Create an account for powerful AI tools, award-winning courses, and access to our vibrant community.
Already have an account?
Join 250,000+ professionals and teams at Microsoft, Shopify, and even NASA. đ
Already have an account? Login
Find the best remote jobs. Answer a few questions and we'll deploy a powerful assistant to help you search, create alerts, and more.
1 What roles are you open to?
2 Experience level
3 Work style
Did you know? If memory is enabled, Writing.io can remember your job search preferences and help you to improve your resume, craft customized outreach and more.
Category
Detection engineer who authors and tunes SIEM detection content, optimizes security tooling, and delivers professional services engagements to help customers close coverage gaps and reduce alert noise.
Headquarters: Remote
Are you a detection engineer who wants to bring real depth of expertise into a new and growing function and use it to deliver security excellence to customers? Expel's professional services practice is just getting started, and we're looking for the technical expert who'll deliver the work that gets customers ready to thrive under our co-managed SIEM model. You'll bring hands-on skill to a team that's finding its stride, help it grow, and have a real runway to grow into a lead yourself.
Here's the work. Customers come to us with SIEMs that should be surfacing threats but are instead consuming their teams: ingestion costs climbing year over year, engineers buried in alert noise and broken pipelines, and detection blind spots leaving real gaps. You're the engineer who turns that around: authoring and tuning detection content that satisfies real security use cases, closing coverage gaps, migrating detection logic off legacy platforms, and helping optimize what customers ingest and pay for, so their SIEM becomes a force multiplier again, not a management burden.
And because this function evolves right alongside our customers and the market, the work won't stand still. Expect it to grow into deeper integrations, automated and AI-assisted tooling, and security strategies our customers need next.
This role is remote within the United States.
The base salary range for this role is between $111,900 USD and $162,300 USD + bonus eligibility and equity. While the full salary band reflects our long-term compensation framework, we're primarily targeting candidates between $120,000 and $140,000 based on experience, skills, and market data.
We believe in paying transparently and equitably. Your salary will ultimately be based on factors such as your experience, skills, team equity, and market data. You'll also be eligible for unlimited PTO (which we model and encourage), work location flexibility, up to 24 weeks of parental leave, and really excellent health benefits.
We're only hiring those authorized to work in the United States. We do not currently sponsor immigration visas.
We're an Equal Opportunity Employer: You'll receive consideration for employment without regard to race, sex, color, religion, sexual orientation, gender identity, national origin, protected veteran status, or on the basis of disability.
We'll ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please let us know if you need accommodation of any kind.
#LI-Remote
Salary Range$111,900â$162,300 USDTo apply: https://weworkremotely.com/remote-jobs/expel-managed-siem-detection-engineer
Administers industrial security programs for a cleared defense contractor, ensuring NISPOM compliance and overseeing personnel security, operations security, and visitor control.
Red Cell Partners is an incubation firm building and investing in rapidly scalable technology-led companies that are bringing revolutionary advancements to market in three distinct practice areas: healthcare, cyber, and national security. United by a shared sense of duty and deep belief in the power of innovation, Red Cell is developing powerful tools and solutions to address our Nationâs most pressing problems.
About Defcon AI
RESILIENCE IN THE FACE OF DISRUPTION. Defcon AI is an insights company that leverages artificial intelligence, mathematical optimization, data analytics, and software engineering for resilient optimization of complex systems.
In todayâs dynamically changing world, Defcon AIâs technology aligns outcomes with operational goals, better decision making, and empowers customers to anticipate assess, and mitigate the impacts of disruptions.
About the Role
We are seeking an Industrial Security Analyst / Facility Security Officer (FSO) to support and help scale our security program as DEFCON AIâs classified work continues to grow. This individual will play a key role in maintaining compliance with government security requirements while helping build the processes, controls, and culture needed to support a rapidly growing defense technology company.
This is a hybrid position based in McLean, VA, with an expectation of three days per week in the office.
Position Overview
The Industrial Security Analyst / FSO is responsible for the day-to-day administration and oversight of DEFCON AIâs Industrial Security Program. This role ensures compliance with the National Industrial Security Program Operating Manual (NISPOM), customer requirements, and internal security policies while supporting employees, leadership, and external security partners.
The ideal candidate has experience supporting industrial security programs within a cleared contractor environment and is comfortable operating in a fast-paced organization where security processes continue to evolve and mature.
What Youâll Do
Industrial Security & Compliance
Personnel & Program Security
Classified Information Protection
Security Training & Program Development
Security Systems & Inspection Readiness
Required Qualifications
Bachelorâs degree and 6+ years of industrial security or related experience; OR Masterâs degree and 4+ years; OR Associateâs degree and 8+ years; OR High School diploma and 12+ years of relevant experience
Active U.S. Government Top Secret security clearance and ability to obtain and maintain SCI and SAP access
Strong knowledge of NISPOM (32 CFR Part 117), ICD security requirements, and industrial security compliance standards
Understanding and familiarity of DD-254 implementation requirements including issuing Subcontract DD-254 using NI2
Experience supporting personnel security, classified material control, and compliance programs within a cleared contractor environment
Experience utilizing government security systems such as NISS, DISS, or similar platforms
Strong organizational, communication, and problem-solving skills
Proficiency with Microsoft Office applications, including Word, Excel, PowerPoint, and Outlook
Preferred Qualifications
Why DEFCON AI
At DEFCON AI, youâll help build and scale security capabilities that directly support critical national security missions. Youâll work alongside a mission-driven team developing AI-powered solutions for some of the Department of Warâs most complex operational challenges.
