<?xml version="1.0" encoding="UTF-8"?>
<source>
  <jobs>
    <job>
      <externalid>b57e8fa5-5e4</externalid>
      <Title>Training as a Specialist in Digital Networking (m/w/d)</Title>
      <Description><![CDATA[<p>Join our team as a Specialist in Digital Networking and contribute to shaping the future of mobility.</p>
<p>As a specialist in digital networking, you will be responsible for conducting vulnerability tests, supporting penetration tests, and participating in vulnerability management. You will also be involved in adapting and maintaining security guidelines and supporting operational technology security.</p>
<p>We offer a dynamic and innovative work environment, opportunities for professional growth, and a competitive salary.</p>
<p>Key responsibilities:</p>
<ul>
<li>Conducting vulnerability tests and penetration tests</li>
<li>Participating in vulnerability management</li>
<li>Adapting and maintaining security guidelines</li>
<li>Supporting operational technology security</li>
</ul>
<p>Requirements:</p>
<ul>
<li>Good academic record</li>
<li>Proficiency in German language (written and spoken)</li>
<li>High learning ability and interest in cybersecurity</li>
<li>Good English language skills</li>
<li>Team and communication skills</li>
<li>Sensitive and structured working style</li>
<li>Strong sense of responsibility</li>
</ul>
<p>Benefits:</p>
<ul>
<li>Competitive salary</li>
<li>Opportunities for professional growth</li>
<li>Dynamic and innovative work environment</li>
</ul>
<p>If you are interested in this opportunity, please submit your application with your resume and cover letter.</p>
<p>Note: This position is also suitable for individuals with disabilities.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>entry</Experiencelevel>
      <Workarrangement>onsite</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>vulnerability testing, penetration testing, vulnerability management, security guidelines, operational technology security</Skills>
      <Category>Engineering</Category>
      <Industry>Automotive</Industry>
      <Employername>AVL Software and Functions GmbH</Employername>
      <Employerlogo>https://logos.yubhub.co/jobs.avl.com.png</Employerlogo>
      <Employerdescription>AVL is a leading technology company in the automotive industry, providing development, simulation, and testing solutions.</Employerdescription>
      <Employerwebsite>https://jobs.avl.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://jobs.avl.com/job/Regensburg-Ausbildung-zum-Fachinformatiker-f%C3%BCr-Digitale-Vernetzung-%28mwd%29/1377487833/</Applyto>
      <Location>Regensburg</Location>
      <Country></Country>
      <Postedate>2026-04-22</Postedate>
    </job>
    <job>
      <externalid>f77c41bb-0ad</externalid>
      <Title>Application Security Engineer</Title>
      <Description><![CDATA[<p>We are seeking an experienced Application Security Engineer to join our team. As a subject matter expert, you will have direct experience in a wide range of security technologies, tools, and methodologies. The role is suited for an experienced Application Security engineer with proven understanding in enterprise security and AI security and will focus on building toolsets and processes to drive adoption of secure practices across the enterprise.</p>
<p>The team fosters a collaborative environment and is building a best-in-class program to partner with the business to protect the Firm’s information and computer systems. Millennium is a complex and robust technical environment and securing the Firm from external and internal threats is a top priority.</p>
<p><strong>Responsibilities</strong></p>
<ul>
<li>Define and implement security guardrails for Generative AI, LLMs, and Agentic frameworks, ensuring safe enterprise adoption.</li>
<li>Conduct specialized threat modeling, red teaming, and risk assessments for AI/ML models (e.g., testing for prompt injection, model theft, and data poisoning).</li>
<li>Lead risk management activities, including application risk assessments, design reviews, and mitigation strategies for IT projects.</li>
<li>Engage throughout the SDLC to identify vulnerabilities, conduct code reviews/penetration testing, and enforce secure coding standards.</li>
<li>Evangelize AppSec and AI security best practices through developer education, training materials, and outreach.</li>
<li>Design robust security architectures and integrate automated security testing (SAST/DAST/SCA) into CI/CD pipelines.</li>
<li>Partner with Technology, Trading, Legal, and Compliance to create policies and communicate technical risks to non-technical stakeholders.</li>
</ul>
<p><strong>Qualifications</strong></p>
<ul>
<li>Bachelor&#39;s degree or higher in Computer Science, Computer Engineering, IT Security or related field.</li>
<li>5+ years’ experience working as an Application Security Engineer, Software Engineer, or similar role.</li>
<li>Deep understanding of AI-specific risks (OWASP Top 10 for LLMs) and experience securing applications utilizing LLMs.</li>
<li>Experience working with AI models, Agentic frameworks and security risks associated with AI.</li>
<li>Experience in working with global teams, collaborating on code and presentations.</li>
<li>Demonstrated work experience in hybrid on-premise and Public Cloud environments (AWS/GCP/Azure)</li>
<li>Strong understanding of security architectures, secure configuration principles/coding practices, cryptography fundamentals and encryption protocols.</li>
<li>Experience with common SCM &amp; CI/CD technologies like GitHub, Jenkins, Artifactory, etc. and integrating Security Scanning and Vulnerability Management into the CI/CD Pipelines</li>
<li>Familiarity with static and dynamic security analysis tools, and SCA/SBOM solutions.</li>
<li>Hands on experience with Secrets Management &amp; Password Vault technologies such as Delinea Secret Server and/or Hashicorp Vault, etc.</li>
<li>Strong experience in secure programming in languages such as Python, Java, C++, C#, or similar.</li>
<li>Familiarity with Infrastructure as Code tools (CloudFormation, Terraform, Ansible, etc.)</li>
<li>Familiarity with web application security testing tools and methodologies.</li>
<li>Knowledge of various security frameworks and standards such as ISO 27001, NIST, OWASP, etc.</li>
<li>Knowledge of Linux, OS internals and containers is a plus.</li>
<li>Certifications like CISSP, CISM, CompTIA Security+, or CEH are advantageous.</li>
</ul>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>onsite</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>AI-specific risks, Generative AI, LLMs, Agentic frameworks, Security guardrails, Threat modeling, Red teaming, Risk assessments, Application risk assessments, Design reviews, Mitigation strategies, Secure coding standards, Automated security testing, CI/CD pipelines, Security architectures, Secure configuration principles, Cryptography fundamentals, Encryption protocols, SCM &amp; CI/CD technologies, Security scanning, Vulnerability management, Static and dynamic security analysis tools, SCA/SBOM solutions, Secrets management, Password vault technologies, Secure programming, Infrastructure as Code tools, Web application security testing tools, Methodologies, Security frameworks, Standards, Linux, OS internals, Containers</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>IT Infrastructure</Employername>
      <Employerlogo>https://logos.yubhub.co/mlp.eightfold.ai.png</Employerlogo>
      <Employerdescription>IT Infrastructure is a technology-focused organisation that provides infrastructure services to various businesses.</Employerdescription>
      <Employerwebsite>https://mlp.eightfold.ai</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://mlp.eightfold.ai/careers/job/755955629927</Applyto>
      <Location>Dublin, Ireland</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>6a75ea8b-5b4</externalid>
      <Title>Application Security Engineer</Title>
      <Description><![CDATA[<p>We are seeking an experienced Application Security Engineer to join our team. As a subject matter expert with direct experience in a wide range of security technologies, tools, and methodologies, you will play a key role in building toolsets and processes to drive adoption of secure practices across the enterprise.</p>
<p>The successful candidate will have a proven understanding in enterprise security and AI security and will focus on defining and implementing security guardrails for Generative AI, LLMs, and Agentic frameworks, ensuring safe enterprise adoption.</p>
<p>Key responsibilities include:</p>
<ul>
<li>Defining and implementing security guardrails for Generative AI, LLMs, and Agentic frameworks</li>
<li>Conducting specialized threat modeling, red teaming, and risk assessments for AI/ML models</li>
<li>Leading risk management activities, including application risk assessments, design reviews, and mitigation strategies for IT projects</li>
<li>Engaging throughout the SDLC to identify vulnerabilities, conduct code reviews/penetration testing, and enforce secure coding standards</li>
<li>Evangelizing AppSec and AI security best practices through developer education, training materials, and outreach</li>
</ul>
<p>Qualifications include:</p>
<ul>
<li>Bachelor&#39;s degree or higher in Computer Science, Computer Engineering, IT Security or related field</li>
<li>5+ years&#39; experience working as an Application Security Engineer, Software Engineer, or similar role</li>
<li>Deep understanding of AI-specific risks (OWASP Top 10 for LLMs) and experience securing applications utilizing LLMs</li>
<li>Experience working with AI models, Agentic frameworks and security risks associated with AI</li>
<li>Experience in working with global teams, collaborating on code and presentations</li>
</ul>
<p>Preferred qualifications include:</p>
<ul>
<li>Demonstrated work experience in hybrid on-premise and Public Cloud environments (AWS/GCP/Azure)</li>
<li>Strong understanding of security architectures, secure configuration principles/coding practices, cryptography fundamentals and encryption protocols</li>
<li>Experience with common SCM &amp; CI/CD technologies like GitHub, Jenkins, Artifactory, etc. and integrating Security Scanning and Vulnerability Management into the CI/CD Pipelines</li>
<li>Familiarity with static and dynamic security analysis tools, and SCA/SBOM solutions</li>
<li>Hands on experience with Secrets Management &amp; Password Vault technologies such as Delinea Secret Server and/or Hashicorp Vault, etc.</li>
<li>Strong experience in secure programming in languages such as Python, Java, C++, C#, or similar</li>
<li>Familiarity with Infrastructure as Code tools (CloudFormation, Terraform, Ansible, etc.)</li>
<li>Familiarity with web application security testing tools and methodologies</li>
<li>Knowledge of various security frameworks and standards such as ISO 27001, NIST, OWASP, etc.</li>
<li>Knowledge of Linux, OS internals and containers is a plus</li>
<li>Certifications like CISSP, CISM, CompTIA Security+, or CEH are advantageous</li>
</ul>
<p>We offer a competitive salary and benefits package, as well as opportunities for professional growth and development.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>onsite</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>AI-specific risks, Generative AI, LLMs, Agentic frameworks, Security guardrails, Threat modeling, Red teaming, Risk assessments, Application risk assessments, Design reviews, Mitigation strategies, Secure coding standards, Developer education, Training materials, Outreach, Common SCM &amp; CI/CD technologies, GitHub, Jenkins, Artifactory, Security Scanning, Vulnerability Management, Static and dynamic security analysis tools, SCA/SBOM solutions, Secrets Management &amp; Password Vault technologies, Delinea Secret Server, Hashicorp Vault, Secure programming, Python, Java, C++, C#, Infrastructure as Code tools, CloudFormation, Terraform, Ansible, Web application security testing tools, Methodologies, Security frameworks, Standards, ISO 27001, NIST, OWASP, Linux, OS internals, Containers</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>IT Infrastructure</Employername>
      <Employerlogo>https://logos.yubhub.co/mlp.eightfold.ai.png</Employerlogo>
      <Employerdescription>IT Infrastructure is a department within a larger organisation that focuses on providing and maintaining the underlying technology infrastructure.</Employerdescription>
      <Employerwebsite>https://mlp.eightfold.ai</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://mlp.eightfold.ai/careers/job/755955629908</Applyto>
      <Location>London, United Kingdom</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>80dbb0f6-e54</externalid>
      <Title>Senior Security Engineer</Title>
      <Description><![CDATA[<p>We are seeking a subject matter expert with direct experience in a wide range of security technologies, tools, and methodologies. This role is suited for an experienced Windows Engineer with proven understanding in enterprise security and will focus on building toolsets and processes to support the Information Security Program (ISP).</p>
<p>The team fosters a collaborative environment and is building a best-in-class program to partner with the business to protect the Firm&#39;s information and computer systems.</p>
<p>Principal Responsibilities:</p>
<ul>
<li>Provide a high level of security consultancy and engineering support for Windows/Active Directory/Azure security solutions including analysis and development of Windows security solutions.</li>
<li>Strong understanding of modern authentication protocols, e.g., OIDC / OAUTH 2.</li>
<li>Contribute to the vision, strategy, and drive design and implementation for authentication platforms both on premises and in the cloud.</li>
<li>Provide security consultancy and engineering support for SAML, OIDC and Kerberos authentication across different Identity providers, including analysis and development of SSO, PKI, and other authentication solutions.</li>
<li>Able to demonstrate clear understanding of current risks and threats related to Identity Management at technical and managerial levels.</li>
<li>Actively monitor new and emerging security and privacy related technologies, trends, issues, and solutions and assess their applicability to key business initiatives and strategies.</li>
<li>Participate in Information Security Incident Response activities for the Firm&#39;s environment.</li>
<li>Liaison with key stakeholders to create and enforce policy including Technology organization, Trading units, Legal, Internal Audit, and Compliance.</li>
<li>Provide support to Security and other technical operations staff to ensure smooth turnover from Engineering to Production - and provide mentoring to junior level security professionals.</li>
<li>Develop and maintain documentation of all Security products including specific tools, technologies, and processes.</li>
</ul>
<p>Qualifications/Skills Required:</p>
<ul>
<li>Bachelor&#39;s degree in computer science or engineering preferred.</li>
<li>7 + years&#39; experience working in a technical role with a minimum of 2 + years&#39; experience focusing on information security in the financial industry (preferred).</li>
<li>Excellent understanding and experience of engineering Microsoft security solutions – including desktop and server operating systems, EntraID, Active Directory, Group Policy, Desired Configuration State, DNS, Messaging.</li>
<li>Ability to understand code in C#/.NET and / or Python and strong scripting experience in PowerShell.</li>
<li>Experience managing IaaS, SaaS solutions and services using CI/CD pipelines. Jenkins, Terraform experience is a strong plus.</li>
<li>Solid understanding of SAML, OIDC and Kerberos authentication and related technology controls and best practices.</li>
<li>Experience with Office 365 security controls including usage of Azure Active Directory, Conditional Access, o365 logging APIs, Microsoft CAS, and Microsoft Authenticator.</li>
<li>Understanding and experience with implementing Data Loss Prevention (DLP) solutions, policies, and technologies.</li>
<li>Understanding of Azure Information Protection (AIP) and its components, including labeling, classification, and encryption.</li>
<li>Ability to develop and implement strategies to ensure compliance with data protection regulations, such as GDPR or HIPAA, utilizing DLP and AIP solutions.</li>
<li>Strong knowledge and experience in a variety of security technologies including: EDR, SIEM, Vulnerability Management is a plus.</li>
<li>Relevant security certification (CISSP, GCIA, CISM, etc.) and/or product certifications (PingFederate, Azure, Windows, AD etc.) a plus.</li>
</ul>
<p>The estimated base salary range for this position is $175,000 to $250,000, which is specific to New York and may change in the future. Millennium pays a total compensation package which includes a base salary, discretionary performance bonus, and a comprehensive benefits package.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>onsite</Workarrangement>
      <Salaryrange>$175,000 to $250,000</Salaryrange>
      <Skills>security technologies, tools, methodologies, Windows security solutions, OIDC / OAUTH 2, SAML, Kerberos authentication, Identity providers, SSO, PKI, EDR, SIEM, Vulnerability Management, C#/.NET, Python, PowerShell, Jenkins, Terraform, Azure Active Directory, Conditional Access, o365 logging APIs, Microsoft CAS, Microsoft Authenticator, Data Loss Prevention (DLP), Azure Information Protection (AIP)</Skills>
      <Category>IT</Category>
      <Industry>Finance</Industry>
      <Employername>IT Infrastructure</Employername>
      <Employerlogo>https://logos.yubhub.co/mlp.eightfold.ai.png</Employerlogo>
      <Employerdescription>Millennium is a complex and robust technical environment.</Employerdescription>
      <Employerwebsite>https://mlp.eightfold.ai</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://mlp.eightfold.ai/careers/job/755944784476</Applyto>
      <Location>New York, New York, United States of America</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>770c5fe8-cce</externalid>
      <Title>Staff Security Engineer, Vulnerability Management</Title>
      <Description><![CDATA[<p>We are seeking a Staff Security Engineer to lead the most complex technical work in CoreWeave&#39;s Vulnerability Management program.</p>
<p>As a Staff Security Engineer, you will design and implement scalable triage, prioritization, and remediation-tracking systems across application, infrastructure, and hardware domains. You will set technical standards, drive high-impact initiatives, and mentor engineers through technical leadership, while partnering with leadership on priorities and execution risks.</p>
<p>Key Responsibilities:</p>
<ul>
<li>Lead high-complexity VM technical initiatives and deliver architecture decisions for assigned program areas</li>
<li>Design and build scalable triage automation, including integrations, decision logic, and production hardening</li>
<li>Implement end-to-end workflow components from assessment and detection to ticket routing and remediation tracking</li>
<li>Provide deep technical leadership on hardware-adjacent vulnerabilities (GPU firmware, DPU firmware/BlueField, and BMC surfaces)</li>
<li>Act as senior technical responder for embargoed disclosures and zero-day events, coordinating with owner teams that deploy fixes</li>
<li>Improve prioritization logic, severity models, and exception workflows through code, design reviews, and technical proposals</li>
<li>Produce actionable technical metrics and risk insights for leadership consumption</li>
<li>Lead root-cause analysis for high-impact vulnerability incidents and implement durable technical improvements</li>
<li>Mentor IC3/IC4/IC5 engineers through design guidance, code review, and incident coaching</li>
<li>Partner with security, engineering, and operational stakeholders to improve workflow reliability and accelerate remediation outcomes</li>
</ul>
<p>Requirements:</p>
<ul>
<li>9+ years of relevant experience with demonstrated strategic impact in vulnerability management, application security, platform security, or cloud security engineering</li>
<li>Proven track record building and scaling security automation (SOAR workflows, AI/ML systems, detection pipelines) in production environments</li>
<li>Deep subject matter expertise with vulnerability management best practices: CVSS, EPSS, CISA KEV, threat intelligence integration, and risk-based prioritization frameworks</li>
<li>Excellent development background with strong coding skills in Python, Go, or similar languages for building scalable, production-grade security systems</li>
<li>Significant experience with modern vulnerability management tooling (for example Wiz, Semgrep, Rapid7, Tenable, or equivalent)</li>
<li>Experience with specialized infrastructure: GPU/DPU environments, firmware security, hardware vulnerabilities, or high-performance computing</li>
