Writing.io Jobs

Find the best remote jobs. Answer a few questions and we'll deploy a powerful assistant to help you search, create alerts, and more.

1 What roles are you open to?

2 Experience level

3 Work style

Did you know? If memory is enabled, Writing.io can remember your job search preferences and help you to improve your resume, craft customized outreach and more.

Security ISO 27001 Internal Auditor (German-speaking) at Secfix

Conducts ISO 27001 internal audits for customers, reviews compliance evidence, identifies non-conformities, and delivers actionable audit reports.

Junior Remote Posted 11 days ago RemoteFirstJobs Product
What this role involves

Remote (+/- 2hrs from Germany GMT+1). C2 German Language is essential

At Secfix, we’re at the forefront of automating security compliance in Europe. We help companies get and stay ISO 27001, GDPR, TISAX, and SOC 2 fast and easy and reduce hundreds of hours of manual work.

Secfix is run by a 100% remote team with hubs in Munich, Berlin and London. We’re a high-performing team looking for passionate, execution-focused, owners to help us automate security and compliance for modern companies and become the European compliance automation leader.

We’ve just raised our $12M Series A and are backed by top VCs, including Alstin Capital, Neosfer (Commerzbank), and Bayern Capital.

About the Role

We’re hiring an ISO 27001 Internal Auditor to own our internal audits end to end. You stay independent from the implementation work. You audit what a customer has built, review their evidence on the Secfix platform, and give them a clear report before their external audit. You assess, you find what is missing, and you tell them in plain language exactly what to do about it. This is a hands-on individual contributor role with full ownership of a function customers trust us with.

What You’ll Do:

You will own internal audits to make our customers ready for their certification. We give you full context and best practices, and you own how you deliver the results. You will:

  • Own internal audits for our customers end to end, from kickoff through to the final report they take into their external audit

  • Review and sample evidence on the Secfix platform and assess it against the relevant ISO 27001 controls

  • Run the customer calls and walk customers through your findings and any non-conformities

  • Catch the non-conformities that matter, including the easy ones, so nothing avoidable surfaces later in an external audit

  • Write findings a non-technical founder can act on: what is missing, why it matters, and what to do next

  • Keep several audits moving at once and keep every one on schedule

  • Stay neutral to the implementation and hold a clean line between auditing and helping

  • Learn our other frameworks (TISAX, ISO 42001) and help build a repeatable audit structure for them

  • Help improve framework content on the platform, including evidence examples and guidance

  • Share structured product feedback when you spot recurring issues in the platform

About You:

  • German (C1/C2) and English (fluent) are a must for this role

  • Up to 2 years of information security background

  • Hands-on ISO 27001 internal audit experience, with at least 10+ internal audits you have personally run

  • A PECB ISO 27001 Lead Auditor certification or a direct equivalent

  • Direct experience auditing inside a modern GRC platform

  • Clear, concrete written and spoken English, with the ability to explain complex requirements simply

Nice-to-have:

  • Experience auditing or implementing TISAX, ISO 42001, NIS2 or SOC 2

  • Experience at an early-stage startup (Seed to Series B)

  • Exposure to a modern SaaS product and cross-functional work with product teams

What we offer

  • Remote Work: 100% remote work with a virtual office in Gather.

  • Competitive Salary: Industry-competitive local salaries.We pay local rates that are at or above the market. We share this philosophy with GitLab.

  • Equity: Generous equity package – we’re all owners of Secfix and beneficiaries of our collective success.

  • Mentorship: We are backed by top VCs and accelerators and have direct access to world-class mentors.

  • Development Budget: €1,000 annual personal development budget.

  • Home office Budget: Home office budget and access to co-working spaces.

  • Holidays: 26 days holiday + local public holidays.

  • Health Insurance: Comprehensive health coverage.

  • Annual Retreat: Annual retreat to build connections and inspire ideas (this year we’re headed to Alicante!).

  • Company Events: Company-wide events to build relationships and have some fun!

  • Tech Equipment: Latest tech equipment (MacBook, monitors, headphones).

Interview Process:

  • 45 min - Intro call with Talent team

  • Take-home Assessment

  • 1.5hr Assessment review and interview with Compliance Team

  • 45 min - Final Founder Interview with CTO

Please note: We are an equal-opportunity employer and a remote-only company. At this time, we can support hiring only within EU time zones. We work in sync using Gather as our virtual office. As a small fast-growing company, we believe in the need for an in-sync component of daily communication and therefore cannot support 100% asynchronous work. Read more about our Remote Culture here .

Read the full description
Security Cybersecurity Intern (TX and AK) - SkillBridge (Military Only)

Intern learns cybersecurity fundamentals and assists with security operations and threat defense activities.

Junior Posted 13 days ago Himalayas
What this role involves
Transition to a Career in Cybersecurity at a Dynamic Cybersecurity Company The cybersecurity industry is poised to grow by double digits again this year.
Read the full description
Security Product Security Engineer II at Affirm

Application security engineer who assesses code for vulnerabilities, partners with engineering teams on secure design, and builds automation to scale security practices across the organization.

