Create an account for powerful AI tools, award-winning courses, and access to our vibrant community.
Already have an account?
Join 250,000+ professionals and teams at Microsoft, Shopify, and even NASA. đ
Already have an account? Login
Find the best remote jobs. Answer a few questions and we'll deploy a powerful assistant to help you search, create alerts, and more.
1 What roles are you open to?
2 Experience level
3 Work style
Did you know? If memory is enabled, Writing.io can remember your job search preferences and help you to improve your resume, craft customized outreach and more.
Category
Director leads detection engineering and threat hunting teams to develop cybersecurity detection strategies, manage managers, and align defensive capabilities with company growth.
Reports to: Chief Security Officer
Location: Remote US
Compensation Range: $220,000 to $240,000 base plus bonus and equity
What We Do:
Cybercrime is growing, and more businesses are getting hit by threats that used to target only the biggest organizations. That pushes defenders like us to operate at the highest level, and it deepens our need for good people who want to make a meaningful impact.
Founded in 2015 by former NSA cyber operators, Huntress is a remote-first team working to make enterprise-grade cybersecurity accessible to businesses of all sizes. We work closely with security teams and service providers protecting complex environments, often without the time or headcount to handle it all. Thatâs why we build our technology in-house and back it with a 24â7 human-led Security Operations Center (SOC). As a result, our platform is never disconnected from the experts who manage it, ensuring our customersâ protection.
Huntress now secures more than 5M endpoints and 11M identities worldwide. Those numbers keep growing because more businesses rely on us to help carry the load and operate with more confidence. Every day, you can see that commitment in how we stand with our customers and how we show up for each other.
We are seeking a strategic leader to own the future of Detection Engineering & Threat Hunting at Huntress. As a Director, you will manage multiple sub-teams (via Managers) and serve as a trusted advisor to the Sr. Dir of Threat Detection and Response.
Your mission is to align the DE&TH function with the broader company strategy. As we scale, you will determine the structural, technological, and budgetary requirements needed to maintain superior detection efficacy. You will own the relationship with the Product organization. Ensuring that our defensive strategy evolves faster than the adversaries we protect against.
What We Offer:
Huntress is committed to creating a culture of inclusivity where every single member of our team is valued, has a voice, and is empowered to come to work every day just as they are.
We do not discriminate based on race, ethnicity, color, ancestry, national origin, religion, sex, sexual orientation, gender identity, disability, veteran status, genetic information, marital status, or any other legally protected status.
We do discriminate against hackers who try to exploit businesses of all sizes.
Accommodations:
If you require reasonable accommodation to complete this application, interview, or pre-employment testing or participate in the employee selection process, please direct your inquiries to accommodations@huntresslabs.com . Please note that non-accommodation requests to this inbox will not receive a response.
Huntress uses artificial intelligence tools to assist in reviewing and evaluating job applications, including resume screening, skills assessment, and candidate matching and comparisons. These AI tools support our human recruiters in the initial review process but do not make final hiring decisions without human involvement. By submitting your application, you acknowledge this use of AI in our recruitment process. Please review our Candidate Privacy Notice for more details on our practices and your data privacy rights.
#BI-Remote
Develops and maintains information security policies, governance documentation, and security awareness programs while ensuring compliance with regulatory frameworks.
Oportun (Nasdaq: OPRT) is a mission-driven financial services company that puts its membersâ financial goals within reach. With intelligent borrowing, savings, and budgeting capabilities, Oportun empowers members with the confidence to build a better financial future. Since inception, Oportun has provided more than $21.3 billion in responsible and affordable credit, saved its members more than $2.5 billion in interest and fees, and helped its members set aside an average of more than $1,800 annually.
Working at Oportun means enjoying a differentiated experience of being part of a team that fosters a diverse, equitable and inclusive culture where we all feel a sense of belonging and are encouraged to share our perspectives. This inclusive culture is directly connected to our organizationâs performance and ability to fulfill our mission of delivering affordable credit to those left out of the financial mainstream. We celebrate and nurture our inclusive culture through our employee resource groups.
POSITION SUMMARY
The Information Security Governance & Awareness Senior Analyst supports and advances the organizationâs information security governance and security awareness programs through policy lifecycle management, governance analysis, regulatory mapping, metrics reporting, and targeted security education initiatives.
This role is responsible for coordinating and contributing to the development, maintenance, review, approval, and publication of information security policies, standards, procedures, and related governance documentation. The Senior Analyst applies critical thinking and sound judgment to assess governance documentation against regulatory and framework requirements and helps identify potential gaps, inconsistencies, or improvement opportunities.
The ideal candidate possesses strong technical writing and analytical skills, excellent English language comprehension, attention to detail, and the ability to translate complex security and regulatory concepts into clear, actionable governance documentation and awareness communications.
This role also supports organizational security culture initiatives through audience-appropriate awareness content, phishing simulation activities, and security education support aligned to organizational risks and business objectives.
RESPONSIBILITIES
Security Governance & Policy Management
Security Awareness & Education
Metrics, Reporting & Program Support
REQUIREMENTS
Preferred Qualifications
#LI-REMOTE
#LI-SS1
We are proud to be an Equal Opportunity Employer and consider all qualified applicants for employment opportunities without regard to race, age, color, religion, gender, national origin, disability, sexual orientation, veteran status or any other category protected by the laws or regulations in the locations where we operate.
California applicants can find a copy of Oportunâs CCPA Notice here:Â https://oportun.com/privacy/california-privacy-notice/.
We will never request personal identifiable information (bank, credit card, etc.) before you are hired. We do not charge you for pre-employment fees such as background checks, training, or equipment. If you think you have been a victim of fraud by someone posing as us, please report your experience to the FBIâs Internet Crime Complaint Center (IC3).
Deploys and manages endpoint detection and identity threat protection platforms, develops detection rules, and investigates security threats across enterprise systems.
CREATIVITY IS OUR SUPERPOWER. Itâs our heritage and itâs also our future. Because we donât just make toys. We create innovative products and experiences that inspire fans, entertain audiences and develop children through play. Mattel is at its best when every member of our team feels respected, included, and heardâwhen everyone can show up as themselves and do their best work every day. We value and share an infinite range of ideas and voices that evolve and broaden our perspectives with a reach that extends into all our brands, partners, and suppliers.
