remote

Salary
$140–$160/hrfrom the description
Posted
Jul 19, 2026
Location
Last confirmed open
Jul 21, 2026

What this job asks for AI summary

A 12-month contract role focused on threat detection and incident response across corporate and production environments. Day-to-day work involves security investigations, threat hunting, building detection models, and automating response workflows, with some cross-functional coordination covering engineering, legal, and privacy teams. Best suited to an experienced security engineer comfortable with Python, SQL, and frameworks such as MITRE ATT&CK who can operate independently at scale.

Senior level · 5+ years · Remote · Contract

Must have (3)
PythonSQLMITRE ATT&CK or Cyber Kill Chain
Nice to have (3)
PandasElasticsearchAWS

“or” means any one of them counts — you don't need all of them.

We read this from the posting text with AI. Skim the description below before ruling yourself out.

How this req sits in the market our data

Roughly 7,600 people nationally plausibly meet what this posting asks for (information security analysts). range 4,550–13,700

Applicant volume Heavy — This req sits in a large pool with little in its requirements to thin it, and auto-apply tools fire at everything in the occupation. Applying early and leading with the rare skills below is what gets read.

What won't set you apart
SQL51%Python51%

Most people in this occupation already list these. Still required — just not what gets you shortlisted.

What the occupation pays Median $132,021 (middle half $99,961–$167,095). This posting is about at that midpoint.

Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.

Why we read it this way (9)

This is a 12-month W2 contract engagement at $140–$160/hr, with potential for extension; classified as Contract accordingly.

Python is listed as the primary required scripting language; 'another scripting language' is accepted as a substitute but Python is the named gate.

SQL and Pandas are called out together as 'highly valuable' within the requirements section — SQL is treated as a hard gate given its placement and firm framing; Pandas is marked preferred because 'highly valuable' stops short of a firm gate.

MITRE ATT&CK and Cyber Kill Chain are listed together as required cybersecurity frameworks; emitted as one skill with the other as an alternative since either satisfies the framework requirement.

Elasticsearch is explicitly flagged as 'preferred' in the posting.

AWS (EC2, S3, Lambda, RDS) is explicitly flagged as 'a plus' in the posting.

The posting expresses a preference for PST time zone availability but does not restrict the role geographically beyond US-based candidates; the caller confirms fully remote with a national pool.

Posting is for a contract engagement — the market benchmarks below price full-time roles, so read the comp comparison with that in mind.

Caller marked this a fully-remote role — scored against the national candidate pool.

Read the full posting

The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.

Apply

Apply on employer site ↗