on cybersecurity requirements.

Senior Remote Posted 2 days ago RemoteFirstJobs Product
What this role involves

GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation’s top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk.

General Description

We’re looking for an Implementation Engineer to design, build, and deploy identity governance solutions on the SailPoint platform, including IdentityIQ (IIQ) and/or Identity Security Cloud (ISC). This is a hands-on technical role with plenty of client interaction. You’ll be part of a small, collaborative team where your work is visible and your input shapes how we deliver.

About the IGA Practice

Our team of Practice Leads, Managing Security Consultants, Architects, and Engineers focus on SailPoint IIQ/ISC, Saviynt, C1, and Lumos engagements for external clients.

Roles and Responsibilities:

  • Implement and configure SailPoint IIQ and ISC solutions, including identity lifecycle management, access certifications, access requests, provisioning, and password management
  • Build and maintain application onboarding: connectors, aggregation, correlation, and account/entitlement mapping
  • Develop rules, workflows, forms, and transforms (BeanShell/Java for IIQ; transforms, rules, and workflows for ISC)
  • Design and support IIQ-to-ISC migrations, including assessment, gap analysis, and cutover planning
  • Integrate SailPoint with source systems such as Active Directory, Entra ID, Okta, HR platforms (Workday, SuccessFactors), ServiceNow, SAP, databases, and SaaS applications
  • Work with client stakeholders to gather requirements, run design sessions, and translate business needs into technical designs
  • Write clear technical documentation, including design documents, configuration guides, test plans, and runbooks
  • Support UAT, deployment, and hypercare, and troubleshoot issues across environments
  • Follow SailPoint best practices for configuration management, version control, and promotion across dev/test/prod
  • Mentor junior engineers and contribute to reusable accelerators, templates, and internal knowledge

Required Experience and Education:

  • 5+ years of hands-on experience implementing SailPoint IdentityIQ and/or Identity Security Cloud
  • Working knowledge of both platforms, with depth in at least one
  • Strong understanding of IAM/IGA concepts: joiner/mover/leaver, RBAC, role mining, SoD, certifications, and least privilege
  • Experience with IIQ development (Java, BeanShell, XML artifacts) or ISC configuration (transforms, rules, REST APIs, VA management)
  • Experience with connectors and integration patterns (LDAP/AD, JDBC, delimited file, web services/REST, SCIM)
  • Solid SQL and scripting skills, plus familiarity with JSON, XML, and REST APIs
  • Strong written and verbal communication, with the ability to explain technical concepts to non-technical audiences
  • Comfortable working independently in a remote, distributed team
  • Embraces emerging technologies, including AI tools, to work smarter, solve problems, and drive better business outcomes.

Preferred Experience and Education

  • Consulting or professional services experience, including client-facing delivery, scoping, and managing multiple engagements
  • SailPoint certifications (e.g., IdentityIQ Engineer, Identity Security Cloud Engineer)
  • Experience leading or contributing to IIQ-to-ISC migrations
  • Familiarity with Git, CI/CD, and SSB or similar configuration management tools
  • Knowledge of adjacent identity technologies (PAM, Access Management, SSO, MFA)
  • Experience in regulated industries (financial services, healthcare, government)
  • Background in Java development, Linux/Windows administration, or application servers (Tomcat, WebLogic)

Travel Requirements:

  • Up to 10% travel

Physical Requirements:

  • Sedentary work
  • Substantial movement of the wrists, hands, and/or fingers for a minimum of 8 hours a day
  • Required to have close visual acuity to view computer terminal and/or extensive reading for a minimum of 8 hours a day

We use Greenhouse Software as our applicant tracking system and Zoom Scheduler for HR screen request scheduling. At times, your email may block our communication with you. Please be sure to check your SPAM folder so that you don’t miss updates on your application.

Why GuidePoint? GuidePoint Security is a rapidly growing, profitable, privately-held value added reseller that focuses exclusively on Information Security. Since its inception in 2011, GuidePoint has grown to over 1,300 employees, established strategic partnerships with leading security vendors, and serves as a trusted advisor to more than 6,200 customers.

Firmly-defined core values drive all aspects of the business, which have been paramount to the company’s success and establishment of an enjoyable workplace atmosphere. At GuidePoint, your colleagues are knowledgeable, skilled, and experienced and will seek to collaborate and provide mentorship and guidance at every opportunity.

This is a unique and rare opportunity to grow your career along with one of the fastest growing companies in the nation.

Some added perks
.

  • Remote workforce primarily (U.S. based only, some travel may be required for certain positions, working on-site may be required for Federal positions)
  • Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family). If you choose the High Deductible / HSA plan, GPS will contribute in 4 equal quarterly installments: ($850 per EE annually / $1750 per family annually (includes spouse/children/family options)
  • Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans
  • 12 corporate holidays and a Flexible Time Off (FTO) program
  • Healthy mobile phone and home internet allowance
  • Eligibility for retirement plan after 2 months at open enrollment
  • Pet Benefit Option
Read the full description
Security Engineering Manager - Grafana Application Security | EMEA | (Remote, UK) at Grafana Labs

Leads application security engineers, develops security strategies, prioritizes risk mitigation, and improves cloud SaaS security programs through automation.

Lead Remote Posted 2 days ago RemoteFirstJobs Product
What this role involves

Grafana Labs is the company behind Grafana Cloud, the fully managed observability platform trusted by more than 10,000 organizations to ensure reliability, resolve incidents faster, and optimize telemetry at scale. Built on open source and open standards and designed for interoperability across any stack, Grafana Cloud brings AI to observability and observability to AI, giving teams (and their agents) unified visibility so they can see, understand, and act on all their disparate data, wherever it lives, and move at the speed of their ambitions. Customers, including Anthropic, Bloomberg, NVIDIA, Microsoft, and Salesforce, rely on Grafana Labs. We are a 100% remote company with team members across 40+ countries, backed by leading investors including Lightspeed Venture Partners, Sequoia Capital, GIC, Coatue, J.P. Morgan, CapitalG, and Lead Edge Capital. Learn more at grafana.com and follow us on LinkedIn and X.

We’re scaling fast and staying true to what makes us different: an open-source legacy, a global collaborative culture, and a passion for meaningful work. Our team thrives in an innovation-driven environment where transparency, autonomy, and trust fuel everything we do.

You may not meet every requirement, and that’s okay. If this role excites you, we’d love you to raise your hand for what could be a truly career-defining opportunity.

This is a remote position and we’re considering candidates in the UK, Spain, and Ireland.

About the role:

We are looking for an engineering manager to lead our application security engineering team.  You will be responsible for developing and implementing security strategies, as well as liaising with other teams delivering parts of our overall security posture. You’ll be accountable for the security of software you don’t write, in teams that don’t report to you. The people who do well in this role get there by making the secure path the easiest one.

The ideal candidate will have a proven track record of implementing and improving the maturity of security programs, through the use of automation and systematic approaches in Cloud-based SaaS organizations, and possess excellent leadership and communication skills.  You can tell the difference between a finding and a risk, and know how to prioritise risk mitigation, guiding the squad towards the most effective use of their time.

You must have significant engineering acumen as this is a highly technology-driven role.  Your main role will be to support your engineering team and to do that you should be able to review a threat model, challenge a severity rating, and contribute to a design review.

Responsibilities:

  • Lead our application security team covering a range of areas, including application security, cloud security, and internal tooling development.
  • Lead 1st and 3rd party vulnerability management, including coordinated disclosure with external reporters and embargoed fixes.
  • Define, optimize, and implement the engineering strategy in concert with the security leadership team, ICs and stakeholders across the business.
  • Regular 1:1s, coaching and mentoring to ensure your team members are motivated, happy and engaged. Providing continuous feedback to ensure that they can add value while maintaining high standards.
  • Collaborating with our engineering leaders and other organization stakeholders to help define and influence wider product strategy, roadmaps and designs.
  • Be actively engaged with significant incidents, including preparation, simulation, response, and affected customer notification and communications.
  • Contributing to and reviewing design documents for upcoming projects. Ensuring projects are well-defined and ready for development. Advise on how to break down projects into tasks.