About the Role
The Security Engineer â Endpoint & Identity Threat Protection (EDR / ITP) is responsible for implementing, maintaining, and optimizing advanced endpoint detection and identity threat protection capabilities across Mattelâs global environment. This mid-level role focuses on enhancing detection accuracy, improving response efficiency, and strengthening the organizationâs overall cyber defense posture. The engineer will work closely with cross-functional teams to ensure endpoint and identity protection tools are effectively integrated, monitored, and tuned to safeguard enterprise systems and data from emerging threats.
Roles and Responsibilities
Skills and Qualifications
Required:
Preferred:
Shift Timings:
This position operates during 10:00 â 18:00 PST (22:30 â 06:30 IST), Monday through Friday, with emergency on-call duties as required.
Donât meet every single requirement? At Mattel, we are dedicated to an inclusive workplace and a culture of belonging. If youâre excited about this role but your past experience doesnât align perfectly with every qualification in the job description, we still encourage you to apply. You may be just the right candidate for this or other roles.
How We Work:
We are a purpose driven company aiming to empower generations to explore the wonder of childhood and reach their full potential. We live up to our purpose employing the following behaviors:
Our Approach to Flexible Work:
We embrace a flexible work model designed to empower a culture of growth, optimism, and wellbeing, where every employee can reach their full potential. Combining purposeful in-person collaboration with flexibility, our focus is to optimize performance and drive connection for moments that matter.
Who We Are:
Mattel is a leading global toy and family entertainment company and owner of one of the most iconic brand portfolios in the world. We engage consumers and fans through our franchise brands, including Barbie, Hot Wheels, Fisher-Price, American Girl, Thomas & Friends, UNO, Masters of the Universe, Matchbox, Monster High, MEGA and Polly Pocket, as well as other popular properties that we own or license in partnership with global entertainment companies. Our offerings include toys, content, consumer products, digital and live experiences. Our products are sold in collaboration with the worldâs leading retail and ecommerce companies. Since its founding in 1945, Mattel is proud to be a trusted partner in empowering generations to explore the wonder of childhood and reach their full potential.
Mattelâs award-winning workplace culture has been recognized by Forbes, Fast Company, Newsweek, Great Place to Work, TIME, and more.
Visit us at https://jobs.mattel.com/ and www.instagram.com/MattelCareers.
Mattel is an Equal Opportunity Employer where we want you to bring your authentic self to work every day. We welcome all job seekers, and all applicants will receive consideration for employment.
Videos to watch:
The Culture at Mattel
Corporate Philanthropy
Engineers and optimizes endpoint detection and response (EDR) and identity threat protection platforms to detect, prevent, and respond to security threats across enterprise environments.
CREATIVITY IS OUR SUPERPOWER. Itâs our heritage and itâs also our future. Because we donât just make toys. We create innovative products and experiences that inspire fans, entertain audiences and develop children through play. Mattel is at its best when every member of our team feels respected, included, and heardâwhen everyone can show up as themselves and do their best work every day. We value and share an infinite range of ideas and voices that evolve and broaden our perspectives with a reach that extends into all our brands, partners, and suppliers.
The Team:
About the Role
The Sr Security Engineer â Endpoint & Identity Threat Protection (EDR / ITP) is responsible for engineering, deploying, and optimizing advanced detection and response technologies that safeguard Mattelâs global enterprise. This senior technical role focuses on proactive endpoint detection, response automation, and identity threat protection, helping to strengthen the organizationâs cyber defense posture. The position requires deep technical expertise across endpoint and identity protection technologies, strong collaboration skills, and a commitment to continuous improvement through automation, analytics, and security modernization initiatives.
Roles and Responsibilities
Required:
Preferred:
Shift Timings:
This position operates during 05:00 â 14:00 PST (17:30 â 02:30 IST), Monday through Friday, with emergency on-call duties as required.
Donât meet every single requirement? At Mattel, we are dedicated to an inclusive workplace and a culture of belonging. If youâre excited about this role but your past experience doesnât align perfectly with every qualification in the job description, we still encourage you to apply. You may be just the right candidate for this or other roles.
How We Work:
We are a purpose driven company aiming to empower generations to explore the wonder of childhood and reach their full potential. We live up to our purpose employing the following behaviors:
Our Approach to Flexible Work:
We embrace a flexible work model designed to empower a culture of growth, optimism, and wellbeing, where every employee can reach their full potential. Combining purposeful in-person collaboration with flexibility, our focus is to optimize performance and drive connection for moments that matter.
Who We Are:
Mattel is a leading global toy and family entertainment company and owner of one of the most iconic brand portfolios in the world. We engage consumers and fans through our franchise brands, including Barbie, Hot Wheels, Fisher-Price, American Girl, Thomas & Friends, UNO, Masters of the Universe, Matchbox, Monster High, MEGA and Polly Pocket, as well as other popular properties that we own or license in partnership with global entertainment companies. Our offerings include toys, content, consumer products, digital and live experiences. Our products are sold in collaboration with the worldâs leading retail and ecommerce companies. Since its founding in 1945, Mattel is proud to be a trusted partner in empowering generations to explore the wonder of childhood and reach their full potential.
Mattelâs award-winning workplace culture has been recognized by Forbes, Fast Company, Newsweek, Great Place to Work, TIME, and more.
Visit us at https://jobs.mattel.com/ and www.instagram.com/MattelCareers.
Mattel is an Equal Opportunity Employer where we want you to bring your authentic self to work every day. We welcome all job seekers, and all applicants will receive consideration for employment.
Videos to watch:
The Culture at Mattel
Corporate Philanthropy
Director leading detection engineering and threat hunting teams, setting strategy for enterprise cybersecurity detection capabilities and managing multiple manager-level reports.
Reports to: Chief Security Officer
Location: Remote US
Compensation Range: $220,000 to $240,000 base plus bonus and equity
What We Do:
Cybercrime is growing, and more businesses are getting hit by threats that used to target only the biggest organizations. That pushes defenders like us to operate at the highest level, and it deepens our need for good people who want to make a meaningful impact.
Founded in 2015 by former NSA cyber operators, Huntress is a remote-first team working to make enterprise-grade cybersecurity accessible to businesses of all sizes. We work closely with security teams and service providers protecting complex environments, often without the time or headcount to handle it all. Thatâs why we build our technology in-house and back it with a 24â7 human-led Security Operations Center (SOC). As a result, our platform is never disconnected from the experts who manage it, ensuring our customersâ protection.
Huntress now secures more than 5M endpoints and 11M identities worldwide. Those numbers keep growing because more businesses rely on us to help carry the load and operate with more confidence. Every day, you can see that commitment in how we stand with our customers and how we show up for each other.
