
201 - 500 employés
🔐 Sécurité
☁️ SaaS
Security • SaaS
Cobalt est un leader dans la fourniture de services de sécurité offensive, se spécialisant dans des solutions modernes de tests d'intrusion. Ils offrent une plateforme complète qui inclut des tests de sécurité dynamique des applications, la sécurité réseau et la sécurité du cloud. Connus comme les pionniers du Pentest en tant que Service (PtaaS), Cobalt permet aux organisations de faire évoluer efficacement leurs efforts de sécurité grâce à un accès à la demande à un pool d'experts en tests d'intrusion. Leurs services sont conçus pour aider les entreprises à identifier les risques et à sécuriser leur infrastructure de manière efficace tout en assurant la conformité avec les normes de l'industrie. L'approche innovante et l'expérience éprouvée de Cobalt aident les entreprises à réduire les risques de sécurité et à améliorer leur posture globale de sécurité.
🕒 il y a 1 jour
🇺🇸 États-Unis – Télétravail
💵 $120 000 - $150 000 / an
⏰ Temps Plein
🟠 Senior
👮♂️ Cybersécurité / Ingénieur Sécurité
🦅 Parrain de Visa H1B
🗣️🇺🇸🇬🇧 Anglais requis
Améliorez vos chances d'obtenir un entretien en vérifiant votre score de CV avant de postuler.

201 - 500 employés
🔐 Sécurité
☁️ SaaS
Security • SaaS
Cobalt est un leader dans la fourniture de services de sécurité offensive, se spécialisant dans des solutions modernes de tests d'intrusion. Ils offrent une plateforme complète qui inclut des tests de sécurité dynamique des applications, la sécurité réseau et la sécurité du cloud. Connus comme les pionniers du Pentest en tant que Service (PtaaS), Cobalt permet aux organisations de faire évoluer efficacement leurs efforts de sécurité grâce à un accès à la demande à un pool d'experts en tests d'intrusion. Leurs services sont conçus pour aider les entreprises à identifier les risques et à sécuriser leur infrastructure de manière efficace tout en assurant la conformité avec les normes de l'industrie. L'approche innovante et l'expérience éprouvée de Cobalt aident les entreprises à réduire les risques de sécurité et à améliorer leur posture globale de sécurité.
• Conduct deep-dive vulnerability research, reverse engineering, and threat analysis across Web/API platforms, mobile operating systems, low-level OS stacks, cloud infrastructures, and critical enterprise software systems • Identify high-impact vulnerabilities and novel attack surfaces; develop proof-of-concept exploit techniques to demonstrate real-world risk • Research emerging threat vectors and maintain testing guidelines across cloud environments, APIs, mobile platforms, and AI/ML technologies • Collaborate with Product and Engineering teams to turn research findings into scalable security assessment capabilities, automated testing workflows, and platform intelligence • Partner with engineering, product, and operations teams to translate security research into customer value and platform improvements • Provide technical guidance, benchmarking, mentorship, and quality assurance for junior researchers and community members • Represent Cobalt through technical blog posts, advisories, whitepapers, and conference presentations
• 5+ years of dedicated experience in offensive security, vulnerability research, penetration testing, red teaming, or reverse engineering, or 3+ years with a proven track record of published research, CVE disclosures, or open-source security tooling • Expertise in modern application stacks including Node.js, Go, Python, Java, and Rust • Knowledge of Linux, Windows, and macOS internals and operating system security fundamentals • Experience with containerized cloud environments including Docker, Kubernetes, AWS, and GCP • Ability to analyze binary, source code, or bytecode and construct reliable proof-of-concept exploits • Experience with complex vulnerability classes such as memory corruption, deserialization, auth bypass, SSRF/RCE, and cloud privilege escalation • Proficiency in Python, Go, Bash, or Rust for custom research tools, scripts, and testing utilities • Ability to document complex technical findings as actionable remediation guidance • Must reside in the United States; EST or CST time-zone alignment preferred • Nice-to-have: familiarity with AI/ML security concepts, LLM risk models, and novel software integrations • Nice-to-have: experience with Ghidra, IDA Pro, Binary Ninja, or GDB/LLDB • Nice-to-have: published CVEs, security advisories, or bug bounty recognition • Nice-to-have: active OSCP, OSEP, OSWE, OSEE, GXPN, or AWS Certified Security Specialist certifications • Nice-to-have: open-source security tooling or research contributions
• Earn competitive compensation and an attractive equity plan • Save for the future with a 401(k) program (US) or pension (EU) • Benefit from medical, dental, vision and life insurance (US) or statutory healthcare (EU) • Wellness stipend • Work-from-home equipment and wifi stipend • Learning and development stipend • Flexible, generous paid time off • Paid parental leave • Ongoing mentorship opportunities
Postuler Maintenant🕒 il y a 1 jour
Business Information Security Lead securing US Foods’ digital technology value stream. Managing cybersecurity risk, compliance, vulnerabilities, and security governance for a leading foodservice distributor.
🇺🇸 États-Unis – Télétravail
💵 $100 000 - $155 000 / an
⏰ Temps Plein
🟠 Senior
👮♂️ Cybersécurité / Ingénieur Sécurité
🦅 Parrain de Visa H1B
🗣️🇺🇸🇬🇧 Anglais requis
Cyber Security
🕒 il y a 1 jour
Lead vulnerability management engineer reducing Fifth Third Bank’s cyber attack surface across infrastructure, endpoints, and applications. Driving remediation, risk analysis, dashboards, and security collaboration across on-premises and cloud environments.
🇺🇸 États-Unis – Télétravail
💵 $82 100 - $172 500 / an
⏰ Temps Plein
🟠 Senior
👮♂️ Cybersécurité / Ingénieur Sécurité
🦅 Parrain de Visa H1B
🗣️🇺🇸🇬🇧 Anglais requis
🕒 il y a 1 jour
Senior cloud security engineer securing KPA's workplace safety software infrastructure across cloud, identity, endpoint, and DevOps environments. Leading security automation, incident response, compliance, and technical modernization initiatives.
🇺🇸 États-Unis – Télétravail
💵 $110 000 - $130 000 / an
⏰ Temps Plein
🟠 Senior
👮♂️ Cybersécurité / Ingénieur Sécurité
🦅 Parrain de Visa H1B
🗣️🇺🇸🇬🇧 Anglais requis
🕒 il y a 1 jour
Senior Product Manager owning application security for Zeta Global’s AI-powered marketing cloud. Driving AppSec strategy, AI-assisted threat modeling, secure SDLC tooling, risk governance, and remediation at enterprise scale.
🇺🇸 États-Unis – Télétravail
💵 $170 000 - $190 000 / an
💰 Post-IPO Debt en 2024-09
⏰ Temps Plein
🟠 Senior
👮♂️ Cybersécurité / Ingénieur Sécurité
🦅 Parrain de Visa H1B
🗣️🇺🇸🇬🇧 Anglais requis
🕒 il y a 1 jour
Information Security Manager securing Habitat Health’s integrated PACE healthcare services. Leading HIPAA/NIST controls, incident response, audits, risk management, and access governance for California-based remote operations.
🗣️🇺🇸🇬🇧 Anglais requis
Cloud
Cyber Security