Requirements:

  • Prior experience running a security engineering team.
  • You have a strong engineering background and are capable of engaging in technical conversations and challenging teams to arrive at strong technical decisions themselves.
  • You will be comfortable working with engineering teams who have a strong sense of autonomy in their decision-making, be it technical or product-focused.
  • While you’re great with people and adept at managing relationships, you still keep up-to-date with the latest technical trends and shifts to maintain and enhance your understanding of the challenges your teams face.
  • You approach security with a DevOps mindset. You prefer security by enablement, automation, and guardrails over gates and roadblocks.
  • You have familiarity with securing and operating on public Cloud (AWS, GCP, Azure) providers, with Kubernetes, and with securing combined open-source software (OSS) and SaaS products.
  • You are an excellent written and verbal communicator. You can articulate complex cybersecurity concepts to both technical and non-technical audiences. You are adept at translating security problems to business impact.

Bonus Points:

  • A technical background, ideally with programming or software engineering experience, before transitioning into security & leadership.
  • Working knowledge of Grafana Labs OSS projects and products. Experience in using observability tooling to solve security problems.
  • Experience working with OSS communities.
  • Experience securing large-scale distributed systems.

Compensation & Rewards:

In the UK, the Base compensation range for this role is £103,958 - £124,750. Actual compensation may vary based on level, experience, and skillset as assessed throughout the interview process. All of our roles include Restricted Stock Units (RSUs), giving every team member ownership in Grafana Labs’ success. We believe in shared outcomes—RSUs help us stay aligned and invested as we scale globally.

#LI-Remote

*Compensation ranges are country specific. If you are applying for this role from a different location than listed above, your recruiter will discuss your specific market’s defined pay range & benefits at the beginning of the process.

Why You’ll Thrive at Grafana Labs:

  • 100% Remote, Global Culture - As a remote-only company, we bring together talent from around the world, united by a culture of collaboration and shared purpose.
  • Scaling Organization – Tackle meaningful work in a high-growth, ever-evolving environment.
  • Transparent Communication – Expect open decision-making and regular company-wide updates.
  • Innovation-Driven – Autonomy and support to ship great work and try new things.
  • Open Source Roots – Built on community-driven values that shape how we work.
  • Empowered Teams – High trust, low ego culture that values outcomes over optics.
  • Career Growth Pathways – Defined opportunities to grow and develop your career.
  • Approachable Leadership – Transparent execs who are involved, visible, and human.
  • Passionate People – Join a team of smart, supportive folks who care deeply about what they do.
  • In-Person onboarding- We want you to thrive from day 1 with your fellow new ‘Grafanistas’ to learn all about what we do and how we do it.
  • Balance is Key - We operate a global annual leave policy of 30 days per annum. 3 days of your annual leave entitlement are reserved for Grafana Shutdown Days to allow the team to really disconnect. *We will comply with local legislation where applicable.

Equal Opportunity Employer: Grafana Labs is an equal opportunities employer. We welcome applications from everyone regardless of race, colour, nationality, origin, caste, sex, gender reassignment identity or expression, sexual orientation, age, religion or belief, disability, veteran status, genetic information, pregnancy, maternity, marital, family or carer status, or any other characteristic which is protected by local law. We believe that equality and diversity build a strong organisation, and we work hard to ensure that is the foundation of our organisation as we grow.

Grafana Labs may utilize AI tools in its recruitment process to assist in matching information provided in CVs to job postings. The recruitment team will continue to review inbound CVs manually to identify alignment with current openings.

#LI-Remote

For information about how your personal data is used once you’ve applied to a job, check out our privacy policy.

Read the full description
Security Engineering Manager - Grafana Application Security | EMEA | (Remote, Ireland) at Grafana Labs

Leads application security engineers, develops security strategies, prioritizes risk mitigation, and improves security programs through automation.

Lead Remote Posted 2 days ago RemoteFirstJobs Product
What this role involves

Grafana Labs is the company behind Grafana Cloud, the fully managed observability platform trusted by more than 10,000 organizations to ensure reliability, resolve incidents faster, and optimize telemetry at scale. Built on open source and open standards and designed for interoperability across any stack, Grafana Cloud brings AI to observability and observability to AI, giving teams (and their agents) unified visibility so they can see, understand, and act on all their disparate data, wherever it lives, and move at the speed of their ambitions. Customers, including Anthropic, Bloomberg, NVIDIA, Microsoft, and Salesforce, rely on Grafana Labs. We are a 100% remote company with team members across 40+ countries, backed by leading investors including Lightspeed Venture Partners, Sequoia Capital, GIC, Coatue, J.P. Morgan, CapitalG, and Lead Edge Capital. Learn more at grafana.com and follow us on LinkedIn and X.

We’re scaling fast and staying true to what makes us different: an open-source legacy, a global collaborative culture, and a passion for meaningful work. Our team thrives in an innovation-driven environment where transparency, autonomy, and trust fuel everything we do.

You may not meet every requirement, and that’s okay. If this role excites you, we’d love you to raise your hand for what could be a truly career-defining opportunity.

This is a remote position and we’re considering candidates in the UK, Spain, and Ireland.

About the role:

We are looking for an engineering manager to lead our application security engineering team.  You will be responsible for developing and implementing security strategies, as well as liaising with other teams delivering parts of our overall security posture. You’ll be accountable for the security of software you don’t write, in teams that don’t report to you. The people who do well in this role get there by making the secure path the easiest one.

The ideal candidate will have a proven track record of implementing and improving the maturity of security programs, through the use of automation and systematic approaches in Cloud-based SaaS organizations, and possess excellent leadership and communication skills.  You can tell the difference between a finding and a risk, and know how to prioritise risk mitigation, guiding the squad towards the most effective use of their time.

You must have significant engineering acumen as this is a highly technology-driven role.  Your main role will be to support your engineering team and to do that you should be able to review a threat model, challenge a severity rating, and contribute to a design review.

Responsibilities:

  • Lead our application security team covering a range of areas, including application security, cloud security, and internal tooling development.
  • Lead 1st and 3rd party vulnerability management, including coordinated disclosure with external reporters and embargoed fixes.
  • Define, optimize, and implement the engineering strategy in concert with the security leadership team, ICs and stakeholders across the business.
  • Regular 1:1s, coaching and mentoring to ensure your team members are motivated, happy and engaged. Providing continuous feedback to ensure that they can add value while maintaining high standards.
  • Collaborating with our engineering leaders and other organization stakeholders to help define and influence wider product strategy, roadmaps and designs.
  • Be actively engaged with significant incidents, including preparation, simulation, response, and affected customer notification and communications.
  • Contributing to and reviewing design documents for upcoming projects. Ensuring projects are well-defined and ready for development. Advise on how to break down projects into tasks.

Requirements:

  • Prior experience running a security engineering team.
  • You have a strong engineering background and are capable of engaging in technical conversations and challenging teams to arrive at strong technical decisions themselves.
  • You will be comfortable working with engineering teams who have a strong sense of autonomy in their decision-making, be it technical or product-focused.
  • While you’re great with people and adept at managing relationships, you still keep up-to-date with the latest technical trends and shifts to maintain and enhance your understanding of the challenges your teams face.
  • You approach security with a DevOps mindset. You prefer security by enablement, automation, and guardrails over gates and roadblocks.
  • You have familiarity with securing and operating on public Cloud (AWS, GCP, Azure) providers, with Kubernetes, and with securing combined open-source software (OSS) and SaaS products.
  • You are an excellent written and verbal communicator. You can articulate complex cybersecurity concepts to both technical and non-technical audiences. You are adept at translating security problems to business impact.

