
1 - 10 employees
Founded 2023
💼 Consulting
🏭 Manufacturing
📦 Logistics
Consulting • Manufacturing • Logistics
Infinity Constellation is the first AI Holding Company dedicated to helping elite founders build AI companies that can operate at unprecedented speeds. By leveraging advanced AI platforms, Infinity Constellation aims to reinvent traditional venture models, focusing on efficient structures that allow businesses to generate profits rapidly with minimal resources. The company supports its portfolio through various operational services, enabling founders to scale and thrive in the rapidly evolving AI landscape.
🔥 45 minutes ago
🇺🇸 United States – Remote
⏳ Contract/Temporary
🟡 Mid-level
🟠 Senior
👮♂️ Cybersecurity / Security Engineer
Improve your chances of getting an interview by checking your resume score before you apply.

1 - 10 employees
Founded 2023
💼 Consulting
🏭 Manufacturing
📦 Logistics
Consulting • Manufacturing • Logistics
Infinity Constellation is the first AI Holding Company dedicated to helping elite founders build AI companies that can operate at unprecedented speeds. By leveraging advanced AI platforms, Infinity Constellation aims to reinvent traditional venture models, focusing on efficient structures that allow businesses to generate profits rapidly with minimal resources. The company supports its portfolio through various operational services, enabling founders to scale and thrive in the rapidly evolving AI landscape.
• Threat-model (STRIDE/PASTA) the B2C architecture, focused on account isolation (PostgreSQL forced RLS + account_id, S3, the BFF boundary, Cognito), external access, and the AI/agent surface. • Run adversarial tenant-isolation testing: prove forged, reused, stale, and pooled-connection authorization contexts fail closed under direct runtime-role SQL, and that cross-account denial holds even when BFF route authorization is bypassed in a test harness. • Review the BFF authorization boundary, the Amazon Cognito identity/access model (customer + operator pools), secrets management, and least-privilege IAM. • Verify data-protection controls: encryption in transit/at rest, data classification, customer-content-safe telemetry, S3 Object Lock evidence integrity, and export-controlled content handling. • Map SOC 2 Type II controls and drive evidence collection via Drata, coordinated with GRC, with owners assigned. • Review CI security-gate policy (dependency/container/IaC/secret scanning) and assess AI/LLM risk (prompt injection, tool data-exfiltration, over-broad tool access) across the public read-only MCP surface. • Build incident-response plans and runbooks, coordinate third-party pen tests, and hand over a prioritized remediation backlog and documented security posture.
• Multi-tenant isolation: hard account isolation via PostgreSQL forced RLS + account_id, transaction-bound authorization contexts, and service/worker roles. • Identity & access: external-user identity/access over Cognito (customer + operator pools); authentication/authorization review and least-privilege roles. • Application security: OWASP Top 10 in practice; threat modeling (STRIDE/PASTA); secure code review across Python/TypeScript services. • Cloud security: securing AWS, IAM, KMS, Secrets Manager, VPC Lattice with IAM authorization, network exposure, safe defaults, S3 public-access blocking and Object Lock. • Compliance (SOC 2 Type II): hands-on evidence workflows; Drata experience strongly valued, coordinating with an active GRC program. • Data protection: encryption in transit/at rest, data classification, and handling of sensitive / export-controlled content. • Secure SDLC & AI risk: reviewing dependency/container/IaC/secret scanning and CI security gates; LLM/agent risks relevant to a public read-only MCP surface.
• High-impact work at the intersection of AI and critical infrastructure regulation • Direct customer exposure and a seat at the table when we decide what to build • Small team with outsized influence; your field learning shapes the product roadmap • Modern AI-native development environment (Claude Code, Cursor, multi-model orchestration) • Remote-first • Competitive compensation
Apply Now🔥 3 hours ago
Cybersecurity Engineer I at Robert Half, developing information security architectures and solutions. Supporting incident response and ensuring compliance with security policies in a remote role.
🇺🇸 United States – Remote
💵 $33 - $51 / hour
⏳ Contract/Temporary
🟡 Mid-level
🟠 Senior
👮♂️ Cybersecurity / Security Engineer
🦅 H1B Visa Sponsor
🔥 3 hours ago
Splunk Cybersecurity SME supporting direct US Government client by designing and maintaining Splunk environments remotely. Requires extensive experience in cybersecurity and Splunk operations.
🔥 9 hours ago
Network Engineer focusing on Cyber Security for space technology projects at Red Canyon Engineering. Responsible for managing network infrastructure while enhancing security posture.
🇺🇸 United States – Remote
💵 $100k - $160k / year
⏳ Contract/Temporary
🟡 Mid-level
🟠 Senior
👮♂️ Cybersecurity / Security Engineer
🔥 11 hours ago
Senior NIST 800-53A Security Control Assessor focusing on hands-on assessments for federal projects. Developing plans, conducting assessments, and reporting findings on security controls.
🔥 12 hours ago
Event Entrance Security Supervisor overseeing security and operational systems at events for Ingressotek. Engaging in client service while ensuring technical excellence during live events.
🇺🇸 United States – Remote
💵 $500 / year
⏳ Contract/Temporary
🟡 Mid-level
🟠 Senior
👮♂️ Cybersecurity / Security Engineer