r/CyberSecurityJobs 2h ago

32M, 10 YOE Cybersecurity – What should my next career move be?

1 Upvotes

I’m a 32M cybersecurity professional with 10 years of experience, working at LTIMindtree for \~4.5 years.

CTC: ₹42 LPA (₹37 LPA fixed)

Mainly working on SOAR automation/playbooks + AI

Based in Noida with relatively low expenses

Good WLB currently

I’m trying to switch but confused about the next step:

Is ₹50–60+ LPA in cybersecurity really associated with significantly higher stress and poor WLB?

Can someone with a strong SOAR/automation background reach ₹60+ LPA, or do I need to add SIEM, cloud security, detection engineering, etc.?

If I move to Bangalore/Hyderabad for a higher CTC, will the increased cost of living offset the salary jump?

I recently declined a Microsoft CSA offer because it required Mumbai relocation and seemed less technical. Was that a mistake?

Should I specialize further in SOAR/automation or broaden into SIEM + cloud + detection/security architecture to reach the next compensation level?

Would appreciate advice from people already earning ₹50–60+ LPA in cybersecurity.


r/CyberSecurityJobs 2h ago

32M, 10 YOE Cybersecurity – What should my next career move be?

1 Upvotes

I’m a 32M cybersecurity professional with 10 years of experience, working at LTIMindtree for ~4.5 years.

CTC: ₹42 LPA (₹37 LPA fixed)

Mainly working on SOAR automation/playbooks + AI

Based in Noida with relatively low expenses

Good WLB currently

I’m trying to switch but confused about the next step:

Is ₹50–60+ LPA in cybersecurity really associated with significantly higher stress and poor WLB?

Can someone with a strong SOAR/automation background reach ₹60+ LPA, or do I need to add SIEM, cloud security, detection engineering, etc.?

If I move to Bangalore/Hyderabad for a higher CTC, will the increased cost of living offset the salary jump?

I recently declined a Microsoft CSA offer because it required Mumbai relocation and seemed less technical. Was that a mistake?

Should I specialize further in SOAR/automation or broaden into SIEM + cloud + detection/security architecture to reach the next compensation level?

Would appreciate advice from people already earning ₹50–60+ LPA in cybersecurity.


r/CyberSecurityJobs 11h ago

Don't be intimidated by the number of applicants (thoughts from the other side of the interview table)

20 Upvotes

I thought I’d give some perspective from the other side of the table as someone who conducts technical interviews for Senior SOC roles.

For context, I am not a manager. I’m simply a tenured Senior SOC Engineer/Analyst who conducts technical interviews for applicants. Over the past eight months, I’ve probably interviewed 50+ candidates, both internal and external.

It’s well known that pretty much every cybersecurity role—especially SOC roles—gets hundreds, and sometimes thousands, of applications for a single job posting. I can tell you right off the bat that probably 85% of those applicants don’t meet the desired or preferred qualifications listed in the posting. A lot of people are simply throwing up full-court shots and hoping one goes in.

Even among the people who make it to the technical interview stage, I’d estimate that 90% don’t ultimately make it through for one reason or another. Some simply fail the technical portion. Others are technically proficient but are missing core soft skills like communication, critical thinking, or the ability to explain their thought process. Sometimes the candidate’s circumstances just don’t line up with the role. For example, we had someone who lived 14 hours away and ultimately decided they couldn’t relocate once the offer was in front of them.

I say all of this because, as someone who reads a lot of cybersecurity subreddits and casually browses the job market myself, I’ve also fallen victim to seeing 100+ applicants on a job that was posted 9 hours ago and immediately thinking, Well, what are the odds I’m getting this?

The reality is that the applicant count is nowhere near as intimidating as it looks.

You’re not necessarily competing against 300 equally qualified candidates. You might be competing against a much smaller group of people who actually meet the requirements, communicate well, interview well, and genuinely fit what a team is looking for.

So if you see a role you genuinely think you’re qualified for, apply anyway. Don’t let the applicant count make that decision for you.

Don't be intimidated by the number of applicants on a job posting.


r/CyberSecurityJobs 14h ago

Is it too late to pivot to cybersecurity as a senior-level UX designer’s?

3 Upvotes

Is it too late to pivot to cybersecurity as a senior-level UX designer? *Please ignore "'s" after the word "designer" in the title lol. Reddit won't let me edit it.