Bonus Points:

  • A technical background, ideally with programming or software engineering experience, before transitioning into security & leadership.
  • Working knowledge of Grafana Labs OSS projects and products. Experience in using observability tooling to solve security problems.
  • Experience working with OSS communities.
  • Experience securing large-scale distributed systems.

Compensation & Rewards:

In Ireland, the Base compensation range for this role is €117,600 - €141,120. Actual compensation may vary based on level, experience, and skillset as assessed throughout the interview process. All of our roles include Restricted Stock Units (RSUs), giving every team member ownership in Grafana Labs’ success. We believe in shared outcomes—RSUs help us stay aligned and invested as we scale globally.

#LI-Remote

*Compensation ranges are country specific. If you are applying for this role from a different location than listed above, your recruiter will discuss your specific market’s defined pay range & benefits at the beginning of the process.

Why You’ll Thrive at Grafana Labs:

  • 100% Remote, Global Culture - As a remote-only company, we bring together talent from around the world, united by a culture of collaboration and shared purpose.
  • Scaling Organization – Tackle meaningful work in a high-growth, ever-evolving environment.
  • Transparent Communication – Expect open decision-making and regular company-wide updates.
  • Innovation-Driven – Autonomy and support to ship great work and try new things.
  • Open Source Roots – Built on community-driven values that shape how we work.
  • Empowered Teams – High trust, low ego culture that values outcomes over optics.
  • Career Growth Pathways – Defined opportunities to grow and develop your career.
  • Approachable Leadership – Transparent execs who are involved, visible, and human.
  • Passionate People – Join a team of smart, supportive folks who care deeply about what they do.
  • In-Person onboarding- We want you to thrive from day 1 with your fellow new ‘Grafanistas’ to learn all about what we do and how we do it.
  • Balance is Key - We operate a global annual leave policy of 30 days per annum. 3 days of your annual leave entitlement are reserved for Grafana Shutdown Days to allow the team to really disconnect. *We will comply with local legislation where applicable.

Equal Opportunity Employer: Grafana Labs is an equal opportunities employer. We welcome applications from everyone regardless of race, colour, nationality, origin, caste, sex, gender reassignment identity or expression, sexual orientation, age, religion or belief, disability, veteran status, genetic information, pregnancy, maternity, marital, family or carer status, or any other characteristic which is protected by local law. We believe that equality and diversity build a strong organisation, and we work hard to ensure that is the foundation of our organisation as we grow.

Grafana Labs may utilize AI tools in its recruitment process to assist in matching information provided in CVs to job postings. The recruitment team will continue to review inbound CVs manually to identify alignment with current openings.

#LI-Remote

For information about how your personal data is used once you’ve applied to a job, check out our privacy policy.

Read the full description
Security Engineering Manager - Grafana Application Security | EMEA | (Remote, Spain) at Grafana Labs

Leads application security engineering, develops security strategies, prioritizes risk mitigation, and improves cloud SaaS security programs through automation.

Lead Remote Posted 2 days ago RemoteFirstJobs Product
What this role involves

Grafana Labs is the company behind Grafana Cloud, the fully managed observability platform trusted by more than 10,000 organizations to ensure reliability, resolve incidents faster, and optimize telemetry at scale. Built on open source and open standards and designed for interoperability across any stack, Grafana Cloud brings AI to observability and observability to AI, giving teams (and their agents) unified visibility so they can see, understand, and act on all their disparate data, wherever it lives, and move at the speed of their ambitions. Customers, including Anthropic, Bloomberg, NVIDIA, Microsoft, and Salesforce, rely on Grafana Labs. We are a 100% remote company with team members across 40+ countries, backed by leading investors including Lightspeed Venture Partners, Sequoia Capital, GIC, Coatue, J.P. Morgan, CapitalG, and Lead Edge Capital. Learn more at grafana.com and follow us on LinkedIn and X.

We’re scaling fast and staying true to what makes us different: an open-source legacy, a global collaborative culture, and a passion for meaningful work. Our team thrives in an innovation-driven environment where transparency, autonomy, and trust fuel everything we do.

You may not meet every requirement, and that’s okay. If this role excites you, we’d love you to raise your hand for what could be a truly career-defining opportunity.

This is a remote position and we’re considering candidates in the UK, Spain, and Ireland.

About the role:

We are looking for an engineering manager to lead our application security engineering team.  You will be responsible for developing and implementing security strategies, as well as liaising with other teams delivering parts of our overall security posture. You’ll be accountable for the security of software you don’t write, in teams that don’t report to you. The people who do well in this role get there by making the secure path the easiest one.

The ideal candidate will have a proven track record of implementing and improving the maturity of security programs, through the use of automation and systematic approaches in Cloud-based SaaS organizations, and possess excellent leadership and communication skills.  You can tell the difference between a finding and a risk, and know how to prioritise risk mitigation, guiding the squad towards the most effective use of their time.

You must have significant engineering acumen as this is a highly technology-driven role.  Your main role will be to support your engineering team and to do that you should be able to review a threat model, challenge a severity rating, and contribute to a design review.

Responsibilities:

  • Lead our application security team covering a range of areas, including application security, cloud security, and internal tooling development.
  • Lead 1st and 3rd party vulnerability management, including coordinated disclosure with external reporters and embargoed fixes.
  • Define, optimize, and implement the engineering strategy in concert with the security leadership team, ICs and stakeholders across the business.
  • Regular 1:1s, coaching and mentoring to ensure your team members are motivated, happy and engaged. Providing continuous feedback to ensure that they can add value while maintaining high standards.
  • Collaborating with our engineering leaders and other organization stakeholders to help define and influence wider product strategy, roadmaps and designs.
  • Be actively engaged with significant incidents, including preparation, simulation, response, and affected customer notification and communications.
  • Contributing to and reviewing design documents for upcoming projects. Ensuring projects are well-defined and ready for development. Advise on how to break down projects into tasks.

Requirements:

  • Prior experience running a security engineering team.
  • You have a strong engineering background and are capable of engaging in technical conversations and challenging teams to arrive at strong technical decisions themselves.
  • You will be comfortable working with engineering teams who have a strong sense of autonomy in their decision-making, be it technical or product-focused.
  • While you’re great with people and adept at managing relationships, you still keep up-to-date with the latest technical trends and shifts to maintain and enhance your understanding of the challenges your teams face.
  • You approach security with a DevOps mindset. You prefer security by enablement, automation, and guardrails over gates and roadblocks.
  • You have familiarity with securing and operating on public Cloud (AWS, GCP, Azure) providers, with Kubernetes, and with securing combined open-source software (OSS) and SaaS products.
  • You are an excellent written and verbal communicator. You can articulate complex cybersecurity concepts to both technical and non-technical audiences. You are adept at translating security problems to business impact.

Bonus Points:

  • A technical background, ideally with programming or software engineering experience, before transitioning into security & leadership.
  • Working knowledge of Grafana Labs OSS projects and products. Experience in using observability tooling to solve security problems.
  • Experience working with OSS communities.
  • Experience securing large-scale distributed systems.

Compensation & Rewards:

In Spain, the Base compensation range for this role is €94,025 - €112,830. Actual compensation may vary based on level, experience, and skillset as assessed throughout the interview process. All of our roles include Restricted Stock Units (RSUs), giving every team member ownership in Grafana Labs’ success. We believe in shared outcomes—RSUs help us stay aligned and invested as we scale globally.

#LI-Remote

*Compensation ranges are country specific. If you are applying for this role from a different location than listed above, your recruiter will discuss your specific market’s defined pay range & benefits at the beginning of the process.