What We Offer:
Salary Range: $120,000-$150,000. This represents the typical salary range for this position based on experience, skills, and other factors.
Our Red Cell Partners Benefits (may differ for each incubation):
For full-time roles
Career track opportunity with potential for rapid advancement with strong performance as the firm grows
100% employer paid, comprehensive health care including medical, dental, and vision for you and your family.
Paid maternity and paternity for 14 weeks at employeesâ normal pay.
Unlimited PTO, with management approval.
Opportunities for professional development and continued learning.
Optional 401K, FSA, and equity incentives available.
Mental health benefits are available through Tara Mind.
Cost effective GLP-1 solutions available through Crux.
Weâre an Equal Opportunity Employer: Youâll receive consideration for employment without regard to race, sex, color, religion, sexual orientation, gender identity, national origin, protected veteran status, or on the basis of disability.
Applicant Data Disclosure
By submitting an application, you acknowledge that Red Cell Partners, LLC (âRed Cellâ) uses third-party service providers to facilitate its recruitment and hiring processes. These providers include applicant tracking systems, candidate verification platforms, and fraud detection tools (collectively, âHiring Platformsâ). Your application materials, including your rĂŠsumĂŠ, cover letter, work samples, responses to application questions, and any other information you submit, may be transmitted to and processed by these Hiring Platforms for the following purposes:
Managing and administering your application throughout the hiring process;
Verifying the accuracy and authenticity of application materials, including by cross-referencing information you provide against publicly available sources and proprietary databases;
Identifying indicators of potentially fraudulent, fabricated, or materially misleading application content, including but not limited to discrepancies between submitted materials and publicly available professional profiles, geographic anomalies, and fabricated work histories.
Applications that are flagged through this process as containing indicators of fraud or material misrepresentation may be declined from further consideration. If you have questions about the status of your application or the evaluation process, please contact talent @redcellpartners.com .
Red Cell requires its Hiring Platform providers to process your information solely for the purposes described above and in accordance with applicable law. Your information will be retained only for as long as necessary to fulfill these purposes and any applicable legal obligations, after which it will be deleted in accordance with Red Cellâs data retention policies.
For more information about how your data is used, please refer to our Privacy Policy and Applicant Privacy Notice.
Analyzes client cybersecurity controls, develops compliance documentation, and assesses vendor security risks using frameworks like NIST CSF and CIS Controls.
If youâre looking to join a winning information technology team and receive outstanding benefits that support your familyâwhile working for a company that takes a people-first approach to businessâwe invite you to explore our Cybersecurity Compliance Analyst position.
Location: San Francisco Bay Area
Hybrid: 2 days in office / 3 days remote per week
Primary Purpose and Function
Xantrion is seeking a Cybersecurity Compliance Analyst to support our Compliance Service offering and internal compliance programs. You will help assess client security controls, develop practical compliance documentation, evaluate vendor cybersecurity risk, and organize evidence that supports client requirements.
This role combines technical IT knowledge with strong analytical and writing skills to support our Client Strategy team across a diverse client base. The team leads client assessments, executive discussions, and remediation planning, while you provide supporting analysis and produce accurate, well-organized deliverables using established templates, standards, and guidance.
Travel: None required.
Roles and Responsibilities
Client Compliance and Documentation
Internal Compliance Support
Position Requirements
Required Qualifications
Preferred Qualifications
Performance Metrics
The Cybersecurity Compliance Analyst performance success will be based on the following criteria:
Physical Demands
Company Policy and Procedure Compliance
When Working Remote
Benefits
Equal Opportunity Employer
Xantrion is an equal opportunity employer that is committed to diversity and inclusion in the workplace. We prohibit discrimination and harassment of any kind based on race, age, color, sex, religion, sexual orientation, national origin, disability, medical condition, genetic information, pregnancy, military or veteran status, or any other protected characteristic as outlined by federal, state, or local laws. All employment is decided on the basis of qualifications, merit, and business needs at the time.
AI Disclosure for Recruitment
We use AI to support our recruiting team, improve the candidate experiences, and allow our teams to spend more time on meaningful candidate interactions. Our use of AI is limited to administrative tasks such as organizing application information and taking or summarizing interview notes. AI does not screen, advance, or reject candidates, and it does not make hiring or any significant decisions. Applications and candidate qualifications are reviewed by our recruiting team, and all decisions about interviews, advancement, offers, and hiring are made by our recruiters and hiring managers.