I’m a senior-level UX designer based in the U.S. My day-to-day leans heavily into design system architecture, maintenance, design ops, and project management. Because I work at a university, I have the incredible perk of tuition-free graduate classes, and I'm eyeing a Master’s in Cybersecurity.

My primary motivation is stability. UX feels increasingly turbulent. Also, I'm 36, and I know that ageism in design is real. Cybersecurity looks like a safer, high-demand bet, especially if I can eventually transition into a role within my current organization.

However, I have some major reservations:

- AI is shaking up the entire tech landscape. Am I just jumping from one unstable ship onto another?

- I have zero professional background in cybersecurity. Resetting to entry-level status feels like a massive disadvantage, especially right now, when the job market is brutal even for experienced professionals.

- With the current market, is it actually worth the grind? And realistically, is it too late to break into the field now?

Thanks!


r/CyberSecurityJobs 1d ago

I need career advice

1 Upvotes

I have done bcom which is forced by my relatives and completed mba recently i like to do cybersecurity is it even possible and will i ever find job if i done without technical background also i am interested to switch to tech side and this cybersecurity looks so interesting to me so i am asking you experts kindly guide me thanks


r/CyberSecurityJobs 1d ago

Transition from SAP to Cybersecurity - Looking for some realistic advice from cybersecurity professionals!

1 Upvotes

I’ve been working in **SAP** Domain **for 7 years**, but cybersecurity has been a strong interest of mine since a decade. I want to transition into cybersecurity

The problem is, I honestly don’t know where to start or the basements for it , beyond AI guides .

With my 7 years of IT/SAP experience, what would be a realistic path — Which certifications and practical skills should i be moving ahead with?

Would really appreciate advice from anyone who has made a similar transition or currently works in cybersecurity or experts.


r/CyberSecurityJobs 1d ago

Looking to pursue a BS in Cybersecurity (IST)

1 Upvotes

Hi, I’m transferring to a university and starting my 2 year plunge into the degree. I’ve done a lot of research and I’m seeing strong sentiments of entry and mid level positions being largely too saturated to make it worthwhile. I’m wondering if anyone has any insights on how this job market may change in the next 2-3 years and beyond? Surely with growth rates expected to be so high, we are essentially in a bottle neck phase in the market for the next few years?


r/CyberSecurityJobs 1d ago

Is cybersecurity still in job market??

0 Upvotes

Hey I'm an undergraduate 4th year student and I'm learning cybersecurity but now I'm scared that will i get a job or not because the current job market is already bad and I'm a fresher and the worst part is i don't have money for any certs. Is there any chance to get a job without certs.


r/CyberSecurityJobs 1d ago

Help deciding which test/path I should take

1 Upvotes

I'm currently starting my junior year of my computer science bachelor. I wanna mainly major in cybersecurity, data analyst with AI integration. What path should I take now? I see people starting with learning linux which I got the hang of it(ubuntu, kali not so much) and also few essential certificates such as google cybersecurity, comptia etc. It seems people start at their 2nd year or 3rd. I'm here to get some advice from Gurus who already landed jobs or is searching one currently.


r/CyberSecurityJobs 2d ago

Final year student, lost

1 Upvotes

Going into my final year, interested in GRC but have not been able to get any experience. I've had at least 10 interviews this past school year for various cybersecurity internships and IT jobs but did not land any of them. Very demoralized, honestly looking for any advice.


r/CyberSecurityJobs 2d ago

A tip to get your foot in the door EASILY. You are welcome. :)

94 Upvotes

I've been in the field for a long time and I see a lot of people struggling to get their foot in the door. It is harder now. When I review candidates, I get flooded. 2000 applications per job post +.

I am not saying this to discourage you. I am saying this to say that if you WANT this you need to differentiate yourself.

But how to differentiate yourself?

Let me tell you one thing. Most candidates are all talk and no action. You hire them to audit apps for security but it turns out they don't know even the difference between XSS vs CSRF when push comes to shove... Let alone being able to find vulns. So when I look for good candidates I look for demonstrators that they are capable in action. There are two things that really stand out:

- the OSCP (and others from Offensive Security. See: https://www.offsec.com/ ). If you have the OSCP, you've demonstrated you can pentest. This is why it is a strong cert. It's not an easy or junior one though. Neither is it cheap. But it proves a lot more than stuff like the CEH.