Why You’ll Thrive at Grafana Labs:

  • 100% Remote, Global Culture - As a remote-only company, we bring together talent from around the world, united by a culture of collaboration and shared purpose.
  • Scaling Organization – Tackle meaningful work in a high-growth, ever-evolving environment.
  • Transparent Communication – Expect open decision-making and regular company-wide updates.
  • Innovation-Driven – Autonomy and support to ship great work and try new things.
  • Open Source Roots – Built on community-driven values that shape how we work.
  • Empowered Teams – High trust, low ego culture that values outcomes over optics.
  • Career Growth Pathways – Defined opportunities to grow and develop your career.
  • Approachable Leadership – Transparent execs who are involved, visible, and human.
  • Passionate People – Join a team of smart, supportive folks who care deeply about what they do.
  • In-Person onboarding- We want you to thrive from day 1 with your fellow new ‘Grafanistas’ to learn all about what we do and how we do it.
  • Balance is Key - We operate a global annual leave policy of 30 days per annum. 3 days of your annual leave entitlement are reserved for Grafana Shutdown Days to allow the team to really disconnect. *We will comply with local legislation where applicable.

Equal Opportunity Employer: Grafana Labs is an equal opportunities employer. We welcome applications from everyone regardless of race, colour, nationality, origin, caste, sex, gender reassignment identity or expression, sexual orientation, age, religion or belief, disability, veteran status, genetic information, pregnancy, maternity, marital, family or carer status, or any other characteristic which is protected by local law. We believe that equality and diversity build a strong organisation, and we work hard to ensure that is the foundation of our organisation as we grow.

Grafana Labs may utilize AI tools in its recruitment process to assist in matching information provided in CVs to job postings. The recruitment team will continue to review inbound CVs manually to identify alignment with current openings.

#LI-Remote

For information about how your personal data is used once you’ve applied to a job, check out our privacy policy.

Read the full description
Security Senior DevOps & Security Engineer at Synapticure

Builds and secures AWS and Kubernetes infrastructure, automates delivery, manages vulnerabilities, and supports HIPAA and SOC 2 compliance.

Senior Posted 2 days ago RemoteFirstJobs Product
What this role involves

About Synapticure

Synapticure is the largest, most comprehensive specialty care and life sciences company in the country for those living with neurodegenerative diseases. Founded by patients and caregivers living with these diseases, we are redefining the care and the research paradigm for conditions like Alzheimer’s, Parkinson’s, and ALS in all 50 states.

Our business is powered by two connected engines.

The CARES Engine (Clinical Operations)

A scalable, 50-state virtualized clinical network providing timely access to expert neurologists and cutting edge treatments with wraparound care coordination and behavioral health support. Our team creates personalized care plans focused on education and empowerment, connecting patients with a multidisciplinary team of subspecialty neurologists, geriatricians, psychologists, and care coordinators who collaborate to deliver comprehensive care.

The CURES Engine (Research & Innovation)

Leveraging our deeply engaged, well characterized national patient cohort, CURES partners with life science, pharma, biotech, and medical device companies to accelerate the development of neurodegenerative treatments, spanning discovery stage lab services, clinical trial services, and real world evidence data and analytics.

Partnering with providers, health plans, and life sciences companies, including CMS’ GUIDE dementia care model, Synapticure is dedicated to transforming the lives of millions of individuals and their families living with neurodegenerative diseases.

About the Role

The Senior DevOps & Security Engineer is a hands-on technical role responsible for building, operating, securing, automating, and improving our cloud infrastructure and software delivery environments. Reporting to the Director of IT, DevOps & Security, this role works across Engineering, Data, and other teams to maintain secure, reliable, and well-monitored systems.

The role focuses heavily on cloud security, compliance, vulnerability management, AWS, Terraform, Kubernetes, CI/CD, observability, and production reliability.

This is a strong fit for someone who enjoys working across cloud infrastructure, security engineering, compliance, and broader technical problem-solving.

The Day to Day

  • Translate security and compliance requirements into practical technical controls and directly support HIPAA, SOC 2, and related activities.
  • Build, maintain, secure, and improve AWS infrastructure, Kubernetes/EKS environments, identity and access controls (IAM), networking, databases, storage, logging, monitoring, and SIEM integrations.
  • Develop and maintain Terraform, secure CI/CD pipelines, deployment tooling, and related automation.
  • Manage vulnerability scanning, security telemetry, incident response support, and application/infrastructure hardening.
  • Partner with Engineering, Data, and other internal teams to automate workflows, connect systems, and reduce manual work.
  • Build scripts, integrations, internal tools, and API-based automations across technical and business systems.
  • Maintain clear technical documentation, architecture diagrams, and infrastructure security standards.
  • Research and evaluate new tools, security practices, and infrastructure approaches to determine how they can be applied effectively in our environment.
  • Participate in on-call or escalation coverage as operational needs evolve. Our production environment is generally stable and relatively low-traffic, so after-hours work tends to focus more on planned maintenance, upgrades, and proactive security improvements than on responding to outages.

Minimum Qualifications

  • 4+ years of experience in cloud security engineering, DevOps, cloud infrastructure, SRE, or a related field.
  • Strong understanding of cloud security, IAM, networking, vulnerability management, observability, and incident response.
  • Hands-on experience supporting or implementing security controls in regulated environments (e.g., HIPAA, SOC 2).
  • Hands-on experience with SentinelOne (or similar EDR/endpoint security platforms), AWS, Terraform, Kubernetes, and securing CI/CD pipelines.
  • Ability to write scripts (Python, Bash, etc.) and work with APIs, integrations, and security automation.
  • Excellent written and verbal communication skills, with a proven ability to produce clear technical writing, architecture documentation, and cross-functional collaboration.
  • Ability to work independently, research unfamiliar problems, and take projects from problem definition through implementation.

Preferred Qualifications

  • Experience in healthcare, healthtech, financial services, or another highly regulated sector.
  • Familiarity with tools such as Datadog, SentinelOne, Argo CD, GitHub Actions, or Google Workspace administration.
  • Direct experience with SIEM setup, detection engineering, or penetration testing remediation.
  • Background in disaster recovery planning and backup restoration testing.

$150,000 - $170,000 a year

Compensation

Final compensation will be determined based on location, experience, and qualifications.

Our Values

We are a remote-first company. While our team is located all across the United States, these core principles tie us together around a common identity:

  • Relentless focus on patients and caregivers: We are determined to provide an exceptional experience for every patient we have the privilege to serve, and we put our patients first in everything we do.
  • Embody the spirit and humanity of those living with neurodegenerative disease: Inspired by our founders, families, and personal experiences, we recognize the seriousness of our patients’ circumstances and meet that challenge every day with empathy, compassion, kindness, joy, and hope.
  • Seek to understand, and stay curious: We start by listening to one another, our partners, our patients, and their caregivers. We communicate with authenticity and humility, prioritizing honesty and directness while recognizing we always have something to learn.
  • Embrace the opportunity: We are energized by the importance of our mission and maintain a strong bias toward action.

Benefits & Perks

Full time employees are eligible for:

  • Remote First: Work from anywhere in the 50 United States, with home office technology provided.
  • Comprehensive Healthcare: Medical, dental, and vision insurance options for you and your family.
  • Financial & Retirement Support: 401(k) plan with employer matching, plus short and long-term disability, and basic and supplemental life insurance.
  • Time Off & Leave: 15 vacation days, 5 sick days, 12 paid holidays, and 2 floating holidays, plus a fully paid end-of-year company holiday break (typically Christmas through New Year’s).
  • Wellness & Family Growth: Comprehensive family-building and fertility services through Kindbody (where available) at a 20% discount, 24⁄7 mental health support via Health Advocate and Talkspace (including 12 free on-demand sessions per year), and access to One Medical.