Junior Posted 15 days ago RemoteFirstJobs Product
What this role involves

Affirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest.

About the InfoSec & IT Team

The Application Security team helps Affirm build and launch products that earn customer trust, meet compliance obligations, and reduce business risk. We partner closely with product, engineering, infrastructure, risk, compliance, and other teams to identify security risks early, recommend pragmatic mitigations, and help teams find safe paths to launch.

We are looking for an early-career Application Security Engineer who is curious, collaborative, and comfortable working with code. You will help assess application risks, support vulnerability management efforts, partner with engineering teams on secure design decisions, and contribute lightweight tooling, automation, and code-informed analysis that helps AppSec scale across Affirm.

This role is a great fit for someone who has hands-on software or security experience, enjoys reading and reasoning about code, is actively developing offensive security skills, and wants to apply those skills in a product-minded, risk-based way.

What You’ll Do

  • Partner with product and engineering teams to identify application security risks and help frame them as clear business risks, launch options, and recommended next steps.

  • Read application code, configuration, pull requests, logs, and documentation to understand how systems work and where security risks may exist.

  • Contribute small code changes, scripts, detections, tests, secure defaults, or automation that improve AppSec workflows and reduce recurring issues.

  • Work in GitHub to review code changes, understand engineering context, participate in pull request discussions, track remediation work, and collaborate with engineers.

  • Help evaluate vulnerabilities from internal testing, bug bounty reports, security tooling, penetration tests, and other sources; partner with teams to prioritize and remediate issues based on real-world risk.

  • Contribute to vulnerability management workflows, including triage, validation, severity assessment, remediation guidance, tracking, and reporting.

  • Translate recurring security findings into repeatable mechanisms such as secure coding guidance, checklists, paved paths, lightweight automation, detection logic, reusable review patterns, or developer-facing documentation.

  • Work with engineers to understand system designs, data flows, trust boundaries, authentication and authorization models, code paths, and potential abuse cases.

  • Communicate security issues clearly to both technical and non-technical audiences, including the risk, tradeoffs, recommended mitigations, and residual risk.

  • Build strong relationships across Affirm teams and influence security outcomes without relying on formal authority.

  • Help connect AppSec work to customer trust, regulatory/compliance expectations, operational resilience, and business outcomes.

  • Continue developing hands-on offensive, defensive, and software engineering skills through practical work, labs, tooling, research, certifications, or contributions to internal security programs.

What We Look For

  • 0–2+ years of experience in application security, software engineering, security engineering, vulnerability management, penetration testing, security operations, or equivalent practical experience.

  • Foundational programming ability in one or more languages such as Python, JavaScript/TypeScript, Kotlin, or similar.

  • Comfort reading, navigating, and reasoning about code, even in unfamiliar codebases.

  • Experience using Git and GitHub or similar version-control workflows, including branches, commits, pull requests, code review, issues, or project tracking.

  • Some hands-on experience building, testing, breaking, or securing software. This could include professional experience, internships, security labs, CTFs, bug bounty work, open-source contributions, personal projects, automation scripts, internal tools, or coursework.

  • Ability to write clear, maintainable scripts or small programs to solve practical problems, automate manual workflows, analyze data, validate findings, or improve security processes.

  • Foundational understanding of common web, API, mobile, cloud, and application security risks, such as OWASP Top 10 issues, authentication and authorization flaws, injection, insecure design, secrets exposure, dependency risks, and data protection concerns.

  • Interest in offensive security, such as studying for or completing security certifications, practicing web/API testing, learning exploit development fundamentals, using tools like Burp Suite, or participating in labs and capture-the-flag environments.

  • Exposure to vulnerability management concepts, including triage, severity assessment, remediation tracking, false-positive analysis, compensating controls, and risk-based prioritization.

  • Ability to reason about risk and tradeoffs, not just identify issues. You can explain what could go wrong, how likely it is, what impact it may have, and what options exist to reduce risk.

  • Strong product and engineering empathy. You seek to understand launch goals, technical constraints, user impact, and business priorities before recommending a path forward.

  • Clear written and verbal communication skills, including the ability to explain security findings in practical, actionable terms.

  • A collaborative mindset and comfort working across product, engineering, compliance, risk, infrastructure, and security teams.

  • Curiosity, humility, and a growth mindset. You proactively seek feedback, ask good questions, and continue building your technical depth.

  • Secure-by-design judgment, including the ability to spot patterns, recommend simple controls, and balance launch velocity with meaningful risk reduction.

Base Pay Grade - L

Equity Grade - 5

Employees new to Affirm typically come in at the start of the pay range. Affirm focuses on providing a simple and transparent pay structure which is based on a variety of factors, including location, experience and job-related skills.

Base pay is part of a total compensation package that may include monthly stipends for health, wellness and tech spending, and benefits (including 100% subsidized medical coverage, dental and vision for you and your dependents). In addition, the employees may be eligible for equity rewards offered by Affirm Holdings, Inc. (parent company).