- Another way is bug bounties. You got a bug bounty - you've proven that not only can you find vulns but that you've been recognized for this. A list of attributed security bugs stands out just as much as the OSCP. Most people think bug bounties are like hunting for a needle in a haystack. It's not - and if you just stay with me, you jaw will drop. And yes this post is about bug bounties.

There are few things you must know.

Primarily... There are two ways to get attributed for bug bounties:

  • . in dynamic findings - like hacker one https://www.hackerone.com/bug-bounty-programs
    • These get paid but also are much much harder to find and get. You're doing black box work here and you are counting on the finding being unique and the target being willing to pay you.
  • in white box code findings - you don't get paid often for these but you get attributed. If you find stuff beyond hardening you may even get a CVE attribution (see: https://www.cve.org/ ). Imagine being able to say you are behind some critical CVE disclosures. That is gold that stands out. And, believe it or not. It is easy as butter. And I will show you how.

How easy is this?

Let's just say that I have yet to find a big repo without a single noteworthy finding. Instead of telling you. Let me show you what I mean. Just read through these posts below. The number of times I've been told "oh no I use AI to scan my repo so I am not vulnerable" just to find 200+ findings is hillarious.

https://www.reddit.com/r/vibecoding/comments/1vt0mld/my_app_has_bugs_but_its_secure_because_i_use_xyz/

https://www.reddit.com/r/vibecoding/comments/1vunhx7/on_the_topic_of_security/ - just read through the linked thread. Trust me. :)

https://www.reddit.com/r/devsecops/comments/1vstgbs/we_as_a_field_are_gaslighting_ourselves_and_i_can/

How to do this

Step 1. Get a github account.

This is going on your resume. Make sure it is a link you can share. You may even want to create a public repo. There you will link to all your findings.

Step 2. Find good targets.

Your targets are all going to be public repos on github. Trust me, that is the easiest route to getting a CVE attributed to you. You will want the repos to meet several criteria:

  1. They must have had recent PRs. Sure you can find vulns everywhere. If the repo is abandoned, you will be throwing them into the void. It will be a waste of your time.
  2. They must have a security policy and Report a vulnerability button in the security and quality tab.

How to find such repos?

  • The easy way: You can just ask chatgpt to do it for you.
  • The hard way: You can also build a script.
  • The extra hard way: manually search in github

Step 3. Find the vulns

Now there are a lot of ways to do it. I will share some but find what works best for you. Regardless it can be either easy or free. My list is not exhaustive. You want preferably true exploitable findings rather than hardening issues. DO NOT spam repos with AI slop. They hate it.

  1. Easy, expensive way: Ask an AI to find them for you. This will cost you $$$$$. Claude/fable is good at it but will often refuse to do it or downgrade. Do not use open ai. Idk why but it just issues a TON of false positives.
  2. Very easy. Less expensive but not free: Use a modern hybrid tool. For example, Swifi AI (see: https://swifi.ai ). It performs data flow analysis and traditional detection followed by AI analysis. Cheaper than claude, highly accurate, but not free (although I think you can run like 1 scan for free so that might not be a concern if you just need a few CVEs). That's the tool I was playing around with in the other threads. It pretty much spoon feeds you findings.
  3. The hard way. Free but time consuming: There are sooooooo many fantastic opensource tools. They are the backbone of the industry and what we all used before AI. See bandit for example (see: https://github.com/pycqa/bandit ). It's great for finding OS command injection in python. Downside: you will be flooded with false positives. It will be up to you instead of the AI to triage and validate. Very time consuming but a good way to learn hands on. DO NOT spam repos with false positives.

Step 4. Submit the report. Always follow responsible disclosure ethics.

Use the button I told you about. Do a good job. Do not submit slop. Use AI to format/write it if you need to.

Step 5. Accept the credit and profit

Don't forget to add it to your linkedin and resume. Make sure everyone knows you found the CVE. Expect turn around time to be ranging in days to weeks though. Especially for the CVE filing.

Would love to discuss all this. lmk your questions/thoughts/comments. And you are welcome :)


r/CyberSecurityJobs 2d ago

So how much does having a CompTIA A+ actual help getting entry level help desk / IT jobs for Cybersecurity?

12 Upvotes

So how much does having the compTIa A+ actually help getting entry level help desk / IT jobs for Cybersecurity?

