Rearc logo
Rearc

Rearc is a boutique Cloud Software & Services firm with engineers that have years of experience shaping the cloud journey of large scale enterprises. Our engineers are skilled at planning application migrations to the cloud and building cloud-native application environments and patterns for the future. We build strategic partnerships with our enterprise customers to enable long term success in the cloud.

Lead Cybersecurity Engineer 🇺🇸

Security EngineerSecurity EngineerOtherRemoteTeam 51Since 2016

Location

United States

Posted

92 days ago

Salary

0

Job Description

Lead Cybersecurity Engineer 🇺🇸

Rearc

Role Overview Rearc is looking for a Cybersecurity Threat Detection Engineer with proactive communication skills, a foundation in DevSecOps, Detection-As-Code, deep purple team technical expertise, and an entrepreneurial approach to join our growing Cybersecurity practice. This role involves partnering with Rearc customers to design cutting-edge detection strategies and support the development of top-tier, modern cybersecurity monitoring programs. You will craft tailored security detections to strengthen our clients' cybersecurity efforts by leveraging Security Information and Event Management (SIEM), Security Orchestration Automation and Response (SOAR), Endpoint Detection and Response (EDR), and Network Detection and Response (NDR) services. What You Bring - Enthusiasm about developing and evangelizing services in the cyber space. - Strong cloud, security, SIEM and data engineering fundamentals. What You'll Do - Utilize NDR, EDR, real-time streaming, and SIEM technologies to develop robust threat detection capabilities. - Build and optimize detection rules leveraging real-time data streaming to enhance detection accuracy. - Design enrichment pipelines and automation workflows to enhance the precision of threat detections. - Develop correlation logic and automated processes to create high-fidelity threat alerts. - Build compliance and recoverability of customer Data Analytics solutions, including SOPs, data onboarding, normalization, enrichment, and system maintenance. - Create automation playbooks for incident triage and response. - Align detection content with customer-specific Use Case Frameworks and provide metrics on cybersecurity threats impacting their environment. - Collaborate with customer cybersecurity teams to cover gaps and enhance enterprise posture. - Support enterprise Cybersecurity, Information Technology (IT), and Operational Technology (OT) teams by providing dashboards and other data exploration tools. - Stay continually aware of emerging cybersecurity threats and trends, adapting detection strategies as needed. - Work closely with customer teams, including Cybersecurity Operations Center (CSOC), Operational Technology (OT), and Incident Response (IR) teams, to ensure detections are actionable and relevant. - Provide feedback to improve the customer's security framework and overall security monitoring strategy. In this role, you will combine technical expertise with continual situational awareness of emerging threats, driving client success while staying at the cutting edge of cyber security innovations. Qualifications - 8+ years of experience in Cybersecurity with a focus on: - - Log streaming - Cybersecurity data lakes and data warehousing - SOAR engineering - SIEM engineering, administration, architecture, and operations - Data science, statistical analysis, and threat detection development - Integrating disparate IT, OT, and business applications into SIEM systems - Bachelor's degree in Management Information Systems, Computer Science, or a related field - A strong passion for Cybersecurity and a commitment to staying current with industry trends, best practices, and tools - Proven experience in documenting, socializing, and operationalizing Cybersecurity technologies and processes - Prior programming experience in Python, SQL, and Apache Spark - Solid understanding of common attack techniques and their practical applications - Demonstrated ability to work effectively across multiple teams, building cross-functional relationships with individuals of varying technical expertise - A self-starter with a proven ability to thrive in fast-paced environments - Strong technical communication skills, both written and verbal Nice To Have: - Prior experience with platforms like Databricks, Cribl, Tines, or other cybersecurity lakehouse providers Some More About Us At Rearc, our mission is straightforward - empower engineers with the best tools possible to make an impact within their industry. We pride ourselves on fostering an environment where creativity flourishes, bureaucracy is non-existent, and individuals are encouraged to challenge the status quo. We're not just a company; we're a community of problem-solvers dedicated to improving the lives of fellow software engineers. Our commitment is simple - finding the right fit for our team and cultivating a desire to make things better. If you're a cloud professional intrigued by our problem space and eager to make a difference, you've come to the right place. Join us, and let's solve problems together!

