
51 - 200 employees
Founded 2019
🔒 Cybersecurity
🤖 Artificial Intelligence
☁️ SaaS
Cybersecurity • Artificial Intelligence • SaaS
Horizon3. ai is a cybersecurity company that specializes in autonomous penetration testing through its platform, NodeZero. The company's mission is to proactively identify and address attack vectors before they can be exploited, allowing organizations to continuously assess their security posture across various environments including cloud, IoT, and on-premises systems. Founded by veterans from the US Special Operations and National Security sectors, Horizon3. ai offers a self-service SaaS solution that provides organizations with insights into their security vulnerabilities without requiring persistent or credentialed agents.
🔥 0 minutes ago
🇺🇸 United States – Remote
💵 $123.8k - $161k / year
⏰ Full Time
🟡 Mid-level
🟠 Senior
🛡️ Security Operations
👻 Ghost score 20%
Improve your chances of getting an interview by checking your resume score before you apply.

51 - 200 employees
Founded 2019
🔒 Cybersecurity
🤖 Artificial Intelligence
☁️ SaaS
Cybersecurity • Artificial Intelligence • SaaS
Horizon3. ai is a cybersecurity company that specializes in autonomous penetration testing through its platform, NodeZero. The company's mission is to proactively identify and address attack vectors before they can be exploited, allowing organizations to continuously assess their security posture across various environments including cloud, IoT, and on-premises systems. Founded by veterans from the US Special Operations and National Security sectors, Horizon3. ai offers a self-service SaaS solution that provides organizations with insights into their security vulnerabilities without requiring persistent or credentialed agents.
• Monitor, detect, and respond to security events across enterprise environments using the SIEM • Support log ingestion, parsing, normalization, and ingestion-health monitoring across AWS, Okta, endpoints, firewalls, and SaaS sources • Partner with system owners to close telemetry gaps • Build and maintain dashboards, visualizations, and KPIs demonstrating SIEM effectiveness and security visibility • Triage, investigate, and validate alerts, escalating confirmed or ambiguous incidents with clear context • Tune and test behavioral, heuristic, and signature-based detection rules • Use MITRE ATT&CK to contextualize detections and identify coverage gaps • Analyze cloud, endpoint, network, and application logs to identify anomalies and potential threats • Perform structured investigations and root-cause analysis, including attack-chain mapping and remediation guidance • Follow and refine response playbooks for phishing, suspicious logins, endpoint malware, privilege escalation, and cloud misconfiguration • Document lessons learned and strengthen detection logic • Contribute to SOAR automation to reduce manual toil and improve MTTD and MTTR • Use LLM/AI-assisted tooling for triage, log summarization, and investigation enrichment, verifying model output before acting • Participate in proactive threat hunting • Contribute to weekly and monthly reporting on threat trends, false-positive reduction, and detection efficacy • Communicate with shift peers and stakeholders • Help train and onboard junior analysts as progression occurs • Report to the SOC Manager and work within a SOC shift
• Hands-on SOC or security-analyst experience spanning SIEM monitoring, alert triage, detection tuning, and incident response • Working experience with an enterprise SIEM such as Elastic SIEM, Splunk, Microsoft Sentinel, QRadar, or similar • Solid grasp of log analysis, security telemetry, and event correlation • Proficiency with KQL, Lucene, or SPL and scripting in Python, Bash, or PowerShell • Familiarity with AWS, GCP, or Azure and its security tooling • Working knowledge of MITRE ATT&CK, NIST, and CIS • Practical experience using LLMs/AI assistants at work, including prompting, grounding responses in trusted data, recognizing model limitations, and verifying output • Strong analytical and problem-solving skills; ability to prioritize and manage work with minimal direction • Clear written and verbal communication and ability to document processes and findings • Bachelor's degree in Computer Science, Cybersecurity, Information Security, or related field, or equivalent hands-on security operations experience • 3–6 years in a SOC or security analyst role • Demonstrated hands-on experience operating an enterprise SIEM in a cloud environment • Experience with SOAR/automation platforms such as Tines or similar • Experience with enterprise LLM/AI platforms such as Claude, Gemini, AWS Bedrock, or similar • Only US persons can interview due to security clearance requirements • Must be eligible for and successfully secure a US Federal Security Clearance as a condition of employment • Certifications such as Security+, CySA+, GCIA, GCIH, or Elastic Certified Analyst are distinguishing qualifications • Hands-on EDR or XDR experience, agentic workflow experience, mentoring/onboarding experience, and experience in a high-growth SaaS or cybersecurity company are distinguishing qualifications
• Equity package in the form of stock options for all full-time roles • Health, vision, and dental insurance for you and your family • Flexible vacation policy • Generous parental leave • Career development opportunities • Inclusive and collaborative culture • Fully remote work arrangement • Up to 5% travel
Apply Now🔥 37 minutes ago
Security Operations Engineer securing Tailscale’s networking platform through device, identity, access, and vulnerability management. Supporting distributed teams and automating security operations across core business systems.
🇺🇸 United States – Remote
💵 $163k - $204k / year
💰 $100M Series B on 2022-05
⏰ Full Time
🟡 Mid-level
🟠 Senior
🛡️ Security Operations
🔥 5 hours ago
Incident Response Security Engineer protecting ClickHouse’s real-time analytics and cloud data platform. Building detection, response automation, and security logging capabilities.
🇺🇸 United States – Remote
💵 $169.2k - $191.3k / year
⏰ Full Time
🟡 Mid-level
🟠 Senior
🛡️ Security Operations
🦅 H1B Visa Sponsor
🕒 Yesterday
Security Operations Administrator maintaining cybersecurity platforms for Atria Health Institute’s preventive healthcare practice. Supporting alerts, asset management, access controls, documentation, and security operations maturity.
🕒 4 days ago
Remote SIEM Analyst protecting federal and DoD mission systems through continuous monitoring, log analysis, and threat detection. Escalating incidents and improving SOC detection capabilities.
🕒 5 days ago
Senior IT Security Operations Engineer operating Zscaler’s Zero Trust security platform. Tuning policies, triaging alerts, and supporting cloud, DLP, and DevSecOps security operations.
🇺🇸 United States – Remote
💵 $134k - $167.5k / year
💰 Secondary Market on 2017-11
⏰ Full Time
🟠 Senior
🛡️ Security Operations
🦅 H1B Visa Sponsor