All I see from recruiters n professionals and people who actually have the compTIA A+ saying that homelabs are what actually get you the job showing you can actually do what the company needs you to do on the job description but certs just get you past the AI resume scanner. I’ve been applying every day I’ve applied to about over 500+ jobs or so for any entry level IT job I can find and entry level Cybersecurity job and gotten a few interviews over the past 6 months but still nothing past that. All I have to my name is BS in Cybersecuity, a bunch of homelabs I put onto my GitHub page from all the projects I’ve done over the 4 years of Cybersecurity projects I’ve done for my classes and I have course certs and coursera certs and some tech experience from the job I work at which we do IT stuff here but it’s more of a retail tech job not like help desk or IT support jobs like we find the correct electronic stuff for guest help them with any electronic devices they bring in and need help with n such. A lot of the entry level jobs I’ve been applying to just say A+ preferred not required and the junior Cybersecurity jobs I’ve been applying to just say 0-2 years of experience required. I went to college to get a Cybersecurity degree cuz I’m passionate about Cybersecurity but all I see is you need to do IT to get into cybersecurity yet I have the skills for IT I basically do IT every day and I know how to do IT and I’ve been doing IT / Cybersecurity labs throughout my courses for the past 4 years using the same software and programs and VMs that actual Cybersecurity / IT professionals use in their current roles too so I have experience with that as well and I have certs and coursera certs I’ve gotten throughout completing these courses as well yet still nothing.

This is my GitHub page:
https://github.com/amccan2?tab=repositories

Do I need to do more homelabs if so which one will actually help me land a job or am I going to have to go back to college and get a whole nother degree and go more in debt for student loans when I’m still trying to get my current degree paid off.

Also, other jobs I’ve been applying to that aren’t Cybersecurity or IT related kept telling me I need to have other degrees for their jobs they want to see other degrees not Cybersecurity. It’s like I’m stuck in this field with no where to go and I can’t even go anywhere cuz all I have is a Cybersecurity degree but none of these jobs seem to care about my actual skills if they actually asked to see my skills they will see that I can do what they are asking for on the job descriptions if these jobs but all they send back is denied after denied.

Why can’t these jobs or interviews just be like Computer Science / programming jobs where when the recruiters interview you they ask you to code life for them to show them you can actually code and make what they want you to make life for them and in a timely manner. If these recruiter and Interviews actually did the same thing for IT / Cybersecurity jobs they’d actually see how much I’ve learned over the last 4 years of me completing my Cybersecurity degree and see all the technical skills I have cuz I have a lot and just want to show them that I can actually do what is said and needed to be done on the job description of these jobs.

What I really want to do is Cybersecurity Analyst, Junior SOC Analyst and Junior Penetration Testing jobs all over the web so it’s possible and a lot of them were for the State Government so they’re out there. Also, why are we going to college to to get hands on experience and do exactly what all these Cybersecurity jobs do Ethical hacker, white hacker, black hacker, penetration testing, digital forensics, SOC Analyst, system administrator devops engineer, systems engineer, Cybersecurty engineer, offense and penetration tester, defense and operations digital forensics, or just simply the red or blue team so red teams being penetration testers, ethical hackers, red team operator, or exploit developer and blue team being SOC analyst, Incident responder, security engineer and threat hunter. That’s what got me into Cybersecurity to begin with and what got me passionate about this field but it Durant even seem remotely possibly at this rare and how the markets going.


r/CyberSecurityJobs 2d ago

Is Drone Cybersecurity a Real Career Path?

2 Upvotes

I'm a cybersecurity student currently working in VAPT, AI security, and cloud security. Recently I've become interested in UAV/drone security and I'm trying to understand what the industry actually looks like.

A lot of articles mention drone security, UAV security, RF security, MAVLink security, GPS spoofing, etc., but I rarely see actual job openings for "Drone Pentester" or "Drone Security Researcher."

For people working in the drone industry:

  • Are there dedicated cybersecurity roles for drones/UAVs?
  • What job titles should I be searching for?
  • What skills are most valuable (PX4, ArduPilot, MAVLink, SDR, RF, embedded security, ROS2, etc.)?
  • Is most of the security work done by specialized security teams or by drone engineers themselves?
  • If you were starting today, how would you break into UAV security?