We are seeking a strategic leader to own the future of Detection Engineering & Threat Hunting at Huntress. As a Director, you will manage multiple sub-teams (via Managers) and serve as a trusted advisor to the Sr. Dir of Threat Detection and Response.
Your mission is to align the DE&TH function with the broader company strategy. As we scale, you will determine the structural, technological, and budgetary requirements needed to maintain superior detection efficacy. You will own the relationship with the Product organization. Ensuring that our defensive strategy evolves faster than the adversaries we protect against.
What We Offer:
Huntress is committed to creating a culture of inclusivity where every single member of our team is valued, has a voice, and is empowered to come to work every day just as they are.
We do not discriminate based on race, ethnicity, color, ancestry, national origin, religion, sex, sexual orientation, gender identity, disability, veteran status, genetic information, marital status, or any other legally protected status.
We do discriminate against hackers who try to exploit businesses of all sizes.
Accommodations:
If you require reasonable accommodation to complete this application, interview, or pre-employment testing or participate in the employee selection process, please direct your inquiries to accommodations@huntresslabs.com . Please note that non-accommodation requests to this inbox will not receive a response.
Huntress uses artificial intelligence tools to assist in reviewing and evaluating job applications, including resume screening, skills assessment, and candidate matching and comparisons. These AI tools support our human recruiters in the initial review process but do not make final hiring decisions without human involvement. By submitting your application, you acknowledge this use of AI in our recruitment process. Please review our Candidate Privacy Notice for more details on our practices and your data privacy rights.
#BI-Remote
Secures applications and systems for a European fintech payment platform serving small businesses.
Develops and implements application security measures, conducts code reviews and vulnerability assessments, and manages security controls across software systems.
Conducts FedRAMP security and compliance assessments, testing controls and documenting findings against regulatory standards for client cloud environments.
About Coalfire
Coalfire is on a mission to make the world a safer place by solving our clientsâ hardest cybersecurity challenges. We work at the cutting edge of technology to advise, assess, automate, and ultimately help companies navigate the ever-changing cybersecurity landscape. We are headquartered in Chicago, Illinois with offices across the U.S. and U.K., and we support clients around the world.
But thatâs not who we are â thatâs just what we do.
We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team of passionate problem-solvers who are hungry to learn, grow, and make a difference.
Position Summary
This role will work as part of a team assessing the security and compliance of client firms against regulatory and industry requirements and standards, and against security best practice frameworks. The Associate will partner closely with experienced Project Leads and be assigned specific technical segments to provide client-ready deliverables.
The role will facilitate security assessments and possibly other advanced-level Continuous Monitoring Activities within cloud-based environments. To succeed in this position, the Associate will need a strong understanding of technical system security controls and an understanding of the various testing methods utilized to ascertain the effectiveness of those controls.
$53,000 - $92,000 a year
The salary range listed is a reasonable estimate of the compensation range for this role based on national salary averages. The actual salary offer to the successful candidate will be based on job-related education, geographic location, training, licensure and certifications and other factors. You may also be eligible to participate in annual incentive, commission, and/or recognition programs.
Why Youâll Want to Join Us
At Coalfire, youâll find the support you need to thrive personally and professionally. In many cases, we provide a flexible work model that empowers you to choose when and where youâll work most effectively â whether youâre at home or an office.
Regardless of location, youâll experience a company that prioritizes connection and wellbeing and be part of a team where people care about each other and our communities. Youâll have opportunities to join employee resource groups, participate in in-person and virtual events, and more. And youâll enjoy competitive perks and benefits to support you and your family, like paid parental leave, flexible time off, certification and training reimbursement, digital mental health and wellbeing support membership, and comprehensive insurance options.
At Coalfire, equal opportunity and pay equity is integral to the way we do business. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Coalfire is committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. To request reasonable accommodation to participate in the job application or interview process, contact our Human Resources team at [email protected].
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Leads FedRAMP security assessments and audits for clients, develops compliance reports, and mentors junior team members on cybersecurity frameworks and best practices.
About Coalfire
Coalfire is on a mission to make the world a safer place by solving our clientsâ hardest cybersecurity challenges. We work at the cutting edge of technology to advise, assess, automate, and ultimately help companies navigate the ever-changing cybersecurity landscape. We are headquartered in Chicago, Illinois with offices across the U.S. and U.K., and we support clients around the world.
But thatâs not who we are â thatâs just what we do.
We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team of passionate problem-solvers who are hungry to learn, grow, and make a difference.
Position Summary
The Security Consultant will work as part of a team assessing the security and compliance of client firms against regulatory and industry requirements and standards, and against security best practice frameworks. This role will have a strong understanding of framework requirements, perform audit/assessments, and develop reports for clients. They will work closely with Project Managers, Senior Managers, Directors and other Delivery team members to effectively manage project timelines and deliverables.
Must have an active CISSP and one of the following certifications:
$86,000 - $148,000 a year
The salary range listed is a reasonable estimate of the compensation range for this role based on national salary averages. The actual salary offer to the successful candidate will be based on job-related education, geographic location, training, licensure and certifications and other factors. You may also be eligible to participate in annual incentive, commission, and/or recognition programs.
Why Youâll Want to Join Us
At Coalfire, youâll find the support you need to thrive personally and professionally. In many cases, we provide a flexible work model that empowers you to choose when and where youâll work most effectively â whether youâre at home or an office.
Regardless of location, youâll experience a company that prioritizes connection and wellbeing and be part of a team where people care about each other and our communities. Youâll have opportunities to join employee resource groups, participate in in-person and virtual events, and more. And youâll enjoy competitive perks and benefits to support you and your family, like paid parental leave, flexible time off, certification and training reimbursement, digital mental health and wellbeing support membership, and comprehensive insurance options.
At Coalfire, equal opportunity and pay equity is integral to the way we do business. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Coalfire is committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. To request reasonable accommodation to participate in the job application or interview process, contact our Human Resources team at [email protected].
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Leads FedRAMP and cybersecurity compliance assessments for clients, develops audit reports, and mentors junior consultants on security frameworks and best practices.
About Coalfire
Coalfire is on a mission to make the world a safer place by solving our clientsâ hardest cybersecurity challenges. We work at the cutting edge of technology to advise, assess, automate, and ultimately help companies navigate the ever-changing cybersecurity landscape. We are headquartered in Chicago, Illinois with offices across the U.S. and U.K., and we support clients around the world.
But thatâs not who we are â thatâs just what we do.
We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team of passionate problem-solvers who are hungry to learn, grow, and make a difference.