Travel Requirements & Remote Workplace Setup

We’re a remote-first company and provide the necessary technology to work from home. Most roles involve only occasional travel, such as for team meetings or professional collaboration events, unless otherwise specified in the job-specific details above.

Equal Opportunity Employer

Synapticure is an equal opportunity employer and a remote-first workplace. We believe that embedding equity, inclusion, compliance, and operational excellence across all aspects of our employee lifecycle directly reflects our core values. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status, or any other characteristic protected by law. Please apply even if you feel you do not meet all qualifications.

At this time, Synapticure is unable to provide work visa sponsorship.

If you require reasonable accommodation in completing this application, interviewing, completing any pre-employment testing, or otherwise participating in the employee selection process, please direct your inquiries to [email protected].

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

Read the full description
Security Sr Identity Engineer at Simeio

Designs, implements, integrates, and troubleshoots IBM identity and access management systems, including SSO, MFA, federation, and directory services.

Senior Posted 2 days ago RemoteFirstJobs Product
What this role involves

Senior Identity Engineer – IBM IAM

We are seeking a Senior Identity Engineer with strong hands-on experience designing, implementing, and supporting IBM Identity and Access Management (IAM) solutions. This individual will work across enterprise environments to enhance authentication, access management, identity lifecycle, and security capabilities.

Key Responsibilities:

  • Design, implement, configure, and troubleshoot IBM IAM solutions.
  • Support IBM Security Verify Access (ISVA), IBM Security Verify Governance (ISVG), IBM Security Verify, and/or IBM Security Verify Directory.
  • Integrate IAM platforms with enterprise applications, directories, APIs, and authentication services.
  • Implement SSO, MFA, federation, OAuth/OIDC, SAML, LDAP, and Active Directory integrations.
  • Troubleshoot complex identity, authentication, and access-management issues.
  • Provide technical leadership and guidance on IAM architecture and security best practices.

Qualifications:

  • 5+ years of IAM/Identity Engineering experience.
  • Strong hands-on experience with IBM IAM / IBM Security Verify technologies.
  • Experience with enterprise SSO, MFA, federation, LDAP/AD, SAML, OAuth, and OIDC.
  • Strong troubleshooting, scripting, integration, and technical communication skills.
  • Experience working in complex enterprise or hybrid environments preferred.

Simeio is an equal opportunity employer. If you require assistance with completing this application, interviewing, completing any pre-employment testing, or otherwise participating in the employee selection process, please direct your inquiries to any of the recruitment team at recruitment@simeio.com or +1 404-882-3700.

Read the full description
Security Senior DevOps & Security Engineer at Synapticure

Builds and secures AWS and Kubernetes infrastructure, automates delivery, manages vulnerabilities, and supports HIPAA and SOC 2 compliance.

Senior Posted 2 days ago RemoteFirstJobs Product
What this role involves

About Synapticure

Synapticure is the largest, most comprehensive specialty care and life sciences company in the country for those living with neurodegenerative diseases. Founded by patients and caregivers living with these diseases, we are redefining the care and the research paradigm for conditions like Alzheimer’s, Parkinson’s, and ALS in all 50 states.

Our business is powered by two connected engines.

The CARES Engine (Clinical Operations)

A scalable, 50-state virtualized clinical network providing timely access to expert neurologists and cutting edge treatments with wraparound care coordination and behavioral health support. Our team creates personalized care plans focused on education and empowerment, connecting patients with a multidisciplinary team of subspecialty neurologists, geriatricians, psychologists, and care coordinators who collaborate to deliver comprehensive care.

The CURES Engine (Research & Innovation)

Leveraging our deeply engaged, well characterized national patient cohort, CURES partners with life science, pharma, biotech, and medical device companies to accelerate the development of neurodegenerative treatments, spanning discovery stage lab services, clinical trial services, and real world evidence data and analytics.

Partnering with providers, health plans, and life sciences companies, including CMS’ GUIDE dementia care model, Synapticure is dedicated to transforming the lives of millions of individuals and their families living with neurodegenerative diseases.

About the Role

The Senior DevOps & Security Engineer is a hands-on technical role responsible for building, operating, securing, automating, and improving our cloud infrastructure and software delivery environments. Reporting to the Director of IT, DevOps & Security, this role works across Engineering, Data, and other teams to maintain secure, reliable, and well-monitored systems.

The role focuses heavily on cloud security, compliance, vulnerability management, AWS, Terraform, Kubernetes, CI/CD, observability, and production reliability.

This is a strong fit for someone who enjoys working across cloud infrastructure, security engineering, compliance, and broader technical problem-solving.

The Day to Day

  • Translate security and compliance requirements into practical technical controls and directly support HIPAA, SOC 2, and related activities.
  • Build, maintain, secure, and improve AWS infrastructure, Kubernetes/EKS environments, identity and access controls (IAM), networking, databases, storage, logging, monitoring, and SIEM integrations.
  • Develop and maintain Terraform, secure CI/CD pipelines, deployment tooling, and related automation.
  • Manage vulnerability scanning, security telemetry, incident response support, and application/infrastructure hardening.
  • Partner with Engineering, Data, and other internal teams to automate workflows, connect systems, and reduce manual work.
  • Build scripts, integrations, internal tools, and API-based automations across technical and business systems.
  • Maintain clear technical documentation, architecture diagrams, and infrastructure security standards.
  • Research and evaluate new tools, security practices, and infrastructure approaches to determine how they can be applied effectively in our environment.
  • Participate in on-call or escalation coverage as operational needs evolve. Our production environment is generally stable and relatively low-traffic, so after-hours work tends to focus more on planned maintenance, upgrades, and proactive security improvements than on responding to outages.

Minimum Qualifications

  • 4+ years of experience in cloud security engineering, DevOps, cloud infrastructure, SRE, or a related field.
  • Strong understanding of cloud security, IAM, networking, vulnerability management, observability, and incident response.
  • Hands-on experience supporting or implementing security controls in regulated environments (e.g., HIPAA, SOC 2).
  • Hands-on experience with SentinelOne (or similar EDR/endpoint security platforms), AWS, Terraform, Kubernetes, and securing CI/CD pipelines.
  • Ability to write scripts (Python, Bash, etc.) and work with APIs, integrations, and security automation.
  • Excellent written and verbal communication skills, with a proven ability to produce clear technical writing, architecture documentation, and cross-functional collaboration.
  • Ability to work independently, research unfamiliar problems, and take projects from problem definition through implementation.

Preferred Qualifications

  • Experience in healthcare, healthtech, financial services, or another highly regulated sector.
  • Familiarity with tools such as Datadog, SentinelOne, Argo CD, GitHub Actions, or Google Workspace administration.
  • Direct experience with SIEM setup, detection engineering, or penetration testing remediation.
  • Background in disaster recovery planning and backup restoration testing.

$150,000 - $170,000 a year

Compensation

Final compensation will be determined based on location, experience, and qualifications.

Our Values

We are a remote-first company. While our team is located all across the United States, these core principles tie us together around a common identity:

  • Relentless focus on patients and caregivers: We are determined to provide an exceptional experience for every patient we have the privilege to serve, and we put our patients first in everything we do.
  • Embody the spirit and humanity of those living with neurodegenerative disease: Inspired by our founders, families, and personal experiences, we recognize the seriousness of our patients’ circumstances and meet that challenge every day with empathy, compassion, kindness, joy, and hope.
  • Seek to understand, and stay curious: We start by listening to one another, our partners, our patients, and their caregivers. We communicate with authenticity and humility, prioritizing honesty and directness while recognizing we always have something to learn.
  • Embrace the opportunity: We are energized by the importance of our mission and maintain a strong bias toward action.