<li>Demonstrated track record mentoring engineers across levels and driving cross-functional technical initiatives at organizational scale</li>
<li>Strong business acumen and understanding of how security decisions impact engineering velocity, customer trust, and business outcomes</li>
</ul>
<p>Preferred Qualifications:</p>
<ul>
<li>Practical experience building AI/ML-powered security systems (LLM integration, automated decision-making, human-in-the-loop validation) in production</li>
<li>Experience managing hardware vendor security partnerships (embargoed disclosures and pre-release collaboration)</li>
<li>Production experience with security automation platforms such as TINES and serverless frameworks (AWS Lambda, GCP Cloud Functions)</li>
<li>Strong DevOps, DevSecOps, or SRE background with deep experience in AWS/GCP/Azure cloud services and Infrastructure as Code (Terraform, CloudFormation)</li>
<li>Deep understanding of Kubernetes security (container scanning, admission controllers, supply chain security, runtime protection)</li>
<li>Experience leading security programs through rapid hypergrowth (10x+ infrastructure scaling) in startup or cloud-native environments</li>
<li>Practical experience managing vulnerabilities within a FedRAMP-certified environment or similar regulatory frameworks</li>
</ul>
<p>Salary and Benefits: The base salary range for this role is $188,000 to $275,000. The starting salary will be determined based on job-related knowledge, skills, experience, and market location. We strive for both market alignment and internal equity when determining compensation. In addition to base salary, our total rewards package includes a discretionary bonus, equity awards, and a comprehensive benefits program (all based on eligibility).</p>
<p>Work Environment:</p>
<p>While we prioritize a hybrid work environment, remote work may be considered for candidates located more than 30 miles from an office, based on role requirements for specialized skill sets. New hires will be invited to attend onboarding at one of our hubs within their first month. Teams also gather quarterly to support collaboration.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>staff</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$188,000 to $275,000</Salaryrange>
      <Skills>vulnerability management, application security, platform security, cloud security engineering, security automation, AI/ML systems, detection pipelines, Python, Go, modern vulnerability management tooling, GPU/DPU environments, firmware security, hardware vulnerabilities, high-performance computing, AI/ML-powered security systems, LLM integration, automated decision-making, human-in-the-loop validation, security automation platforms, TINES, serverless frameworks, AWS Lambda, GCP Cloud Functions, DevOps, DevSecOps, SRE, Kubernetes security, container scanning, admission controllers, supply chain security, runtime protection</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>CoreWeave</Employername>
      <Employerlogo>https://logos.yubhub.co/coreweave.com.png</Employerlogo>
      <Employerdescription>CoreWeave is a cloud computing company that provides a platform for building and scaling AI applications.</Employerdescription>
      <Employerwebsite>https://www.coreweave.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/coreweave/jobs/4653130006</Applyto>
      <Location>Livingston, NJ / New York, NY / Sunnyvale, CA / Bellevue, WA</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>5482abb0-c58</externalid>
      <Title>Associate Customer Success Manager</Title>
      <Description><![CDATA[<p>The Associate Customer Success Manager is a critical role in helping customers receive value from their investment in Tanium. The successful candidate will work in a collaborative team environment with other CSMs, Advanced Consulting Engineers, Enterprise Services Engineers, partners, and sales to contribute to each customer&#39;s success by leveraging best practices and technical expertise to ensure adoption of the Tanium platform, leading to renewal and upsell opportunities for their assigned accounts.</p>
<p>Key responsibilities include:</p>
<ul>
<li>Ensuring successful business outcomes for customers that lead to world-class retention and expansion for Tanium by collaborating with an account team of Sales, Solution Engineers, Domain Architects, and more</li>
<li>Working with senior team members to understand the unique complexity and segmentation of the customers served and creating the best path to full Tanium platform adoption and expansion, leveraging understanding of not only the customer&#39;s environment but also insights as to how to overcome obstacles to implement new technologies</li>
<li>Developing and maintaining necessary relationships with customers to ensure alignment to their business needs</li>
<li>Identifying where Tanium can be further integrated into customer business processes and controls to increase ROI and expand into new solution areas</li>
<li>Performing activities and data management that help to drive adoption and value against an agreed-upon plan with the customer</li>
</ul>
<p>The ideal candidate will have 1-3 years of experience in Customer Success, Account Management, Technical Project Management, Sales Development, Service Management / Professional Services, preferably in a SaaS business model or within SLED organisations. Experience in Information Technology Operations, Security, or Vulnerability Management workflows is a plus.</p>
<p>We are looking for a highly organised self-starter who thrives in a fast-paced environment and is comfortable working in ambiguity. The successful candidate will be curious, willing to learn from others in their discipline, their customers, and other roles at Tanium, and eager to contribute suggestions and ideas to further customer and Tanium goals.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>mid</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$45,000 to $120,000</Salaryrange>
      <Skills>Customer Success, Account Management, Technical Project Management, Sales Development, Service Management / Professional Services, Information Technology Operations, Security, Vulnerability Management</Skills>
      <Category>IT</Category>
      <Industry>Technology</Industry>
      <Employername>Tanium</Employername>
      <Employerlogo>https://logos.yubhub.co/tanium.com.png</Employerlogo>
      <Employerdescription>Tanium is a software company that provides a unified platform for endpoint management and security.</Employerdescription>
      <Employerwebsite>https://www.tanium.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/tanium/jobs/7685392</Applyto>
      <Location>Addison, TX (Hybrid)</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>8f706224-663</externalid>
      <Title>Specialist Solutions Architect - Cloud Infrastructure &amp; Security</Title>
      <Description><![CDATA[<p>As a Specialist Solutions Architect (SSA) - Cloud Infrastructure &amp; Security, you will guide customers in the administration and security of their Databricks deployments.</p>
<p>You will be in a customer-facing role, working with and supporting Solution Architects, which requires hands-on production experience with public cloud - AWS, Azure, and GCP.</p>
<p>SSAs help customers with the design and successful implementation of essential workloads while aligning their technical roadmap to expand the use of the Databricks Platform.</p>
<p>As a deep go-to-expert reporting to the Specialist Field Engineering Manager, you will continue to strengthen your technical skills through mentorship, learning, and internal training programs and establish yourself in an area of specialty - whether that be cloud deployments, security, networking, or more.</p>
<p>Responsibilities:</p>
<ul>
<li>Provide technical leadership to guide strategic customers to the successful administration of Databricks, ranging from design to deployment</li>
</ul>
<ul>
<li>Architect production-level deployments, including meeting necessary security and networking requirements</li>
</ul>
<ul>
<li>Become a technical expert in an area such as cloud platforms, automation, security, networking, or identity management</li>
</ul>
<ul>
<li>Assist Solution Architects with more advanced aspects of the technical sale including custom proof of concept content and custom architectures</li>
</ul>
<ul>
<li>Provide tutorials and training to improve community adoption (including hackathons and conference presentations)</li>
</ul>
<ul>
<li>Contribute to the Databricks Community</li>
</ul>
<p>Requirements:</p>
<ul>
<li>5+ years of experience in a technical role with expertise in at least one of the following:</li>
</ul>
<ul>
<li>Cloud Platforms &amp; Architecture: Cloud Native Architecture in CSPs such as AWS, Azure, and GCP, Serverless Architecture</li>
</ul>
<ul>
<li>Security: Platform security, Network security, Data Security, Gen AI &amp; Model Security, Encryption, Vulnerability Management, Compliance</li>
</ul>
<ul>
<li>Networking: Architecture design, implementation, and performance</li>
</ul>
<ul>
<li>Identify management: Provisioning, SCIM, OAuth, SAML, Federation</li>
</ul>
<ul>
<li>Platform Administration: High availability and disaster recovery, cluster management, observability, logging, monitoring, audit, cost management</li>
</ul>
<ul>
<li>Infrastructure Automation and InfraOps with IaC tools like Terraform</li>
</ul>
<ul>
<li>Maintain and extend the Databricks environment to adapt to evolving complex needs.</li>
</ul>
<ul>
<li>Deep Specialty Expertise in at least one of the following areas:</li>
</ul>
<ul>
<li>Security - understanding how to secure data platforms and manage identities</li>
</ul>
<ul>
<li>Complex deployments</li>
</ul>
<ul>
<li>Public Cloud experience - experience designing data platforms on cloud infrastructure and services, such as AWS, Azure, or GCP, using best practices in cloud security and networking.</li>
</ul>
<ul>
<li>Bachelor&#39;s degree in Computer Science, Information Systems, Engineering, or equivalent experience through work experience.</li>
</ul>
<ul>
<li>Hands-on experience with Python, Java, or Scala, and proficiency in SQL, and Terraform experience are desirable.</li>
</ul>
<ul>
<li>2 years of professional experience with Big Data technologies (Ex: Spark, Hadoop, Kafka) and architectures</li>
</ul>
<ul>
<li>2 years of customer-facing experience in a pre-sales or post-sales role</li>
</ul>
<ul>
<li>Can meet expectations for technical training and role-specific outcomes within 6 months of hire</li>
</ul>
<ul>
<li>This role can be remote, but we prefer that you be located in the job listing area and can travel up to 30% when needed.</li>
</ul>
<p>Pay Range Transparency:</p>
<p>Databricks is committed to fair and equitable compensation practices. The pay range(s) for this role is listed below and represents the expected salary range for non-commissionable roles or on-target earnings for commissionable roles. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location. Based on the factors above, Databricks anticipates utilizing the full width of the range. The total compensation package for this position may also include eligibility for annual performance bonus, equity, and the benefits listed above.</p>
<p>Zone 2 Pay Range $264,000-$363,000 USD</p>
<p>Zone 3 Pay Range $264,000-$363,000 USD</p>
<p>Zone 4 Pay Range $264,000-$363,000 USD</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>remote</Workarrangement>
      <Salaryrange>$264,000-$363,000 USD</Salaryrange>
      <Skills>Cloud Platforms &amp; Architecture, Security, Networking, Platform Administration, Infrastructure Automation and InfraOps, Big Data technologies, Cloud Native Architecture, Serverless Architecture, Gen AI &amp; Model Security, Encryption, Vulnerability Management, Compliance, SCIM, OAuth, SAML, Federation, High availability and disaster recovery, Cluster management, Observability, Logging, Monitoring, Audit, Cost management, Terraform, Python, Java, Scala, SQL, Terraform experience</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Databricks</Employername>
      <Employerlogo>https://logos.yubhub.co/databricks.com.png</Employerlogo>
      <Employerdescription>Databricks is a data and AI company that provides a unified platform for data, analytics, and AI.</Employerdescription>
      <Employerwebsite>https://databricks.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/databricks/jobs/8477197002</Applyto>
      <Location>Central - United States</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>cef90895-c6d</externalid>
      <Title>Technical Program Manager, Security (Coordinated Vulnerability Disclosure)</Title>
      <Description><![CDATA[<p>As a Technical Program Manager for Security, Coordinated Vulnerability Disclosure (CVD), you will build and lead the programs that govern how Anthropic responsibly discloses software vulnerabilities discovered by our AI-powered tools.</p>
<p>These tools have already found real zero-days in Firefox, the Linux kernel, and other critical software. The challenge is no longer just finding vulnerabilities; it is managing the consequences of finding them at unprecedented scale and speed.</p>
<p>Traditional coordinated disclosure frameworks were designed for a world where a researcher might find one serious vulnerability every few weeks. AI-powered discovery has changed that equation entirely; Claude can surface hundreds of findings in a single codebase in a single day.</p>
<p>This role exists to ensure that every finding reaches the right maintainer, at the right pace, with the right context, and that Anthropic meets its Responsible Scaling Policy (RSP) commitments in the process.</p>
<p>You will own the end-to-end CVD lifecycle: from internal triage and human validation of AI-generated findings, through tiered disclosure timelines, to external coordination with vendors, open-source maintainers, and organizations.</p>
<p>This role requires deep collaboration across Security Engineering, Legal, Communications, Product, and Frontier Red Team to ensure Anthropic operates as a responsible steward of the vulnerabilities its tools discover.</p>
<p>Responsibilities:</p>
<ul>
<li>Own end-to-end CVD program strategy and execution: Define and drive the roadmap for coordinated vulnerability disclosure, from AI-generated finding through maintainer notification, remediation tracking, and public disclosure.</li>
</ul>
<ul>
<li>Lead internal triage and quality assurance: Establish and manage the human review process that validates all AI-generated findings before external disclosure.</li>
</ul>
<ul>
<li>Design and operate tiered disclosure timelines: Implement severity-based disclosure windows with appropriate extension policies.</li>
</ul>
<ul>
<li>Build and manage pacing and submission models: Develop rate-limiting frameworks that govern how many findings are submitted to each project, scaled to maintainer capacity and project size.</li>
</ul>
<ul>
<li>Lead external coordination and partner engagement: Manage relationships with open-source maintainers and closed-source vendors.</li>
</ul>
<ul>
<li>Establish program metrics and reporting: Define and track the metrics that determine program health, including fix rates, false-positive rates, median time-to-patch, and qualitative maintainer feedback.</li>
</ul>
<ul>
<li>Drive response category classification: Manage the process for classifying findings into response categories (latent vulnerability, active exploitation, ecosystem-level pattern) and ensure the appropriate response protocol is triggered for each category.</li>
</ul>
<ul>
<li>Lead cross-functional coordination: Manage stakeholder relationships across Security Engineering, Legal, Communications, Product, and Frontier Red Team to drive alignment and execution on disclosure initiatives.</li>
</ul>
<ul>
<li>Collaborate with senior leadership and executives: Communicate program vision, risks, and progress with executive presence.</li>
</ul>
<p>You May Be a Good Fit If You Have:</p>
<ul>
<li>10+ years of experience in cybersecurity, vulnerability management, or security operations, with at least 4+ years leading vulnerability disclosure, vulnerability management, or coordinated response programs.</li>
</ul>
<ul>
<li>Deep understanding of coordinated vulnerability disclosure processes, including experience working with CERT/CC, MITRE CVE, or similar coordination bodies.</li>
</ul>
<ul>
<li>Technical familiarity with vulnerability discovery tooling, static analysis, fuzzing infrastructure (e.g., OSS-Fuzz, CodeQL), and the triage workflows that turn raw findings into actionable reports.</li>
</ul>
<ul>
<li>Experience engaging directly with open-source maintainers and understanding the dynamics of open-source project governance, contributor capacity, and maintainer burnout.</li>
</ul>
<ul>
<li>Proven experience as a Technical Program Manager or similar role in a cybersecurity or technology-focused environment, with a track record of leading complex, cross-organizational programs to successful completion.</li>
</ul>
<ul>
<li>Executive communication skills with demonstrated ability to influence decisions at the senior leadership and C-suite level.</li>
</ul>
<p>Ability to manage highly ambiguous problems and navigate challenges to achieve program objectives in a fast-paced, evolving environment.</p>
<p>Strong collaboration skills with proven ability to partner across diverse technical and non-technical stakeholders including Security Engineering, Legal, Communications, and Product teams.</p>
<p>Strong Candidates May Also Have:</p>
<ul>
<li>Experience building vulnerability disclosure or coordinated response programs from the ground up in high-growth technology companies.</li>
</ul>
<ul>
<li>Background as a CVE Numbering Authority (CNA) operator, or experience managing the operational requirements of CVE issuance, embargo coordination, and formal vulnerability tracking.</li>
</ul>
<ul>
<li>Familiarity with AI/ML-powered security tooling and the unique challenges of managing AI-generated vulnerability reports at scale, including false-positive filtering and quality assurance.</li>
</ul>
<ul>
<li>Experience with vulnerability management platforms and tracking systems (e.g., HackerOne, Bugcrowd, or custom internal tooling).</li>
</ul>
<ul>
<li>Prior work in security research, penetration testing, or red teaming that provides firsthand understanding of the vulnerability lifecycle from discovery through remediation.</li>
</ul>
<ul>
<li>Familiarity with compliance frameworks (SOC 2, ISO 27001, FedRAMP) and their intersection with vulnerability disclosure requirements.</li>
</ul>
<p>Experience managing multi-stakeholder disclosure scenarios involving ecosystem-level vulnerabilities that affect multiple projects simultaneously.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$290,000-$405,000 USD</Salaryrange>
      <Skills>cybersecurity, vulnerability management, security operations, coordinated vulnerability disclosure, AI-powered tooling, static analysis, fuzzing infrastructure, open-source maintainers, compliance frameworks, vulnerability management platforms, tracking systems</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Anthropic</Employername>
      <Employerlogo>https://logos.yubhub.co/anthropic.com.png</Employerlogo>
      <Employerdescription>Anthropic&apos;s mission is to create reliable, interpretable, and steerable AI systems. It is a quickly growing group of committed researchers, engineers, policy experts, and business leaders.</Employerdescription>
      <Employerwebsite>https://www.anthropic.com/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/anthropic/jobs/5123769008</Applyto>
      <Location>San Francisco, CA | New York City, NY | Seattle, WA</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>7ad63033-e7e</externalid>
      <Title>Senior Security Engineer I, Vulnerability Management</Title>
      <Description><![CDATA[<p>We are seeking a Senior Security Engineer I to join our Vulnerability Management team. This is an execution-focused role where you will perform hands-on triage, drive remediation follow-through, and improve day-to-day operational quality across cloud and specialized infrastructure environments.</p>
<p>Key responsibilities include:</p>
<ul>
<li>Performing hands-on vulnerability triage and risk assessment using team-defined standards and playbooks</li>
<li>Tracking remediation progress with owner teams, escalating blockers, and ensuring clean issue closure</li>
<li>Supporting automated triage workflows by validating outputs and improving signal quality</li>
<li>Contributing to automated remediation campaigns (e.g., EOL cleanup, vulnerable software upgrades, and fix verification)</li>
<li>Supporting zero-day and embargo response by helping inventory affected assets and tracking owner-team deployment status</li>