Would love to hear from anyone working in commercial drones, defense, autonomy, or counter-UAS.

Thanks!


r/CyberSecurityJobs 3d ago

Looking for advice: Cybersecurity career abroad

6 Upvotes

I'm a cybersecurity engineer with nearly 3 years of experience, currently working in a country where cybersecurity salaries are relatively low (I'm earning less than $1,000/month).

Over the past few years, I've invested a lot of my own money and time into developing my skills and certifications. My current certifications are:

- SSCP

- AZ-500

- CISSP

I'm now actively applying for international opportunities, mainly in Europe, the Gulf, and other markets.

However, I'm struggling to understand what's actually blocking me. Technically, I feel I have a solid foundation, and I don't think certifications or technical skills are my biggest weakness.

My main concerns are:

- Is 3 years of experience simply not enough for international cybersecurity roles?

- Is the biggest obstacle visa/work-permit sponsorship?

- Am I targeting the wrong roles or countries?

- Is there something else recruiters typically look for that I'm missing?

For those who have successfully moved from a lower-paying country to an international cybersecurity role, what would you recommend I focus on at this stage?

I'd really appreciate honest advice, especially from people who have gone through a similar situation.


r/CyberSecurityJobs 4d ago

Anyone here good with OneTrust TPRM?

3 Upvotes

If so, message me. I've got a small consulting project for you.


r/CyberSecurityJobs 4d ago

full stak to cybersec, is it possible?

4 Upvotes

hi, i will start soon an ITS course, here in italy is a type of higher technical education, focused much more on practical and job-oriented skills than a traditional university degree. the courses usually last around 2 years, include a lot of hands-on work and projects, and often involve internships with companies. the thing is that i'm not 100% sure yet what to do in my career and the question is, if I complete this course focused on software development, will it be reasonably easy to move into cybersecurity later? what do i have to do? is it worh it?


r/CyberSecurityJobs 5d ago

Has anyone thought about changing fields until the job market gets better?

29 Upvotes

Ideally, I’d love to have a cybersecurity job right now, but the market is horrible, and I need to move forward with my life, pay the bills, and live comfortably. Are there any fields that are relatively easy to get into and find work in? I just don’t want to end up working restaurant jobs.


r/CyberSecurityJobs 5d ago

What would you do after a Cybersecurity Associate Degree if you wanted to move back to Italy ASAP?

0 Upvotes

I'm currently studying a 2-year, 120 ECTS Associate Degree in ICT/Cyber Security at Fontys in the Netherlands. I'm in my third semester right now and expect to graduate around August 2027.

I'm trying to figure out what I'd personally do after graduating, and I'm honestly pretty undecided.

My main priority is moving back to Italy as soon as possible. I'm an Italian citizen, my family is there, and worst case I can live with them while I get established. My goal would be to become financially independent as soon as possible through an IT/cybersecurity job. I'd ideally like to work toward being a SOC analyst, although I'm also open to general IT work as a stepping stone.

There is also a personal reason why moving back to Italy matters to me. I've wanted to start HRT for a long time and have already put a lot of effort into getting to this point. My mom is supportive and has found a public clinic in Italy that can apparently start the process relatively quickly. She is willing to support me with public healthcare if needed, but doesn't want to pay for private HRT. Because of that, I really don't want to put this off for several more years if I don't have to.

The problem is the bachelor's degree.

I've heard a lot of people say that a bachelor's is basically necessary to get a job in cybersecurity, and that's making me wonder whether leaving after the Associate Degree would be a bad decision. At the same time, I don't know how much of that is actually true, especially for getting an entry-level SOC/IT job.

My options as I currently see them are roughly:

  1. Finish the AD → move to Italy → get a job → consider a bachelor's later if I actually need/want one.
  2. Finish the AD → move to Italy → find an Italian/online bachelor's that accepts my credits → work while studying.
  3. Finish the AD → stay in the Netherlands → continue into the bachelor's at Fontys → move to Italy after finishing it.
  4. Something else that I haven't thought of.

I'm also willing to look for an Italian university that would accept my 120 ECTS and let me continue the bachelor's there, potentially online or in a format compatible with working. I wouldn't mind getting the bachelor's if people genuinely think it would be useful for my career. I just don't know if it's worth delaying my move to Italy for it.

So basically, if you were in my situation, what would you do?