Related Categories

Related Job Pages

More Security Engineer Jobs

Wraithwatch Corporation logo

Security Engineer

Wraithwatch Corporation

Wraithwatch was founded by security engineers from SpaceX, Palantir, and Anduril to build the next generation of AI-powered cyber defense systems for the United States and its allies. We are deployed today to customers spanning Fortune 500, US Federal Government, commercial nuclear, aerospace, defense, maritime, and other emerging technology companies. Our core product is a cyber defense platform utilizing generative artificial intelligence agents to autonomously model a digital twin of an organization's entire IT and cybersecurity environment and analyze it for weaknesses, misconfigurations, and chains of possible attack.

Wraithwatch was founded by security engineers from SpaceX, Palantir, and Anduril to build the next generation of AI-powered cyber defense systems for the United States and its allies. We are deployed today to customers spanning Fortune 500, US Federal Government, commercial nuclear, aerospace, defense, maritime, and other emerging technology companies. Our core product is a cyber defense platform utilizing generative artificial intelligence agents to autonomously model a digital twin of an organization's entire IT and cybersecurity environment and analyze it for weaknesses, misconfigurations, and chains of possible attack. Wraithwatch Security Engineers ensure our artificial intelligence engines can perceive and rapidly manipulate a wide variety of integrated cybersecurity tools, as well as optimize their autonomous reasoning and analysis on complex cybersecurity tasks. They'll also own Wraithwatch's internal corporate cybersecurity posture across our company endpoints, cloud environments, and build pipelines. Responsibilities: - Plan and engineer the integration of a wide variety of cybersecurity and IT tools into Wraithwatch’s core artificial intelligence engine. - Ensure AI engine has access to common data models and function execution models across disparate sets of IT and security tools. - Provide cybersecurity subject matter expertise, oversight, and optimization into autonomous reasoning and analysis performed by Wraithwatch system. - Own Wraithwatch’s internal corporate cybersecurity posture across our company endpoints, cloud systems, build pipelines, and AI subsystems. Basic Qualifications: - Deep, hands-on understanding of the current landscape of cybersecurity tools (EDRs, device management, identity, SIEMs, SOARs, XDRs, etc) and experience configuring, tuning, or automating these systems via APIs. - Experience implementing or assisting with the implementation of enterprise / corporate security controls such as anti-malware policies, identity and access controls, detection engineering, device management, or similar. - 4+ years of professional experience in software engineering and minimum 2+ years of experience in security engineering in a corporate / enterprise security environment. Overlapping experience is acceptable. - Development experience in any modern programming language, including but not limited to Python, Rust, or Go. Preferred Qualifications: - Demonstrated interest in (via professional or side projects) modern machine learning or artificial intelligence capabilities, especially emerging subsets of Generative AI such as agentic behavior, tool calling, knowledge graph integration, retrieval augmented generation, etc. - Experience contributing security improvements to complex systems or environments. - Demonstrated ability to deal with ambiguity and to learn new technologies quickly. - Eligibility and willingness to obtain a US Top Secret security clearance. Additional Requirements: - Willingness to work extended hours and weekends as needed.

United States

Senior Security Engineer, Application Security

Turnkey

Turnkey, founded in 2022 and headquartered in New York, New York, provides secure and scalable crypto infrastructure focused on embedded wallets and on-chain transaction automation