Benefits & Perks

Full time employees are eligible for:

  • Remote First: Work from anywhere in the 50 United States, with home office technology provided.
  • Comprehensive Healthcare: Medical, dental, and vision insurance options for you and your family.
  • Financial & Retirement Support: 401(k) plan with employer matching, plus short and long-term disability, and basic and supplemental life insurance.
  • Time Off & Leave: 15 vacation days, 5 sick days, 12 paid holidays, and 2 floating holidays, plus a fully paid end-of-year company holiday break (typically Christmas through New Year’s).
  • Wellness & Family Growth: Comprehensive family-building and fertility services through Kindbody (where available) at a 20% discount, 24⁄7 mental health support via Health Advocate and Talkspace (including 12 free on-demand sessions per year), and access to One Medical.

Travel Requirements & Remote Workplace Setup

We’re a remote-first company and provide the necessary technology to work from home. Most roles involve only occasional travel, such as for team meetings or professional collaboration events, unless otherwise specified in the job-specific details above.

Equal Opportunity Employer

Synapticure is an equal opportunity employer and a remote-first workplace. We believe that embedding equity, inclusion, compliance, and operational excellence across all aspects of our employee lifecycle directly reflects our core values. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status, or any other characteristic protected by law. Please apply even if you feel you do not meet all qualifications.

At this time, Synapticure is unable to provide work visa sponsorship.

If you require reasonable accommodation in completing this application, interviewing, completing any pre-employment testing, or otherwise participating in the employee selection process, please direct your inquiries to [email protected].

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

Read the full description
Security Senior Security Engineer at Anduril Industries

Designs and implements defensive security controls, automation, architecture reviews, and incident-response capabilities across cloud, production, and corporate infrastructure.

Senior Posted 2 days ago RemoteFirstJobs Product
What this role involves

Anduril Industries is a defense technology company with a mission to transform U.S. and allied military capabilities with advanced technology. By bringing the expertise, technology, and business model of the 21st century’s most innovative companies to the defense industry, Anduril is changing how military systems are designed, built and sold. Anduril’s family of systems is powered by Lattice OS, an AI-powered operating system that turns thousands of data streams into a realtime, 3D command and control center. As the world enters an era of strategic competition, Anduril is committed to bringing cutting-edge autonomy, AI, computer vision, sensor fusion, and networking technology to the military in months, not years.

ABOUT THE TEAM

Anduril’s Security Engineering team is looking for a security engineer to focus on building world class defensive controls to protect the infrastructure around our defense technology products.

WHAT YOU’LL DO

  • Design and implement security controls across cloud, production, and corporate infrastructure
  • Develop tools and systems to improve security posture and operational efficiency
  • Conduct security architecture and design reviews for systems and applications
  • Build automation to detect, monitor, and remediate security issues
  • Work across infrastructure, application, and operational security domains

REQUIRED QUALIFICATIONS

  • Strong programming ability in one or more general purpose languages (Python, Go, Rust, etc)
  • Experience with one or more infrastructure as code languages (e.g., Terraform, AWS CDK) in a production capacity
  • Experience conducting security architecture or design reviews around custom business applications
  • Solid understanding of modern attack vectors and defensive mitigation strategies
  • Experience working with cloud platforms and deploying applications through CI/CD pipelines
  • Experience developing and implementing defensive controls around endpoint and SaaS applications
  • Ability to work autonomously, take ownership of projects, and collaborate across teams
  • Have participated in or supported incident response events
  • Eligible to obtain and maintain a U.S. TS clearance

PREFERRED QUALIFICATIONS

  • Experience building bespoke solutions in high-growth and high-complexity environments
  • Experience with log aggregation, secrets management, or endpoint security tools
  • Experience with AWS, Azure, or GCP security ecosystem and tooling
  • Strong experience with Linux operating systems

US Salary Range

$166,000—$220,000 USD

The salary range for this role is an estimate based on a wide range of compensation factors, inclusive of base salary only. Actual salary offer may vary based on (but not limited to) work experience, education and/or training, critical skills, and/or business considerations. Highly competitive equity grants are included in the majority of full time offers; and are considered part of Anduril’s total compensation package. Additionally, Anduril offers top-tier benefits for full-time employees, including:

Benefits

At Anduril, we invest in our people. Our comprehensive, competitive benefits package (available at little to no cost to employees) ensures you’re supported in health, recovery, and whatever comes next. For more information, Explore Our Benefits.

Protecting Yourself from Recruitment Scams

Anduril is committed to maintaining the integrity of our Talent acquisition process and the security of our candidates. We’ve observed a rise in sophisticated phishing and fraudulent schemes where individuals impersonate Anduril representatives, luring job seekers with false interviews or job offers. These scammers often attempt to extract payment or sensitive personal information.

To ensure your safety and help you navigate your job search with confidence, please keep the following critical points in mind:

  • No Financial Requests: Anduril will never solicit payment or demand personal financial details (such as banking information, credit card numbers, or social security numbers) at any stage of our hiring process. Our legitimate recruitment is entirely free for candidates.

  • Please always verify communications:

    • Direct from Anduril: If you receive an email from one of our recruiters, it will only come from an @anduril.com address.
    • Via Agency Partner: If contacted by a recruiting agency for an Anduril role, their email will clearly identify their agency. If you suspect any suspicious activity, please verify the agency’s authenticity by reaching out to contact@anduril.com.
  • Exercise Caution with Unsolicited Outreach: If you receive any communication that appears suspicious, contains grammatical errors, or makes unusual requests, do not engage. Always confirm the sender’s email domain is @anduril.com before providing any personal information or clicking on links.

  • What to Do If You Suspect Fraud: Should you encounter any questionable or fraudulent outreach claiming to be from Anduril, please report it immediately to contact@anduril.com. Your proactive caution is invaluable in protecting your personal information and upholding the security and trustworthiness of our recruitment efforts.

Data Privacy

To view Anduril’s candidate data privacy policy, please visit https://anduril.com/applicant-privacy-notice/.

By submitting your application, you consent to Anduril Industries using a third-party service provider to conduct pre-employment risk, integrity, and due diligence screening and assessing potential risks as part of your application process. This third-party service provider provides risk-intelligence services that may include analysis of sanctions and watchlists, adverse media, public-record information, and other lawful open-source or commercial data sources. This third-party service provider does not act as a consumer reporting agency. Use of this provider helps to ensure compliance with applicable laws and protect technology, intellectual property, and organizational security.

Read the full description
Security Senior Security Engineer OT at Anduril Industries

Leads OT/ICS security assessments, architects defensive controls, deploys security tools, and secures factory production environments.

Senior Posted 2 days ago RemoteFirstJobs Product
What this role involves

Anduril Industries is a defense technology company with a mission to transform U.S. and allied military capabilities with advanced technology. By bringing the expertise, technology, and business model of the 21st century’s most innovative companies to the defense industry, Anduril is changing how military systems are designed, built and sold. Anduril’s family of systems is powered by Lattice OS, an AI-powered operating system that turns thousands of data streams into a realtime, 3D command and control center. As the world enters an era of strategic competition, Anduril is committed to bringing cutting-edge autonomy, AI, computer vision, sensor fusion, and networking technology to the military in months, not years.

ABOUT THE TEAM

Anduril’s Security Engineering team is looking for a security engineer to focus on building world class defensive controls to protect the infrastructure around our advanced defense technology products. This is a role with a direct focus on securing Anduril’s OT (Operational Technology) and ICS (Industrial Control Systems) environments. In this role, you will design and implement foundational security solutions playing a critical role in Anduril’s rollout of cutting edge factory systems.