CAN base pay range per year: CAD $133,000 - $183,000

Location - Remote Canada This remote role is open only to candidates residing in Alberta, British Columbia, Manitoba, New Brunswick, Newfoundland and Labrador, Nova Scotia, Ontario, Prince Edward Island, or Saskatchewan.

#LI-Remote

Affirm is proud to be a remote-first company! The majority of our roles are remote and you can work almost anywhere within the country of employment. Affirmers in proximal roles have the flexibility to work remotely, but will occasionally be required to work out of their assigned Affirm office. A limited number of roles remain office-based due to the nature of their job responsibilities.

We’re extremely proud to offer competitive benefits that are anchored to our core value of people come first. Some key highlights of our benefits package include:

  • Health care coverage - Affirm covers all premiums for all levels of coverage for you and your dependents
  • Flexible Spending Wallets - generous stipends for spending on Technology, Food, various Lifestyle needs, and family forming expenses
  • Time off - competitive vacation and holiday schedules allowing you to take time off to rest and recharge
  • ESPP - An employee stock purchase plan enabling you to buy shares of Affirm at a discount

We believe It’s On Us to provide an inclusive interview experience for all, including people with disabilities. We are happy to provide reasonable accommodations to candidates in need of individualized support during the hiring process.

[For U.S. positions that could be performed in Los Angeles or San Francisco] Pursuant to the San Francisco Fair Chance Ordinance and Los Angeles Fair Chance Initiative for Hiring Ordinance, Affirm will consider for employment qualified applicants with arrest and conviction records.

By clicking “Submit Application,” you acknowledge that you have read Affirm’s Global Candidate Privacy Notice and hereby freely and unambiguously give informed consent to the collection, processing, use, and storage of your personal information as described therein.

Read the full description
Security Product Security Engineer II at Affirm

Application Security Engineer reviews code and systems for vulnerabilities, partners with engineering teams on secure design, and builds automation to scale security practices across the organization.

Junior Posted 15 days ago RemoteFirstJobs Product
What this role involves

Affirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest.

About the InfoSec & IT Team

The Application Security team helps Affirm build and launch products that earn customer trust, meet compliance obligations, and reduce business risk. We partner closely with product, engineering, infrastructure, risk, compliance, and other teams to identify security risks early, recommend pragmatic mitigations, and help teams find safe paths to launch.

We are looking for an early-career Application Security Engineer who is curious, collaborative, and comfortable working with code. You will help assess application risks, support vulnerability management efforts, partner with engineering teams on secure design decisions, and contribute lightweight tooling, automation, and code-informed analysis that helps AppSec scale across Affirm.

This role is a great fit for someone who has hands-on software or security experience, enjoys reading and reasoning about code, is actively developing offensive security skills, and wants to apply those skills in a product-minded, risk-based way.

What You’ll Do

  • Partner with product and engineering teams to identify application security risks and help frame them as clear business risks, launch options, and recommended next steps.

  • Read application code, configuration, pull requests, logs, and documentation to understand how systems work and where security risks may exist.

  • Contribute small code changes, scripts, detections, tests, secure defaults, or automation that improve AppSec workflows and reduce recurring issues.

  • Work in GitHub to review code changes, understand engineering context, participate in pull request discussions, track remediation work, and collaborate with engineers.

  • Help evaluate vulnerabilities from internal testing, bug bounty reports, security tooling, penetration tests, and other sources; partner with teams to prioritize and remediate issues based on real-world risk.

  • Contribute to vulnerability management workflows, including triage, validation, severity assessment, remediation guidance, tracking, and reporting.

  • Translate recurring security findings into repeatable mechanisms such as secure coding guidance, checklists, paved paths, lightweight automation, detection logic, reusable review patterns, or developer-facing documentation.

  • Work with engineers to understand system designs, data flows, trust boundaries, authentication and authorization models, code paths, and potential abuse cases.

  • Communicate security issues clearly to both technical and non-technical audiences, including the risk, tradeoffs, recommended mitigations, and residual risk.

  • Build strong relationships across Affirm teams and influence security outcomes without relying on formal authority.

  • Help connect AppSec work to customer trust, regulatory/compliance expectations, operational resilience, and business outcomes.

  • Continue developing hands-on offensive, defensive, and software engineering skills through practical work, labs, tooling, research, certifications, or contributions to internal security programs.

What We Look For

  • 0–2+ years of experience in application security, software engineering, security engineering, vulnerability management, penetration testing, security operations, or equivalent practical experience.

  • Foundational programming ability in one or more languages such as Python, JavaScript/TypeScript, Kotlin, or similar.

  • Comfort reading, navigating, and reasoning about code, even in unfamiliar codebases.

  • Experience using Git and GitHub or similar version-control workflows, including branches, commits, pull requests, code review, issues, or project tracking.

  • Some hands-on experience building, testing, breaking, or securing software. This could include professional experience, internships, security labs, CTFs, bug bounty work, open-source contributions, personal projects, automation scripts, internal tools, or coursework.

  • Ability to write clear, maintainable scripts or small programs to solve practical problems, automate manual workflows, analyze data, validate findings, or improve security processes.