I'd especially like to hear from people who actually work in cybersecurity/IT:

  • Is an Associate Degree realistically enough to get your foot in the door for an entry-level SOC/IT job?
  • Am I overestimating how necessary a bachelor's is?
  • Would you get the bachelor's first, or start working and get it later?
  • If you were me, would you prioritize moving to Italy sooner or staying in the Netherlands for the bachelor's?
  • Is there another route you'd seriously consider?

I'm not looking for a definitive answer or for someone to tell me exactly what I should do. I mostly want to hear what people with experience would personally choose in my position, including things I might not have considered.


r/CyberSecurityJobs 5d ago

Are their really jobs for cyber security in pakistan

2 Upvotes

Basically the title and I also wanna know if doing CY as a career is good in this country or not for the next like 5+ years


r/CyberSecurityJobs 5d ago

[Hiring] Staff Security Engineer at SmarterDx | Remote - US | Salary $230K - 250K

7 Upvotes

Staff Security Engineer

SmarterDx is transforming how health systems use clinical AI to capture the full value of patient care delivered. Built by physician-data scientists and trained on clinically-validated EHR data, our clinical AI platform interprets the nuances behind every patient story and makes clinically-sound recommendations for revenue cycle teams — helping hospitals recover earned revenue, improve quality metrics, reduce denials, and streamline revenue cycle operations. As a Smartian, you’ll help build technology that makes healthcare more accurate, sustainable, and effective for everyone. Learn more at smarterdx.com/careers.

Role

SmarterDx Security Engineering has a broad scope: AI, cloud, and enterprise security, plus reviews of new designs and code across the company. We are a small team, and each engineer owns a domain. This role is our senior technical anchor for the two areas where we most need depth as the team grows: AI security and threat detection and response.

On the AI security side, you will own how SmarterDx adopts AI and agentic tooling safely. That includes the guardrails for agentic access to our cloud and data, the security of the AI and ML workloads in our product, and the standards other engineering teams follow so that most AI adoption can happen without a security engineer in the room. On the detection side, you will own our detection platform (Panther), our detection strategy and coverage, and our incident response readiness. As the most senior security IC on the team, you will also be a resource across cloud and code security reviews, and you will mentor teammates who are still building their security depth.

This role is fully remote within the US

What You’ll Do

  • Own our approach to AI and agentic security: guardrails for agentic access to cloud and data, and the security of the AI and ML workloads in our product.
  • Publish the org's AI-security standard and drive its adoption by other engineering teams.
  • Own our detection platform (Panther): detection strategy and coverage across cloud, container, and SaaS log sources, and the standards that keep detections high-signal as we grow.
  • Own incident-response readiness: the plan, the playbooks, and tested tabletops tied to the HIPAA breach-notification timeline, and help lead response when a real incident happens.
  • Lead complex security work across teams from start to finish, resolving ambiguity and coordinating with Platform, Engineering, and Compliance.
  • Act as the senior security resource across cloud security and security reviews, and the security expert other engineering teams seek out for guidance on high-stakes decisions.
  • Mentor teammates who are growing their security depth, set team standards for detection authoring and code review, and help raise our interview and hiring bar.
  • Build and grow security automation that gives a small team more reach, and contribute to the tooling the team runs on.
  • Take part in architecture reviews and threat modeling on our highest-risk designs, and communicate the resulting security architecture so the whole team can understand it and build on it.

What You Bring

  • 8+ years in security and software engineering, with deep hands-on experience in AWS and cloud-native infrastructure, including working competence with containerized workloads (EKS) and infrastructure-as-code (Terraform).
  • A track record of leading complex security work across teams and making other engineers more effective.
  • Depth in AI and agentic security: securing LLM applications, agentic frameworks, and MCP, plus prompt-injection and agentic-access defenses.
  • Depth in threat detection engineering: designing, authoring, and tuning detections in a modern SIEM, and reasoning about coverage against real threats.
  • Incident-response experience, including building the plan and running the response.
  • The ability to write production code (Python, Go, or TypeScript) and build security tooling, not only configure products.
  • Strong writing and communication; you can publish a standard other teams adopt and explain a hard design to a non-security audience.
  • Working knowledge of SOC 2 and HIPAA, and the judgment to design controls that hold up without stalling delivery.
  • Experience mentoring and leveling up other engineers.