ABOUT THE JOB

WHAT YOU’LL DO

  • Lead OT risk assessments, gap analyses, and develop a multi-year OT security roadmap
  • Architect and implement defensive security controls for cloud, production, and corporate environments
  • Support the deployment, configuration, and maintenance of security tools
  • Build systems to support automation, visibility, and threat detection for efforts across various information security and infrastructure teams
  • Independently drive security initiatives and foster a security-first mindset across the organization
  • Work closely with factory production teams to review designs and use-cases, ensuring our environments are secure by design

REQUIRED QUALIFICATIONS

  • Experience with routing, switching, and network design principles
  • Familiarity with zero trust architecture and segmentation strategies when it comes to OT networks
  • Experience conducting security architecture or design reviews for OT/ICS environments
  • Experience with threat modeling frameworks and applying these concepts to the OT/ICS domain (e.g. MITRE ATT&CK for ICS)
  • Experience with programming in one or more general purpose languages (Python, Go, Rust, etc)
  • Experience developing and implementing defensive controls in corporate and industrial production environments
  • Ability to work autonomously and take ownership of complex projects
  • Have participated in or supported incident response events
  • Eligible to obtain and maintain an active U.S. Top Secret security clearance
  • Ability to travel up to 50%

PREFERRED QUALIFICATIONS

  • Familiarity with OT protocols (e.g., Modbus, DNP3, Ethernet/IP) and ICS environments
  • Experience with specific ICS/SCADA vendor platforms (Siemens, Rockwell, Honeywell, etc.)
  • Experience building bespoke solutions in high-growth high-complexity network environments
  • Strong experience with Linux operating systems

US Salary Range

$166,000—$220,000 USD

The salary range for this role is an estimate based on a wide range of compensation factors, inclusive of base salary only. Actual salary offer may vary based on (but not limited to) work experience, education and/or training, critical skills, and/or business considerations. Highly competitive equity grants are included in the majority of full time offers; and are considered part of Anduril’s total compensation package. Additionally, Anduril offers top-tier benefits for full-time employees, including:

Benefits

At Anduril, we invest in our people. Our comprehensive, competitive benefits package (available at little to no cost to employees) ensures you’re supported in health, recovery, and whatever comes next. For more information, Explore Our Benefits.

Protecting Yourself from Recruitment Scams

Anduril is committed to maintaining the integrity of our Talent acquisition process and the security of our candidates. We’ve observed a rise in sophisticated phishing and fraudulent schemes where individuals impersonate Anduril representatives, luring job seekers with false interviews or job offers. These scammers often attempt to extract payment or sensitive personal information.

To ensure your safety and help you navigate your job search with confidence, please keep the following critical points in mind:

  • No Financial Requests: Anduril will never solicit payment or demand personal financial details (such as banking information, credit card numbers, or social security numbers) at any stage of our hiring process. Our legitimate recruitment is entirely free for candidates.

  • Please always verify communications:

    • Direct from Anduril: If you receive an email from one of our recruiters, it will only come from an @anduril.com address.
    • Via Agency Partner: If contacted by a recruiting agency for an Anduril role, their email will clearly identify their agency. If you suspect any suspicious activity, please verify the agency’s authenticity by reaching out to contact@anduril.com.
  • Exercise Caution with Unsolicited Outreach: If you receive any communication that appears suspicious, contains grammatical errors, or makes unusual requests, do not engage. Always confirm the sender’s email domain is @anduril.com before providing any personal information or clicking on links.

  • What to Do If You Suspect Fraud: Should you encounter any questionable or fraudulent outreach claiming to be from Anduril, please report it immediately to contact@anduril.com. Your proactive caution is invaluable in protecting your personal information and upholding the security and trustworthiness of our recruitment efforts.

Data Privacy

To view Anduril’s candidate data privacy policy, please visit https://anduril.com/applicant-privacy-notice/.

By submitting your application, you consent to Anduril Industries using a third-party service provider to conduct pre-employment risk, integrity, and due diligence screening and assessing potential risks as part of your application process. This third-party service provider provides risk-intelligence services that may include analysis of sanctions and watchlists, adverse media, public-record information, and other lawful open-source or commercial data sources. This third-party service provider does not act as a consumer reporting agency. Use of this provider helps to ensure compliance with applicable laws and protect technology, intellectual property, and organizational security.

Read the full description
Security GRC Analyst

Manages governance, risk, and compliance controls, assessments, policies, and security audits for the organization.

Mid Posted 2 days ago Jobicy AI
What this role involves
About Vercel: Vercel is the agentic infrastructure company, freeing people and agents to ship what’s next. For more than a decade we’ve helped builders move from idea to production with...
Read the full description
Security Senior Manager, Enterprise Security at Rubrik

Leads enterprise security services, hardens corporate systems and applications, establishes security standards, and partners with IT and SOC teams on risk management.

Senior Posted 3 days ago RemoteFirstJobs Product
What this role involves

About the team:

The Information Security organization advances the overall state of security at Rubrik through critical initiatives and coordination of large security projects. Information Security builds technologies, tools, and processes to better enable teams at Rubrik to develop secure software and protect data and systems with appropriate security controls. Information Security also develops systems to monitor and respond to attacks against our assets, provides awareness education to teams on security best practices for data protection, and ensures data governance and data sharing relationships with third parties in order to securely protect Rubrik information.

About the role:

Rubrik is seeking a Senior Manager to oversee the Enterprise Security services function. In this role, you will

be responsible for ensuring that Rubrik’s Corporate Enterprise IT technologies are designed and

implemented to the highest possible security standards. You will partner with a variety of stakeholders

across the business to improve the security posture of SaaS applications, integrations, identity and

access operations, ensure corporate endpoints are secured, wireless networks are designed and

implemented securely, IOT devices are securely managed, and regularly audit for compliance to

Enterprise Security standards.

What you’ll do:

● Design and implement security standards across Identity (Okta), Endpoint (Windows, MacOS,

Linux), Secrets Management (Vault, Lastpass) and Business Applications (Salesforce, Glean,

etc).

● Partner with IT and other organizations to improve the security posture of enterprise applications,

integrations, and access to sensitive and business data.

● Actively participate in evaluation, development, and management of security and compliance

policies within IT management systems such as JAMF, inTune, etc.

● Analyze and harden existing applications, infrastructure, automation, and deployment processes:

CircleCI, Github workflows, Tines, Zapier, etc.

● Work with Corp IT teams, operations, governance, and other stakeholders to draft security

standards and implement monitoring, alerting, and governance.

● Review and approve application security review requests to ensure new applications used by

Rubrik and employees are secure, monitored, and security standards are enforced.

● Support the SOC in analyzing applicable threats, vulnerabilities, controls, and residual risks.

● Partner with Vulnerability Management and Threat Operations to drive remediation of critical

vulnerabilities and detection of IOC’s in the environment.

● Actively monitor and manage EDR policies.

● Partner with the organization to deploy technologies for AI usage and security.

● Leverage AI tools and agents to improve team performance, enterprise security capabilities, and

team efficiency - do more with less and faster.

Experience you’ll need:

● 5+ years of management experience

● Experience in enterprise security, with hands on experience in administration and design across

Windows, Mac, Okta, and public cloud infrastructure

● Broad knowledge of enterprise attack vectors and exploits in both end-user and IT Apps

● Subject matter expertise in business applications, endpoint and Identity management

● Deep understanding of endpoint systems, corporate networking including wi-fi and IT application

systems (Salesforce, Mulesoft, Lastpass, etc)

● Programming experience in PowerShell, Python, Go or Java

● Experience with deploying and securing Enterprise applications and environments at scale

● Security and administrative expertise in at least one major public cloud provider (AWS, GCP,

Azure)

● Understanding of corporate security maturity model frameworks and how to apply them

● Strong written and verbal communication skills

● Knowledge of regulatory guidelines and standards such as SOC2, ISO 27001, FedRAMP, etc.