  • Foundational understanding of common web, API, mobile, cloud, and application security risks, such as OWASP Top 10 issues, authentication and authorization flaws, injection, insecure design, secrets exposure, dependency risks, and data protection concerns.

  • Interest in offensive security, such as studying for or completing security certifications, practicing web/API testing, learning exploit development fundamentals, using tools like Burp Suite, or participating in labs and capture-the-flag environments.

  • Exposure to vulnerability management concepts, including triage, severity assessment, remediation tracking, false-positive analysis, compensating controls, and risk-based prioritization.

  • Ability to reason about risk and tradeoffs, not just identify issues. You can explain what could go wrong, how likely it is, what impact it may have, and what options exist to reduce risk.

  • Strong product and engineering empathy. You seek to understand launch goals, technical constraints, user impact, and business priorities before recommending a path forward.

  • Clear written and verbal communication skills, including the ability to explain security findings in practical, actionable terms.

  • A collaborative mindset and comfort working across product, engineering, compliance, risk, infrastructure, and security teams.

  • Curiosity, humility, and a growth mindset. You proactively seek feedback, ask good questions, and continue building your technical depth.

  • Secure-by-design judgment, including the ability to spot patterns, recommend simple controls, and balance launch velocity with meaningful risk reduction.

Base Pay Grade - L

Equity Grade - 6

Employees new to Affirm typically come in at the start of the pay range. Affirm focuses on providing a simple and transparent pay structure which is based on a variety of factors, including location, experience and job-related skills.

Base pay is part of a total compensation package that may include equity rewards, monthly stipends for health, wellness and tech spending, and benefits (including 100% subsidized medical coverage, dental and vision for you and your dependents.)

USA base pay range (CA, WA, NY, NJ, CT): $165,000 - $225,000

USA base pay range (all other U.S. states): $146,000 - $206,000

#LI-Remote

Affirm is proud to be a remote-first company! The majority of our roles are remote and you can work almost anywhere within the country of employment. Affirmers in proximal roles have the flexibility to work remotely, but will occasionally be required to work out of their assigned Affirm office. A limited number of roles remain office-based due to the nature of their job responsibilities.

We’re extremely proud to offer competitive benefits that are anchored to our core value of people come first. Some key highlights of our benefits package include:

  • Health care coverage - Affirm covers all premiums for all levels of coverage for you and your dependents
  • Flexible Spending Wallets - generous stipends for spending on Technology, Food, various Lifestyle needs, and family forming expenses
  • Time off - competitive vacation and holiday schedules allowing you to take time off to rest and recharge
  • ESPP - An employee stock purchase plan enabling you to buy shares of Affirm at a discount

We believe It’s On Us to provide an inclusive interview experience for all, including people with disabilities. We are happy to provide reasonable accommodations to candidates in need of individualized support during the hiring process.

[For U.S. positions that could be performed in Los Angeles or San Francisco] Pursuant to the San Francisco Fair Chance Ordinance and Los Angeles Fair Chance Initiative for Hiring Ordinance, Affirm will consider for employment qualified applicants with arrest and conviction records.

By clicking “Submit Application,” you acknowledge that you have read Affirm’s Global Candidate Privacy Notice and hereby freely and unambiguously give informed consent to the collection, processing, use, and storage of your personal information as described therein.

Read the full description
Security Product Security Engineer II at Affirm

Application security engineer who reviews code for vulnerabilities, partners with engineering teams on secure design, and builds automation to improve security workflows.

Junior Posted 15 days ago RemoteFirstJobs Product
What this role involves

Affirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest.

About the InfoSec & IT Team

The Application Security team helps Affirm build and launch products that earn customer trust, meet compliance obligations, and reduce business risk. We partner closely with product, engineering, infrastructure, risk, compliance, and other teams to identify security risks early, recommend pragmatic mitigations, and help teams find safe paths to launch.

We are looking for an early-career Application Security Engineer who is curious, collaborative, and comfortable working with code. You will help assess application risks, support vulnerability management efforts, partner with engineering teams on secure design decisions, and contribute lightweight tooling, automation, and code-informed analysis that helps AppSec scale across Affirm.

This role is a great fit for someone who has hands-on software or security experience, enjoys reading and reasoning about code, is actively developing offensive security skills, and wants to apply those skills in a product-minded, risk-based way.

What You’ll Do

  • Partner with product and engineering teams to identify application security risks and help frame them as clear business risks, launch options, and recommended next steps.

  • Read application code, configuration, pull requests, logs, and documentation to understand how systems work and where security risks may exist.

  • Contribute small code changes, scripts, detections, tests, secure defaults, or automation that improve AppSec workflows and reduce recurring issues.

  • Work in GitHub to review code changes, understand engineering context, participate in pull request discussions, track remediation work, and collaborate with engineers.

  • Help evaluate vulnerabilities from internal testing, bug bounty reports, security tooling, penetration tests, and other sources; partner with teams to prioritize and remediate issues based on real-world risk.

  • Contribute to vulnerability management workflows, including triage, validation, severity assessment, remediation guidance, tracking, and reporting.