<li>Participating in incident investigations by gathering technical evidence and supporting impact analysis</li>
<li>Participating in on-call rotation for critical vulnerability events</li>
<li>Maintaining high-quality documentation, runbooks, and operational updates</li>
</ul>
<p>The ideal candidate will have 3+ years of relevant experience in vulnerability management, security operations, application security, or related security engineering. Key skills include a strong understanding of vulnerability assessment fundamentals, hands-on experience with vulnerability management platforms, proficiency in scripting/automation for workflow support, and familiarity with cloud security concepts.</p>
<p>In addition to a competitive salary, we offer a variety of benefits to support your needs, including medical, dental, and vision insurance, 100% paid for by CoreWeave, company-paid life insurance, and flexible PTO.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$139,000 to $204,000</Salaryrange>
      <Skills>vulnerability management, security operations, application security, vulnerability assessment fundamentals, vulnerability management platforms, scripting/automation for workflow support, cloud security concepts, security automation/SOAR platforms, container/Kubernetes vulnerability workflows, hardware-adjacent vulnerability domains, compliance evidence collection</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>CoreWeave</Employername>
      <Employerlogo>https://logos.yubhub.co/coreweave.com.png</Employerlogo>
      <Employerdescription>CoreWeave is a cloud computing company that provides a platform for building and scaling AI applications.</Employerdescription>
      <Employerwebsite>https://www.coreweave.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/coreweave/jobs/4654263006</Applyto>
      <Location>Livingston, NJ / New York, NY / Sunnyvale, CA / Bellevue, WA</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>3d7cf056-f6b</externalid>
      <Title>Senior Application Security Engineer</Title>
      <Description><![CDATA[<p>As a Senior Application Security Engineer at Brex, you will focus on finding and responding to security vulnerabilities across the Brex platform. You will perform code reviews, design reviews, penetration testing, and vulnerability management. You will develop and maintain tooling to perform static and dynamic testing of the Brex platform and tooling which supports secure developer workflows.</p>
<p>Application Security is part of our wider Financial Scale organization, which means you will work closely with Security Operations, GRC, Product Security, Front End Platform, IT Infrastructure teams.</p>
<p>We’re looking for individuals with a strong background and interest in penetration testing. You should have a demonstrated ability to find vulnerabilities in complex systems and craft exploits to demonstrate business impact.</p>
<p>This role is highly cross-functional and collaborative, you will have the opportunity to work with every engineering team across Brex.</p>
<p>Building a world-class financial service requires world-class security. Brex is pioneering the next wave of AI-driven financial services for dynamic, high-impact companies like Coinbase, Robinhood, and Anthropic. We&#39;re at the early stages of integrating AI across our product suite, this role will have the opportunity to influence and secure the future of AI Security at Brex.</p>
<p>You&#39;ll be at the forefront of securing our novel AI implementations, identifying attack vectors in agentic-powered features, and partnering with product and engineering teams to build AI capabilities that our customers can trust with their critical financial operations.</p>
<p>Responsibilities: Identifying vulnerabilities, demonstrating business impact, and articulating the risk of specific vulnerabilities to drive prioritization efforts Perform penetration testing and design reviews, looking for vulnerabilities and insecure designs, work with engineering and product to design secure product features Maintain and build internal tools to automate security efforts, perform SAST and DAST testing of the Brex platform, and support secure development practices Build and contribute to a culture of collaborative security excellence through technical leadership, learning sessions, and mentorship within the team and wider organization</p>
<p>Requirements: 5+ years work experience in an Application Security or related role Ability to find vulnerabilities in complex systems, demonstrating business impact through custom attack chains Experience with a wide range of secure development activities including, threat modeling, developer education, and incident response Knowledge of Python, scripting languages, and AI/agentic workflows to automate tasks, build tools and improve productivity Collaborative mindset paired with strong written and verbal communication skills</p>
<p>Bonus points: Proficiency with Kotlin, gRPC, GraphQL, Kubernetes Previous experience as a software engineer Consultancy experience performing web application security reviews Experience with securing distributed systems in AWS and cloud environments Experience with pentesting and securing agentic features and systems Contributions to the wider technical community, open source, public research, mentorship, community organizing, blogging, CVEs, presentations, etc</p>
<p>Compensation: The expected salary range for this role is $192,000 - $240,000. However, the starting base pay will depend on a number of factors including the candidate’s location, skills, experience, market demands, and internal pay parity. Depending on the position offered, equity and other forms of compensation may be provided as part of a total compensation package.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$192,000 - $240,000</Salaryrange>
      <Skills>Python, scripting languages, AI/agentic workflows, penetration testing, vulnerability management, secure development activities, threat modeling, developer education, incident response, Kotlin, gRPC, GraphQL, Kubernetes</Skills>
      <Category>Engineering</Category>
      <Industry>Finance</Industry>
      <Employername>Brex</Employername>
      <Employerlogo>https://logos.yubhub.co/brex.com.png</Employerlogo>
      <Employerdescription>Brex is a finance platform that enables companies to spend smarter and move faster in over 200 markets. It combines global corporate cards and banking with intuitive spend management, bill pay, and travel software.</Employerdescription>
      <Employerwebsite>https://brex.com/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/brex/jobs/8249658002</Applyto>
      <Location>San Francisco, California, United States</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>9e667b9c-eb8</externalid>
      <Title>Senior Security Engineer II, Vulnerability Management</Title>
      <Description><![CDATA[<p>We are seeking a Senior Security Engineer to build the Vulnerability Management program protecting CoreWeave&#39;s AI infrastructure. You will architect intelligent automation systems that defend the GPU clusters powering breakthrough AI research and enterprise AI applications.</p>
<p>This role combines technical depth, strategic thinking, and the autonomy to design workflows that will protect infrastructure driving the future of AI.</p>
<p><strong>Key Responsibilities:</strong></p>
<ul>
<li>Build and scale AI-powered triage workflows: evaluate tools (LLM integration, TINES orchestration), architect solutions, and deploy to production</li>
<li>Drive intelligent, risk-based vulnerability prioritization while simultaneously training AI models,your assessments become the foundation for automation</li>
<li>Influence automation priorities: recommend which areas of the vulnerability pipeline would most benefit from automation to improve team efficiency</li>
<li>Design and implement automated detection-to-ticket pipelines: build workflows that generate vulnerability detections, test them, scale across the environment, and auto-create Jira tickets</li>
<li>Execute remediation campaigns: build automated workflows for EOL product removal, vulnerable software upgrades, and OS migrations at scale</li>
<li>Manage embargoed vendor disclosures from hardware partners, including embargo verification and zero-day response coordination</li>
<li>Lead security incident investigations related to high-profile vulnerabilities, coordinating cross-functional response and impact assessment</li>
<li>Participate in on-call rotation for rapid-response vulnerability analysis during active zero-day events or critical security incidents</li>
<li>Partner with IT, Infrastructure, and Engineering teams to drive remediation efforts, enforce SLAs, and escalate blockers strategically</li>
<li>Write daily operations reports documenting vulnerability trends, remediation velocity, and emerging threats for security leadership</li>
<li>Drive process improvements and workflow automation to improve operational efficiency and reduce manual toil</li>
</ul>
<p><strong>Requirements:</strong></p>
<ul>
<li>7+ years of relevant experience with demonstrated impact in vulnerability management, application security, platform security, or cloud security engineering</li>
<li>Bachelor’s or Master’s degree in Computer Science, Computer Engineering, Electrical Engineering, or equivalent practical experience</li>
<li>Proven hands-on experience building security automation (SOAR workflows, detection pipelines, or vulnerability prioritization frameworks)</li>
<li>Deep subject matter expertise with vulnerability management best practices: CVSS, EPSS, CISA KEV, exploit intelligence, and compensating controls</li>
<li>Strong development background with proficiency in Python, Go, or similar languages for building production-grade security tools</li>
<li>Experience with modern vulnerability management tooling such as Wiz, Semgrep, Rapid7, or similar platforms</li>
<li>Demonstrated ability to partner with cross-functional teams (IT, SRE, Engineering) to drive remediation without formal authority</li>
<li>Strong familiarity with common security vulnerabilities and the ability to judge their severity and business impact</li>
</ul>
<p><strong>Preferred Qualifications:</strong></p>
<ul>
<li>Practical experience building AI/ML-powered security workflows (LLM integration, automated triage, human-in-the-loop validation)</li>
<li>Experience managing hardware security vulnerabilities (GPU/DPU firmware, BMC/IPMI, specialized compute environments)</li>
<li>Production experience with security automation platforms such as TINES, Splunk SOAR, or serverless frameworks (AWS Lambda)</li>
<li>Strong DevOps, DevSecOps, or SRE background with experience in AWS/GCP/Azure cloud services and Infrastructure as Code (Terraform, CloudFormation)</li>
<li>Deep understanding of container security and Kubernetes (image scanning, admission control, runtime protection, supply chain security)</li>
<li>Experience supporting customer audits (SOC 2, ISO 27001, FedRAMP) with vulnerability evidence and control validation</li>
<li>Experience integrating vulnerability management into modern CI/CD pipelines with a &#39;shift-left&#39; mentality</li>
</ul>
<p><strong>What We Offer:</strong></p>
<p>The base salary range for this role is $165,000 to $242,000. The starting salary will be determined based on job-related knowledge, skills, experience, and market location. We strive for both market alignment and internal equity when determining compensation. In addition to base salary, our total rewards package includes a discretionary bonus, equity awards, and a comprehensive benefits program (all based on eligibility).</p>
<p>The range we’ve posted represents the typical compensation range for this role. To determine actual compensation, we review the market rate for each candidate which can include a variety of factors. These include qualifications, experience, interview performance, and location.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$165,000 to $242,000</Salaryrange>
      <Skills>vulnerability management, application security, platform security, cloud security engineering, Python, Go, security automation, SOAR workflows, detection pipelines, vulnerability prioritization frameworks, CVSS, EPSS, CISA KEV, exploit intelligence, compensating controls, Wiz, Semgrep, Rapid7, AI/ML-powered security workflows, hardware security vulnerabilities, security automation platforms, DevOps, DevSecOps, SRE, container security, Kubernetes, customer audits, CI/CD pipelines</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>CoreWeave</Employername>
      <Employerlogo>https://logos.yubhub.co/coreweave.com.png</Employerlogo>
      <Employerdescription>CoreWeave is a cloud computing company that provides a platform for AI development and deployment.</Employerdescription>
      <Employerwebsite>https://www.coreweave.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/coreweave/jobs/4650290006</Applyto>
      <Location>Livingston, NJ / New York, NY / Sunnyvale, CA / Bellevue, WA</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>bdf949b3-c66</externalid>
      <Title>Databricks Enterprise Lead Security Architect -   Principal IT Software Engineer</Title>
      <Description><![CDATA[<p>We are seeking a highly skilled Lead Security Architect to join our team within Databricks IT. As a Lead Security Architect, you will be responsible for designing and implementing a secure and scalable architecture to protect our corporate assets. You will focus on key areas of IT security, including Identity and Access Management, Zero Trust architecture, and endpoint security, while also working to secure critical business applications and sensitive data.</p>
<p>Your expertise will be crucial in building proactive security strategies that align with our business goals and protect the company from an ever-evolving threat landscape. This position demands deep expertise in security principles and a comprehensive understanding of the entire infrastructure stack and IAM systems to design robust, future-ready security solutions.</p>
<p>You will be instrumental in safeguarding our systems&#39; resilience and integrity against ever-evolving cyber threats. You will play a critical role in shaping our security strategy for modern platforms across AWS, Azure, GCP, network infrastructure, storage, and SaaS solutions, help establish a strong least privilege (PoLP) model, providing specialized IAM expertise, and securely supporting SaaS with sensitive information (NHI).</p>
<p>You will also be a key contributor in building our internal strategy for secure AI development. Additionally, you will support the secure integration of SaaS platforms such as Google Workspace, collaboration tools, and GTM systems, maintaining alignment with enterprise security standards.</p>
<p>Close collaboration with cross-functional teams is essential to embed security throughout the technology stack.</p>
<p>The impact you will have:</p>
<ul>
<li>Design and implement secure, scalable reference architectures for the Databricks IT across Cloud Infra (Compute, DBs, Network, Storage), SaaS, Custom Built Applications, Data &amp; AI systems.</li>
<li>Establish and enforce security controls for: Core Security Areas: - Databricks Workspace Management: Workspace isolation, Unity Catalog for data governance.</li>
<li>Secure Networking: VPC configs, PrivateLink, IP Allow Lists.</li>
<li>Identity and Access Management (IAM): SSO, SCIM user provisioning, RBAC via Un, Strong MFA best practices for enterprise identities and customers.</li>
<li>Data Encryption: At rest and in transit, customer-managed keys for critical assets.</li>
<li>Data Exfiltration Prevention: Admin console settings, VPC endpoint controls.</li>
<li>Cluster Security: User isolation, compliance with enhanced security monitoring/Compliance Security Profiles (HIPAA, PCI-DSS, FedRAMP).</li>
<li>Offensive Security: Test and challenge the effectiveness of the organization’s security defenses by mimicking the tactics, techniques, and procedures used by actual attackers.</li>
<li>Specialized Security Functions: - Non-human Identity Management: Design and implement secure authentication and authorization for automated systems (service accounts, API keys, machine identities), focusing on automation and integration with existing identity management systems.</li>
<li>IAM Best Practices: Develop and document comprehensive Identity and Access Management policies, including user provisioning, de-provisioning, access reviews, privileged access management, and multi-factor authentication, ensuring security and compliance.</li>
<li>Data Loss Prevention (DLP): Implement DLP solutions to identify, monitor, and protect sensitive data across endpoints, networks, and cloud environments, preventing unauthorized access, use, or transmission.</li>
<li>SaaS Proxy Design and Implementation: Design and implement cloud-based proxies for SaaS applications (SASE solutions) to provide secure access, enforce security policies, monitor user activity, and protect against threats.</li>
<li>Cloud Infrastructure Best Practices: Establish and document best practices for VPC configurations, cloud networking, and infrastructure as code using Terraform, ensuring secure network segmentation, routing, firewalls, and VPNs for consistent, automated, and secure deployments.</li>
<li>Least Privilege Access for Data Security: Design and implement data security controls based on the principle of least privilege, ensuring users and systems have only the minimum necessary access through fine-grained controls, data classification, and regular access reviews.</li>
<li>Guide internal IT on Databricks’ security and compliance certifications (SOC 2, ISO 27001/27017/27018, HIPAA, PCI-DSS, FedRAMP), and support security reviews/audits.</li>
<li>Support incident response, vulnerability management, threat modeling, and red teaming using audit logs, cluster policies, and enhanced monitoring.</li>
<li>Stay current on industry trends and emerging threats in GenAI, AI Agentic flow, MCPs to enhance security posture.</li>
<li>Advise executive leadership on security architecture, risks, and mitigation.</li>
<li>Mentor security engineers and developers on secure design and best practices.</li>
</ul>
<p>What we look for:</p>
<ul>
<li>Bachelor’s degree in Computer Science, Information Security, Engineering, or a related field</li>
<li>Master’s degree in Computer Science specifically in Information Security or a related discipline is strongly preferred</li>
<li>Minimum 12 years in cybersecurity, with 5+ in security architecture or senior technical roles.</li>
<li>Experience in FedRAMP High systems/ GovCloud preferred.</li>
<li>Must have direct experience designing and securing enterprise platforms in complex multi-cloud environments, deep knowledge of enterprise architecture and security features (control plane/data plane separation, network infra, workspace hardening, network segmentation/ isolation), and hands-on experience automating security controls with Terraform and scripting.</li>
<li>Proven expertise securing data analytics pipelines, SaaS integrations, and workload isolation in enterprise ecosystems.</li>
<li>Experience with Enterprise Security Analysis Tools and monitoring/security policy optimization.</li>
<li>Deep experience in threat modeling, design, PoC, and implementing large-scale enterprise solutions.</li>
<li>Extensive hands-on experience in AWS cloud security, network security, with knowledge of Zero Trust, Data Protection, and Appsec.</li>
<li>Strong understanding of enterprise IAM systems (Okta, SailPoint, VDI, Entra ID) and Data Protection.</li>
<li>Expert experience with SIEM platforms, XDR, and cloud-native threat detection tools.</li>
<li>Expert in web application security, OWASP, API security, and secure design and testing.</li>
<li>Hands-on experience with security automation is required, with proficiency in AI-assisted development, Python, Cursor, Lambda, Terraform, or comparable scripting/IaC tools for operational efficiency.</li>
<li>Industry certifications like CISSP, CCSP, CEH, AWS Certified Security – Specialty, AWS Certified Solutions Architect – Professional, or AWS Certified Advanced Networking – Specialty (or equivalent) are preferred.</li>
<li>Ability to influence stakeholders and drive alignment.</li>
<li>Strategic thinker with a passion for security innovation, continuous improvement, and building scalable defenses.</li>
</ul>
<p>Pay Range Transparency</p>