The minimum and maximum base salaries for this role are posted below; additionally, the role is eligible for bonus potential, equity and benefits. The range displayed reflects the minimum and maximum target for new hire salaries for the role based on U.S. location. Within the range, the salary offered will be determined by work location and additional factors, including job-related skills, experience, and relevant education or training.

US (SF Bay Area, DC Metro, NYC, Seattle) Pay Range

$212,800—$319,200 USD

The minimum and maximum base salaries for this role are posted below; additionally, the role is eligible for bonus potential, equity and benefits. The range displayed reflects the minimum and maximum target for new hire salaries for the role based on U.S. location. Within the range, the salary offered will be determined by work location and additional factors, including job-related skills, experience, and relevant education or training.

US2 (all other US offices/remote) Pay Range

$191,500—$287,300 USD

Join Us in Securing and Accelerating the World’s AI Transformation

Rubrik (RBRK), the Security and AI Operations Company, leads at the intersection of data protection, cyber resilience, and enterprise AI acceleration. Rubrik Security Cloud delivers complete cyber resilience by securing, monitoring, and recovering data, identities, and workloads across clouds. Rubrik Agent Cloud accelerates trusted AI agent deployments at scale by monitoring and auditing agentic actions, enforcing real-time guardrails, fine-tuning for accuracy and undoing agentic mistakes.

Linkedin | X (formerly Twitter) | Instagram | Rubrik.com

Inclusion @ Rubrik

At Rubrik, we are dedicated to fostering a culture where people from all backgrounds are valued, feel they belong, and believe they can succeed. Our commitment to inclusion is at the heart of our mission to secure the world’s data.

Our goal is to hire and promote the best talent, regardless of background. We continually review our hiring practices to ensure fairness and strive to create an environment where every employee has equal access to opportunities for growth and excellence. We believe in empowering everyone to bring their authentic selves to work and achieve their fullest potential.

Our inclusion strategy focuses on three core areas of our business and culture:

  • Our Company: We are committed to building a merit-based organization that offers equal access to growth and success for all employees globally. Your potential is limitless here.

  • Our Culture: We strive to create an inclusive atmosphere where individuals from all backgrounds feel a strong sense of belonging, can thrive, and do their best work. Your contributions help us innovate and break boundaries.

  • Our Communities: We are dedicated to expanding our engagement with the communities we operate in, creating opportunities for underrepresented talent and driving greater innovation for our clients. Your impact extends beyond Rubrik, contributing to safer and stronger communities.

Equal Opportunity Employer/Veterans/Disabled

Rubrik is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.

Rubrik provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability or genetics. In addition to federal law requirements, Rubrik complies with applicable state and local laws governing nondiscrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training.

Federal law requires employers to provide reasonable accommodation to qualified individuals with disabilities. Please contact us at hr@rubrik.com if you require a reasonable accommodation to apply for a job or to perform your job. Examples of reasonable accommodation include making a change to the application process or work procedures, providing documents in an alternate format, using a sign language interpreter, or using specialized equipment.

EEO IS THE LAW

NOTIFICATION OF EMPLOYEE RIGHTS UNDER FEDERAL LABOR LAWS

Read the full description
Security Senior Application Security Engineer at Capital.com

Leads application security architecture, threat modeling, vulnerability testing, and automated security tooling across engineering teams.

Senior Posted 3 days ago RemoteFirstJobs Product
What this role involves

Capital.com’s Product Security team protects our web and mobile applications, infrastructure, and external perimeter in a highly regulated environment. As Senior/Staff Application Security Engineer, you will raise the bar for application security across the organisation. This role is measured by leverage: how well you design, automate, and scale security processes so that many engineering teams can build securely by default.

You will lead security architecture reviews and threat modelling, increasingly with the help of AI tooling, and turn one-off security work into repeatable, self-service capabilities. The role combines deep hands-on offensive and defensive security expertise with the engineering mindset needed to automate at scale. You will work closely with development, QA, DevOps, and platform teams.

Responsibilities:

Security Architecture & Threat Modelling:

  • Lead security architecture reviews and threat modelling for new and existing systems, using AI tools to make reviews faster, more consistent, and scalable across teams
  • Act as a security force multiplier by influencing the standards, patterns, and guardrails that let teams move fast and stay secure

Security Automation & Tooling:

  • Design, build, and automate scalable security processes that engineering teams can self-serve, covering secure design review, threat modelling, testing, and remediation workflows
  • Integrate and automate security checks across the SDLC and CI/CD pipelines (SAST, DAST, SCA, secrets, and IaC scanning), tuned for strong signal and low friction
  • Own and evolve security tooling such as DefectDojo and SAST, DAST, and SCA platforms, maximising automation, coverage, and integration
  • Apply AI and LLM-based tooling to architecture review, threat modelling, code review, and vulnerability triage, and help define how the team adopts these tools safely

Security Testing & Vulnerability Management:

  • Conduct and oversee security assessments of web and mobile applications, APIs, and cloud infrastructure, including manual testing and PoC development
  • Run vulnerability scans across internal infrastructure and the external perimeter, then analyse findings, define remediation, and track issues to closure
  • Support and triage the Bug Bounty Program and external vulnerability reports, automating triage where possible
  • Participate in and help lead red teaming and offensive security exercises

Enablement:

  • Drive knowledge sharing on secure development, mentor engineers, and deliver training for development and QA teams

Requirements:

Experience:

  • 5+ years in application or product security, or equivalent depth, with a track record of senior or staff-level impact
  • Demonstrable experience leading security architecture reviews and threat modelling (e.g. STRIDE, attack trees, data-flow analysis) across multiple teams or products
  • Proven ability to automate and scale security processes by building tooling, integrations, and self-service workflows that reduce manual effort

Technical:

  • Strong hands-on security testing skills, including code review and web, mobile, and API application security assessments, as well as the ability to triage and validate external vulnerability reports and bug bounty submissions
  • Strong software engineering ability in at least one language (e.g. Python, Go, JavaScript), with the ability to build automation, not just scripts
  • Deep understanding of the OWASP Top Ten, secure design, and secure coding best practices
  • Experience with SAST, DAST, SCA, and vulnerability management platforms, and integrating them into CI/CD
  • Strong understanding of modern application architectures: REST APIs, microservices, cloud-based systems, and containers
  • Practical experience applying AI and LLM tooling to security work, or clear enthusiasm and aptitude to do so

Collaboration:

  • Excellent communication and influencing skills: you can explain security concepts to technical and non-technical stakeholders and drive change without direct authority
  • A self-starter who enjoys solving complex problems, building leverage through automation, mentoring others, and strengthening security culture

Nice to have:

  • Experience securing the AI harness: hardening LLM and agent pipelines, prompts, tool and MCP integrations, and model endpoints against prompt injection, data leakage, and insecure agent actions
  • Experience securing Kubernetes, including cluster hardening, RBAC, network policies, admission control, workload isolation, and image and supply-chain security
  • Experience securing AWS infrastructure, including IAM, network and account architecture, key and secret management, and CSPM
  • Experience building AI-assisted security tooling or internal self-service security platforms
  • Experience mentoring or technically leading a security team
  • Offensive or advanced security certifications such as OSAI, OSEP, OSCP, or OSWE

What you’ll get in return:

  • You will join the company, that cares about work and life balance
  • Annual Bonus based on the performance review cycle
  • Generous Annual Leave Policy
  • Medical Insurance and Pension fund, with additional benefit packages based on the location
  • Hybrid working model (3 days from our modern office and 2 days fully remotely)
  • Comprehensive Workation Policy with 30 more remote days available.
  • Possibility of taking two additional days of paid leave per year to dedicate to volunteering efforts.

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

Read the full description