
201 - 500 employees
Founded 2005
âïž SaaS
đ Real Estate
đ€ B2B
đ° Private Equity Round - CINC Systems on 2023-12
SaaS âą Real Estate âą B2B
CINC Systems is a cloud-based, all-in-one software platform for community association management (HOAs and COAs) that helps management companies, boards, and homeowners streamline operations and improve resident experience. The platform provides financial management and oversight (including online payments and a secure payment portal), AI-driven reporting and forecasting (Cephai), communication and resident engagement tools, online voting and surveys, maintenance/work-order coordination, compliance tracking, and centralized data and insights. CINC targets professional association management firms and homeowner boards with automation, security, and scalability; the company reports 1,000+ association management company customers, 51,000+ homeowner associations served, 6M+ doors, and $11B+ payments processed annually.
đ„ 20 minutes ago
đ Anywhere in the World
â° Full Time
đĄ Mid-level
đ Senior
đźââïž Cybersecurity / Security Engineer
AWS
Cloud
Distributed Systems
EC2
Java
JavaScript
Jenkins
Kotlin
Kubernetes
Microservices
Python
SDLC
Splunk
SQL
Terraform
TypeScript
Go
Improve your chances of getting an interview by checking your resume score before you apply.

201 - 500 employees
Founded 2005
âïž SaaS
đ Real Estate
đ€ B2B
đ° Private Equity Round - CINC Systems on 2023-12
SaaS âą Real Estate âą B2B
CINC Systems is a cloud-based, all-in-one software platform for community association management (HOAs and COAs) that helps management companies, boards, and homeowners streamline operations and improve resident experience. The platform provides financial management and oversight (including online payments and a secure payment portal), AI-driven reporting and forecasting (Cephai), communication and resident engagement tools, online voting and surveys, maintenance/work-order coordination, compliance tracking, and centralized data and insights. CINC targets professional association management firms and homeowner boards with automation, security, and scalability; the company reports 1,000+ association management company customers, 51,000+ homeowner associations served, 6M+ doors, and $11B+ payments processed annually.
âą Lead security reviews for web applications, APIs, microservices, AWS workloads, internal platforms and AI-enabled products. âą Perform advanced application security testing using SAST, DAST, SCA, manual code review, API testing and business logic testing. âą Identify vulnerabilities across authentication, authorization, session management, access control, injection, SSRF, deserialization, insecure file handling, data exposure and insecure API design. âą Conduct threat modeling for new products, critical features, AWS architectures, AI workflows, identity systems and high-risk data flows. âą Build and improve secure SDLC processes, including security requirements, code scanning, dependency review, CI/CD security gates and release risk assessments. âą Review infrastructure-as-code templates such as Terraform, CloudFormation, AWS CDK, Helm charts and Kubernetes manifests for security misconfigurations. âą Assess AWS environments for IAM weaknesses, exposed services, insecure networking, public S3 buckets, secrets leakage, logging gaps, encryption issues, workload risks and privilege escalation paths. âą Review AWS IAM policies, roles, trust relationships, permission boundaries, service control policies, identity federation and cross-account access patterns. âą Assess AWS services such as EC2, S3, Lambda, ECS, EKS, RDS, API Gateway, CloudFront, WAF, KMS, Secrets Manager, Systems Manager, ECR, VPC, Route 53 and IAM Identity Center. âą Conduct red team exercises, adversary simulations, attack path analysis and controlled exploitation to validate real-world risk. âą Develop proof-of-concept exploits, custom scripts and automation to reproduce vulnerabilities and demonstrate business impact. âą Evaluate containerized and Kubernetes environments, including EKS, for workload isolation, RBAC issues, exposed services, image risks, secrets handling and runtime security gaps. âą Assess CI/CD pipelines for insecure workflows, overprivileged tokens, secrets exposure, supply chain risks, artifact integrity and deployment abuse paths. âą Perform software composition analysis to identify vulnerable dependencies, license risks, malicious packages, transitive dependency exposure and supply chain weaknesses. âą Use SIEM and security telemetry to support investigations, validate attack paths, improve detections and measure control effectiveness. âą Build detection logic, threat hunting queries, dashboards and alerting workflows using SIEM platforms such as Splunk, Microsoft Sentinel, Elastic, Chronicle or AWS-native telemetry. âą Use AWS security services such as GuardDuty, Security Hub, CloudTrail, AWS Config, Inspector, Detective, Macie, IAM Access Analyzer, Security Lake and CloudWatch to improve visibility and detection coverage. âą Automate security workflows using Python, Bash, PowerShell, Go or similar scripting languages. âą Develop threat automation for vulnerability enrichment, alert triage, AWS posture checks, attack simulation, evidence collection and remediation tracking. âą Partner with DevOps and platform teams to improve secrets management, identity controls, network segmentation, logging, monitoring and secure deployment patterns. âą Assess AI and LLM-based systems for risks such as prompt injection, indirect prompt injection, data leakage, insecure tool use, excessive agency, jailbreaks, model abuse, retrieval poisoning and unsafe agent behavior. âą Review AI workloads using AWS services such as Amazon Bedrock, SageMaker, Lambda, API Gateway, S3, KMS and IAM for secure design, data protection and access control. âą Produce clear technical reports with evidence, exploitability, impact, likelihood, risk rating and actionable remediation guidance. âą Mentor engineers and security team members on secure coding, AWS security, offensive testing, threat modeling and AI security risks.