<p>Databricks is committed to fair and equitable compensation practices. The pay range(s) for this role is listed below and represents the expected salary range for non-commissionable roles or on-target earnings for commissionable roles. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location. Based on the factors above, Databricks anticipates utilizing the full width of the range. The total compensation package for this position may also include eligibility for annual performance bonus, equity, and the benefits listed above.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>onsite</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>Security Architecture, Identity and Access Management, Zero Trust, Endpoint Security, Data Encryption, Data Exfiltration Prevention, Cluster Security, Offensive Security, Non-human Identity Management, IAM Best Practices, Data Loss Prevention, SaaS Proxy Design and Implementation, Cloud Infrastructure Best Practices, Least Privilege Access for Data Security, Guide internal IT on Databricks’ security and compliance certifications, Support incident response, vulnerability management, threat modeling, and red teaming, Stay current on industry trends and emerging threats in GenAI, AI Agentic flow, MCPs, Advise executive leadership on security architecture, risks, and mitigation, Mentor security engineers and developers on secure design and best practices, Terraform, Python, Cursor, Lambda, AWS cloud security, Network security, Data Protection, Appsec, SIEM platforms, XDR, cloud-native threat detection tools, Web application security, OWASP, API security, Secure design and testing, AI-assisted development, Security automation, Scripting/IaC tools, CISSP, CCSP, CEH, AWS Certified Security – Specialty, AWS Certified Solutions Architect – Professional, AWS Certified Advanced Networking – Specialty</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Databricks</Employername>
      <Employerlogo>https://logos.yubhub.co/databricks.com.png</Employerlogo>
      <Employerdescription>Databricks is a technology company that provides a cloud-based platform for data analytics and artificial intelligence.</Employerdescription>
      <Employerwebsite>https://databricks.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/databricks/jobs/8207910002</Applyto>
      <Location>Mountain View, California; San Francisco, California</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>8bf116df-95e</externalid>
      <Title>Application Security Engineer</Title>
      <Description><![CDATA[<p>Job Title: Application Security Engineer</p>
<p>About the Role: The Application Security team at Anthropic is at the forefront of building security into every phase of the software development lifecycle. As an Application Security Engineer, you will partner closely with software engineers and researchers to ensure that security is a core consideration from initial design through implementation. You will lead threat modeling and secure design reviews to proactively identify and mitigate risks early, and help with continuous risk assessment. You will build tools and systems to support developers shipping code securely, adhering to secure coding best practices.</p>
<p>Responsibilities:</p>
<ul>
<li>Help secure AI products and internal tools that are introducing industry-novel security risks and pushing established security boundaries</li>
<li>Lead “shift left” security efforts to build security into the software development lifecycle</li>
<li>Conduct secure design reviews and threat modeling. Identify and prioritize risks, attack surfaces, and vulnerabilities</li>
<li>Develop tooling to scale security code reviews and respond to developer questions, including advising developers on remediating vulnerabilities and following secure coding practices</li>
<li>Manage Anthropic&#39;s vulnerability management program, including integrating data ingestion pipelines, coding logic to prioritize vulnerability fixes, supporting teams remediating vulnerabilities and developing automated systems at scale</li>
<li>Oversee Anthropic&#39;s bug bounty program. Set scope, validate submissions, perform root cause analysis, coordinate remediation with engineering teams, and award bounties. Cultivate relationships with the ethical hacker community</li>
<li>Collaborate closely with product engineers and researchers to instill security best practices. Advocate for secure architecture, design, and development</li>
<li>Develop and document security policies, standards, and playbooks. Conduct security awareness training for engineers</li>
</ul>
<p>Requirements:</p>
<ul>
<li>5+ years of hands-on experience in application and infrastructure security, including securing cloud-based and containerized environments</li>
<li>Strong proficiency in at least one programming language (e.g., Python, Rust, Go, Java)</li>
<li>Lead with empathy, a collaborative spirit, and a learning mindset to work cross-functionally with engineers of all levels to build security into the software development life cycle</li>
<li>Leverage creative and strategic thinking to reduce risk through secure design and simplicity, not just controls</li>
<li>Possess broad security knowledge to connect the dots across domains and identify holistic ways to decrease the overall threat surface</li>
<li>Are keen to distill complex security concepts into clear actions and drive consensus without direct authority</li>
<li>Embody a proactive mindset to thread security throughout the product lifecycle through activities like threat modeling, secure code review, and education</li>
<li>Have a strong grasp of offensive security to anticipate risks from an adversary&#39;s perspective, not just check compliance boxes</li>
<li>Bring experience with modern application stacks, infrastructure, and security tools to implement pragmatic defenses</li>
<li>Are practiced at collaborating cross-functionally and effectively balancing security requirements with business objectives</li>
<li>Advocate for security fundamentals like least privilege, defense-in-depth, and eliminating complexity that could sub-linearly scale security through smart design</li>
</ul>
<p>Preferred Qualifications:</p>
<ul>
<li>Hands-on technical expertise securing complex cloud environments and microservices architectures leveraging technologies like Kubernetes, Docker, and AWS / GCP</li>
<li>Exposure to offensive security techniques like vulnerability testing, bug bounty, pen testing, and red team exercises</li>
<li>Familiarity with AI/ML security risks such as prompt injection, data poisoning, model extraction, etc. and mitigations</li>
<li>Experience building security tools, applications, and automated tools</li>
<li>Solid foundational knowledge of both software and security engineering principles and are keen to continue learning</li>
<li>Excellent communication skills, able to distill complex security topics for broad audiences</li>
<li>Worked and thrived in fast-paced environments, and comfortable navigating ambiguity</li>
</ul>
<p>Annual Compensation Range:</p>
<p>$300,000-$405,000 USD</p>
<p>Logistics:</p>
<ul>
<li>Minimum education: Bachelor’s degree or an equivalent combination of education, training, and/or experience</li>
<li>Required field of study: A field relevant to the role as demonstrated through coursework, training, or professional experience</li>
<li>Minimum years of experience: Years of experience required will correlate with the internal job level requirements for the position</li>
<li>Location-based hybrid policy: Currently, we expect all staff to be in one of our offices at least 25% of the time. However, some roles may require more time in our offices.</li>
<li>Visa sponsorship: We do sponsor visas! However, we aren&#39;t able to successfully sponsor visas for every role and every candidate. But if we make you an offer, we will make every reasonable effort to get you a visa, and we retain an immigration lawyer to help with this.</li>
</ul>
<p>How to Apply:</p>
<p>If you&#39;re interested in this role, please submit your application through our website. We look forward to reviewing your application!</p>
<p>Note:</p>
<p>Your safety matters to us. To protect yourself from potential scams, remember that Anthropic recruiters only contact you from @anthropic.com email addresses. In some cases, we may partner with vetted recruiting agencies who will identify themselves as working on behalf of Anthropic. Be cautious of emails from other domains. Legitimate Anthropic recruiters will never ask for money, fees, or banking information before your first day. If you&#39;re ever unsure about a communication, don&#39;t click any links,visit anthropic.com/careers directly for confirmed position openings.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$300,000-$405,000 USD</Salaryrange>
      <Skills>application security, infrastructure security, cloud-based security, containerized environments, programming languages, Python, Rust, Go, Java, threat modeling, secure design reviews, vulnerability management, bug bounty program, security policies, standards, playbooks, security awareness training, hands-on technical expertise, complex cloud environments, microservices architectures, Kubernetes, Docker, AWS, GCP, offensive security techniques, vulnerability testing, pen testing, red team exercises, AI/ML security risks, prompt injection, data poisoning, model extraction, security tools, applications, automated tools, software engineering principles, communication skills</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Anthropic</Employername>
      <Employerlogo>https://logos.yubhub.co/anthropic.com.png</Employerlogo>
      <Employerdescription>Anthropic is a company that creates reliable, interpretable, and steerable AI systems.</Employerdescription>
      <Employerwebsite>https://www.anthropic.com/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/anthropic/jobs/4502508008</Applyto>
      <Location>Remote-Friendly (Travel-Required) | San Francisco, CA | Seattle, WA | New York City, NY</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>6ebddf5e-b96</externalid>
      <Title>Security Operations Intern</Title>
      <Description><![CDATA[<p>Join VGS as a Security Operations Intern and help protect our systems, identities, endpoints, and workflows. You will assist with monitoring and triaging security alerts, support incident response efforts, and contribute to the creation and maintenance of security playbooks.</p>
<p>As a member of our security team, you will work alongside security, infrastructure, and engineering partners to monitor security signals, investigate issues, improve operational processes, and strengthen our overall security posture.</p>
<p>In this role, you will have the opportunity to learn from experienced security professionals, develop your skills in security operations, and contribute to the growth and success of our organization.</p>
<p>We are looking for a curious, detail-oriented individual with a foundational understanding of security operations concepts, familiarity with basic networking, operating systems, and cloud concepts, and comfort working in terminal and web-based tools.</p>
<p>If you are a problem solver, customer-oriented, versatile, resilient, and eager to learn, we&#39;d love to hear from you.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>internship</Jobtype>
      <Experiencelevel>entry</Experiencelevel>
      <Workarrangement>remote</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>incident response, alert triage, vulnerability management, identity and access management, endpoint security, scripting or automation with Python, Bash, or similar languages, log analysis, SIEM tools, EDR tools, ticketing systems, SaaS administration</Skills>
      <Category>IT</Category>
      <Industry>Technology</Industry>
      <Employername>VGS</Employername>
      <Employerlogo>https://logos.yubhub.co/vgs.com.png</Employerlogo>
      <Employerdescription>VGS is the world&apos;s leader in payment tokenization, providing processor-agnostic tokenization solutions to large banks, fintechs, and merchants.</Employerdescription>
      <Employerwebsite>https://www.vgs.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://jobs.lever.co/verygoodsecurity/bb83ac14-122a-4156-8b0a-7168f5749831</Applyto>
      <Location>San Francisco</Location>
      <Country></Country>
      <Postedate>2026-04-17</Postedate>
    </job>
    <job>
      <externalid>f4ab3a42-b0a</externalid>
      <Title>Product Security Engineer</Title>
      <Description><![CDATA[<p>We believe that the way people interact with their finances will drastically improve in the next few years. We&#39;re dedicated to empowering this transformation by building the tools and experiences that thousands of developers use to create their own products.</p>
<p>Plaid powers the tools millions of people rely on to live a healthier financial life. We work with thousands of companies like Venmo, SoFi, several of the Fortune 500, and many of the largest banks to make it easy for people to connect their financial accounts to the apps and services they want to use.</p>
<p>The Product Security team is responsible for the processes, policies, controls, and engineering systems that secure Plaid&#39;s developer- and consumer-facing products. The team focuses on areas including application security, vulnerability management, secure development lifecycle, penetration testing, and cloud security.</p>
<p>We&#39;re looking for a Product Security Engineer who is fundamentally a builder. Unlike traditional product security roles, this position is designed for a software engineer who wants to solve security challenges at scale by developing production-grade services, libraries, and frameworks.</p>
<p>In this role, you&#39;ll build and maintain Plaid&#39;s vulnerability management orchestration service, automate workflows to reduce operational toil, and create solutions that eliminate entire classes of vulnerabilities. You&#39;ll also partner closely with product engineers to ensure services meet security standards, support incident response and security awareness efforts, and collaborate across the security platform organization to deliver the engineering foundations that make secure development the default at Plaid.</p>
<p><strong>Responsibilities</strong></p>
<ul>
<li>Build the secure engineering foundations that secure the future of digital finance.</li>
<li>Develop maintainable and secure software to enhance Plaid&#39;s security posture and create paved roads for developers for easy and default integration of security controls.</li>
<li>Design, develop, and maintain security-critical services and components.</li>
<li>Develop internal tooling to automate vulnerability detection, dependency management, and remediation workflows within the CI/CD pipeline.</li>
<li>Replace manual security gates with engineered solutions that allow product teams to ship faster and more securely.</li>
<li>Communicate effectively with managers and team members regarding project deliverables and progress.</li>
<li>Design and implement technical solutions that align with the evolving needs of the business.</li>
<li>Proactively identify and address security vulnerabilities in products and services.</li>
<li>Actively participate in incident response and security awareness initiatives.</li>
</ul>
<p><strong>Qualifications</strong></p>
<ul>
<li>2 + years of professional experience building and scaling production services.</li>
<li>Ability to architect software systems to meet security, privacy, usability, scalability and cost requirements.</li>
</ul>
<p>While these experience and characteristics are not prerequisites, candidates who possess them would be well-suited for the role:</p>
<ul>
<li>Experience building systems or services related to vulnerability management, data encryption, key management, secret management, user authentication, service authentication, authorization systems, and security policy enforcement.</li>
<li>Experience designing distributed systems and microservices with a focus on performance and reliability.</li>
<li>Familiarity with modern cloud infrastructure (AWS, Kubernetes, Terraform) and how to integrate security controls into them.</li>
<li>A passion for creating tools and libraries that other engineers love to use.</li>
<li>Passionate about educating others on security and privacy.</li>
</ul>
<p><strong>Additional Information</strong></p>
<p>Our mission at Plaid is to unlock financial freedom for everyone. To support that mission, we seek to build a diverse team of driven individuals who care deeply about making the financial ecosystem more equitable. We recognize that strong qualifications can come from both prior work experiences and lived experiences. We encourage you to apply to a role even if your experience doesn&#39;t fully match the job description.</p>
<p>We are always looking for team members that will bring something unique to Plaid!</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>mid</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$188,748-$260,652 per year</Salaryrange>
      <Skills>vulnerability management, data encryption, key management, secret management, user authentication, service authentication, authorization systems, security policy enforcement, cloud infrastructure, AWS, Kubernetes, Terraform</Skills>
      <Category>Engineering</Category>
      <Industry>Finance</Industry>
      <Employername>Plaid</Employername>
      <Employerlogo>https://logos.yubhub.co/plaid.com.png</Employerlogo>
      <Employerdescription>Plaid is a technology company that builds tools and experiences for developers to create their own products, with a network covering 12,000 financial institutions across the US, Canada, UK and Europe.</Employerdescription>
      <Employerwebsite>https://plaid.com/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://jobs.lever.co/plaid/49f7e590-5487-4c58-84fb-54045ab793d1</Applyto>
      <Location>New York</Location>
      <Country></Country>
      <Postedate>2026-04-17</Postedate>
    </job>
    <job>
      <externalid>9f15a44c-cc5</externalid>
      <Title>Team Lead, SOC (Security Operations Center)</Title>
      <Description><![CDATA[<p>We are looking for a SOC (Security Operations Center) Team Lead to build and lead our SOC function end-to-end. You will own vulnerability management, alerting and detection engineering, incident response, and the security tooling/infrastructure that enable these missions.</p>
<p>Key responsibilities include:</p>
<p>• Leading and growing the team: Manage the SOC team, shape the roadmap, delegate effectively, and mentor engineers.</p>
<p>• Driving operations: Define vulnerability management processes and coordinate stakeholders for timely remediation. Design, implement, and operate SIEM/SOAR infrastructure (ingestion, normalization, correlation, alerting, playbooks). Specify logging requirements across our main stacks and centralize telemetry in the SIEM. Develop and tune correlation rules and detections; manage CTI intake and operationalize intel. Run continuous improvement to reduce false positives and raise signal quality. Establish crisp procedures for alert triage, escalation, and incident handling &amp; investigation. Lead incident communications with stakeholders and ensure thorough documentation.</p>
<p>• Engineering and enablement: Contribute to security tooling, automation, and integrations that speed up detection/response. Produce guidance and documentation for product/infra teams; contribute to compliance in the SOC perimeter.</p>
<p>• Exercises and assurance: Coordinate red/blue exercises, post-mortems, and targeted audits to validate coverage and resilience.</p>
<p>The ideal candidate will have 8+ years of experience leading SOC/CSIRT functions, with proven leadership. Hands-on experience with SIEM (e.g., Elastic Security, Sekoia, Splunk) and SOAR platforms is required. Strong experience in vulnerability management (e.g., DefectDojo, Dependency-Track) and remediation workflows is also necessary. Solid grasp of the cyber kill chain / attack lifecycle, detection engineering, and log source coverage is essential. Excellent problem-solving and communication skills are required, as well as the ability to operate in a fast-paced startup environment.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>SIEM, SOAR, vulnerability management, incident response, security tooling, automation, integrations, cyber kill chain, attack lifecycle, detection engineering, log source coverage, scripting, Python, Bash, modern infra/app stacks, EDR/IDS/IPS, compliance frameworks, security audits/pen-tests</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Mistral AI</Employername>
      <Employerlogo>https://logos.yubhub.co/mistral.ai.png</Employerlogo>
      <Employerdescription>Mistral AI provides high-performance, optimized, open-source and cutting-edge AI models, products and solutions.</Employerdescription>
      <Employerwebsite>https://mistral.ai</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://jobs.lever.co/mistral/e0b55281-55c6-4143-9bf8-e4418c667f9f</Applyto>
      <Location>Paris</Location>
      <Country></Country>
      <Postedate>2026-04-17</Postedate>
    </job>
    <job>
      <externalid>abafedbd-d92</externalid>
      <Title>CyberSecurity Engineer, DevSecOps</Title>