Audits IT systems and controls for compliance, identifies security vulnerabilities, and ensures adherence to organizational and regulatory standards.
Manages IT security operations and strategies for a globally distributed team across Portugal/Poland regions.
Manages governance, risk, and compliance programs to ensure organizational adherence to regulatory standards and security policies.
Researches and identifies software vulnerabilities in open source code and dependencies to help organizations manage security risks.
Leads privacy and security compliance program, develops policies and controls, manages vendor risk assessments, and embeds privacy/security best practices across products and operations.
About Nanit:
Welcome to Nanit, the high-growth baby tech company that is changing the way parents experience parenthood through the worldâs most advanced baby monitor and parenting products. In 2016, the Nanit baby monitor revolutionized the industry with computer-vision and machine-learning capabilities that helped parents understand their babyâs sleep patterns and allowed them to achieve better sleep quality. Now, the company has become the leader in the connected parenting space, with an incredible customer base of highly-engaged parents who look to Nanit as a source of information and expertise on their parenting journey.
About the Role:
Weâre seeking a highly motivated and detail-oriented privacy and security professional to lead and evolve Nanitâs privacy and security compliance program. Reporting directly to the Chief Legal & Administrative Officer, you will build and operationalize the policies, controls, and processes that protect our customersâ data and keep Nanit ahead of an evolving regulatory landscape. Youâll partner closely with Legal, Product, Engineering, and business teams to embed privacy and security best practices into how Nanit builds and operates.
What Youâll Be Doing:
Who You Are:
Why Youâll Love Working Here:
EEO, Salary and Location:
This role can be offered as either hybrid or fully remote, with a preference for East Coast candidates.
Salary Range: $130,000 to $150,000 targeted salary plus equity, benefits and unlimited PTO. Nanitâs total compensation package includes access to healthcare benefits, a 401(k) plan, short-term and long-term disability coverage, and basic life insurance. Ultimately, in determining your pay, weâll consider your location, experience, and other job-related factors.
We are proud to be an equal opportunity employer. We provide employment opportunities without regard to age, race, color, ancestry, national origin, religion, disability, sex, gender identity or expression, sexual orientation, veteran status, or any other protected class.
Builds detections and monitoring workflows, analyzes threat patterns, and develops automation to protect fintech infrastructure and respond to security incidents.
OnePay is the consumer fintech trusted by millions of Americans to make money better.
Our financial system is broken. High fees, low rates, and too few ways to actually grow your money. Weâre fixing it. And weâre moving fast.
Weâre an all-in-one financial services platform that brings together banking, high-yield savings, credit cards, point-of-sale lending, investing, and crypto in one place. We also partner with employers, HCM providers, gig platforms, and others to deliver embedded financial services to millions of employees and frontline workers.
Weâre backed by Walmart, the worldâs largest retailer, and Ribbit Capital, one of fintechâs most respected investors, giving us rare scale, distribution, and the opportunity to build something truly category-defining.
But what really sets OnePay apart is how we move. Our customers donât have time to wait⌠and neither do we. This place moves fast, and weâre looking for people who are:
Ready to run
Hungry and driven by urgency
Exceptional at what they do, with low ego
Comfortable operating in motion
As a Security and Threat Operations Engineer at OnePay, your work will have a direct impact on protecting our fast-moving fintech environment. You will turn production signals into actionable detection, response, and hardening initiatives, partnering closely with Product Security, Platform Security, and Engineering teams. Your efforts will enable us to proactively identify, monitor, and stop compromised behaviors across OnePayâs products and infrastructure, ensuring the continued safety and trust of our business and customers. You will:
Build and tune detections, alerts, and monitoring workflows across cloud, application, identity, and edge environments.
Review traffic patterns across APIs, authentication flows, and WAF telemetry to identify malicious activity, abuse patterns, and anomalous behavior.
Use AI responsibly as a force multiplier for triage, analysis, and workflow automation, while helping define guardrails for AI-enabled systems.
Help operate OnePayâs vulnerability management program by triaging, prioritizing, and driving remediation for findings from Wiz, vulnerability scanning, and related workflows.
Develop Python-based tooling and automation to improve investigations, enrichment, response, and operational scale.
Partner with Product Security to translate threat models, security reviews, and product risks into production detections and response playbooks.
Investigate security events end to end, including triage, scoping, containment support, and follow-through on remediation.
Support vulnerability management and operational security practices in ways that align with PCI and SOC 2 expectations.
Participate in proactive threat hunting, detection improvement, and a 24x7 security incident response on-call rotation.
5+ years of experience in information security, threat detection, security operations, detection engineering, or incident response, ideally in a cloud-native or product-focused environment.
Strong experience investigating suspicious activity in web, API, authentication, and infrastructure telemetry, with the ability to distinguish attacker behavior from normal production noise.
Demonstrated ability to review traffic and event patterns for signs of malicious activity, fraud, account abuse, credential attacks, reconnaissance, and exploitation attempts.