About Us Turnkey is developer-first infrastructure for private key management, making it simple to create wallets, sign transactions, and automate on-chain actions through one elegant API, without ever exposing sensitive key material. Founded by the team who scaled Coinbase Custody from zero to a $100M+ ARR business and helped protect over $100B in crypto assets, Turnkey is tackling crypto security at its foundational level. Our mission is to make strong cryptography the default across the open internet the same way AWS made scalable computing the default for software. Our team is low-ego, high-agency, and high-autonomy, with a significant amount of combined experience in cryptography, security, and low-level systems. We're building the trustless, programmable infrastructure that will power the next wave of mass-market crypto applications and we're looking for people who want to shape what that future looks like. Role Overview We are hiring a Senior Application Security Engineer to join Turnkey's team and help ensure our systems, pipelines, and runtime environments are secure by design and resilient at scale. You'll embed directly with product and infrastructure engineering teams, shaping how security is integrated into every aspect of our architecture. This is a hands-on, builder role ideal for someone who enjoys building secure systems from the ground up. What You’ll Do You will partner with Product and Engineering at both the design and development stage to ensure that we implement new features securely, including (but not limited to): - Participating in the implementation efforts - Doing security reviews - Helping with product design decisions - Auditing and surfacing vulnerabilities in our current products - Conducting threat modeling and security assessments for new features and systems, identifying risks early and shaping secure architectural decisions. - Developing and improving our Automated Tooling: further enhancing our automated tooling to scale our product security capabilities and find potential code problems both before and after we deploy - Making the safe way, the easy way: work on defining and building application guardrails so that developers can build securely by default - Investigating and remediating security issues, including vulnerabilities and incidents, and drive long-term improvements to prevent recurrence - Embedding a culture of secure development across engineering, defining practices that influence how Turnkey builds, deploys, and maintains systems at scale. What We're Looking For - Bachelors degree in Computer Science, Engineering, or a related field - 5+ years of experience in application or product security, ideally in fast-moving, high-impact or crypto-native environments - Strong understanding of web, mobile, and cryptographic security fundamentals (e.g. OWASP Top Ten, SANS/CWE Top 25) - Proficiency in programming and scripting languages (Typescript/Javascript, Go, Rust) and experience building secure systems from the code up - Hands-on experience with security testing tools and methodologies (static/dynamic analysis, pen testing, etc.) - Strong understanding of cloud, containerized, and runtime environments (AWS, GCP, Docker, Kubernetes), with the ability to embed security early in the SDLC - Excellent analytical, problem-solving, and communication skills, with a collaborative mindset for partnering across product and infrastructure teams - Curious, proactive, and passionate about building secure, reliable systems in a fast moving startup environment - A builder mentality; comfortable operating with ambiguity, tackling incomplete systems, and applying hands-on engineering experience to security challenges. Style Points - Familiarity with crypto or DeFi systems and their unique security challenges - Familiarity with threat modeling frameworks and cloud-native security tooling What We Offer - Full benefits, including medical, dental, vision, life, disability, HSA/FSA, 401(k) - detailed benefits overview available as we get further in the process - Paid parental leave - Unlimited PTO - $3,000/yr learning and development budget to attend industry conferences - Multiple team offsites per year - Lunch stipend Turnkey is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, protected veteran status, or any other characteristic protected by law. We encourage individuals of all backgrounds to apply. Compensation range $175,000—$275,000 USD

United States
$175K - $275K / year

Senior Security Engineer, Corporate Security

Turnkey

Turnkey, founded in 2022 and headquartered in New York, New York, provides secure and scalable crypto infrastructure focused on embedded wallets and on-chain transaction automation