Position Summary
The Security Consultant will work as part of a team assessing the security and compliance of client firms against regulatory and industry requirements and standards, and against security best practice frameworks. This role will have a strong understanding of framework requirements, perform audit/assessments, and develop reports for clients. They will work closely with Project Managers, Senior Managers, Directors and other Delivery team members to effectively manage project timelines and deliverables.
Must have an active CISSP and one of the following certifications:
$86,000 - $148,000 a year
The salary range listed is a reasonable estimate of the compensation range for this role based on national salary averages. The actual salary offer to the successful candidate will be based on job-related education, geographic location, training, licensure and certifications and other factors. You may also be eligible to participate in annual incentive, commission, and/or recognition programs.
Why Youâll Want to Join Us
At Coalfire, youâll find the support you need to thrive personally and professionally. In many cases, we provide a flexible work model that empowers you to choose when and where youâll work most effectively â whether youâre at home or an office.
Regardless of location, youâll experience a company that prioritizes connection and wellbeing and be part of a team where people care about each other and our communities. Youâll have opportunities to join employee resource groups, participate in in-person and virtual events, and more. And youâll enjoy competitive perks and benefits to support you and your family, like paid parental leave, flexible time off, certification and training reimbursement, digital mental health and wellbeing support membership, and comprehensive insurance options.
At Coalfire, equal opportunity and pay equity is integral to the way we do business. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Coalfire is committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. To request reasonable accommodation to participate in the job application or interview process, contact our Human Resources team at [email protected].
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Senior consultant leads FedRAMP and security compliance assessments, performs audits against regulatory frameworks, and develops recommendations to improve client security posture.
About Coalfire
Coalfire is on a mission to make the world a safer place by solving our clientsâ hardest cybersecurity challenges. We work at the cutting edge of technology to advise, assess, automate, and ultimately help companies navigate the ever-changing cybersecurity landscape. We are headquartered in Chicago, Illinois with offices across the U.S. and U.K., and we support clients around the world.
But thatâs not who we are â thatâs just what we do.
We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team of passionate problem-solvers who are hungry to learn, grow, and make a difference.
Position Summary
The Security Consultant will work as part of a team assessing the security and compliance of client firms against regulatory and industry requirements and standards, and against security best practice frameworks. This role will have a strong understanding of framework requirements, perform audit/assessments, and develop reports for clients. They will work closely with Project Managers, Senior Managers, Directors and other Delivery team members to effectively manage project timelines and deliverables.
Must have an active CISSP and one of the following certifications:
$86,000 - $148,000 a year
The salary range listed is a reasonable estimate of the compensation range for this role based on national salary averages. The actual salary offer to the successful candidate will be based on job-related education, geographic location, training, licensure and certifications and other factors. You may also be eligible to participate in annual incentive, commission, and/or recognition programs.
Why Youâll Want to Join Us
At Coalfire, youâll find the support you need to thrive personally and professionally. In many cases, we provide a flexible work model that empowers you to choose when and where youâll work most effectively â whether youâre at home or an office.
Regardless of location, youâll experience a company that prioritizes connection and wellbeing and be part of a team where people care about each other and our communities. Youâll have opportunities to join employee resource groups, participate in in-person and virtual events, and more. And youâll enjoy competitive perks and benefits to support you and your family, like paid parental leave, flexible time off, certification and training reimbursement, digital mental health and wellbeing support membership, and comprehensive insurance options.
At Coalfire, equal opportunity and pay equity is integral to the way we do business. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Coalfire is committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. To request reasonable accommodation to participate in the job application or interview process, contact our Human Resources team at [email protected].
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Leads platform security strategy and Risk Management Framework (RMF) implementation for a national security-focused tech company.
Leads Figma's security operations program, managing incident detection, response workflows, SIEM/SOAR platforms, and threat intelligence capabilities across the organization.
Figma is growing our team of passionate creatives and builders on a mission to make design accessible to all. Figmaâs platform helps teams bring ideas to lifeâwhether youâre brainstorming, creating a prototype, translating designs into code, or iterating with AI. From idea to product, Figma empowers teams to streamline workflows, move faster, and work together in real time from anywhere in the world. If youâre excited to shape the future of design and collaboration, join us!
Figmaâs Security team is growing, and weâre looking for a Security Operations Manager to lead the strategy and execution of our security operations program. In this role, youâll build and scale the systems, processes, and tooling that help protect Figma and our community. Youâll partner closely with Security Engineering, Platform Security, IT, GRC, and Legal to strengthen our detection and response capabilities, improve operational resilience, and help shape the future of our DART and SOC functions.
This is a full time role that can be held from one of our US hubs or remotely in the United States.
At Figma, one of our values is Grow as you go. We believe in hiring smart, curious people who are excited to learn and develop their skills. If youâre excited about this role but your past experience doesnât align perfectly with the points outlined in the job description, we encourage you to apply anyways. You may be just the right candidate for this or other roles.
Pay Transparency Disclosure
If based in Figmaâs San Francisco or New York hub offices, this role has the annual base salary range stated below.
Job level and actual compensation will be decided based on factors including, but not limited to, individual qualifications objectively assessed during the interview process (including skills and prior relevant experience, potential impact, and scope of role), market demands, and specific work location. The listed range is a guideline, and the range for this role may be modified. For roles that are available to be filled remotely, the pay range is localized according to employee work location by a factor of between 80% and 100% of range. Please discuss your specific work location with your recruiter for more information.
Figma offers equity to employees, as well a competitive package of additional benefits, including health, dental & vision, retirement with company contribution, parental leave & reproductive or family planning support, mental health & wellness benefits, generous PTO, company recharge days, a learning & development stipend, a work from home stipend, and cell phone reimbursement. Figma also offers sales incentive pay for most sales roles and an annual bonus plan for eligible non-sales roles. Figmaâs compensation and benefits are subject to change and may be modified in the future.
Annual Base Salary Range:
$185,000â$296,000 USD
At Figma we celebrate and support our differences. We know employing a team rich in diverse thoughts, experiences, and opinions allows our employees, our product and our community to flourish. Figma is an equal opportunity workplace - we are dedicated to equal employment opportunities regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity/expression, veteran status , or any other characteristic protected by law. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements.
We will work to ensure individuals with disabilities are provided reasonable accommodation to apply for a role, participate in the interview process, perform essential job functions, and receive other benefits and privileges of employment. If you require accommodation, please reach out to accommodations-ext@figma.com. These modifications enable an individual with a disability to have an equal opportunity not only to get a job, but successfully perform their job tasks to the same extent as people without disabilities.