Strong Python programming skills and the ability to write maintainable code for automation, enrichment, analysis, and security operations tooling.
Experience building and tuning detections in a SIEM or detection platform and working with observability and logging systems such as CloudWatch, Datadog, or similar platforms.
Experience operating or supporting a vulnerability management program, including triage, prioritization, remediation tracking, and stakeholder coordination.
Familiarity with cloud and application security findings from platforms such as Wiz, including CNAPP, runtime, code, and vulnerability scanning use cases.
Experience with at least one major cloud provider, preferably AWS.
Working knowledge of identity and access systems, modern authentication flows, and the security implications of internet-facing applications and APIs.
Strong understanding of threat modeling, risk prioritization, and practical security controls across applications, infrastructure, and cloud environments.
Practical experience using AI tools in security workflows, along with sound judgment about AI-specific risks such as prompt injection, data leakage, excessive tool access, and weak auditability.
Excellent analytical, communication, and cross-functional collaboration skills, especially in environments where security needs to move quickly with product and engineering teams.
Drive and proactivity - everyone here is a builder and executor
We use Node and TypeScript on the server, leveraging the NestJS framework within a microservice-oriented architecture running on Kubernetes and AWS. On the client side, we build and ship product features for iOS, Android, and web platforms using React Native. We also embrace AI-assisted development, so engineers have their choice of Claude Code or Cursor to fit their workflow. While you donât need experience with our exact stack, familiarity with modern software engineering practices will help you ramp up quickly.
Competitive base salary, stock options, and health benefits from Day 1
401(k) plan with company match
Remote-friendly (US), flexible time off (FTO), and opportunities for growth
A high-growth, mission-driven, inclusive culture where your work has real impact
Our process varies by role. Most candidates go through:
AI-assisted initial screen
Interview with Talent Partner
Technical or Hiring Manager Interview
Team Interview
Executive Interview
Offer!
To build technology and products that are used and loved by people and solve real-world problems, we need to build a team with many different perspectives and experiences. We are an equal opportunity employer. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. We encourage candidates from all backgrounds to apply. Applicants in need of special assistance or accommodation during the interview process or in accessing our website may contact us at talent@onepay.com.
Builds detections and monitoring workflows, reviews security telemetry for malicious activity, and develops automation tools to protect fintech infrastructure and customer data.
OnePay is the consumer fintech trusted by millions of Americans to make money better.
Our financial system is broken. High fees, low rates, and too few ways to actually grow your money. Weâre fixing it. And weâre moving fast.
Weâre an all-in-one financial services platform that brings together banking, high-yield savings, credit cards, point-of-sale lending, investing, and crypto in one place. We also partner with employers, HCM providers, gig platforms, and others to deliver embedded financial services to millions of employees and frontline workers.
Weâre backed by Walmart, the worldâs largest retailer, and Ribbit Capital, one of fintechâs most respected investors, giving us rare scale, distribution, and the opportunity to build something truly category-defining.
But what really sets OnePay apart is how we move. Our customers donât have time to wait⌠and neither do we. This place moves fast, and weâre looking for people who are:
Ready to run
Hungry and driven by urgency
Exceptional at what they do, with low ego
Comfortable operating in motion
As a Security and Threat Operations Engineer at OnePay, your work will have a direct impact on protecting our fast-moving fintech environment. You will turn production signals into actionable detection, response, and hardening initiatives, partnering closely with Product Security, Platform Security, and Engineering teams. Your efforts will enable us to proactively identify, monitor, and stop compromised behaviors across OnePayâs products and infrastructure, ensuring the continued safety and trust of our business and customers. You will:
Build and tune detections, alerts, and monitoring workflows across cloud, application, identity, and edge environments.
Review traffic patterns across APIs, authentication flows, and WAF telemetry to identify malicious activity, abuse patterns, and anomalous behavior.
Use AI responsibly as a force multiplier for triage, analysis, and workflow automation, while helping define guardrails for AI-enabled systems.
Help operate OnePayâs vulnerability management program by triaging, prioritizing, and driving remediation for findings from Wiz, vulnerability scanning, and related workflows.
Develop Python-based tooling and automation to improve investigations, enrichment, response, and operational scale.
Partner with Product Security to translate threat models, security reviews, and product risks into production detections and response playbooks.
Investigate security events end to end, including triage, scoping, containment support, and follow-through on remediation.
Support vulnerability management and operational security practices in ways that align with PCI and SOC 2 expectations.
Participate in proactive threat hunting, detection improvement, and a 24x7 security incident response on-call rotation.
5+ years of experience in information security, threat detection, security operations, detection engineering, or incident response, ideally in a cloud-native or product-focused environment.
Strong experience investigating suspicious activity in web, API, authentication, and infrastructure telemetry, with the ability to distinguish attacker behavior from normal production noise.
Demonstrated ability to review traffic and event patterns for signs of malicious activity, fraud, account abuse, credential attacks, reconnaissance, and exploitation attempts.