âą Strong hands-on experience in application security, product security, AWS cloud security, offensive security or security engineering. âą Deep understanding of secure SDLC practices and experience embedding security into engineering workflows. âą Practical experience with SAST, DAST, SCA, manual penetration testing, code review and vulnerability validation. âą Strong knowledge of OWASP Top 10, OWASP API Security Top 10, OWASP ASVS, common CWE classes and real-world application attack techniques. âą Experience testing web applications, APIs, microservices, cloud services, containers and distributed systems. âą Strong understanding of authentication, authorization, identity federation, OAuth, OIDC, SAML, JWT, session security and access control design. âą Hands-on experience securing AWS environments in production. âą Strong knowledge of AWS IAM, VPC networking, encryption, KMS, Secrets Manager, S3 security, CloudTrail, GuardDuty, Security Hub, AWS Config and workload hardening. âą Experience reviewing infrastructure-as-code and identifying security issues in Terraform, CloudFormation, AWS CDK, Kubernetes YAML, Helm, Dockerfiles or similar technologies. âą Experience with CI/CD security across tools such as bitbucket pipelines, Jenkins, AWS CodePipeline, or similar platforms. âą Experience with red teaming, adversary emulation, penetration testing, exploit development, attack path mapping or offensive security assessments. âą Familiarity with SIEM platforms and the ability to write detection or hunting queries using SPL, KQL, SQL, Lucene, YARA, Sigma or similar languages. âą Strong scripting ability in Python, Bash, PowerShell, JavaScript or similar languages. âą Ability to automate repetitive security tasks and build internal tools that improve security testing, visibility and response. âą Familiarity with container and Kubernetes security, including ECS,EKS, RBAC, admission controls, image scanning, runtime controls, network policies and secrets handling. âą Ability to review code in languages such as Python, JavaScript, TypeScript, Java, Go, Kotlin, C# or similar. âą Strong written and verbal communication skills, with the ability to explain complex technical risks to engineering and leadership teams.
âą Flexible work arrangements âą Professional development opportunities
Apply Nowđ July 14
Senior IT Security Engineer leading information security program at NEAR Foundation. Driving security engineering and compliance initiatives to protect the NEAR ecosystem.
đ July 11
Security Developer coordinating vulnerabilities and malware issues for the Python Software Foundation. Collaborating with teams to enhance security practices and document threat models.
đ Anywhere in the World
đ” $70k - $170k / year
â° Full Time
đĄ Mid-level
đ Senior
đźââïž Cybersecurity / Security Engineer
đ June 11
Security Researcher simulating advanced adversaries against Bright Data's collection products. Engaging in R&D while influencing team direction in a fully remote role.
đ Anywhere in the World
â° Full Time
đĄ Mid-level
đ Senior
đźââïž Cybersecurity / Security Engineer
đ May 27
Product Security Engineer at Supabase focusing on integrating security in developer workflows. Collaborating with teams to enhance product security without hindering development speed.
đ Anywhere in the World
đ° $80M Series B on 2022-05
â° Full Time
đĄ Mid-level
đ Senior
đźââïž Cybersecurity / Security Engineer
đ April 1
Linux Engineer enhancing security technology for Canonicalâs Ubuntu. Collaborating on FIPS and CC certification while implementing security frameworks and benchmarks.
đ Anywhere in the World
â° Full Time
đĄ Mid-level
đ Senior
đźââïž Cybersecurity / Security Engineer