Examples of accommodations include but are not limited to:
To ensure the integrity of our hiring process and facilitate a more personal connection, we require all candidates keep their cameras on during video interviews. Additionally, if hired you will be required to attend in person onboarding.
By applying for this job, the candidate acknowledges and agrees that any personal data contained in their application or supporting materials will be processed in accordance with Figmaâs Candidate Privacy Notice.
Build and maintain governance, risk, and compliance programs including audit management, policy development, and security risk frameworks across the organization.
Figma is growing our team of passionate creatives and builders on a mission to make design accessible to all. Figmaâs platform helps teams bring ideas to lifeâwhether youâre brainstorming, creating a prototype, translating designs into code, or iterating with AI. From idea to product, Figma empowers teams to streamline workflows, move faster, and work together in real time from anywhere in the world. If youâre excited to shape the future of design and collaboration, join us!
Figmaâs GRC team helps build and maintain trust with our users, regulators, business partners, and the organizations that rely on Figma every day. We partner across the company to strengthen security, manage risk, maintain compliance, and scale the programs that support our continued growth.
Weâre growing our team and looking for security, risk, and compliance professionals across several disciplines. Whether your expertise is in compliance, risk management, governance, GRC tooling, or customer trust, youâll have the opportunity to build programs, improve processes, and help shape how Figma scales security and trust.
Roles we hire for on this team:
This is a full time role that can be held from one of our US hubs or remotely in the United States.
Weâd love to hear from you if you have:
While itâs not required, itâs an added plus if you also have:
At Figma, one of our values is Grow as you go. We believe in hiring smart, curious people who are excited to learn and develop their skills. If youâre excited about this role but your past experience doesnât align perfectly with the points outlined in the job description, we encourage you to apply anyways. You may be just the right candidate for this or other roles.
Pay Transparency Disclosure
If based in Figmaâs San Francisco or New York hub offices, this role has the annual base salary range stated below.
Job level and actual compensation will be decided based on factors including, but not limited to, individual qualifications objectively assessed during the interview process (including skills and prior relevant experience, potential impact, and scope of role), market demands, and specific work location. The listed range is a guideline, and the range for this role may be modified. For roles that are available to be filled remotely, the pay range is localized according to employee work location by a factor of between 80% and 100% of range. Please discuss your specific work location with your recruiter for more information.
Figma offers equity to employees, as well a competitive package of additional benefits, including health, dental & vision, retirement with company contribution, parental leave & reproductive or family planning support, mental health & wellness benefits, generous PTO, company recharge days, a learning & development stipend, a work from home stipend, and cell phone reimbursement. Figma also offers sales incentive pay for most sales roles and an annual bonus plan for eligible non-sales roles. Figmaâs compensation and benefits are subject to change and may be modified in the future.
Annual Base Salary Range:
$153,000â$296,000 USD
At Figma we celebrate and support our differences. We know employing a team rich in diverse thoughts, experiences, and opinions allows our employees, our product and our community to flourish. Figma is an equal opportunity workplace - we are dedicated to equal employment opportunities regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity/expression, veteran status , or any other characteristic protected by law. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements.
We will work to ensure individuals with disabilities are provided reasonable accommodation to apply for a role, participate in the interview process, perform essential job functions, and receive other benefits and privileges of employment. If you require accommodation, please reach out to accommodations-ext@figma.com. These modifications enable an individual with a disability to have an equal opportunity not only to get a job, but successfully perform their job tasks to the same extent as people without disabilities.
Examples of accommodations include but are not limited to:
To ensure the integrity of our hiring process and facilitate a more personal connection, we require all candidates keep their cameras on during video interviews. Additionally, if hired you will be required to attend in person onboarding.
By applying for this job, the candidate acknowledges and agrees that any personal data contained in their application or supporting materials will be processed in accordance with Figmaâs Candidate Privacy Notice.
Leads security operations strategy, incident response programs, and SOC/DART functions while building detection systems and managing cross-functional security initiatives.
Figma is growing our team of passionate creatives and builders on a mission to make design accessible to all. Figmaâs platform helps teams bring ideas to lifeâwhether youâre brainstorming, creating a prototype, translating designs into code, or iterating with AI. From idea to product, Figma empowers teams to streamline workflows, move faster, and work together in real time from anywhere in the world. If youâre excited to shape the future of design and collaboration, join us!
Figmaâs Security team is growing, and weâre looking for a Security Operations Manager to lead the strategy and execution of our security operations program. In this role, youâll build and scale the systems, processes, and tooling that help protect Figma and our community. Youâll partner closely with Security Engineering, Platform Security, IT, GRC, and Legal to strengthen our detection and response capabilities, improve operational resilience, and help shape the future of our DART and SOC functions.
This is a full time role that can be held from one of our US hubs or remotely in the United States.
At Figma, one of our values is Grow as you go. We believe in hiring smart, curious people who are excited to learn and develop their skills. If youâre excited about this role but your past experience doesnât align perfectly with the points outlined in the job description, we encourage you to apply anyways. You may be just the right candidate for this or other roles.
Pay Transparency Disclosure
If based in Figmaâs San Francisco or New York hub offices, this role has the annual base salary range stated below.
Job level and actual compensation will be decided based on factors including, but not limited to, individual qualifications objectively assessed during the interview process (including skills and prior relevant experience, potential impact, and scope of role), market demands, and specific work location. The listed range is a guideline, and the range for this role may be modified. For roles that are available to be filled remotely, the pay range is localized according to employee work location by a factor of between 80% and 100% of range. Please discuss your specific work location with your recruiter for more information.
Figma offers equity to employees, as well a competitive package of additional benefits, including health, dental & vision, retirement with company contribution, parental leave & reproductive or family planning support, mental health & wellness benefits, generous PTO, company recharge days, a learning & development stipend, a work from home stipend, and cell phone reimbursement. Figma also offers sales incentive pay for most sales roles and an annual bonus plan for eligible non-sales roles. Figmaâs compensation and benefits are subject to change and may be modified in the future.
Annual Base Salary Range:
$185,000â$296,000 USD
At Figma we celebrate and support our differences. We know employing a team rich in diverse thoughts, experiences, and opinions allows our employees, our product and our community to flourish. Figma is an equal opportunity workplace - we are dedicated to equal employment opportunities regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity/expression, veteran status , or any other characteristic protected by law. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements.
We will work to ensure individuals with disabilities are provided reasonable accommodation to apply for a role, participate in the interview process, perform essential job functions, and receive other benefits and privileges of employment. If you require accommodation, please reach out to accommodations-ext@figma.com. These modifications enable an individual with a disability to have an equal opportunity not only to get a job, but successfully perform their job tasks to the same extent as people without disabilities.