Strong Python programming skills and the ability to write maintainable code for automation, enrichment, analysis, and security operations tooling.
Experience building and tuning detections in a SIEM or detection platform and working with observability and logging systems such as CloudWatch, Datadog, or similar platforms.
Experience operating or supporting a vulnerability management program, including triage, prioritization, remediation tracking, and stakeholder coordination.
Familiarity with cloud and application security findings from platforms such as Wiz, including CNAPP, runtime, code, and vulnerability scanning use cases.
Experience with at least one major cloud provider, preferably AWS.
Working knowledge of identity and access systems, modern authentication flows, and the security implications of internet-facing applications and APIs.
Strong understanding of threat modeling, risk prioritization, and practical security controls across applications, infrastructure, and cloud environments.
Practical experience using AI tools in security workflows, along with sound judgment about AI-specific risks such as prompt injection, data leakage, excessive tool access, and weak auditability.
Excellent analytical, communication, and cross-functional collaboration skills, especially in environments where security needs to move quickly with product and engineering teams.
Drive and proactivity - everyone here is a builder and executor
We use Node and TypeScript on the server, leveraging the NestJS framework within a microservice-oriented architecture running on Kubernetes and AWS. On the client side, we build and ship product features for iOS, Android, and web platforms using React Native. We also embrace AI-assisted development, so engineers have their choice of Claude Code or Cursor to fit their workflow. While you donât need experience with our exact stack, familiarity with modern software engineering practices will help you ramp up quickly.
Competitive base salary, stock options, and health benefits from Day 1
401(k) plan with company match
Remote-friendly (US), flexible time off (FTO), and opportunities for growth
A high-growth, mission-driven, inclusive culture where your work has real impact
Our process varies by role. Most candidates go through:
AI-assisted initial screen
Interview with Talent Partner
Technical or Hiring Manager Interview
Team Interview
Executive Interview
Offer!
To build technology and products that are used and loved by people and solve real-world problems, we need to build a team with many different perspectives and experiences. We are an equal opportunity employer. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. We encourage candidates from all backgrounds to apply. Applicants in need of special assistance or accommodation during the interview process or in accessing our website may contact us at talent@onepay.com.
Builds detections and monitoring workflows, analyzes threat patterns, and develops automation tooling to identify and respond to security threats across fintech infrastructure.
OnePay is the consumer fintech trusted by millions of Americans to make money better.
Our financial system is broken. High fees, low rates, and too few ways to actually grow your money. Weâre fixing it. And weâre moving fast.
Weâre an all-in-one financial services platform that brings together banking, high-yield savings, credit cards, point-of-sale lending, investing, and crypto in one place. We also partner with employers, HCM providers, gig platforms, and others to deliver embedded financial services to millions of employees and frontline workers.
Weâre backed by Walmart, the worldâs largest retailer, and Ribbit Capital, one of fintechâs most respected investors, giving us rare scale, distribution, and the opportunity to build something truly category-defining.
But what really sets OnePay apart is how we move. Our customers donât have time to wait⌠and neither do we. This place moves fast, and weâre looking for people who are:
Ready to run
Hungry and driven by urgency
Exceptional at what they do, with low ego
Comfortable operating in motion
As a Security and Threat Operations Engineer at OnePay, your work will have a direct impact on protecting our fast-moving fintech environment. You will turn production signals into actionable detection, response, and hardening initiatives, partnering closely with Product Security, Platform Security, and Engineering teams. Your efforts will enable us to proactively identify, monitor, and stop compromised behaviors across OnePayâs products and infrastructure, ensuring the continued safety and trust of our business and customers. You will:
Build and tune detections, alerts, and monitoring workflows across cloud, application, identity, and edge environments.
Review traffic patterns across APIs, authentication flows, and WAF telemetry to identify malicious activity, abuse patterns, and anomalous behavior.
Use AI responsibly as a force multiplier for triage, analysis, and workflow automation, while helping define guardrails for AI-enabled systems.
Help operate OnePayâs vulnerability management program by triaging, prioritizing, and driving remediation for findings from Wiz, vulnerability scanning, and related workflows.
Develop Python-based tooling and automation to improve investigations, enrichment, response, and operational scale.
Partner with Product Security to translate threat models, security reviews, and product risks into production detections and response playbooks.
Investigate security events end to end, including triage, scoping, containment support, and follow-through on remediation.
Support vulnerability management and operational security practices in ways that align with PCI and SOC 2 expectations.
Participate in proactive threat hunting, detection improvement, and a 24x7 security incident response on-call rotation.
5+ years of experience in information security, threat detection, security operations, detection engineering, or incident response, ideally in a cloud-native or product-focused environment.
Strong experience investigating suspicious activity in web, API, authentication, and infrastructure telemetry, with the ability to distinguish attacker behavior from normal production noise.
Demonstrated ability to review traffic and event patterns for signs of malicious activity, fraud, account abuse, credential attacks, reconnaissance, and exploitation attempts.
Strong Python programming skills and the ability to write maintainable code for automation, enrichment, analysis, and security operations tooling.