  • Translate recurring security findings into repeatable mechanisms such as secure coding guidance, checklists, paved paths, lightweight automation, detection logic, reusable review patterns, or developer-facing documentation.

  • Work with engineers to understand system designs, data flows, trust boundaries, authentication and authorization models, code paths, and potential abuse cases.

  • Communicate security issues clearly to both technical and non-technical audiences, including the risk, tradeoffs, recommended mitigations, and residual risk.

  • Build strong relationships across Affirm teams and influence security outcomes without relying on formal authority.

  • Help connect AppSec work to customer trust, regulatory/compliance expectations, operational resilience, and business outcomes.

  • Continue developing hands-on offensive, defensive, and software engineering skills through practical work, labs, tooling, research, certifications, or contributions to internal security programs.

What We Look For

  • 0–2+ years of experience in application security, software engineering, security engineering, vulnerability management, penetration testing, security operations, or equivalent practical experience.

  • Foundational programming ability in one or more languages such as Python, JavaScript/TypeScript, Kotlin, or similar.

  • Comfort reading, navigating, and reasoning about code, even in unfamiliar codebases.

  • Experience using Git and GitHub or similar version-control workflows, including branches, commits, pull requests, code review, issues, or project tracking.

  • Some hands-on experience building, testing, breaking, or securing software. This could include professional experience, internships, security labs, CTFs, bug bounty work, open-source contributions, personal projects, automation scripts, internal tools, or coursework.

  • Ability to write clear, maintainable scripts or small programs to solve practical problems, automate manual workflows, analyze data, validate findings, or improve security processes.

  • Foundational understanding of common web, API, mobile, cloud, and application security risks, such as OWASP Top 10 issues, authentication and authorization flaws, injection, insecure design, secrets exposure, dependency risks, and data protection concerns.

  • Interest in offensive security, such as studying for or completing security certifications, practicing web/API testing, learning exploit development fundamentals, using tools like Burp Suite, or participating in labs and capture-the-flag environments.

  • Exposure to vulnerability management concepts, including triage, severity assessment, remediation tracking, false-positive analysis, compensating controls, and risk-based prioritization.

  • Ability to reason about risk and tradeoffs, not just identify issues. You can explain what could go wrong, how likely it is, what impact it may have, and what options exist to reduce risk.

  • Strong product and engineering empathy. You seek to understand launch goals, technical constraints, user impact, and business priorities before recommending a path forward.

  • Clear written and verbal communication skills, including the ability to explain security findings in practical, actionable terms.

  • A collaborative mindset and comfort working across product, engineering, compliance, risk, infrastructure, and security teams.

  • Curiosity, humility, and a growth mindset. You proactively seek feedback, ask good questions, and continue building your technical depth.

  • Secure-by-design judgment, including the ability to spot patterns, recommend simple controls, and balance launch velocity with meaningful risk reduction.

Base Pay Grade - L

Equity Grade - 5

Employees new to Affirm typically come in at the start of the pay range. Affirm focuses on providing a simple and transparent pay structure which is based on a variety of factors, including location, experience and job-related skills.

Base pay is part of a total compensation package that may include monthly stipends for health, wellness and tech spending, and benefits (including 100% subsidized medical coverage, dental and vision for you and your dependents). In addition, the employees may be eligible for equity rewards offered by Affirm Holdings, Inc. (parent company).

CAN base pay range per year: CAD $133,000 - $183,000

Location - Remote Canada This remote role is open only to candidates residing in Alberta, British Columbia, Manitoba, New Brunswick, Newfoundland and Labrador, Nova Scotia, Ontario, Prince Edward Island, or Saskatchewan.

#LI-Remote

Affirm is proud to be a remote-first company! The majority of our roles are remote and you can work almost anywhere within the country of employment. Affirmers in proximal roles have the flexibility to work remotely, but will occasionally be required to work out of their assigned Affirm office. A limited number of roles remain office-based due to the nature of their job responsibilities.

We’re extremely proud to offer competitive benefits that are anchored to our core value of people come first. Some key highlights of our benefits package include:

  • Health care coverage - Affirm covers all premiums for all levels of coverage for you and your dependents
  • Flexible Spending Wallets - generous stipends for spending on Technology, Food, various Lifestyle needs, and family forming expenses
  • Time off - competitive vacation and holiday schedules allowing you to take time off to rest and recharge
  • ESPP - An employee stock purchase plan enabling you to buy shares of Affirm at a discount

We believe It’s On Us to provide an inclusive interview experience for all, including people with disabilities. We are happy to provide reasonable accommodations to candidates in need of individualized support during the hiring process.

[For U.S. positions that could be performed in Los Angeles or San Francisco] Pursuant to the San Francisco Fair Chance Ordinance and Los Angeles Fair Chance Initiative for Hiring Ordinance, Affirm will consider for employment qualified applicants with arrest and conviction records.

By clicking “Submit Application,” you acknowledge that you have read Affirm’s Global Candidate Privacy Notice and hereby freely and unambiguously give informed consent to the collection, processing, use, and storage of your personal information as described therein.

Read the full description
Security Twilio: Global Security Operations Center Operator

Monitor physical security systems, threat intelligence, and incident data across Twilio's global locations to maintain situational awareness and coordinate security responses.