Examples of accommodations include but are not limited to:
To ensure the integrity of our hiring process and facilitate a more personal connection, we require all candidates keep their cameras on during video interviews. Additionally, if hired you will be required to attend in person onboarding.
By applying for this job, the candidate acknowledges and agrees that any personal data contained in their application or supporting materials will be processed in accordance with Figmaâs Candidate Privacy Notice.
Build and maintain compliance, risk management, governance, and security programs across multiple disciplines including policy management, audit readiness, and customer trust initiatives.
Figma is growing our team of passionate creatives and builders on a mission to make design accessible to all. Figmaâs platform helps teams bring ideas to lifeâwhether youâre brainstorming, creating a prototype, translating designs into code, or iterating with AI. From idea to product, Figma empowers teams to streamline workflows, move faster, and work together in real time from anywhere in the world. If youâre excited to shape the future of design and collaboration, join us!
Figmaâs GRC team helps build and maintain trust with our users, regulators, business partners, and the organizations that rely on Figma every day. We partner across the company to strengthen security, manage risk, maintain compliance, and scale the programs that support our continued growth.
Weâre growing our team and looking for security, risk, and compliance professionals across several disciplines. Whether your expertise is in compliance, risk management, governance, GRC tooling, or customer trust, youâll have the opportunity to build programs, improve processes, and help shape how Figma scales security and trust.
Roles we hire for on this team:
This is a full time role that can be held from one of our US hubs or remotely in the United States.
Weâd love to hear from you if you have:
While itâs not required, itâs an added plus if you also have:
At Figma, one of our values is Grow as you go. We believe in hiring smart, curious people who are excited to learn and develop their skills. If youâre excited about this role but your past experience doesnât align perfectly with the points outlined in the job description, we encourage you to apply anyways. You may be just the right candidate for this or other roles.
Pay Transparency Disclosure
If based in Figmaâs San Francisco or New York hub offices, this role has the annual base salary range stated below.
Job level and actual compensation will be decided based on factors including, but not limited to, individual qualifications objectively assessed during the interview process (including skills and prior relevant experience, potential impact, and scope of role), market demands, and specific work location. The listed range is a guideline, and the range for this role may be modified. For roles that are available to be filled remotely, the pay range is localized according to employee work location by a factor of between 80% and 100% of range. Please discuss your specific work location with your recruiter for more information.
Figma offers equity to employees, as well a competitive package of additional benefits, including health, dental & vision, retirement with company contribution, parental leave & reproductive or family planning support, mental health & wellness benefits, generous PTO, company recharge days, a learning & development stipend, a work from home stipend, and cell phone reimbursement. Figma also offers sales incentive pay for most sales roles and an annual bonus plan for eligible non-sales roles. Figmaâs compensation and benefits are subject to change and may be modified in the future.
Annual Base Salary Range:
$153,000â$296,000 USD
At Figma we celebrate and support our differences. We know employing a team rich in diverse thoughts, experiences, and opinions allows our employees, our product and our community to flourish. Figma is an equal opportunity workplace - we are dedicated to equal employment opportunities regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity/expression, veteran status , or any other characteristic protected by law. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements.
We will work to ensure individuals with disabilities are provided reasonable accommodation to apply for a role, participate in the interview process, perform essential job functions, and receive other benefits and privileges of employment. If you require accommodation, please reach out to accommodations-ext@figma.com. These modifications enable an individual with a disability to have an equal opportunity not only to get a job, but successfully perform their job tasks to the same extent as people without disabilities.
Examples of accommodations include but are not limited to:
To ensure the integrity of our hiring process and facilitate a more personal connection, we require all candidates keep their cameras on during video interviews. Additionally, if hired you will be required to attend in person onboarding.
By applying for this job, the candidate acknowledges and agrees that any personal data contained in their application or supporting materials will be processed in accordance with Figmaâs Candidate Privacy Notice.
Manages customer security reviews, coordinates due diligence requests, and serves as a security subject matter expert to MongoDB's field teams and customers.
MongoDBâs Security Assurance team is on a mission to make MongoDB one of the worldâs most trusted technology vendors. We are doing this in two ways. First, we provide customers with the clear, concise and accurate information about the security of our products that customers require to use our products. Second, we serve as trusted security SMEs to MongoDBâs field teams.
The InfoSec Analyst I is an independent contributor role. This role is vital to the Security Assurance teamâs mission and is responsible for coordinating completion of customer due diligence reviews as well as helping MongoDBâs field personnel answer complex customer security questions.
We are looking to speak to candidates who are based in Dublin for our hybrid working model.
MongoDB is built for change, empowering our customers and our people to innovate at the speed of the market. We have redefined the data platformbase for the AI era, enabling buildersinnovators to create, transform, and disrupt industries with software. MongoDBâs unified database platform, the most widely available, globally distributed data platformbase on the market, helps organizations modernize legacy workloads, embrace innovation, and unleash AI. Our cloud-native platform, MongoDB Atlas, is the only globally distributed, multi-cloud data platformbase and is available across AWS, Google Cloud, and Microsoft Azure.
With offices worldwide and over 670,000 customers, including 75% of the Fortune 100 and AI-native startups, relying on MongoDB for their most important applications, weâre powering the next era of software.
Our compass at MongoDB is our Leadership Commitment, guiding how and why we make decisions, show up for each other, and win. Itâs what makes us MongoDB.
To drive the personal growth and business impact of our employees, weâre committed to developing a supportive and enriching culture for everyone. From employee affinity groups, to fertility assistance and a generous parental leave policy, we value our employeesâ wellbeing and want to support them along every step of their professional and personal journeys. Learn more about what itâs like to work at MongoDB, and help us make an impact on the world!
MongoDB is committed to providing any necessary accommodations for individuals with disabilities within our application and interview process. To request an accommodation due to a disability, please inform your recruiter.
MongoDB is an equal opportunities employer.
Req ID: 2273456141
L3 SOC analyst leads incident detection, investigation, and response to complex cybersecurity threats while coordinating cross-functional teams.
About ProArch:
At ProArch, we partner with businesses around the world to turn big ideas into better outcomes through IT services that span cybersecurity, cloud, data, AI, and app development.
Weâre 400+ team members strong across 3 countries (we call ourselves ProArchians)âand hereâs what connects us all:
Whatâs it like to work here?