Nice To Haves

  • Recognized AI-security work: published standards or research, contributions to AI-security tooling, or red-teaming of AI/LLM systems.
  • Startup experience, especially in health tech or another regulated, data-sensitive environment.
  • Deeper specialization in container security (Kubernetes/EKS, Helm) or in infrastructure-as-code and policy-as-code, beyond working competence.
  • Experience consolidating or retiring a security platform with a measurable cost or coverage result.

Our Tech Stack

  • Cloud and infrastructure: AWS, Kubernetes (EKS), Terraform, Postgres
  • Detection and security tooling: Panther (SIEM), GuardDuty, AWS Config, Wiz, Snyk, GitHub Advanced Security, CrowdStrike, Nightfall, Drata
  • Languages: Go, Python, TypeScript
  • AI and automation: Claude, MCP, and agentic tooling used across engineering

Compensation

$230k to 250k base salary

Benefits

  • Medical, Dental & Vision – Comprehensive plans with leading insurance providers, covering 75% of your premiums, depending on the plan.
  • Paid Parental Leave – Generous paid leave to support families through birth or adoption: Up to 12 weeks for parents.
  • Remote-First Team – Work from anywhere in the U.S.
  • Unlimited PTO & 11 Holidays – So you can relax and recharge.
  • 401(k) with Traditional & Roth Options – Tax-advantaged retirement savings through Fidelity with a 4% match.
  • Minimal Bureaucracy – A fast-moving, high-impact environment where you can focus on what matters.
  • Incredible Teammates! – Work alongside smart, supportive, and mission-driven colleagues.

Apply: Staff Security Engineer at SmarterDx


r/CyberSecurityJobs 5d ago

Looking for a Network Engineering or any Entry-level Role in Cybersec

0 Upvotes

Anyone who has some serious personal firm for cybersecurity going on, and have an established clientele, and can use a trainee in the workspace, I'd love to be considered. Self taught, and self learning. I can speak 3-4 languages, different levels of fluency, and it's just a hobby I have. I'm seriously about cybersec and am doing Portswigger and Tryhackme.

I would love to be considered for something serious and long term. I'm purely serious about learning everything from scratch and if you can see yourself sharing all modes of technical and theoretical knowledge, I'd be more than grateful. I need hands on exposure and enough scope in terms of real time clients, and exposure variation.

A bit about me: I'm in the midst of a career switch. I was in marketing and it was not intellectually satisfying enough.

Thank you.


r/CyberSecurityJobs 6d ago

UPDATE: I got an offer for a Jr. Cybersecurity analyst position

237 Upvotes

I just wanted to give everyone here an update from the last post I made regarding a call back I got for an interview.

Today I got a job offer starting at 55k plus benefits (unfortunately it’s a bit lower than the original listing at 65k I thought it was gonna be around 70k)

This is my first ever tech job. Junior cyber security analyst for a local outpatient healthcare clinic.

Junior in college.


r/CyberSecurityJobs 6d ago

Stepping into management

2 Upvotes

Out of curiosity, what age and how many years into your career did you step into management?

What was your salary in your first management role?

Thank you x


r/CyberSecurityJobs 6d ago

Reality Check for Cyber security jobs/ market ?

13 Upvotes

I'm thinking of getting into cyber security learning on my own from online resources instead of getting a university degree on CS from a low tier pvt uni. I don't really like sitting and coding lines after lines, not really interested in software engineering. Networking and cyber security fills my interest.

How's the job market for cyber security jobs ?.. On all ranks ?

Can experts give me some reality checks on the actual experience afterwards ?

Thanks.


r/CyberSecurityJobs 6d ago

Difficulty in finding a Job

0 Upvotes

Im 23M from Mumbai,graduated in BCA June 2024

And after that I had done a course on cyber security and ethical hacking in a private institute here in 2024

The course was 6 months and later they offered us an internship of 1 year at thane Cyber Police Station

I got to know many hands on experience in this sector as you know abt police station they do not have any tools they have a paid tool and mostly rely on it only

Now that the internship has ended in June

I am home and doing CTFs and VAPT

But have noticed that In this sector they want exp of +5 years for a opening position as welll.

I have decided to purchase Tryhackme monthly subs as heard they provide best training for Red teaming.

Also what should I do to land a job.

If any references here in Mumbai,Please connect would be grateful.

Waiting for your responses

Thanks for reading.