Cybersecurity Engineer (Remote)

RainFocusLehi, UT
Remote

About The Position

RainFocus, one of the most innovative software companies, is in search of an exceptional Cybersecurity Engineer. As a Security Engineer, you will play a critical role in safeguarding our organization's digital assets, infrastructure, and application ecosystem. This is a mid-level, autonomous role (not entry-level) where you will bridge the gap between IT operations, software development, and risk management. You won't just be reviewing logs, settings, and configs; you will be actively replicating vulnerabilities, collaborating with developers on secure architecture, managing our bug bounty program, and keeping our security tool stack running smoothly.

Requirements

  • All candidates must be a US citizen.
  • 3–5 years of dedicated experience in a technical cybersecurity role (e.g., Security Engineer, AppSec Engineer, or Senior Security Analyst, etc.).
  • Strong familiarity with the OWASP Top 10, web application security testing, and reviewing secure code dependencies (SCA).
  • Proven experience running enterprise vulnerability scanners, interpreting results, and driving remediation across cross-functional teams.
  • Foundational knowledge of cloud environments (specifically AWS) and securing cloud-native applications.
  • Excellent collaboration skills. You must be able to sit down with software developers, understand their sprint goals, and help them fix security bugs without breaking their workflow.

Nice To Haves

  • Direct experience with our specific stack is a massive plus:
  • AppSec/PenTesting: Burp Suite, Kali Linux, BugCrowd, Sonarqube
  • SecOps & Vulnerability: Tenable, Bitsight, OneTrust
  • IT & Endpoint Ecosystem: Jira, AWS, Sophos, JAMF, PDQ, BetterCloud
  • Certifications: CompTIA Security+, CEH, GIAC, or progress toward a CISSP, or other relevant certifications
  • Basic scripting skills (Python, PowerShell, or Bash) to automate repetitive security tasks or log analysis.
  • Experience with maintaining compliance with PCI-DSS, ISO 27001, and SOC 2 frameworks.
  • Experience utilizing AI to improve productivity and efficiency, as well as experience reviewing AI tools, integrations, and features.

Responsibilities

  • Own the vulnerability management program end-to-end: oversee continuous vulnerability scanning (Tenable) and software composition analysis/code dependencies (Sonarqube), drive remediation across teams, and replicate and validate discovered vulnerabilities using tools like Burp Suite and Kali Linux.
  • Manage and triage our crowdsourced bug bounty program (BugCrowd) and monitor our external security posture rating (Bitsight).
  • Act as the security voice in developer architecture meetings. Partner with engineering teams to review code dependencies, threat-model new features, and ensure secure coding practices.
  • Own and conduct system impact analyses for proposed changes, represent security on the Change Control Board (CCB), and lead threat modeling sessions for new systems, features, and infrastructure changes.
  • Triage and document security incidents within OneTrust and Jira. Collaborate with DevOps to ensure security tools are properly deployed across AWS environments and endpoint configurations.
  • Maintain a "read-only/audit" oversight of our endpoint detection, MDM, and email security tools (Sophos, JAMF, BetterCloud) to ensure compliance and active alerting.
  • Administer the security awareness learning modules (RF Academy) and lead internal initiatives to keep security top-of-mind for all employees.

Benefits

  • competitive salaries
  • competitive benefits
  • 401k
  • generous PTO
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service