At ProArch, youâll be part of teams that design and deliver technology solutions solving real business challenges for our clients. With services spanning AI, Data, Application Development, Cybersecurity, Cloud & Infrastructure, and Industry Solutions, your work may involve building intelligent applications, securing businessâcritical systems, or supporting cloud migrations and infrastructure modernization.
Every role here contributes to shaping outcomes for global clients and driving meaningful impact. Youâll collaborate with experts across data, AI, engineering, cloud, cybersecurity, and infrastructureâsolving complex problems with creativity, precision, and purpose. Youâll join a culture rooted in technology, curiosity, and continuous learning. A place where we move fast, trust you to make an impact, encourage innovation, and support your growth.
About Position:
At ProArch, a leader in IT security consulting with presence in the US, UK, and India, we are looking for a skilled L3 SOC Analyst / Incident Response Analyst to join our Security Operations Center (SOC) team. In this critical role, you will be responsible for advanced incident detection, investigation, and response to complex cybersecurity threats. Leveraging your extensive experience and expertise, you will lead incident response activities, perform deep-dive analysis, and coordinate with cross-functional teams to mitigate risks and strengthen our security posture. If you thrive in a dynamic, fast-paced environment and are passionate about defending organizations against sophisticated cyber threats, this position is ideal for you.Role Summary
ProArch are seeking a highly skilled and technically strong L3 SOC Analyst / Incident Response Analyst to operate within a Managed Security Services Provider (MSSP) environment, supporting multiple customer environments across diverse industries.
This role is heavily focused on:
The ideal candidate combines strong incident response expertise, deep Microsoft security platform knowledge, hands-on detection engineering capability, and SOC automation experience within a fast-paced MSSP environment.
This is not a traditional alert-monitoring SOC Analyst role. The position requires strong investigative, analytical, and response-oriented cybersecurity capabilities.
Key Responsibilities
1. Incident Response & Threat Investigation
⢠Lead and support advanced security incident investigations across multiple customer environments
Perform:
Investigate and respond to:
Account compromise incidents
Business Email Compromise (BEC)
Malware and ransomware activity
Privilege escalation
Lateral movement activity
Suspicious cloud and identity-based attacks
Advanced phishing and social engineering campaigns
Coordinate containment, remediation, and recovery activities with customer and internal teams
Support high-severity incident escalation handling and response coordination
Provide detailed investigation findings, timelines, impact assessments, and response recommendations
Conduct proactive threat hunting and threat validation activities where required
Support digital forensics and evidence collection activities when applicable
2. Detection Engineering & SIEM Operations
Design, develop, and maintain advanced detection rules across:
Develop and optimize:
Perform:
Detection tuning
False positive reduction
Behavioral baselining
Threat-based detection improvements
Build and maintain reusable detection content and query libraries
Support proactive detection engineering initiatives aligned with emerging threats and attacker techniques
Leverage threat intelligence and MITRE ATT&CK mapping to improve detection coverage
3. SOC Automation & SOAR Engineering
Design and implement SOC automation workflows using:
Build workflows for:
Alert enrichment
Incident routing
Automated containment actions
Threat intelligence enrichment
Ticket synchronization
Investigation acceleration
Develop scalable automation frameworks to improve SOC operational efficiency
Support continuous optimization of SOC workflows and automation coverage
Create automation standards and reusable workflow templates across customer environments
4. Microsoft Security Platform Operations
Provide hands-on operational support, investigation, tuning, administration, and engineering for:
5. AI Security & Modern Threat Operations
Support detection and response activities related to:
AI-orchestrated attacks
Identity-based attacks
Cloud-native threats
Advanced phishing and social engineering campaigns
Leverage AI-assisted SOC operations and automation capabilities where applicable
Support modern detection strategies aligned with evolving attacker techniques
Evaluate opportunities to integrate AI-driven efficiencies into detection, investigation, and response workflows
6. Client & Operational Support
Participate in customer incident discussions and escalation calls when required
Support onboarding of new customer environments and security integrations
Maintain:
Investigation playbooks
SOPs
Workflow documentation
Operational runbooks
Detection documentation
Collaborate closely with:
SOC Operations
Security Engineering
Vendors
Consulting teams
Customer stakeholders
Support operational improvement initiatives across SOC and DFIR functions
Required Qualifications
Education
Experience
Strong hands-on experience in:
Incident Response
Threat Investigation
SOC Operations
Detection Engineering
DFIR activities
Prior Incident Response Analyst experience is highly preferred
Experience working within MSSP environments preferred
Experience supporting or collaborating with US-based teams/vendors preferred
Proven hands-on experience with SOAR platforms in enterprise or MSSP environments
Strong experience designing and implementing SOC automation workflows from scratch
Experience supporting enterprise Security Operations Center (SOC) environments
Experience with detection engineering and SIEM rule development
Required Technical Skills
Security Platforms & Technologies
Strong hands-on experience with:
Strong experience creating:
Experience with:
Understanding of:
MITRE ATT&CK
Scripting & Technical Skills
Preferred experience with:
Preferred Certifications
Soft Skills & Work Style
Working Model
What Success Looks Like
Life @ ProArch
Designs and implements SOAR automation solutions for SOC operations, optimizing incident response workflows and security integrations in a managed security services environment.
About ProArch:
At ProArch, we partner with businesses around the world to turn big ideas into better outcomes through IT services that span cybersecurity, cloud, data, AI, and app development.
Weâre 400+ team members strong across 3 countries (we call ourselves ProArchians)âand hereâs what connects us all:
Whatâs it like to work here?
At ProArch, youâll be part of teams that design and deliver technology solutions solving real business challenges for our clients. With services spanning AI, Data, Application Development, Cybersecurity, Cloud & Infrastructure, and Industry Solutions, your work may involve building intelligent applications, securing businessâcritical systems, or supporting cloud migrations and infrastructure modernization.
Every role here contributes to shaping outcomes for global clients and driving meaningful impact. Youâll collaborate with experts across data, AI, engineering, cloud, cybersecurity, and infrastructureâsolving complex problems with creativity, precision, and purpose. Youâll join a culture rooted in technology, curiosity, and continuous learning. A place where we move fast, trust you to make an impact, encourage innovation, and support your growth.
Position Overview
ProArch IT Solutions is seeking a highly motivated and technically skilled Security / SOAR Automation Engineer to join our global cybersecurity operations team supporting a fast-paced Managed Security Services Provider (MSSP) environment. The ideal candidate will possess strong hands-on experience in cybersecurity automation, SOAR platform engineering, SOC workflow orchestration, and security integrations across modern security ecosystems.