      <Description><![CDATA[<p>About Mistral At Mistral AI, we believe in the power of AI to simplify tasks, save time, and enhance learning and creativity. Our technology is designed to integrate seamlessly into daily working life. We democratize AI through high-performance, optimized, open-source and cutting-edge models, products and solutions. Our comprehensive AI platform is designed to meet enterprise needs, whether on-premises or in cloud environments. Our offerings include le Chat, the AI assistant for life and work. We are a team passionate about AI and its potential to transform society. Our diverse workforce thrives in competitive environments and is committed to driving innovation. Our teams are distributed between France, USA, UK, Germany and Singapore. We are creative, low-ego and team-spirited. Join us to be part of a pioneering company shaping the future of AI. Together, we can make a meaningful impact.</p>
<p>Role summary Mistral AI is looking for a DevSecOps Engineer to architect and maintain the security posture of our rapidly scaling AI infrastructure and application lifecycle. You will treat security as a seamless enabler for our research and engineering teams. Your objective is to embed robust security controls into our CI/CD pipelines, infrastructure environments, and developer workflows, without compromising deployment velocity.</p>
<p>Responsibilities
• Drive threat modeling and risk prioritization exercises, serving as the security counterpart to system-design reviews for our core infrastructure and new products.
• Own end-to-end vulnerability management across CI/CD pipelines and runtime environments, covering both underlying infrastructure and applications.
• Secure our Kubernetes deployments and containerized workloads, implementing advanced pod and node hardening to prevent lateral movement across distributed systems.
• Define and enforce Infrastructure-as-Code security by building robust Terraform guardrails and integrating policy-as-code directly into deployment pipelines.
• Design and execute a comprehensive security tooling strategy, managing solutions for CNAPP, CSPM, SAST, SCA, secrets management, and SBOM-CVE tracking.
• Champion developer enablement by building secure defaults, streamlining remediation workflows, and drafting actionable security guidelines.
• Build foundational security automation to scale alongside hyper-growth, minimizing manual overhead while establishing a pragmatic security culture from the ground up.</p>
<p>About you
• 5+ years of experience in DevSecOps, Security Engineering, or Cloud Security, ideally acting as an early security hire in a fast-paced or hyper-scale environment.
• Deep understanding of Kubernetes and container security, alongside strong experience securing Infrastructure-as-Code (Terraform) across major cloud providers.
• Strong programming and scripting skills (Python, Go, or similar) to build security automation and seamlessly integrate diverse security tools into the developer workflow.
• Extensive experience deploying and tuning modern security tooling with a pragmatic approach to vulnerability management and threat modeling.
• Strong communication skills with a proven track record of partnering with developers and researchers to embed secure defaults without creating engineering friction.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>onsite</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>Kubernetes, container security, Infrastructure-as-Code, Terraform, DevSecOps, security engineering, cloud security, Python, Go, security automation, vulnerability management, threat modeling</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Mistral AI</Employername>
      <Employerlogo>https://logos.yubhub.co/mistral.ai.png</Employerlogo>
      <Employerdescription>Mistral AI is a pioneering company that develops high-performance, optimized, open-source and cutting-edge AI models, products and solutions.</Employerdescription>
      <Employerwebsite>https://mistral.ai</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://jobs.lever.co/mistral/94a331c8-0ddf-4e88-a6ad-7a70c212e0fa</Applyto>
      <Location>Paris</Location>
      <Country></Country>
      <Postedate>2026-04-17</Postedate>
    </job>
    <job>
      <externalid>19286b42-692</externalid>
      <Title>Security Intern</Title>
      <Description><![CDATA[<p>Greenlight is the leading family fintech company on a mission to help parents raise financially smart kids. We proudly serve more than 6 million parents and kids with our award-winning banking app for families.</p>
<p>With Greenlight, parents can automate allowance, manage chores, set flexible spend controls, and invest for their family&#39;s future. Kids and teens learn to earn, save, spend wisely, and invest.</p>
<p>At Greenlight, we believe every child should have the opportunity to become financially healthy and happy. It&#39;s no small task, and that&#39;s why we leap out of bed every morning to come to work. Because creating a better, brighter future for the next generation depends on it.</p>
<p>Greenlight&#39;s internship is a paid program for current college students. Throughout the internship, you&#39;ll collaborate on thoughtful projects and bring your fresh perspectives to impact our product and families.</p>
<p>We are looking for a Security Intern to join Greenlight&#39;s Security team. In this role, you will be a proactive defender, meticulous auditor, and a dash of collaborative problem-solver.</p>
<p>As a Security Intern, you won&#39;t just follow checklists or scan code, but rather you will be a part of developing secure processes and ensuring compliance that protects our applications and informs strategic security decisions.</p>
<p>This is the perfect opportunity for an individual who is passionate about cybersecurity, has the drive to solve complex security problems, and is comfortable working in a fast-paced environment and dealing with ambiguity.</p>
<p>You will work closely with our Product Security and Governance, Risk, and Compliance (GRC) teams to assess security risks, support vulnerability management, and contribute to the development of security policies.</p>
<p>Strong team orientation is a must-have.</p>
<p><strong>What you will be doing:</strong></p>
<ul>
<li>Apply security principles and coursework in a real-world application security environment.</li>
<li>Dive into security tool data (e.g., vulnerability scanners, SAST/DAST) to explore and prepare data for analysis related to application risk.</li>
<li>Collaborate with the security team to conduct analysis that drives risk-based decision-making for application security posture.</li>
<li>Visualize application security posture and compliance results in interactive dashboards used by security and engineering leaders.</li>
<li>Contribute to the documentation of security controls, risks, and compliance requirements to enable better understanding and adherence across the organization.</li>
<li>QA and validate security governance and compliance data to ensure top data quality and consistent reporting on risk and control status.</li>
<li>Perform exploratory data analysis on security events, vulnerabilities, and control metrics to identify patterns, trends, and anomalies related to application risk and compliance.</li>
<li>Stakeholder Communication - Presenting your findings and security recommendations to application owners and governance stakeholders to drive remediation and compliance adherence.</li>
</ul>
<p><strong>What you should bring:</strong></p>
<ul>
<li>A 3.0 GPA or higher</li>
<li>Strong background in cybersecurity risks &amp; principles, system controls, and/or computing</li>
<li>Currently pursuing a degree in Cybersecurity, Information Systems, Computer Science or a related field</li>
<li>Experience with Python, SQL or Java is a plus</li>
<li>Ability to thrive in a fast-paced, entrepreneurial, high-energy environment with shifting priorities</li>
<li>Comfortable dealing with ambiguity, making assumptions, and drawing conclusions</li>
<li>Strong communication skills</li>
<li>Local residency in the Atlanta area for the summer of 2026</li>
<li>A desire to support our mission to shine a light on the world of money for kids, teens and families.</li>
<li>A willingness to learn and adapt as needed in a fast-paced environment.</li>
<li>Attention to detail</li>
<li>Excitement for the Greenlight product and excitement to learn about the fintech industry</li>
</ul>
<p><strong>Learning Opportunities:</strong></p>
<ul>
<li>Hands-on experience working with real security tools and vulnerability data (SAST/DAST) to assess application risk</li>
<li>Build data analysis and visualization skills by turning security insights into dashboards used by engineering and security leaders</li>
<li>Collaborate with Product Security and GRC teams to influence real security decisions, policies, and risk remediation in a live fintech environment</li>
</ul>
<p><strong>Additional Information</strong></p>
<p>Who we are: It takes a special team to aim for a never-been-done-before mission like ours. We’re looking for people who love working together because they know it makes us stronger, people who look to others and ask, “How can I help?” and then “How can we make this even better?” If you’re ready to roll up your sleeves and help create a world where every child grows up to be happy and healthy in money and life, apply to join our team.</p>
<p>Greenlight is an equal opportunity employer and will not discriminate against any employee or applicant based on age, race, color, national origin, gender, gender identity or expression, sexual orientation, religion, physical or mental disability, medical condition (including pregnancy, childbirth, or a medical condition related to pregnancy or childbirth), genetic information, marital status, veteran status, or any other characteristic protected by federal, state or local law. Greenlight is committed to an inclusive work environment and interview experience. If you require reasonable accommodations to participate in our hiring process, please reach out to your recruiter directly or email accomodations@greenlight.me.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>internship</Jobtype>
      <Experiencelevel>internship</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>cybersecurity, risk management, vulnerability management, security tools, data analysis, visualization, communication, Python, SQL, Java, cloud security, security governance</Skills>
      <Category>Engineering</Category>
      <Industry>Finance</Industry>
      <Employername>Greenlight</Employername>
      <Employerlogo>https://logos.yubhub.co/greenlight.com.png</Employerlogo>
      <Employerdescription>Greenlight is a family fintech company that provides a banking app for families. They serve over 6 million parents and kids.</Employerdescription>
      <Employerwebsite>https://www.greenlight.com/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://jobs.lever.co/greenlight/7b130cea-1fe2-4a69-9e54-da7972d667fc</Applyto>
      <Location>Atlanta</Location>
      <Country></Country>
      <Postedate>2026-04-17</Postedate>
    </job>
    <job>
      <externalid>538cc1dd-079</externalid>
      <Title>Lead Cybersecurity Automation Engineer</Title>
      <Description><![CDATA[<p>You will lead the development of end-to-end automation and orchestration strategies for Security Operations, covering detection, triage, investigation, containment, remediation, and post-incident learning.</p>
<p>As a seasoned cybersecurity professional, you will architect and implement scalable, resilient automation frameworks that seamlessly integrate SIEM, SOAR, EDR/XDR, cloud security, identity, vulnerability management, and threat intelligence platforms.</p>
<p>You will design and deploy AI/LLM-enabled workflows to enhance alert triage, enrichment, investigation summarization, decision support, and response actions.</p>
<p>You will collaborate closely with internal stakeholders and external teams to align security outcomes with business priorities.</p>
<p>You will foster a culture of engineering excellence and continuous improvement within SecOps.</p>
<p>Key responsibilities include:</p>
<ul>
<li>Owning and defining the end-to-end automation and orchestration strategy for Security Operations</li>
<li>Architecting and implementing scalable, resilient automation frameworks</li>
<li>Designing and deploying AI/LLM-enabled workflows</li>
<li>Collaborating with internal stakeholders and external teams</li>
<li>Fostering a culture of engineering excellence and continuous improvement</li>
</ul>
<p>Requirements include:</p>
<ul>
<li>10+ years of experience in cybersecurity</li>
<li>Expertise in designing and deploying large-scale security automation and orchestration in enterprise environments</li>
<li>Hands-on experience with SOAR platforms, SIEMs, EDR/XDR, and security telemetry pipelines</li>
<li>Proven ability to apply AI/ML, including LLM-based agentic technologies, to security workflows</li>
<li>Advanced scripting and automation skills</li>
<li>Strong data analytics skills</li>
<li>Solid systems architecture skills</li>
<li>Excellent written and verbal communication skills</li>
</ul>
<p>As a member of the Synopsys Cybersecurity team, you will work alongside experts in SOC, IR, Threat Intelligence, Detection Engineering, and more, collaborating to build resilient, scalable, and innovative security solutions.</p>
<p>Synopsys offers a comprehensive range of health, wellness, and financial benefits to cater to your needs. Our total rewards include both monetary and non-monetary offerings.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>onsite</Workarrangement>
      <Salaryrange>$161000-$242000</Salaryrange>
      <Skills>cybersecurity, automation, orchestration, SIEM, SOAR, EDR/XDR, cloud security, identity, vulnerability management, threat intelligence, AI/ML, LLM, agentic technologies, scripting, data analytics, systems architecture</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Synopsys</Employername>
      <Employerlogo>https://logos.yubhub.co/careers.synopsys.com.png</Employerlogo>
      <Employerdescription>Synopsys develops and maintains software used in chip design, verification, and manufacturing.</Employerdescription>
      <Employerwebsite>https://careers.synopsys.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://careers.synopsys.com/job/austin/lead-cybersecurity-automation-engineer/44408/92980004592</Applyto>
      <Location>Austin</Location>
      <Country></Country>
      <Postedate>2026-04-05</Postedate>
    </job>
    <job>
      <externalid>a2183a2d-c20</externalid>
      <Title>Cyber Security Engineer, Staff Engineer</Title>
      <Description><![CDATA[<p>At Synopsys, we&#39;re seeking a dedicated and detail-oriented Cyber Security Engineer to join our team. As a Cyber Security Engineer, you will play a pivotal role in sustaining long-term CMMC compliance and advancing our cybersecurity maturity. You will own and coordinate CMMC Level 2 documentation, review and validate Standard Operating Procedures (SOPs), and verify implementation and effectiveness of CMMC security controls and practices. You will also support mock audits, readiness reviews, and official CMMC assessments, including evidence preparation and assessor interaction support.</p>
<p>You will collaborate with IT and engineering teams to establish and track patching and remediation priorities, focusing on CMMC scoring impact. You will maintain ownership of all Plans of Action and Milestones (POA&amp;Ms), validating remediation closure evidence, and ensuring alignment with DoD and CMMC requirements. You will also support continuous control monitoring activities for ongoing compliance between assessments.</p>
<p>As a Cyber Security Engineer, you will communicate compliance posture, risks, and remediation status to both technical and non-technical audiences, and support user and stakeholder education. You will also escalate unresolved compliance or remediation risks to cybersecurity and audit leadership as appropriate.</p>
<p>This is an exciting opportunity to join a driven and collaborative Cybersecurity team at Synopsys, working alongside experts in IT, Engineering, and Business Operations. You will report to the Executive Director of Cybersecurity and play a central role in audit readiness, evidence management, and cross-functional collaboration.</p>
<p>To be successful in this role, you will need:</p>
<ul>
<li>Security+ (SEC+) or equivalent industry-recognized cybersecurity certification</li>
<li>4+ years of experience performing Information Assurance, ISSO, ISSE, or equivalent cybersecurity assurance functions</li>
<li>2+ years supporting cybersecurity operations in a DoD or defense-adjacent enterprise environment</li>
<li>Experience supporting NIST SP 800-171, RMF-aligned, or CMMC-related compliance activities</li>
<li>Ability to obtain and maintain a U.S. DoD, FBI, or DHS security clearance</li>
<li>Strong technical understanding of modern hardware, software, and enterprise infrastructure environments</li>
<li>Familiarity with vulnerability management platforms, compliance evidence repositories, and security monitoring outputs</li>
<li>Excellent organizational, prioritization, and time-management skills</li>
<li>Strong analytical and problem-solving abilities with attention to detail</li>
<li>Ability to work effectively across technical and non-technical teams to resolve complex compliance issues</li>
<li>Strong written and verbal communication skills, including the ability to present information to leadership and stakeholder groups</li>
<li>Demonstrated ability to manage multiple competing priorities in a high-assurance environment</li>
</ul>
<p>If you are a collaborative team player who thrives in cross-functional environments, detail-oriented and diligent, proactive and resourceful, clear communicator who can translate technical concepts to non-technical audiences, analytical thinker with strong problem-solving skills, adaptable and resilient, and ethical and trustworthy, committed to maintaining high standards of integrity and confidentiality, then we encourage you to apply for this exciting opportunity.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>staff</Experiencelevel>
      <Workarrangement>onsite</Workarrangement>
      <Salaryrange>$129000-$193000</Salaryrange>
      <Skills>Security+ (SEC+) or equivalent industry-recognized cybersecurity certification, 4+ years of experience performing Information Assurance, ISSO, ISSE, or equivalent cybersecurity assurance functions, 2+ years supporting cybersecurity operations in a DoD or defense-adjacent enterprise environment, Experience supporting NIST SP 800-171, RMF-aligned, or CMMC-related compliance activities, Ability to obtain and maintain a U.S. DoD, FBI, or DHS security clearance, Strong technical understanding of modern hardware, software, and enterprise infrastructure environments, Familiarity with vulnerability management platforms, compliance evidence repositories, and security monitoring outputs, Excellent organizational, prioritization, and time-management skills, Strong analytical and problem-solving abilities with attention to detail, Ability to work effectively across technical and non-technical teams to resolve complex compliance issues, Strong written and verbal communication skills, including the ability to present information to leadership and stakeholder groups, Demonstrated ability to manage multiple competing priorities in a high-assurance environment</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Synopsys</Employername>
      <Employerlogo>https://logos.yubhub.co/careers.synopsys.com.png</Employerlogo>
      <Employerdescription>Synopsys is a technology company that develops software used in chip design, verification, and manufacturing.</Employerdescription>
      <Employerwebsite>https://careers.synopsys.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://careers.synopsys.com/job/morrisville/cyber-security-engineer-staff-engineer-15964/44408/93005893632</Applyto>
      <Location>Morrisville</Location>
      <Country></Country>
      <Postedate>2026-04-05</Postedate>
    </job>
    <job>
      <externalid>3e75d44f-c7f</externalid>
      <Title>Team Lead, SOC (Security Operations Center)</Title>
      <Description><![CDATA[<p>About this role</p>
<p>We are looking for a SOC (Security Operations Center) Team Lead to build and lead our SOC function end-to-end. You will own vulnerability management, alerting and detection engineering, incident response, and the security tooling/infrastructure that enable these missions. You’ll define processes, collaborate closely with Product, Infra and IT, and continuously improve detection quality and response time.</p>
<p>Key responsibilities</p>
<p>• Lead &amp; grow the team: Manage the SOC team, shape the roadmap, delegate effectively, and mentor engineers.</p>
<p>• Drive operations:
    - Define vulnerability management processes and coordinate stakeholders for timely remediation.