About Us Turnkey is developer-first infrastructure for private key management, making it simple to create wallets, sign transactions, and automate on-chain actions through one elegant API, without ever exposing sensitive key material. Founded by the team who scaled Coinbase Custody from zero to a $100M+ ARR business and helped protect over $100B in crypto assets, Turnkey is tackling crypto security at its foundational level. Our mission is to make strong cryptography the default across the open internet the same way AWS made scalable computing the default for software. Our team is low-ego, high-agency, and high-autonomy, with a significant amount of combined experience in cryptography, security, and low-level systems. We're building the trustless, programmable infrastructure that will power the next wave of mass-market crypto applications and we're looking for people who want to shape what that future looks like. Role Overview We are hiring a Senior Corporate Security Engineer to own and scale the security of Turnkey's corporate infrastructure. This is a foundational role - you'll be the first dedicated corporate security hire, working diectly with the security lead to build enterprise security capabilities from the ground up. In this role, you’ll protect Turnkey’s people, endpoints, SaaS, identity systems, and internal infrastructure, securing our distributed workforce while enabling the team to move quickly without compromising safety. Sitting at the intersection of security engineering, IT operations, and risk management, you’ll design and build security controls that are both robust and user-friendly, ensuring the company remains secure as it scales What You’ll Do - Build & Secure Corporate Infrastructure - Design, implement, and manage security for endpoints and distributed systems; deploy and operate our security stack (MDM, EDR/XDR, ZTNA, SSO); enforce zero-trust principles, least-privilege access, and hardening standards - Drive Security Initiatives & Risk Reduction - Lead initiatives around endpoint hardening, access controls, and vendor risk; conduct security design reviews, risk assessments, and vulnerability remediation; develop and enforce security policies and best practices. - Detection, Response & Automation - Respond to security incidents with urgency and technical depth; collaborate on detection rules, alerts, and monitoring; automate workflows and create runbooks and playbooks to scale security operations efficiently. - Foster Security Culture & Education - Evangelize security best practices, build awareness programs, and partner with teams to embed “secure by default” principles into workflows; serve as a trusted security advisor across the organization. What We're Looking For - 5+ years of experience in corporate and/or enterprise security, IT security, or endpoint security engineering - Hands-on experience with: - MDM Platforms (JAMF, Kandji, Intune, or similar) - EDR/XDR solutions (Cloudstrike, SentinelOne, Microsoft Defender, etc.) - Identity and Access Management (Okta, Azure AD/Entra ID, etc.) - Authentication Protocols (SAML, OAuth, OIDC, SCIM, etc.) - Zero-trust principles (device trust, conditional access, least-privilege models) - Cloud security experience (AWS, GCP) - macOS security expertise (architecture, hardening, and fleet management) - Security-first mindset with practical knowledge of defense-in-depth and risk-based security Style Points - Crypto/web3 or FinTech experience - Detection/response experience: SIEM, log analysis, threat hunting, or SOC operations - Knowledge of modern threat landscape: Adversary TTPs, phishing, insider threats, etc. - Security compliance experience: SOC 2, ISO 27001, or similar frameworks What We Offer - Full benefits, including medical, dental, vision, life, disability, HSA/FSA, 401(k) - detailed benefits overview available as we get further in the process - Paid parental leave - Unlimited PTO - $3,000/yr learning and development budget to attend industry conferences - Multiple team offsites per year - Lunch stipend Turnkey is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, protected veteran status, or any other characteristic protected by law. We encourage individuals of all backgrounds to apply. Compensation range $175,000—$275,000 USD

United States
$175K - $275K / year
Wraithwatch Corporation logo

Offensive Security Engineer

Wraithwatch Corporation

Wraithwatch was founded by security engineers from SpaceX, Palantir, and Anduril to build the next generation of AI-powered cyber defense systems for the United States and its allies. We are deployed today to customers spanning Fortune 500, US Federal Government, commercial nuclear, aerospace, defense, maritime, and other emerging technology companies. Our core product is a cyber defense platform utilizing generative artificial intelligence agents to autonomously model a digital twin of an organization's entire IT and cybersecurity environment and analyze it for weaknesses, misconfigurations, and chains of possible attack.

Wraithwatch was founded by security engineers from SpaceX, Palantir, and Anduril to build the next generation of AI-powered cyber defense systems for the United States and its allies. We are deployed today to customers spanning Fortune 500, US Federal Government, commercial nuclear, aerospace, defense, maritime, and other emerging technology companies. Our core product is a cyber defense platform utilizing generative artificial intelligence agents to autonomously model a digital twin of an organization's entire IT and cybersecurity environment and analyze it for weaknesses, misconfigurations, and chains of possible attack. As an offensive security engineer you will not only continuously harden Wraithwatch (the company and product) against advanced threats, you will also teach the system your expert attack tradecraft and have it evolve to execute it on its own. Note: This is not a research position. You will be building and shipping things on the daily with the core product engineers. Basic Qualifications - 5+ years professional experience conducting complex penetration testing assessments in commercial or government environments. - Deep, hands-on understanding of the current landscape of offensive cyber tradecraft (in memory, fileless attacks, beacon object files, malleable C2, modern initial access vectors, emerging EDR bypasses, etc). - Experience implementing or assisting with the implementation of enterprise / corporate security controls such as anti-malware policies, identity and access controls, detection engineering, device management, or similar. - Interest in adapting AI to red teaming / penetration testing use cases. This is a hard requirement. Preferred Qualifications - Interest in modern machine learning or artificial intelligence capabilities, especially emerging subsets of Generative AI such as agentic behavior, tool calling, knowledge graph integration, retrieval augmented generation, etc. - Ability to deal with ambiguity and learn new technologies quickly. Additional Requirements: - Willingness to work extended hours and weekends as needed.

United States