Junior Remote Posted 21 days ago We Work Remotely — Programming
What this role involves

Headquarters: Remote - US

Who we are 

At Twilio, we’re shaping the future of communications, all from the comfort of our homes. We deliver innovative solutions to hundreds of thousands of businesses and empower millions of developers worldwide to craft personalized customer experiences.

Our dedication to remote-first work, and strong culture of connection and global inclusion means that no matter your location, you’re part of a vibrant team with diverse experiences making a global impact each day. As we continue to revolutionize how the world interacts, we’re acquiring new skills and experiences that make work feel truly rewarding. Your career at Twilio is in your hands.

We use Artificial Intelligence (AI) to help make our hiring process efficient. That said, every hiring decision is made by real Twilions!

.

See yourself at Twilio

Join the team as Twilio’s next Operator, Global Security Operations Center (GSOC). 

About the job

This position is needed to maintain a broad situational awareness over internal and external physical events that could impact employee safety or pose a threat to business assets or operations across Twilio’s global footprint. GSOC Operators monitor a variety of data sources including internal access control systems, external incident aggregators, travel safety applications, and general open source reporting materials. GSOC Operators serve as the primary contact for employees with physical safety and security questions or concerns. When an incident occurs, the GSOC Operator may dispatch security resources, escalate to crisis management teams, send broad communications to Twilio employees, or execute a mass notification to account for employee safety.

Responsibilities:

In this role, you’ll:

Monitoring and Surveillance

  • Utilize various physical security asset monitoring and surveillance systems to detect potential unauthorized access,  suspicious activity, or other security incidents
  • Monitor open-source threat intelligence and other internal SaaS tools to maintain situational awareness of persistent or emergency global events with potential or direct impact to operations

Security Operations Support

  • Support access control and visitor management processes
  • Manage security-related calls for service and provide general guidance to employees, vendors, and guests
  • Maintain awareness of business travelers and personnel accessing Twilio facilities
  • Partner with local site security teams to escalate and dispatch resources for incident and alarm response
  • Review travel requests to elevated risk locations, assist travelers through the approval process, and cross-reference live itineraries with external incidents 

Incident Management 

  • Perform the first point of incident intake across a variety of emergencies, including medical emergencies, natural disasters, fire/evacuation, travel disruptions, and security incidents
  • Assess and triage events and incidents to determine their impact to operations
  • Dispatch and coordinate response with emergency response personnel 
  • Communicate effectively on emerging incidents to large audiences to share situational awareness or tactical updates as warranted
  • Maintain real-time incident documentation for reporting and analysis
  • Perform Life-Safety checks for Twilio in areas impacted by potentially life-threatening conditions
  • Participate in post-incident reviews to document and implement corrective action and improvements to future response

Operational Excellence

  • Maintain a strong understanding of security and emergency standard operating procedures
  • Utilize critical thinking and problem solving skills to analyse situations and implement solutions
  • Support large projects that will improve Twilio’s GSOC capabilities and initiatives 

Qualifications 

Twilio values diverse experiences from all kinds of industries, and we encourage everyone who meets the required qualifications to apply. If your career is just starting or hasn't followed a traditional path, don't let that stop you from considering Twilio. We are always looking for people who will bring something new to the table!

*Required:

  • 3+ years of experience in a GSOC working environment
  • Experience with physical safety and security technology, systems (ACS, IDS, VSS, VMS), travel safety, and mass notification tools
  • Experience with open-source intelligence (OSINT) research tools 
  • Strong critical thinking and problem-solving skills
  • Proven ability to follow standard operating procedures and playbooks
  • Ability to prioritize tasks in a fast-paced environment
  • Ability to stay calm, professional, and think clearly in high-stress situations
  • Ability to communicate clearly and concisely; verbal and written
  • Ability to work ‘non-standard’ shift hours, to overlap as needed with colleagues and stakeholders in other global locations, including weekend and holiday hours
  • English Language Proficiency

Desired:

  • Customer service mindset
  • Comfortable with a high-tech work environment 
  • Eager to learn new tools and processes
  • Ability to work independently and as part of a team
  • Proficiency in Google Suite
  • Additional Language Proficiency

Shift Details:
Variable (8–10-hour shifts)

Must be flexible to work holidays, weekends, and occasional overtime.

Location

This role will be remote, but is not eligible to be hired in CA, CT, NJ, NY, PA, WA.

Travel 

We prioritize connection and opportunities to build relationships with our customers and each other. For this role, approximately 10% travel is anticipated to help you participate in project or team in-person meetings to help you connect in a meaningful way.

What We Offer

Working at Twilio offers many benefits, including competitive pay, generous time off, ample parental and wellness leave, healthcare, a retirement savings program, and much more. Offerings vary by location.

Compensation

*Please note the salary range information provided applies only to candidates residing in California, Colorado, Hawaii, Illinois, Maryland, Massachusetts, Minnesota, New Jersey, New York, Vermont, Washington D.C., and Washington State due to local requirements. Compensation for candidates in other locations will be discussed during the hiring process. Please note that hiring for this role is not restricted to the locations listed above.

