Security Analyst
Be the human in the loop: review every scan before it runs and every fix before a customer sees it.
Why this role exists
Our agents find, investigate and fix. They never execute silently: a person reviews every scan before it runs against a hospital, and a person reviews every proposed fix before it reaches a customer's repository. That review is the product's safety margin and its credibility. Right now the founders do it. We need someone whose job it is.
What you'll be doing
- Review scan requests before execution: is the scope right, is the customer's budget sane, is there anything about this hospital's environment that changes how we should test it.
- Triage what the agents surface. Separate the finding that matters from the finding that is technically true, and write the explanation the customer will read.
- Review the pull requests our remediation agent opens. You are the approval gate for changes to production infrastructure that handles patient data.
- Feed what you learn back: every review that catches something becomes a rule, a test or a detection.
- Help customers through their first real finding. The first time a hospital sees a critical result is the moment they decide whether to trust us.
How we work
We are a small team and everyone is close to customers. Nothing here is a ticket queue; you will talk to the researchers who found the technique, the engineers who built the check, and the customer who has to act on it. We are remote-first with a few hours of overlap with Tel Aviv.
What we need from you
- Hands-on triage experience, in a security operations role or a consultancy, where you were accountable for the call.
- You can read a diff and tell whether it does what the description says.
- You write calmly and precisely for people who are stressed.
- Healthcare experience is a plus; the willingness to learn how hospitals actually run is required.
How hiring works
Apply with the form on this page; a resume and a few lines on why this role are enough. If it looks like a fit, you talk to the hiring manager, then spend a paid working session on a real problem from our backlog, then meet one of the founders. We tell you where you stand at each step, and the whole process takes two to three weeks.