Experience building and tuning detections in a SIEM or detection platform and working with observability and logging systems such as CloudWatch, Datadog, or similar platforms.
Experience operating or supporting a vulnerability management program, including triage, prioritization, remediation tracking, and stakeholder coordination.
Familiarity with cloud and application security findings from platforms such as Wiz, including CNAPP, runtime, code, and vulnerability scanning use cases.
Experience with at least one major cloud provider, preferably AWS.
Working knowledge of identity and access systems, modern authentication flows, and the security implications of internet-facing applications and APIs.
Strong understanding of threat modeling, risk prioritization, and practical security controls across applications, infrastructure, and cloud environments.
Practical experience using AI tools in security workflows, along with sound judgment about AI-specific risks such as prompt injection, data leakage, excessive tool access, and weak auditability.
Excellent analytical, communication, and cross-functional collaboration skills, especially in environments where security needs to move quickly with product and engineering teams.
Drive and proactivity - everyone here is a builder and executor
We use Node and TypeScript on the server, leveraging the NestJS framework within a microservice-oriented architecture running on Kubernetes and AWS. On the client side, we build and ship product features for iOS, Android, and web platforms using React Native. We also embrace AI-assisted development, so engineers have their choice of Claude Code or Cursor to fit their workflow. While you donât need experience with our exact stack, familiarity with modern software engineering practices will help you ramp up quickly.
Competitive base salary, stock options, and health benefits from Day 1
401(k) plan with company match
Remote-friendly (US), flexible time off (FTO), and opportunities for growth
A high-growth, mission-driven, inclusive culture where your work has real impact
Our process varies by role. Most candidates go through:
AI-assisted initial screen
Interview with Talent Partner
Technical or Hiring Manager Interview
Team Interview
Executive Interview
Offer!
To build technology and products that are used and loved by people and solve real-world problems, we need to build a team with many different perspectives and experiences. We are an equal opportunity employer. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. We encourage candidates from all backgrounds to apply. Applicants in need of special assistance or accommodation during the interview process or in accessing our website may contact us at talent@onepay.com.
Monitor and analyze customer security threats, detect attacks like account takeovers and bot attacks, and provide SOC support for cloud security incidents.
Headquarters: Australia (Remote)
Fastly helps people stay better connected with the things they love. Fastlyâs edge cloud platform enables customers to create great digital experiences quickly, securely, and reliably by processing, serving, and securing our customersâ applications as close to their end-users as possible â at the edge of the Internet. The platform is designed to take advantage of the modern internet, to be programmable, and to support agile software development. Fastlyâs customers include many of the worldâs most prominent companies, including GitHub, Yelp, Paramount, and JetBlue.
We're building a more trustworthy Internet. Come join us.
Threat Detection Analyst - APAC (Japanese Speaking)
Leveraging our growing security product suite, the Threat Detection Analyst role contributes real world security insights to Fastly and our customers as we address Internet-scale threats. Cloud security solutions enable our customers to benefit from extra visibility across the world and expertise from a central team.Â
The Fastly Customer Security Operations Center team at Fastly focuses on operational support of Fastlyâs security products and services. The Threat Detection Analyst role within this team focuses on delivering outstanding security services to our customers, specifically as it pertains to integrating and supporting agent software installed on customer systems. The team works with the security, operations and customer organizations internally to deliver support solutions for security threats faced on the Internet today.
As a 24 x 7 team, SOC analysts are expected to work Friday - Tuesday, with the daily shift being 0000 - 0800 UTC - (9am - 6pm AEST)
What You'll Do
This role within the Fastly Customer Security Operations Center (CSOC) will be responsible for monitoring and analyzing customer activity, with added emphasis on security functions, like identifying account-takeover or Bot Attacks and WAF administration. Much of the focus will be on security and attacks around the application layer working with different web technologies. You will have the opportunity to work on some of the worldâs most scalable distributed systems that handle around 10 million requests per second, as well as the world-class engineers who developed these systems.
In this position, security engineers will be responsible for the following duties:
What We're Looking For
Work Hours:
Work Location(s) & Travel RequirementsÂ
This position is a remote position based out of (locality), with the possibility of becoming a hybrid position as Fastly expands its presence in the region.Â
This position will require travel to the US and Internationally, as required by your role or requested by your manager.
Benefits:
We care about you. Fastly works hard to create a positive environment for our employees, and we think your life outside of work is important too. We support our teams with great benefits that start on the first day of your employment with Fastly. Curious about our offerings?Â
We offer a comprehensive benefits package designed to meet your needs. Our offerings may vary depending on the country where you work and are subject to change.
Why Fastly?
Weâre always looking for humble, sharp, and creative folks to join the Fastly team.
If you think you might be a fit please apply, we would love to hear from you.
Why Fastly?
We have a huge impact. Fastly is a small company with a big reach. Not only do our customers have a tremendous user base, but we also support a growing number of open source projects and initiatives. Outside of code, employees are encouraged to share causes close to their heart with others so we can help lend a supportive hand.