    - Design, implement, and operate SIEM/SOAR infrastructure (ingestion, normalization, correlation, alerting, playbooks).
    - Specify logging requirements across our main stacks and centralize telemetry in the SIEM.
    - Develop and tune correlation rules and detections; manage CTI intake and operationalize intel.
    - Run continuous improvement to reduce false positives and raise signal quality.
    - Establish crisp procedures for alert triage, escalation, and incident handling &amp; investigation.
    - Lead incident communications with stakeholders and ensure thorough documentation.</p>
<p>• Engineering &amp; enablement:
    - Contribute to security tooling, automation, and integrations that speed up detection/response.
    - Produce guidance and documentation for product/infra teams; contribute to compliance in the SOC perimeter.</p>
<p>• Exercises &amp; assurance:
    - Coordinate red/blue exercises, post-mortems, and targeted audits to validate coverage and resilience.</p>
<p>Requirements</p>
<p>• 8+ years of experience leading SOC/CSIRT functions, with proven leadership.</p>
<p>• Hands-on with SIEM (e.g., Elastic Security, Sekoia, Splunk) and SOAR platforms.</p>
<p>• Strong experience in vulnerability management (e.g., DefectDojo, Dependency-Track) and remediation workflows.</p>
<p>• Solid grasp of the cyber kill chain / attack lifecycle, detection engineering, and log source coverage.</p>
<p>• Excellent problem-solving and communication skills; able to operate in a fast-paced startup environment.</p>
<p>• Builder mindset: pragmatic, automation-oriented, comfortable with ambiguity and ownership.</p>
<p>Nice to have</p>
<p>• Bring scripting/automation skills (e.g., Python, Bash) for data pipelines/playbooks.</p>
<p>• Know modern infra/app stacks (Linux, containers, Kubernetes, cloud), EDR/IDS/IPS.</p>
<p>• Have exposure to compliance frameworks (ISO 27001, SOC 2) and security audits/pen-tests.</p>
<p>• Have run purple team exercises and measurable detection-coverage programs.</p>
<p>• Are comfortable partnering with Product/Platform teams and influencing roadmaps.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>SIEM, SOAR, vulnerability management, remediation workflows, cyber kill chain, detection engineering, log source coverage, problem-solving, communication skills, scripting/automation skills, modern infra/app stacks, EDR/IDS/IPS, compliance frameworks, security audits/pen-tests, purple team exercises</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Mistral AI</Employername>
      <Employerlogo></Employerlogo>
      <Employerdescription>Mistral AI provides a comprehensive AI platform for enterprise needs, integrating seamlessly into daily working life.</Employerdescription>
      <Employerwebsite>https://mistral.ai</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://jobs.lever.co/mistral/e0b55281-55c6-4143-9bf8-e4418c667f9f</Applyto>
      <Location>Paris</Location>
      <Country></Country>
      <Postedate>2026-03-10</Postedate>
    </job>
    <job>
      <externalid>4474c998-9c7</externalid>
      <Title>Cyber Security Engineer</Title>
      <Description><![CDATA[<p><strong>Cyber Security Engineer</strong></p>
<p><strong>What we&#39;re all about</strong></p>
<p>At Quantexa, we&#39;re a team of innovators and problem solvers who are passionate about creating real change for our clients and their industries. We&#39;re driven by a desire to do things better than the last time, and we&#39;re always looking for talented individuals to join our team.</p>
<p><strong>The opportunity</strong></p>
<p>We&#39;re seeking a highly skilled Cyber Security Engineer to join our Security Operations team. As a Cyber Security Engineer, you will play a key part in protecting Quantexa&#39;s systems and data from cyber threats. You will be responsible for the day-to-day operation, optimisation, and monitoring of core security platforms, with a particular focus on Zscaler, Cloud monitoring through Wiz, and Endpoint Detection and Response through CrowdStrike.</p>
<p><strong>Responsibilities</strong></p>
<p><strong>Wiz (Cloud Security Posture Management)</strong></p>
<ul>
<li>Monitor and triage Wiz findings daily, validating alerts and determining operational impact.</li>
<li>Perform tuning and threat hunting within Wiz and other tooling.</li>
<li>Identify misconfigurations, excessive permissions, and exposed assets, escalating where required.</li>
<li>Track remediation progress with engineering owners and ensure closure of high-priority issues.</li>
</ul>
<p><strong>Zscaler (Web Security Tunnel 2.0)</strong></p>
<ul>
<li>Review and triage Zscaler alerts and policy violations, following documented response procedures.</li>
<li>Investigate suspicious traffic, access attempts, and user activity to determine legitimacy and risk.</li>
<li>Support enforcement actions by validating policy alignment and working with IT and Cloud teams to remediate issues.</li>
<li>Monitor coverage and configuration across users and locations, identifying gaps or misconfigurations.</li>
<li>Support policy tuning by analysing false positives and recommending rule or policy adjustments.</li>
<li>Contribute to playbook development, operational maturity, and ongoing service readiness.</li>
</ul>
<p><strong>CrowdStrike (Endpoint Detection and Response)</strong></p>
<ul>
<li>Review and triage endpoint detections, applying documented response steps.</li>
<li>Execute containment actions, including network isolation and sensor troubleshooting.</li>
<li>Validate full sensor coverage across the estate and address gaps in coordination with IT.</li>
<li>Support tuning activities by analysing false positives and proposing rule refinements.</li>
<li>Contribute to playbook improvements and operational readiness tasks.</li>
</ul>
<p><strong>Security Operations</strong></p>
<ul>
<li>Conduct initial investigation of security incidents, collect evidence, and escalate based on severity with a keen eye on the quality of the output.</li>
<li>Perform daily review of alerts across our SIEM, Wiz, CrowdStrike, and other platforms.</li>
<li>Validate vulnerabilities and configuration weaknesses raised by scanning tools.</li>
<li>Ability to interpret and operationalise threat intelligence, understand how it informs detection, prioritisation, and response activities, and clearly communicate technical threat intelligence to non-technical stakeholders.</li>
<li>Support cloud security controls, identity hygiene checks, and network policy reviews.</li>
<li>Contribute to the ongoing maturity and documentation of operational processes.</li>
</ul>
<p><strong>Collaboration and Ways of Working</strong></p>
<ul>
<li>Act as a trusted operational partner to the Cyber Security Manager and the wider Information Security team, providing proactive support and consistent engagement.</li>
<li>Partner closely with DevOps, IT, and Engineering teams to drive timely and effective remediation actions.</li>
<li>Deliver clear and concise updates on incidents and operational activities proactively, without the need for prompting.</li>
<li>Actively participate in team stand ups, contributing constructively to continuous improvement and operational maturity.</li>
<li>Support senior engineers with platform enhancements, integrations, and controlled change activities.</li>
</ul>
<p><strong>What you&#39;ll bring</strong></p>
<ul>
<li>Demonstrated hands-on experience with security operations, incident triage, or vulnerability management.</li>
<li>Familiarity with EDR platforms (ideally CrowdStrike) and security telemetry analysis.</li>
<li>Knowledge of cloud environments, particularly Azure including Entra and Conditional Access, and a good understanding of cloud security concepts.</li>
<li>Ability to understand alert context, assess impact, and follow structured response processes.</li>
<li>Strong attention to detail, disciplined documentation, and good communication skills.</li>
</ul>
<p><strong>Benefits</strong></p>
<ul>
<li>Competitive salary</li>
<li>Company bonus</li>
<li>Hybrid workplace &amp; free access to global WeWork locations &amp; events</li>
<li>Pension Scheme with a company contribution of 6% (if you contribute 4% or more)</li>
<li>25 days annual leave</li>
<li>Flexible working hours</li>
<li>Professional development opportunities</li>
<li>Access to a range of employee benefits, including health insurance, gym membership, and more</li>
</ul>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>Cloud Security Posture Management, Endpoint Detection and Response, Web Security, Security Operations, Threat Intelligence, Cloud Security, Azure, Conditional Access, Entra, CrowdStrike, Wiz, Zscaler, SIEM, Vulnerability Management, Incident Triage, EDR Platforms, Security Telemetry Analysis, Cloud Security Posture Management, Endpoint Detection and Response, Web Security, Security Operations, Threat Intelligence, Cloud Security, Azure, Conditional Access, Entra, CrowdStrike, Wiz, Zscaler, SIEM, Vulnerability Management, Incident Triage, EDR Platforms, Security Telemetry Analysis</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Quantexa</Employername>
      <Employerlogo>https://logos.yubhub.co/view.com.png</Employerlogo>
      <Employerdescription>Quantexa is a technology company that provides data analytics and risk management solutions to various industries. It has a global presence with a diverse team of professionals.</Employerdescription>
      <Employerwebsite>https://jobs.workable.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://jobs.workable.com/view/5jNMqMFg7cJnLPEDaozihW/hybrid-cyber-security-engineer-in-london-at-quantexa</Applyto>
      <Location>London</Location>
      <Country></Country>
      <Postedate>2026-03-09</Postedate>
    </job>
    <job>
      <externalid>9eb58719-bef</externalid>
      <Title>Application Security Engineer</Title>
      <Description><![CDATA[<p><strong>About the role:</strong></p>
<p>The Application Security team at Anthropic is at the forefront of building security into every phase of the software development lifecycle. In this hands-on technical role, you will partner closely with software engineers and researchers to ensure security is a core consideration from initial design through implementation.</p>
<p>You will lead threat modeling and secure design reviews to proactively identify and mitigate risks early, and help with continuous risk assessment. You will build tools and systems to support developers shipping code securely, adhering to secure coding best practices.</p>
<p>Your insights will shape our tooling, detection capabilities, and defenses against emerging threats to AI/ML. You&#39;ll develop the standards, processes, and educational resources that enable all Anthropic engineers to be security champions.</p>
<p><strong>Responsibilities:</strong></p>
<ul>
<li>Help secure AI products and internal tools that are introducing industry-novel security risks and pushing established security boundaries</li>
<li>Lead “shift left” security efforts to build security into the software development lifecycle</li>
<li>Conduct secure design reviews and threat modeling. Identify and prioritise risks, attack surfaces, and vulnerabilities</li>
<li>Develop tooling to scale security code reviews and respond to developer questions, including advising developers on remediating vulnerabilities and following secure coding practices</li>
<li>Manage Anthropic&#39;s vulnerability management program, including integrating data ingestion pipelines, coding logic to prioritise vulnerability fixes, supporting teams remediating vulnerabilities and developing automated systems at scale</li>
<li>Oversee Anthropic&#39;s bug bounty program. Set scope, validate submissions, perform root cause analysis, coordinate remediation with engineering teams, and award bounties. Cultivate relationships with the ethical hacker community</li>
<li>Collaborate closely with product engineers and researchers to instill security best practices. Advocate for secure architecture, design, and development</li>
<li>Develop and document security policies, standards, and playbooks. Conduct security awareness training for engineers</li>
</ul>
<p><strong>You may be a good fit if you:</strong></p>
<ul>
<li>Have 5+ years of hands-on experience in application and infrastructure security, including securing cloud-based and containerized environments</li>
<li>Strong proficiency in at least one programming language (e.g., Python, Rust, Go, Java)</li>
<li>Lead with empathy, a collaborative spirit, and a learning mindset to work cross-functionally with engineers of all levels to build security into the software development life cycle</li>
<li>Leverage creative and strategic thinking to reduce risk through secure design and simplicity, not just controls</li>
<li>Possess broad security knowledge to connect the dots across domains and identify holistic ways to decrease the overall threat surface</li>
<li>Are keen to distill complex security concepts into clear actions and drive consensus without direct authority</li>
<li>Embody a proactive mindset to thread security throughout the product lifecycle through activities like threat modeling, secure code review, and education</li>
<li>Have a strong grasp of offensive security to anticipate risks from an adversary&#39;s perspective, not just check compliance boxes</li>
<li>Bring experience with modern application stacks, infrastructure, and security tools to implement pragmatic defenses</li>
<li>Are practiced at collaborating cross-functionally and effectively balancing security requirements with business objectives</li>
<li>Advocate for security fundamentals like least privilege, defence-in-depth, and eliminating complexity that could sub-linearly scale security through smart design</li>
</ul>
<p><strong>Strong candidates may also:</strong></p>
<ul>
<li>Hands-on technical expertise securing complex cloud environments and microservices architectures leveraging technologies like Kubernetes, Docker, and AWS / GCP</li>
<li>Exposure to offensive security techniques like vulnerability testing, bug bounty, pen testing, and red team exercises</li>
<li>Familiarity with AI/ML security risks such as prompt injection, data poisoning, model extraction, etc. and mitigations</li>
<li>Experience building security tools, applications, and automated tools</li>
<li>Solid foundational knowledge of both software and security engineering principles and are keen to continue learning</li>
<li>Excellent communication skills, able to distill complex security topics for broad audiences</li>
<li>Worked and thrived in fast-paced environments, and comfortable navigating ambiguity</li>
</ul>
<p>The annual compensation range for this role is $300,000 - $405,000 USD.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$300,000 - $405,000 USD</Salaryrange>
      <Skills>application security, infrastructure security, cloud security, containerized environments, secure coding practices, vulnerability management, bug bounty program, offensive security, modern application stacks, security tools, Kubernetes, Docker, AWS, GCP, Python, Rust, Go, Java, vulnerability testing, pen testing, red team exercises, AI/ML security risks, security tools, automated tools</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Anthropic</Employername>
      <Employerlogo>https://logos.yubhub.co/anthropic.com.png</Employerlogo>
      <Employerdescription>Anthropic is a rapidly growing organisation developing reliable, interpretable, and steerable AI systems. The company&apos;s mission is to create safe and beneficial AI for users and society.</Employerdescription>
      <Employerwebsite>https://job-boards.greenhouse.io</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/anthropic/jobs/4502508008</Applyto>
      <Location>San Francisco, CA, Seattle, WA, New York City, NY</Location>
      <Country></Country>
      <Postedate>2026-03-08</Postedate>
    </job>
    <job>
      <externalid>a634db45-4fd</externalid>
      <Title>Security Engineer Lead, Corporate Security</Title>
      <Description><![CDATA[<p><strong>About the Role:</strong></p>
<p>We’re looking for a Security Engineering Lead to own and drive Anthropic’s Corporate Security programme. This is a player-coach Tech Lead Manager (TLM) role: you’ll be both the most senior technical individual contributor on corporate security and the people leader for a lean, high-impact team of Security Engineers.</p>
<p>Corporate Security at Anthropic encompasses everything that protects our people, endpoints, networks, SaaS ecosystem, and corporate data—the full surface area outside of production infrastructure. The scope is broad and the team is deliberately small, which means you’ll need deep technical skills across multiple domains, strong judgment about where to invest, and a bias toward automation and engineering-driven solutions over manual process.</p>