The estimated pay ranges for this role are as follows:

  • Based in Colorado, Hawaii, Illinois, Maryland, Massachusetts, Minnesota, Vermont or Washington D.C. : $26.27 - $32.84
  • Based in New York, New Jersey, Washington State, or California (outside of the San Francisco Bay area): $27.77 - $34.71
  • Based in the San Francisco Bay area, California: $30.85 - $38.56
  • This role may be eligible to participate in Twilio’s equity plan and corporate bonus plan. All roles are generally eligible for the following benefits: health care insurance, 401(k) retirement account, paid sick time, paid personal time off, paid parental leave.

The successful candidate’s starting salary will be determined based on permissible, non-discriminatory factors such as skills, experience, and geographic location.

Applications for this role are intended to be accepted until September 21st, 2026, but may change based on business needs. 



Twilio thinks big. Do you?

We like to solve problems, take initiative, pitch in when needed, and are always up for trying new things. That's why we seek out colleagues who embody our values — something we call Twilio Magic. Additionally, we empower employees to build positive change in their communities by supporting their volunteering and donation efforts.

So, if you're ready to unleash your full potential, do your best work, and be the best version of yourself, apply now! If this role isn't what you're looking for, please consider other open positions.

Twilio is proud to be an equal opportunity employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, reproductive health decisions, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, genetic information, political views or activity, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state and local law. Qualified applicants with arrest or conviction records will be considered for employment in accordance with the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act. Additionally, Twilio participates in the E-Verify program in certain locations, as required by law.

To apply: https://weworkremotely.com/remote-jobs/twilio-global-security-operations-center-operator

Read the full description
Security IT Auditor I at Pathward

Performs IT audits to ensure compliance with regulations and internal policies, testing controls and communicating findings to stakeholders.

Junior Hybrid Posted 27 days ago RemoteFirstJobs Product
What this role involves

We are a hybrid, remote-office company dedicated to growing our talent anywhere!

We have onsite locations in: Sioux Falls, SD,  Scottsdale, AZ,  Louisville, KY,  Troy, MI,  Franklin, TN,  Easton, PA.

At Pathward, we take tremendous pride in our purpose to create financial inclusion for all™. We are a financial empowerment company that works with innovators to increase financial availability, choice, and opportunity for all.  We strive to remove barriers that traditional institutions put in the way of financial access, and promote economic mobility by providing responsible, secure, high quality financial products.

We are a team of problem solvers and innovators who celebrate our differences and know that our unique perspectives make us stronger and well-positioned for success.  We celebrate, and embrace, our team members through our *HUMBLE*HUNGRY*SMART approach, and we believe that we are strongest when we embrace the voices of our employees, customers, partners, and the communities we serve.

About the Role:

The position is responsible for performing audits within Information Technology for the purpose of ensuring compliance with external regulations as well as internal policies.  It will also communicate audit findings to multiple stakeholder groups.

What You Will Do:

  • Collaborate with audit team members as well as members of IT to develop audit objectives, engagement scopes, and testing strategies aligned with departmental standards and risk priorities.
  • Assist in the planning, execution, and reporting of IT audit engagements, including SOX ITGC testing, risk-based technology reviews, and issue validation procedures. Assist in the department’s risk assessment processes, providing qualitative/quantitative analysis over the Company’s auditable entities, and ensuring alignment with audit stakeholders.
  • Analyze and summarize data to identify control deficiencies, process inefficiencies, or noncompliance with policies, procedures, or regulations. Communicate findings and recommendations to audit leadership and business stakeholders in a clear manner. Utilize data analytics to test large datasets, identify anomalies, and draw insights that enhance audit efficiency and coverage.
  • Monitor issued audit findings, perform validation testing over defined remediation plans, and present remediation statuses to stakeholders. Identify opportunities to strengthen controls, improve operational effectiveness, and reduce risk exposure across technology and business processes.
  • Other duties as assigned

What You Will Need:

  • Bachelor’s degree or equivalent education and work experience.

  • Up to 2+ years with bachelor’s or equivalent.

  • Communication skills (written and verbal)

  • Collaboration and building relationships

  • Attention to detail

  • Learning agility

The responsibilities listed above are not all inclusive and may be changed at any time.

Salary range:  $50,000 – $84,000

The salary range reflects the minimum and maximum target for a new hire in this role. Individual pay within the range will be determined by multiple factors which can include but are not limited to a candidate’s experience, qualifications, skills, and location. Your recruiter can share more about the specific salary for your location during the hiring process. Ranges may be modified in the future.

This role is also eligible for an annual performance-based incentive opportunity.  Pathward offers a comprehensive benefits package for eligible employees, including health insurance, 401(k) retirement benefits, life insurance, disability benefits, paid time off, and more.

#LI-Remote

Don’t have everything listed under qualifications? If you’re excited about this role but your experiences don’t match exactly to everything in the posting, we encourage you to apply anyway. You may be just the right candidate for this or other Pathward roles. Pathward is an equal employment opportunity employer and considers candidates for roles without regard to their race, sex, national origin, ethnicity, age, disability or any other category protected by law.