We value diversity. Growing and maintaining our inclusive and diverse team matters to us. We are committed to being a company where our employees feel comfortable bringing their authentic selves to work and have the ability to be successful -- every day.
We are passionate. Fastly is chock full of passionate people and weâre not âone size fits allâ. Fastly employs authors, pilots, skiers, parents (of humans and animals), makeup geeks, coffee connoisseurs, and more. We love employees for who they are and what they are passionate about.
Weâre always looking for humble, sharp, and creative folks to join the Fastly team. If you think you might be a fit please apply! A fully completed application and resume or CV are required when applying.
All job applications must be submitted through our official careers site at www.fastly.com/about/careers. We will never request sensitive information, such as your Social Security number, bank account or credit card information during the application process. All official communication will come from an @fastly.com or @recruiting.fastly.com email address.
Fastly is committed to ensuring equal employment opportunity and to providing employees with a safe and welcoming work environment free of discrimination and harassment. Our employment decisions are based on business needs, job requirements and individual qualifications. All qualified applicants will receive consideration for employment without regard to age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, family or parental status, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable laws, regulations and ordinances.
Consistent with the Americans with Disabilities Act (ADA) and federal or state disability laws, Fastly will provide reasonable accommodations for applicants and employees with disabilities. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact your Recruiter, or the Fastly Employee Relations team at candidateaccommodations@fastly.com or 501-287-4901.Â
Fastly collects and processes personal data submitted by job applicants in accordance with our Privacy Policy. Please see our privacy notice for job applicants.
To apply: https://weworkremotely.com/remote-jobs/fastly-threat-detection-analyst-japanese-english-speaking
Manages technical execution of government compliance programs including FedRAMP, maintains security documentation, and automates compliance monitoring for a cybersecurity SaaS company.
BeyondTrust is a place where you can bring your purpose to life through the work that you do, creating a safer world through our cybersecurity SaaS portfolio.
Our culture of flexibility, trust, and continual learning means you will be recognized for your growth, and for the impact you make on our success. You will be surrounded by people who challenge, support, and inspire you to be the best version of yourself.
The Role
The Government Compliance Technical Specialist is a full-time individual contributor on BeyondTrustâs Trust & Assurance team, reporting to the Director of Trust & Assurance. This role owns day-to-day technical execution of BeyondTrustâs government compliance programs, including FedRAMP Moderate, TX-RAMP, IRAP, and other emerging public-sector frameworks. Responsibilities include continuous monitoring, writing and maintaining compliance documentation, POA&M management, and building automation to support compliance modernization, including FedRAMP 20x. The ability to interpret, define, and design automation for Key Security Indicators (KSIs) is required.
The ideal candidate has run a FedRAMP program end-to-end and can operate with a high degree of autonomy in a fast-paced cybersecurity product environment. They bring technical depth in NIST 800-53 controls, understand cloud compliance boundaries, and can demonstrate technical automation. This role will also support the program management of government compliance workstreams alongside product, security, and engineering teams.
What Youâll Do
What Youâll Bring
Nice To Have
Better Together
Diversity. Inclusion. Theyâre more than just words for us. They are the guiding values of how we build our teams, cultivate leaders, and create a culture where people feel connected.
We take care of our employees so they can take care of our customers. Customers who come from all walks of life just like us. We hire incredible people from diverse backgrounds because when we are different together, we are stronger together.
About Us
BeyondTrust is the global identity security leader protecting Paths to Privilegeâ˘. Our identity-centric approach goes beyond securing privileges and access, empowering organizations with the most effective solution to manage the entire identity attack surface and neutralize threats, whether from external attacks or insiders.
BeyondTrust is leading the charge in transforming identity security to prevent breaches and limit the blast radius of attacks, while creating a superior customer experience and operational efficiencies. We are trusted by 20,000 customers, including 75 of the Fortune 100, and our global ecosystem of partners.
Learn more at www.beyondtrust.com.
#LI-BS1
Designs and operates a vulnerability management program end-to-end, automating processes and driving remediation across products in a regulated environment.
BeyondTrust is a place where you can bring your purpose to life through the work that you do, creating a safer world through our cybersecurity SaaS portfolio.
Our culture of flexibility, trust, and continual learning means you will be recognized for your growth, and for the impact you make on our success. You will be surrounded by people who challenge, support, and inspire you to be the best version of yourself.
The Role
The Vulnerability Manager operates BeyondTrustâs product vulnerability management program end to end. This is an operator role: you design the process, drive the automation that runs it, own the metrics, and are accountable for the answer when leadership asks what our open vulnerability risk is today. The primary focus is vulnerability management for FedRAMP 20x and standing up vulnerability management for new products as they ship. You partner closely with Security Engineering to define the integration requirements, partner with them closely through delivery, and own the operational outcome. The ideal candidate has designed a vulnerability management process inside a regulated environment, uses automation and AI to remove manual work rather than absorbing it, and can hold a remediation conversation with an engineering lead and an evidence conversation with an assessor on the same day. Fully remote, must be North America based.