<p>You’ll report into Security leadership and partner closely with IT, Infrastructure Security, Detection &amp; Response, and GRC teams. This role is high-visibility and high-autonomy: you’ll be expected to define the roadmap, make architectural decisions, and represent Corporate Security across the company.</p>
<p><strong>Responsibilities:</strong></p>
<p><strong>Technical Leadership &amp; Hands-on Engineering</strong></p>
<ul>
<li>Own the security architecture, tooling, and controls for Anthropic’s corporate environment end-to-end, including endpoint fleets (macOS, Windows, ChromeOS), campus and office networks, SaaS applications, mobile devices</li>
<li>Design, build, and ship security automation, integrations, and internal tooling—including leveraging Claude and LLMs to accelerate security workflows</li>
<li>Define and enforce security baselines, hardening standards, and configuration policies across all corporate platforms</li>
<li>Define what it means to operate safely in an environment where AI agents act more like humans than actual humans</li>
<li>Evaluate, select, deploy, and operate corporate security tools (EDR/XDR, MDM, ZTNA, CASB/SSPM, email security, DLP, browser security, etc.)</li>
<li>Drive vulnerability management for corporate assets, including patch orchestration, risk-based prioritization, and exception management</li>
<li>Lead security reviews of new SaaS adoptions, corporate infrastructure changes, and IT projects</li>
</ul>
<p><strong>People Leadership &amp; Team Building</strong></p>
<ul>
<li>Manage, mentor, and grow a purposefully lean team of Security Engineers; set clear expectations, run effective 1:1s, and create an environment where engineers do the best work of their careers</li>
<li>Hire and build the team as scope expands—own the hiring bar and pipeline for Corporate Security Engineering roles</li>
<li>Balance your own IC contributions with the team’s needs; know when to go deep on a problem yourself and when to delegate and coach</li>
<li>Foster a culture of operational excellence, blameless incident review, and continuous improvement</li>
</ul>
<p><strong>Strategy &amp; Cross-Functional Partnership</strong></p>
<ul>
<li>Define and own the Corporate Security roadmap, aligning investments to Anthropic’s risk profile and growth trajectory</li>
<li>Partner with IT Operations to ensure security is embedded in endpoint provisioning, network design, and SaaS lifecycle management</li>
<li>Collaborate with Detection &amp; Response on telemetry coverage, detection engineering, and incident handling for corporate-sourced events</li>
<li>Partner with Infrastructure and Security Engineering teams to ensure security standards are consistent across all of Anthropic</li>
<li>Communicate security posture, risks, and investment needs to Security leadership and cross-functional stakeholders clearly and persuasively</li>
</ul>
<p><strong>You may be a good fit if you:</strong></p>
<ul>
<li>Have 8+ years of Security Engineering experience in a corporate/enterprise security domain (endpoint security, network security, SaaS security, identity, or a combination)</li>
<li>Have 2+ years of experience managing or tech-leading a team of engineers, with a demonstrated track record of developing talent and shipping results through others</li>
<li>Are a strong engineer who still writes code regularly—you can prototype a tool, write a detection, build an integration, or debug a complex configuration issue</li>
<li>Have deep experience with macOS fleet security (this is our primary platform) and solid working knowledge of Windows and ChromeOS security</li>
<li>Have hands-on experience deploying and operating EDR/XDR, MDM, ZTNA/zero trust, and identity security solutions at scale</li>
<li>Understand modern SaaS security challenges: shadow IT, OAuth token sprawl, data exfiltration paths, SaaS-to-SaaS integrations, and SSPM/CASB tooling</li>
<li>Can work independently with high autonomy, manage ambiguity, and make sound risk-based prioritization decisions in a fast-paced environment</li>
<li>Have excellent communication skills and can translate complex security topics into clear recommendations for technical and non-technical audiences</li>
</ul>
<p>Strong candidates may have:</p>
<ul>
<li>Securing corporate environments at high-growth AI, cloud, or developer-tools companies</li>
<li>Maturing a Corporate Security function from early stage, including defining scope, selecting the initial toolset, and hiring the founding team</li>
<li>Advanced macOS security (system extensions, endpoint security framework, MDM profile engineering, Declarative Device Management)</li>
<li>Network security architecture for hybrid/multi-office environments, including SD-WAN, ZTNA, DNS security, and network segmentation</li>
<li>Browser security and isolation technologies (e.g., Island, Talon/Palo Alto, Chrome Enterprise)</li>
<li>Proficiency in Python, Go, or similar languages for building sec</li>
</ul>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>macOS fleet security, endpoint security, network security, SaaS security, identity security, EDR/XDR, MDM, ZTNA, CASB/SSPM, email security, DLP, browser security, patch orchestration, risk-based prioritization, exception management, security automation, integrations, internal tooling, Claude, LLMs, security baselines, hardening standards, configuration policies, vulnerability management, security reviews, IT projects, team management, team building, operational excellence, blameless incident review, continuous improvement, security roadmap, risk profile, growth trajectory, IT operations, endpoint provisioning, network design, SaaS lifecycle management, detection engineering, incident handling, infrastructure security, security engineering, security standards, communication, security posture, risks, investment needs, Python, Go, similar languages, macOS security, Windows security, ChromeOS security, advanced macOS security, system extensions, endpoint security framework, MDM profile engineering, Declarative Device Management, network security architecture, SD-WAN, ZTNA, DNS security, network segmentation, browser security and isolation technologies, Island, Talon/Palo Alto, Chrome Enterprise</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Anthropic</Employername>
      <Employerlogo>https://logos.yubhub.co/anthropic.com.png</Employerlogo>
      <Employerdescription>Anthropic is a quickly growing organisation that aims to create reliable, interpretable, and steerable AI systems. The company is working towards building beneficial AI systems that are safe and beneficial for users and society as a whole.</Employerdescription>
      <Employerwebsite>https://www.anthropic.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/anthropic/jobs/5135098008</Applyto>
      <Location>San Francisco, CA | New York City, NY</Location>
      <Country></Country>
      <Postedate>2026-03-08</Postedate>
    </job>
    <job>
      <externalid>70ec5312-0a5</externalid>
      <Title>Cloud Security Lead</Title>
      <Description><![CDATA[<p>Join us at the forefront of AI and cloud-native security as we work to secure one of the most innovative developer platforms in the world. As the Cloud Security Lead, you will shape the cloud and infrastructure security program that protects millions of developers, enables safe AI-assisted development, and ensures organisations can confidently bring our platform into enterprise environments.</p>
<p>In this role, you will own cloud security across GCP (primary) and supplemental environments in AWS and Azure, as well as containerized systems, SaaS platforms, and our multi-tenant AI infrastructure. You’ll improve our security posture through strong architecture, posture management, secure-by-default development practices, and close partnership with Engineering, Compliance, Security Architecture, and Platform teams.</p>
<p>This is a highly impactful, hands-on leadership role—perfect for someone who wants to solve complex security challenges at scale while influencing product, engineering, and go-to-market teams.</p>
<p><strong>Cloud Security Engineering</strong></p>
<ul>
<li>Lead configuration hardening across GCP, with additional oversight of workloads and integrations running in AWS and Azure.</li>
<li>Own and optimise CSPM platforms across multi-cloud environments—establishing configuration baselines, guardrails, and remediation workflows.</li>
<li>Secure critical SaaS platforms, ensuring proper configurations, access controls, and engineering integrations.</li>
<li>Lead infrastructure vulnerability management across multi-cloud systems, containers, registries, and platform services.</li>
<li>Enhance security across containerised and Kubernetes (GKE/EKS/AKS) workloads, including runtime protections, network policies, and workload identity.</li>
<li>Assess secure logging configurations across cloud/SaaS providers, ensuring audit logs, retention, and routing meet monitoring and architecture needs.</li>
</ul>
<p><strong>Secure Development &amp; Architecture Enablement</strong></p>
<ul>
<li>Partner with engineering teams to make services secure by default, embedding security into development workflows, CI/CD pipelines, and cloud-native deployments.</li>
</ul>
<p><strong>Cross-Functional Responsibilities</strong></p>
<ul>
<li>Collaborate with Security Monitoring, Compliance/GRC, Architecture, DevOps, Platform Engineering, and ML Infrastructure.</li>
<li>Participate in communicating security advisories, best practices, and updates to Replit’s customers.</li>
<li>Support incident investigations as a cloud security subject-matter expert.</li>
</ul>
<p><strong>Required Skills &amp; Experience:</strong></p>
<ul>
<li>7+ years of experience in cloud engineering, with 3+ years in a senior or lead role.</li>
<li>Hands-on experience with CSPM tools (Wiz, Lacework, Prisma, Orca, SCC, etc.).</li>
<li>Deep expertise in GCP security (IAM, VPC, KMS, GKE, Cloud Logging).</li>
<li>Experience securing and governing SaaS platforms and identity integrations.</li>
<li>Operational experience with infrastructure vulnerability management across cloud and container environments.</li>
<li>Working knowledge of AWS and/or Azure security services and configurations.</li>
<li>Experience with container and Kubernetes security across GKE, EKS, or AKS.</li>
<li>Strong IaC security experience with Terraform, Pulumi, or similar tooling.</li>
<li>Familiarity with compliance standards (SOC 2, ISO 27001, PCI DSS).</li>
</ul>
<p><strong>Preferred Qualifications:</strong></p>
<ul>
<li>Experience supporting engineering teams in building secure-first, cloud-native or PaaS environments.</li>
<li>Background securing AI/ML pipelines, model-serving infrastructure, or developer platform services.</li>
<li>Experience in high-growth technology or cloud-native product companies.</li>
<li>Experience with securing AI/agentic systems and sensitive data pipelines.</li>
<li>Automation/scripting with Python.</li>
<li>Relevant certifications (e.g., GCP Professional Cloud Security Engineer, AWS/Azure security certs).</li>
</ul>
<p><strong>What We Value:</strong></p>
<ul>
<li>Problem-solving mindset — Ability to break down complex security and operational challenges into clear engineering solutions.</li>
<li>Autonomy — Comfortable leading initiatives, collaborating effectively, and driving outcomes with minimal oversight.</li>
<li>Communication excellence — Able to translate deep technical concepts for engineers, executives, and enterprise customers.</li>
<li>Continuous learning — Passion for staying current with AI security, cloud-native advances, and emerging threats.</li>
<li>Automation-first approach — Belief in reducing operational toil and building scalable, self-healing systems.</li>
</ul>
<p><strong>Full-Time Employee Benefits Include:</strong></p>
<ul>
<li>Competitive Salary &amp; Equity</li>
<li>401(k) Program with a 4% match</li>
<li>Health, Dental, Vision and Life Insurance</li>
<li>Short Term and Long Term Disability</li>
<li>Paid Parental, Medical, Caregiver Leave</li>
<li>Commuter Benefits</li>
<li>Monthly Wellness Stipend</li>
<li>Autonomous Work Environment</li>
<li>In Office Set-Up Reimbursement</li>
<li>Flexible Time Off (FTO) + Holidays</li>
<li>Quarterly Team Gatherings</li>
<li>In Office Amenities</li>
</ul>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$220K – $325K</Salaryrange>
      <Skills>CSPM tools, GCP security, SaaS platforms, infrastructure vulnerability management, container and Kubernetes security, IaC security, compliance standards, secure-first, cloud-native or PaaS environments, AI/ML pipelines, model-serving infrastructure, developer platform services, Python, relevant certifications</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Replit</Employername>
      <Employerlogo>https://logos.yubhub.co/replit.com.png</Employerlogo>
      <Employerdescription>Replit isCallableWrapper a software creation platform that enables anyone to build applications using natural language. With millions of users worldwide, Replit is democratizing software development by removing traditional barriers to application creation.</Employerdescription>
      <Employerwebsite>https://jobs.ashbyhq.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://jobs.ashbyhq.com/replit/8027a0f4-4837-4e49-a4dd-8ad1bde23277</Applyto>
      <Location>Foster City, CA</Location>
      <Country></Country>
      <Postedate>2026-03-07</Postedate>
    </job>
    <job>
      <externalid>ccb6abb1-684</externalid>
      <Title>Product Security Engineer (PSIRT - Product Security Incident Response Team)</Title>
      <Description><![CDATA[<p>We are looking for a highly skilled PSIRT Engineer to lead the vulnerability response program for Replit&#39;s cloud-native AI platform. You will own the lifecycle of security vulnerabilities affecting our products and services—from intake to validation, remediation coordination, and public disclosure.</p>
<p>This role requires strong technical ability to reproduce vulnerabilities, deep understanding of web/app/cloud exploit classes, and experience operating bug bounty and coordinated disclosure programs. You will work closely with Engineering, Cloud Security, SecOps, SRE, and IT teams to ensure vulnerabilities are fixed quickly and communicated responsibly.</p>
<p><strong>Vulnerability Intake, Triage &amp; Validation</strong></p>
<ul>
<li>Manage intake from bug bounty platforms (HackerOne preferred), customer reports, automated scanners, pentest reports, and coordinated disclosure channels.</li>
<li>Independently validate, reproduce, severity-score, and document findings.</li>
<li>Identify duplicates and maintain a clean vulnerability records pipeline.</li>
<li>Assess relevance and exploitability using OWASP, cloud misconfiguration patterns, and identity/authentication/authorisation risks (Oauth, OIDC).</li>
</ul>
<p><strong>Remediation Coordination &amp; SLA Management</strong></p>
<ul>
<li>Work with Engineering, SecOps, IT, SRE, and Cloud Security to confirm product impact and drive remediation.</li>
<li>Provide detailed reproduction steps, proof-of-concepts, and technical analyses.</li>
<li>Track SLAs, remediation progress, regression testing, and systemic improvements.</li>
<li>Support SOC 2, ISO 27001, and pentest evidence needs as part of vulnerability lifecycle governance.</li>
</ul>
<p><strong>Bug Bounty &amp; Vulnerability Disclosure Program Management</strong></p>
<ul>
<li>Design and evolve the bug bounty program, including scope, rules, and reward structures.</li>
<li>Manage platform selection, private vs. public launches, and community engagement.</li>
<li>Communicate clearly with researchers, provide clarifications, and handle feedback or disputes.</li>
<li>Determine reward payouts, bonus decisions, and recognition for top contributors.</li>
</ul>
<p><strong>Coordinated Disclosure &amp; CVE Management</strong></p>
<ul>
<li>Lead the coordinated vulnerability disclosure process for internal and external findings.</li>
<li>Negotiate disclosure timelines with researchers and partners.</li>
<li>Coordinate CVE assignments and publications, and prepare customer/public advisories.</li>
</ul>
<p><strong>Required Skills</strong></p>
<ul>
<li>Experience running or triaging for bug bounty programs (HackerOne ideally).</li>
<li>Strong ability to triage, validate, and reproduce vulnerabilities independently.</li>
<li>Deep understanding of web/app/cloud vulnerability classes, OWASP Top 10, misconfigurations, authN/Z issues, etc.</li>
<li>Familiarity with cloud platforms (GCP preferred) and SaaS architectures.</li>