Who we are:

Our commitment to inclusion is woven into our DNA. We believe that we are strongest when we embrace the voices of our employees, customers, partners, and the communities we serve.

We provide equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, ethnicity, religion, sex, sexual orientation, gender identity, transgender status, pregnancy, national origin, age (age 40 and over), disability, genetic information, marital status, hair texture or hairstyle, ancestry, service in the uniformed services, protected veteran status, status as a victim of domestic violence or any other class protected by federal, state and local laws.

Please click here to learn more about our benefits and review information about our Privacy Policy, Affirmative Action Plan and other notices. Applicants with disabilities may be entitled to reasonable accommodation under the terms of the Americans with Disabilities Act and certain state or local laws. For assistance completing an application, please contact a Pathward People & Culture Representative by emailing – careers@pathward.com

Please click here to view Pathward’s Applicant Privacy Notice.

Applications will be accepted for a minimum of 3 days after posting, and there is no predetermined date by which applications should be submitted.

Knowingly submitting false information will result in disqualification for consideration of future positions, termination of employment and forfeiture of other rights.

Candidate Scam Warning

We encourage you to be cautious of hiring scams that impersonate Pathward. Copy and paste the following URL into your browser to learn more: https://www.pathward.com/about-us/people-culture/careers/

Read the full description
Security SOC Specialist II at Expel

Junior SOC analyst monitors networks for security threats, responds to phishing attacks and incidents, and learns incident response techniques from experienced security professionals.

Junior Posted 28 days ago RemoteFirstJobs Product
What this role involves

You’ve caught the security bug. Maybe it was the 18th breach-related credit-monitoring notification that started you down a research rabbit hole. Maybe you like the competitive nature of going against the world’s best attackers. Maybe you like computers and protecting people and just realized there is a job that checks both of those boxes. One thing is for certain; you are set on becoming a cyber security analyst. You’ve read the blogs, watched tutorials, downloaded Wireshark and collected some network traffic, maybe even gotten a cert. Now it’s time to join the fight!

90+% of data breaches begin with phishing, and our growing Managed Phishing service sets out to keep our customers secure. If you want to help grow this team, and break into security analysis, we’d love to speak with you! A Junior Security Operations Center Analyst position at Expel may be just what you’re looking for. Not only will you help our customers stay safe, you’ll learn how to think like an attacker, respond to real attacks, and be encouraged to innovate and solve problems. Surrounded by seasoned analysts, you’ll have no shortage of mentors eager to help you master the art.

What Expel Can Do For You

  • Get you out of the lab and into real networks with real evil
  • Give you an opportunity to learn from seasoned security analysts and incident responders every single day
  • Immerse you in a collaborative, encouraging, growth-minded culture
  • Challenge you to push the bounds of our security vision, preparing you for future roles in Managed Detection & Response (MDR)

What You Can Do For Expel (With the help of training, of course)

  • Apply your real passion for information security at protecting our customers
  • Participate in our 24x7 shift rotation: bad actors remain active throughout nights, weekends, and holidays so we’re always watching.
  • Be perpetually dissatisfied with the state of affairs, then help us get better
  • Help us meaningfully impact the security of our customers’ organizations
  • Once we bring you up to speed, constantly experiment to find new ways of catching bad actors

What You Should Bring With You

  • Flexibility and an openness to new challenges because, hey, startup life
  • Client comes first mindset - you aim to answer questions and process customer requests quickly and to a high standard
  • An inquisitive mind and a noble spirit
  • A keen sense of humor
  • A fundamental understanding of phishing, TCP/IP, and core application layer protocols
  • Basic understanding  of Windows, Mac, and Linux operating systems and command line tools
  • Awareness of cloud applications (O365, Okta, etc) and cloud infrastructure (AWS, GCP, Azure)
  • Familiarity with the attack lifecycle (or kill chain, if you prefer)
  • Knowledge of attack vectors, threat tactics, and attacker techniques.
  • Excellent analytical and prioritization skills- you can navigate competing priorities, spot the details most people don’t and ask for help when you need it
  • Clear and concise written communications-you know how to change your tone for the audience and can seamlessly switch between slacking a team member, a customer, or writing a report
  • A bachelor’s degree in a technical field or a compelling story

Additional notes

Compensation for this role is €45,000 EUR + 20% bonus & equity.

We believe in paying transparently and equitably. Your salary will ultimately be based on factors such as your experience, skills, team equity, and market data. You’ll also be eligible for unlimited PTO (which we model and encourage), work location flexibility, up to 24 weeks of parental leave, and really excellent health benefits.

We’re only hiring those authorized to work in Ireland. We do not currently sponsor immigration visas.

We’re an Equal Opportunity Employer: You’ll receive consideration for employment without regard to race, sex, color, religion, sexual orientation, gender identity, national origin, protected veteran status, or on the basis of disability.

We’ll ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please let us know if you need accommodation of any kind.

#LI-Remote

Salary Range

€45.000—€45.000 EUR

Read the full description