What Youâll Do
What Youâll Bring
Nice To Have
Better Together
Diversity. Inclusion. Theyâre more than just words for us. They are the guiding values of how we build our teams, cultivate leaders, and create a culture where people feel connected.
We take care of our employees so they can take care of our customers. Customers who come from all walks of life just like us. We hire incredible people from diverse backgrounds because when we are different together, we are stronger together.
About Us
BeyondTrust is the global identity security leader protecting Paths to Privilegeâ˘. Our identity-centric approach goes beyond securing privileges and access, empowering organizations with the most effective solution to manage the entire identity attack surface and neutralize threats, whether from external attacks or insiders.
BeyondTrust is leading the charge in transforming identity security to prevent breaches and limit the blast radius of attacks, while creating a superior customer experience and operational efficiencies. We are trusted by 20,000 customers, including 75 of the Fortune 100, and our global ecosystem of partners.
Learn more at www.beyondtrust.com.
#LI-BS1
Designs and implements security detection systems and incident response procedures to protect company infrastructure and data.
Designs, implements, and maintains cybersecurity systems and infrastructure to protect organizational assets and data from security threats.
Manages SOC 2 Type II compliance, leads ISO 27001 certification, and oversees security controls, risk assessments, and regulatory framework implementation across the organization.
Relocity is reimagining the global mobility experience. We enable enterprises to attract, retain, and engage talent globally. Powered by our AI-driven workforce mobility platform, we bring together local experts and insightful content in our native mobile app to deliver an excellent user experience for people on the move. Our core values drive us to focus on our customers, innovation, integrity, and excellence. Relocity serves hundreds of cities in more than 40 markets across the United States, Europe, and Asia. Learn more at www.relocity.com.
What You Will Do
Relocity is seeking an experienced Security & Compliance Manager to maintain and strengthen our information security, privacy, and data governance programs. Reporting into leadership, you will partner closely with Engineering, Product, Operations, and G&A to keep our systems, processes, and policies aligned with evolving regulatory and security requirements as the company grows.
Our compliance foundation is already established. You will own the ongoing maintenance of our SOC 2 Type II program, lead our ISO 27001 certification effort to completion, and continuously improve our governance and risk management practices. You will use Vanta as our compliance platform to streamline monitoring, evidence collection, and audit readiness.
How You Will Do It
Security & Compliance
Risk & Governance
Cross-Functional Partnership
Data Protection & Awareness
Continuous Improvement
What Will Enable Your Success
Nice to Have
Salary Range: $140,000 - $170,000 + bonus
Relocity is an Equal Opportunity Employer and does not discriminate against any applicant on the basis of race, color, religion/creed, national origin, gender, sex, marital status, age, disability, use of a guide dog or service animal, sexual orientation, military/veteran status, or any other status protected by federal, state, or local law. Relocity will only employ individuals who are legally authorized to work. Any offer of employment is conditioned upon the successful completion of a background investigation.
#LI-Remote
#LI-AC2
Maintains SOC 2 Type II compliance, leads ISO 27001 certification, and manages security controls and risk governance across the organization.
Relocity is reimagining the global mobility experience. We enable enterprises to attract, retain, and engage talent globally. Powered by our AI-driven workforce mobility platform, we bring together local experts and insightful content in our native mobile app to deliver an excellent user experience for people on the move. Our core values drive us to focus on our customers, innovation, integrity, and excellence. Relocity serves hundreds of cities in more than 40 markets across the United States, Europe, and Asia. Learn more at www.relocity.com.
What You Will Do
Relocity is seeking an experienced Security & Compliance Manager to maintain and strengthen our information security, privacy, and data governance programs. Reporting into leadership, you will partner closely with Engineering, Product, Operations, and G&A to keep our systems, processes, and policies aligned with evolving regulatory and security requirements as the company grows.
Our compliance foundation is already established. You will own the ongoing maintenance of our SOC 2 Type II program, lead our ISO 27001 certification effort to completion, and continuously improve our governance and risk management practices. You will use Vanta as our compliance platform to streamline monitoring, evidence collection, and audit readiness.
How You Will Do It
Security & Compliance
Risk & Governance
Cross-Functional Partnership
Data Protection & Awareness
Continuous Improvement
What Will Enable Your Success
Nice to Have
Salary Range: $140,000 - $170,000 + bonus
Relocity is an Equal Opportunity Employer and does not discriminate against any applicant on the basis of race, color, religion/creed, national origin, gender, sex, marital status, age, disability, use of a guide dog or service animal, sexual orientation, military/veteran status, or any other status protected by federal, state, or local law. Relocity will only employ individuals who are legally authorized to work. Any offer of employment is conditioned upon the successful completion of a background investigation.
#LI-Remote
#LI-AC2
Designs, implements, and maintains cloud security infrastructure and protocols to protect systems and data.
Monitors security events, responds to incidents, and maintains security infrastructure for enterprise systems.