This role is heavily focused on designing, implementing, optimizing, and scaling SOC automation capabilities to improve operational efficiency, incident response, alert enrichment, triage automation, threat intelligence utilization, and AI-driven security operations enhancements.
The Engineer will work closely with SOC Operations, Security Engineering, Security Consulting, and Leadership teams to deliver automation initiatives and operational improvements while supporting a globally distributed security environment.
This is a permanently remote opportunity for candidates based in India, aligned primarily to USA Eastern Time (ET) business hours, with flexibility depending on operational requirements.
Key Responsibilities:
SOAR Engineering & Automation
Design, develop, implement, and maintain SOAR playbooks and automation workflows for SOC operations.
Build scalable security orchestration workflows for:
Alert triage
Automated enrichment
Threat intelligence correlation
Incident response
Containment workflows
Identity-based investigations
Case management
Reporting automation
Reporting automation
Implement and maintain integrations between SOAR platforms and various security technologies using APIs, webhooks, SDKs, and custom connectors.
Develop automation logic to improve SOC efficiency, reduce analyst fatigue, and accelerate Mean Time to Respond (MTTR) and Mean Time to Resolve.
Support SOAR platform lifecycle management including upgrades, change management, testing, governance, RBAC, and operational maintenance.
Assist with SOAR platform administration, identity & access management, and environment hardening.
Security Platform Integrations
Hands-on experience integrating and automating workflows involving:
SOC Operations Enhancement
AI & Advanced Security Operations
Collaboration & Project Coordination
Experience
Technical Skills
Strong understanding of:
Preferred Qualifications
Soft Skills & Work Style
Work Schedule & Environment
What Success Looks Like in This Role
Life @ ProArch
Build and operate security scanning infrastructure (SAST, DAST, SCA) across CI/CD pipelines, tune detection rules, and enforce security gates in the software delivery process.
Interactive Brokers Group, Inc. (Nasdaq: IBKR) is a global financial services company headquartered in Greenwich, CT, USA, with offices in over 15 countries. We have been at the forefront of financial innovation for over four decades, known for our cutting-edge technology and client commitment.
IBKR affiliates provide global electronic brokerage services around the clock on stocks, options, futures, currencies, bonds, and funds to clients in over 200 countries and territories. We serve individual investors and institutions, including financial advisors, hedge funds and introducing brokers. Our advanced technology, competitive pricing, and global market help our clients to make the most of their investments.
Barronâs has recognized Interactive Brokers as the #1 online broker for six consecutive years. Join our dynamic, multi-national team and be a part of a company that simplifies and enhances financial opportunities using state-of-the-art technology.
About the Role
We are looking for an Application Security Engineer who lives at the intersection of security and engineering. This is not a policy role â you will be hands-on building, tuning, and scaling the security scanning infrastructure that protects our software delivery pipeline. You will own SAST, DAST, and SCA tooling end to end, drive false positive reduction, and embed security gates directly into CI/CD workflows across engineering teams. A deep understanding of how vulnerabilities actually work â not just what scanners report â is fundamental to success in this role.
The Problem Weâre Solving
We operate in a complex, regulated environment â multiple languages, layered network boundaries, and delivery velocity that cannot be sacrificed for security theater. We are building a scanning program that works in that reality. Tuned, automated, trusted â coverage that is measurable and findings that engineers actually act on. This role exists to solve that problem.
What Youâll Do
Own and operate static, dynamic, and software composition analysis scanning platforms across all engineering pipelines â onboarding new repositories, tuning rulesets, and maintaining coverage metrics
Build and maintain CI/CD security gates that enforce scan policies at pull request, merge, and release stages across engineering workflows
Write custom detection rules tailored to the organizationâs tech stack and threat model â covering vulnerability classes specific to the languages and frameworks in use
Triage and prioritize scan findings with a deep understanding of actual exploitability â distinguish true positives from noise, explain the real-world impact of each finding, and build suppression workflows that reduce false positive rates without creating blind spots
Develop automation to ticket, deduplicate, and route findings to the right engineering teams with enough context for developers to understand and act on them
Integrate dynamic scanning into pre-production environments with authenticated coverage â understanding what attack surface is actually reachable versus what scanners miss
Partner with engineering teams on remediation â provide exploit context, reproduce findings where necessary, and give concrete fix guidance grounded in how the vulnerability actually works
Support software composition analysis and dependency security programs â tying third-party vulnerabilities back to actual reachability and exploitability in the codebase rather than treating every CVE as equal severity
Contribute to the security champions program â help developers understand not just what is flagged but why it matters and how an attacker would use it
Run structured evaluations of new tooling and drive buy vs build decisions with documented PoC results
What Weâre Looking For
These areas are the capabilities we are looking for. Strong candidates will not check every box. If you are strong in either of the below, we want to hear from you. Depth in one area with curiosity about other matters more than surface-level familiarity across all of them.
5-7 years in application security, DevSecOps, or a security engineering role with tooling focus
Strong foundational knowledge of how web application vulnerabilities work at a technical level â injection classes, broken authentication patterns, insecure deserialization, XXE, SSRF, IDOR, race conditions, and business logic flaws â not just awareness of their names
Ability to read a scan finding and independently reason about whether it is exploitable in context â understanding data flow, trust boundaries, and what an attacker would actually need to trigger it
Hands-on experience deploying and tuning SAST platforms â writing or modifying rules, understanding AST-based and dataflow analysis, and knowing where static analysis fundamentally cannot reach
Experience integrating security tooling into CI/CD pipelines and enforcing policy at key delivery gates
Proficiency in at least one scripting language â Python or Go strongly preferred â for automation and tooling development
Experience with DAST tooling in authenticated scan configurations â understanding what authenticated coverage requires and how session handling, CSRF tokens, and multi-step flows affect scan fidelity
Familiarity with SCA concepts â dependency graphs, transitive vulnerabilities, license risk, reachability analysis, and SBOM formats including CycloneDX and SPDX
Ability to read and reason about code across multiple languages
Nice to Have
Development background â candidates who have written production code and personally addressed security vulnerabilities in a codebase bring a fundamentally different perspective to this role; they understand why developers make the choices they do, where fixes break things, and how to give remediation guidance that engineers will actually implement
Background that spans both sides of the SDLC â having sat in a developer role before moving into security means stronger partnerships with engineering teams and more credible guidance during code review and triage conversations
Experience writing custom detection logic for organization-specific vulnerability patterns beyond out-of-the-box scanner coverage
\* Depending upon the shifts.
** The benefits package is subject to change at the managementâs discretion.