<li>Strong understanding of CI/CD workflows, code structure, and software engineering fundamentals.</li>
</ul>
<p><strong>Nice to Have</strong></p>
<ul>
<li>Scripting or automation experience (Python, Go, Bash).</li>
<li>Pentesting background or exposure to offensive security work.</li>
<li>Familiarity with compliance frameworks such as SOC 2 and ISO 27001.</li>
<li>Experience authoring public advisories or CVE writeups.</li>
<li>Hands-on experience with SIEM, Cloud Logging, and investigative tooling.</li>
</ul>
<p>This is a full-time role that can be held from our Foster City, CA office. The role has an in-office requirement of Monday, Wednesday, and Friday.</p>
<p><strong>Full-Time Employee Benefits Include:</strong></p>
<ul>
<li>Competitive Salary &amp; Equity</li>
<li>401(k) Program with a 4% match</li>
<li>Health, Dental, Vision and Life Insurance</li>
<li>Short Term and Long Term Disability</li>
<li>Paid Parental, Medical, Caregiver Leave</li>
<li>Commuter Benefits</li>
<li>Monthly Wellness Stipend</li>
<li>Autonomous Work Environment</li>
<li>In Office Set-Up Reimbursement</li>
<li>Flexible Time Off (FTO) + Holidays</li>
<li>Quarterly Team Gatherings</li>
<li>In Office Amenities</li>
</ul>
<p><strong>Want to learn more about what we are up to?</strong></p>
<ul>
<li>Meet the Replit Agent</li>
<li>Replit: Make an app for that</li>
<li>Replit Blog</li>
<li>Amjad TED Talk</li>
</ul>
<p><strong>Interviewing + Culture at Replit</strong></p>
<ul>
<li>Operating Principles</li>
<li>Reasons not to work at Replit</li>
</ul>
<p>To achieve our mission of making programming more accessible around the world, we need our team to be representative of the world. We welcome your unique perspective and experiences in shaping this product. We encourage people from all kinds of backgrounds to apply, including and especially candidates from underrepresented and non-traditional backgrounds.</p>
<p>Compensation Range: $180K - $325K</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$180K - $325K</Salaryrange>
      <Skills>bug bounty, vulnerability management, cloud security, CI/CD workflows, software engineering fundamentals, scripting, automation, pentesting, compliance frameworks, SIEM, Cloud Logging</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Replit</Employername>
      <Employerlogo>https://logos.yubhub.co/replit.com.png</Employerlogo>
      <Employerdescription>Replit is a software creation platform that enables anyone to build applications using natural language. With millions of users worldwide, Replit is a large organisation.</Employerdescription>
      <Employerwebsite>https://jobs.ashbyhq.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://jobs.ashbyhq.com/replit/1e26fd62-af75-46b8-bb4e-3e702caa600a</Applyto>
      <Location>Foster City, CA</Location>
      <Country></Country>
      <Postedate>2026-03-07</Postedate>
    </job>
    <job>
      <externalid>76d0b73d-4cb</externalid>
      <Title>Solutions Engineer, Security Specialist</Title>
      <Description><![CDATA[<p><strong>Solutions Engineer, Security Specialist</strong></p>
<p><strong>Location</strong></p>
<p>Tokyo, Japan</p>
<p><strong>Employment Type</strong></p>
<p>Full time</p>
<p><strong>Location Type</strong></p>
<p>Hybrid</p>
<p><strong>Department</strong></p>
<p><strong><strong>About the Team</strong></strong></p>
<p>The Technical Success team is responsible for ensuring the safe and effective deployment of ChatGPT and OpenAI API applications for developers and enterprises, acting as a trusted advisor so customers maximize value from our models and products.</p>
<p>As OpenAI’s enterprise footprint grows—especially across regulated industries—security and compliance diligence is increasingly happening live with CISOs, risk teams, privacy officers, and auditors.</p>
<p><strong><strong>About the Role</strong></strong></p>
<p>We are hiring a <strong>Security Solutions Engineer</strong> to serve as the <strong>customer-facing security and compliance pre-sales subject matter expert</strong> for priority customer accounts—especially in regulated industries. You will lead security deep dives, diligence workflows, and questionnaires, and help customers understand OpenAI’s security posture, controls, and architectural patterns.</p>
<p>This role is designed to <strong>increase deal velocity and customer confidence</strong> while reducing the operational load on internal security teams by owning the customer-facing workstream and escalating selectively.</p>
<p><strong><strong>In this role, you will</strong></strong></p>
<ul>
<li><strong>Lead customer security engagements end-to-end</strong>: discovery, security deep dives, live calls, follow-ups, and action tracking—especially for regulated customers.</li>
</ul>
<ul>
<li><strong>Own security questionnaires/RFIs</strong> for priority customers: coordinate inputs, ensure accuracy, drive turnaround time, and manage escalations.</li>
</ul>
<ul>
<li><strong>Translate security posture into customer-relevant narratives</strong>: data flows, tenant boundaries, identity and access controls, encryption, logging/monitoring, incident response, privacy controls, and risk mitigations.</li>
</ul>
<ul>
<li><strong>Guide customers to standardized resources</strong> (e.g., trust collateral) and explain what is standard vs. what requires escalation or exceptions.</li>
</ul>
<ul>
<li><strong>Partner closely with GRC and Security teams</strong> to escalate non-standard requirements, clarify control intent, and ensure customer-facing responses remain aligned with approved posture.</li>
</ul>
<ul>
<li><strong>Create scalable enablement</strong>: playbooks, FAQs, response libraries, and training that reduce repeated work for Solutions Engineers and Sales.</li>
</ul>
<ul>
<li><strong>Represent the voice of regulated customers internally</strong> by identifying themes and recurring blockers; propose improvements to packaging, documentation, and product readiness.</li>
</ul>
<p><strong><strong>You’ll thrive in this role if you</strong></strong></p>
<ul>
<li>Have <strong>5+ years (guideline)</strong> in a customer-facing security role such as security pre-sales/solutions engineering, security consulting, security architecture, or GRC-adjacent customer advisory in B2B SaaS or cloud environments.</li>
</ul>
<ul>
<li>Can credibly engage and influence <strong>CISOs, security architects, privacy teams, and procurement/risk stakeholders</strong> in real-time discussions.</li>
</ul>
<ul>
<li>Understand modern cloud/security fundamentals: IAM, network/security architecture, encryption/key management concepts, logging/monitoring, vulnerability management, incident response, and secure SDLC.</li>
</ul>
<ul>
<li>Are strong in structured writing and can produce crisp, consistent answers under time pressure (questionnaires, RFIs, executive summaries).</li>
</ul>
<ul>
<li>Can operate in ambiguity, own problems end-to-end, and create repeatable processes that scale beyond yourself.</li>
</ul>
<p><strong>About OpenAI</strong></p>
<p>OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core, and to achieve our mission, we must encompass and value the many different perspectives, voices, and experiences that form the full spectrum of humanity.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>security pre-sales/solutions engineering, security consulting, security architecture, GRC-adjacent customer advisory, B2B SaaS, cloud environments, IAM, network/security architecture, encryption/key management concepts, logging/monitoring, vulnerability management, incident response, secure SDLC</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>OpenAI</Employername>
      <Employerlogo>https://logos.yubhub.co/openai.com.png</Employerlogo>
      <Employerdescription>OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. It is a company that pushes the boundaries of the capabilities of AI systems and seeks to safely deploy them to the world through its products.</Employerdescription>
      <Employerwebsite>https://jobs.ashbyhq.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://jobs.ashbyhq.com/openai/79f7dfb2-3dff-4411-afb2-f0aacb1fa641</Applyto>
      <Location>Tokyo, Japan</Location>
      <Country></Country>
      <Postedate>2026-03-06</Postedate>
    </job>
    <job>
      <externalid>7670f72a-ca5</externalid>
      <Title>Security Solutions Engineer, Pre-Sales (Security Specialist) - APAC</Title>
      <Description><![CDATA[<p><strong>About the Team</strong></p>
<p>The Technical Success team is responsible for ensuring the safe and effective deployment of ChatGPT and OpenAI API applications for developers and enterprises, acting as a trusted advisor so customers maximize value from our models and products.</p>
<p>As OpenAI’s enterprise footprint grows—especially across regulated industries—security and compliance diligence is increasingly happening live with CISOs, risk teams, privacy officers, and auditors.</p>
<p><strong>About the Role</strong></p>
<p>We are hiring a <strong>Security Solutions Engineer</strong> to serve as the <strong>customer-facing security and compliance pre-sales subject matter expert</strong> for priority customer accounts—especially in regulated industries. You will lead security deep dives, diligence workflows, and questionnaires, and help customers understand OpenAI’s security posture, controls, and architectural patterns.</p>
<p>This role is designed to <strong>increase deal velocity and customer confidence</strong> while reducing the operational load on internal security teams by owning the customer-facing workstream and escalating selectively.</p>
<p>This role is based in Singapore. We use a hybrid work model of 3 days in the office per week and offer relocation assistance to new employees.</p>
<p><strong>In this role, you will</strong></p>
<ul>
<li><strong>Lead customer security engagements end-to-end</strong>: discovery, security deep dives, live calls, follow-ups, and action tracking—especially for regulated customers.</li>
</ul>
<ul>
<li><strong>Own security questionnaires/RFIs</strong> for priority customers: coordinate inputs, ensure accuracy, drive turnaround time, and manage escalations.</li>
</ul>
<ul>
<li><strong>Translate security posture into customer-relevant narratives</strong>: data flows, tenant boundaries, identity and access controls, encryption, logging/monitoring, incident response, privacy controls, and risk mitigations.</li>
</ul>
<ul>
<li><strong>Guide customers to standardized resources</strong> (e.g., trust collateral) and explain what is standard vs. what requires escalation or exceptions.</li>
</ul>
<ul>
<li><strong>Partner closely with GRC and Security teams</strong> to escalate non-standard requirements, clarify control intent, and ensure customer-facing responses remain aligned with approved posture.</li>
</ul>
<ul>
<li><strong>Create scalable enablement</strong>: playbooks, FAQs, response libraries, and training that reduce repeated work for Solutions Engineers and Sales.</li>
</ul>
<ul>
<li><strong>Represent the voice of regulated customers internally</strong> by identifying themes and recurring blockers; propose improvements to packaging, documentation, and product readiness.</li>
</ul>
<p><strong>You’ll thrive in this role if you</strong></p>
<ul>
<li>Have <strong>5+ years (guideline)</strong> in a customer-facing security role such as security pre-sales/solutions engineering, security consulting, security architecture, or GRC-adjacent customer advisory in B2B SaaS or cloud environments.</li>
</ul>
<ul>
<li>Can credibly engage and influence <strong>CISOs, security architects, privacy teams, and procurement/risk stakeholders</strong> in real-time discussions.</li>
</ul>
<ul>
<li>Understand modern cloud/security fundamentals: IAM, network/security architecture, encryption/key management concepts, logging/monitoring, vulnerability management, incident response, and secure SDLC.</li>
</ul>
<ul>
<li>Are strong in structured writing and can produce crisp, consistent answers under time pressure (questionnaires, RFIs, executive summaries).</li>
</ul>
<ul>
<li>Can operate in ambiguity, own problems end-to-end, and create repeatable processes that scale beyond yourself.</li>
</ul>
<p><strong>About OpenAI</strong></p>
<p>OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core, and to achieve our mission, we must encompass and value the many different perspectives, voices, and experiences that form the full spectrum of humanity.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>security pre-sales/solutions engineering, security consulting, security architecture, GRC-adjacent customer advisory, B2B SaaS, cloud environments, IAM, network/security architecture, encryption/key management concepts, logging/monitoring, vulnerability management, incident response, secure SDLC</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>OpenAI</Employername>
      <Employerlogo>https://logos.yubhub.co/openai.com.png</Employerlogo>
      <Employerdescription>OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products.</Employerdescription>
      <Employerwebsite>https://jobs.ashbyhq.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://jobs.ashbyhq.com/openai/215b02db-1cbf-4f97-8866-7a460ddf7b35</Applyto>
      <Location>Singapore</Location>
      <Country></Country>
      <Postedate>2026-03-06</Postedate>
    </job>
    <job>
      <externalid>7e965433-47d</externalid>
      <Title>Manager Cyber Security – SOC &amp; Detection Engineering</Title>
      <Description><![CDATA[<p>Opening. This role is responsible for shaping the future of security operations and driving the development of modern SOC and detection services in the enterprise and public sector. analysed the following tasks:</p>
<p><strong>What you&#39;ll do</strong></p>
<p>You will be responsible for the strategic development and operational management of SOC and CDC projects with a focus on SIEM, XDR, SOAR, and vulnerability management solutions. This includes responsibility for architecture, transition, and optimization of detection and response platforms (e.g. SIEM modernization, XDR introduction, tool rollouts, detection engineering).</p>
<ul>
<li>Strategische Weiterentwicklung und operative Steuerung von SOC- und CDC-Projekten mit Fokus auf SIEM-, XDR-, SOAR- und Vulnerability-Management-Lösungen</li>
<li>Verantwortung für Architektur, Transition und Optimierung von Detection- und Response-Plattformen (z. B. SIEM-Modernisierung, XDR-Einführung, Tool-Rollouts, Detection Engineering)</li>
</ul>
<p><strong>What you need</strong></p>
<p>To be successful in this role, you will need the following skills:</p>
<ul>
<li>Abgeschlossenes Studium im MINT-Bereich oder vergleichbare Qualifikation sowie mindestens 5–7 Jahre Berufserfahrung in der Cyber Security mit Schwerpunkt SOC, SIEM, XDR oder Detection Engineering</li>
<li>Leidenschaft für Security-Architekturen, Incident Response, Detection Use Cases und idealerweise Vulnerability Management</li>
<li>Expertise im Unternehmerischen Denken sowie Erfahrung in Projektleitung, Presales oder Business Development im Beratungsumfeld und idealer Weise Erfahrung mit Microsoft Sentinel, Microsoft Defender, Crowdstrike oder PaloAlto Cortex SOAR</li>
</ul>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>Abgeschlossenes Studium im MINT-Bereich oder vergleichbare Qualifikation, mindestens 5–7 Jahre Berufserfahrung in der Cyber Security mit Schwerpunkt SOC, SIEM, XDR oder Detection Engineering, Leidenschaft für Security-Architekturen, Incident Response, Detection Use Cases und idealerweise Vulnerability Management, Expertise im Unternehmerischen Denken, Erfahrung in Projektleitung, Presales oder Business Development im Beratungsumfeld, Erfahrung mit Microsoft Sentinel, Microsoft Defender, Crowdstrike oder PaloAlto Cortex SOAR</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>MHP - A Porsche Company</Employername>
      <Employerlogo>https://logos.yubhub.co/jobs.porsche.com.png</Employerlogo>
      <Employerdescription>MHP is a technology and business partner that digitalizes processes and products for its customers and accompanies them in their IT transformations along the entire value chain. As a digitalization pioneer in the sectors of mobility and manufacturing, MHP transfers its expertise to various industries and is the premium partner for thought leaders on the way to a better tomorrow.</Employerdescription>
      <Employerwebsite>https://jobs.porsche.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://jobs.porsche.com/index.php?ac=jobad&amp;id=19859</Applyto>
      <Location>Deutschlandweit &amp; Hybrid Work</Location>
      <Country></Country>
      <Postedate>2026-03-04</Postedate>
    </job>
  </jobs>
</source>