
11 - 50 employees
Founded 2024
🔒 Cybersecurity
🤖 Artificial Intelligence
☁️ SaaS
Cybersecurity • Artificial Intelligence • SaaS
XBOW is an AI-powered penetration testing platform that delivers human-level security testing at machine speed. It utilizes hundreds of specialized AI agents that collaborate to discover, validate, and exploit vulnerabilities autonomously, allowing companies to test their applications rapidly. With a focus on comprehensive coverage and efficiency, XBOW enables continuous security validation for applications, ensuring they remain secure against emerging threats. Its capabilities include testing every endpoint and attack vector, making it a crucial tool for organizations looking to maintain security without the traditional bottlenecks of manual pentesting.
🔥 19 hours ago
Improve your chances of getting an interview by checking your resume score before you apply.

11 - 50 employees
Founded 2024
🔒 Cybersecurity
🤖 Artificial Intelligence
☁️ SaaS
Cybersecurity • Artificial Intelligence • SaaS
XBOW is an AI-powered penetration testing platform that delivers human-level security testing at machine speed. It utilizes hundreds of specialized AI agents that collaborate to discover, validate, and exploit vulnerabilities autonomously, allowing companies to test their applications rapidly. With a focus on comprehensive coverage and efficiency, XBOW enables continuous security validation for applications, ensuring they remain secure against emerging threats. Its capabilities include testing every endpoint and attack vector, making it a crucial tool for organizations looking to maintain security without the traditional bottlenecks of manual pentesting.
• Support customers and prospects by completing technical security questionnaires, risk assessments, and due-diligence requests • Partner with Sales and Customer teams to explain XBOW’s security controls, architecture, and compliance posture • Assess and manage third-party and vendor security risk, including SaaS providers and service partners • Investigate and resolve alerts to maintain compliance using Vanta • Help maintain and improve risk assessment frameworks, methodologies, and documentation • Track and support remediation of identified risks with internal stakeholders • Contribute to compliance initiatives aligned with SOC 2, FedRAMP 20x, ISO 27001, and ISO 42001 • Maintain risk registers, policies, and supporting evidence • Coordinate risk management sessions and processes • Identify opportunities to streamline and automate risk and compliance processes • Support audits, customer reviews, and internal assurance activities as needed • Collaborate with IT, Security, Engineering, Legal, Sales, and Customer teams as an individual contributor
• 7+ years of experience in risk, compliance, security assurance, or related roles • Experience in hands-on technical roles, for example in Engineering, IT, or operational security • Hands-on experience completing or reviewing technical security questionnaires and customer risk assessments • Familiarity and experience with security compliance and data protection frameworks such as SOC 2, ISO 27001, NIST, GDPR, and HIPAA • Experience conducting or supporting vendor/third-party risk assessments • Strong written communication skills and ability to explain complex security concepts clearly • Highly organized and detail-oriented, with a pragmatic approach to risk • Comfortable working in a fast-moving, remote-first startup environment • Familiarity with modern AI tooling to improve productivity while managing risk • Experience in a SaaS or security-focused company is advantageous • Experience handling Subject Access Requests for GDPR is advantageous • Security or risk certifications such as CRISC or CISSP are advantageous • Knowledge of cloud security best practices is advantageous
• Meaningful stock options • Opportunity to learn from and collaborate with top security and AI experts • Work on complex technical challenges that support the foundation of the company • Remote-first work arrangement • Work from anywhere, with regular opportunities to meet in person • Supported travel to collaborate with colleagues in person
Apply Now🕒 August 15
Senior threat intelligence analyst researching cyber threats for Team Cymru, an internet threat intelligence company. Analyzing malicious infrastructure, producing intelligence reports, and guiding detection and analytics tooling.
🕒 August 13
Gartner cybersecurity leadership analyst creating research and executive advice on cyber risk, AI governance, regulations, and emerging technologies. Supporting clients, sales, conferences, and analyst teams.
🕒 July 14
Security Analyst protecting Dotdigital's people, products, platforms, and data. Supporting security controls to prevent, detect, and respond to threats within a cloud environment.