About SecurityScorecard: SecurityScorecard is the global leader in cybersecurity ratings, with over 12 million companies continuously rated, operating in 64 countries. Founded in 2013 by security and risk experts Dr. Ale…
Anduril Industries is a defense technology company with a mission to transform U.S. and allied military capabilities with advanced technology. By bringing the expertise, technology, and business model of the 21st century…
Principal Data Link & Communications Engineer (Link 22)
Bedford, Massachusetts, United States · On-site
$160k–$185k/yr
Senior
Applied Research Solutions is seeking candidates for the role of a Principal Data Links & Communication Engineer located at Hanscom AFB, Bedford, MA. This role requires Link 22 and tactical data links engineering experie…
Skills: Link 22, Tactical Data Links, C++, Java, MBSE
The start to your new career begins at Cataldo Ambulance Service! A chair car-wheelchair van driver, also known as a chair car driver, provides safe and efficient non-emergency transportation for disabled, handicapped, o…
Westminster, Massachusetts, United States · On-site
Entry level$332M raised
Position Overview: The Recovery Support Specialist (RSS) assists patients with substance abuse and mental health disorders, working under the direction of the Program Director and/or Assistant Program Director and in col…
Make a Career Shift That Moves You Forward – Become a CDL Instructor at NETTTS Are you a CDL-A driver ready for a rewarding change? Want to stay close to home, get off the road, and use your experience to build oth…
Skills: CDL-A Driving, Instruction, Mentoring, DOT Safety Standards, Classroom Training
Position Summary Westover Job Corps Center is seeking a dependable and detail-oriented Custodian to help maintain a clean, safe, and welcoming environment for students, staff, and visitors. The Custodian is responsible f…
Leominster, Massachusetts, United States · On-site
$18/hr–$22/hr
Entry level$117M raised
IN-PROCESS (QC) INSPECTOR ACT ENTERTAINMENT JOB DESCRIPTION DEPARTMENT: Quality Control FLSA: NON-EXEMPT REPORTS TO: QC Supervisor EFFECTIVE DATE: May 29, 2024 SUMMARY: This position is responsible for testing and verify…
Job Title: Swim Instructor Reports to: Deck Supervisor FLSA Status: Part time, Non-Exempt Summary: We’re looking for a patient, energetic, and student-centered Swim Instructor to bring our curriculum to life in the water…
Skills: Swim Instruction, Water Safety, Childcare, Communication, Student Evaluation
Job Title: Swim Instructor Reports to: Deck Supervisor FLSA Status: Part time, Non-Exempt Summary: We’re looking for a patient, energetic, and student-centered Swim Instructor to bring our curriculum to life in the water…
Skills: Swim Instruction, Water Safety, Childcare, Communication, Student Evaluation
Compliance Officer I- Employment Investigator The Massachusetts Commission Against Discrimination (MCAD) is the independent state agency that enforces Massachusetts anti-discrimination laws by investigating discriminatio…
Skills: Investigation, Case Management, Legal Analysis, Interviewing, Evidence Gathering
Compliance Officer I- Employment Investigator The Massachusetts Commission Against Discrimination (MCAD) is the independent state agency that enforces Massachusetts anti-discrimination laws by investigating discriminatio…
Skills: Investigative Planning, Fact Gathering, Interviewing, Legal Analysis, Case Management
At Bozzuto, every team member shares a deep commitment to doing good for those around us. We live this each day by designing, building, managing and maintaining one-of-a-kind residences. Whether it’s the talent within ou…
This Facility Manager role has the responsibility for all efforts to execute and deliver facilities management along with repairs and maintenance for Citizens. This role is the direct connection to the facilities team to…
Skills: Facility Management, Project Management, Vendor Management, Stakeholder Engagement, Building Systems Knowledge
Supreme Judicial Court Job Opportunity Court Officer l This posting will remain open until filled, but consideration of candidates will begin as of July 20, 2026 To Apply please send all documents listed under "Applicati…
Supreme Judicial Court Job Opportunity Court Officer l This posting will remain open until filled, but consideration of candidates will begin as of July 20, 2026 To Apply please send all documents listed under "Applicati…
Job Title: Hospitality Ambassador Pay Range: $23.75 to $24.50 per hour (Weekly Pay & Pay Advance Before Payday!) Shift/Schedule: Schedule subject to change with the seasons Who We Are: At Block by Block, we employ Ambass…
Marlborough, Massachusetts, United States · On-site
$70k/yr
Senior
The Branches of Marlboro are seeking an experienced and skilled Director of Plant Operations/Maintenance Director to join our growing team of professionals at Benchmark Senior Living. Sunday- Thursday schedule Salary: $7…
Skills: Electrical, Carpentry, HVAC, General Maintenance, Facilities Management
HomeGoods At TJX Companies, every day brings new opportunities for growth, exploration, and achievement. You’ll be part of our vibrant team that embraces diversity, fosters collaboration, and prioritizes your development…
Skills: Verbal communication, Written communication, Decision making, Initiative, Time management
CI/CD Pipeline Software Engineer - Embedded Development
Dedham, Massachusetts, United States · On-site
$137k–$146k/yr
Senior
Basic Qualifications Bachelor's degree in Software Engineering, or related Science, Technology, Engineering or Mathematics field, plus a minimum of 5 years of relevant experience; or Master's degree, plus 3 years relevan…
Bridge the gap between threat research and production by turning research artifacts into deployable detection rules, feeds, and APIs. Build and maintain the STRIKE platform components and automate research workflows using language models and data pipelines.
Requirements
Requires 5 to 8 years of engineering experience in threat intelligence or security research with proficiency in Python and TypeScript. Must have a proven track record of shipping production systems using LLMs and a deep understanding of security standards like STIX and TAXII.
Full job description
About SecurityScorecard:
SecurityScorecard is the global leader in cybersecurity ratings, with over 12 million companies continuously rated, operating in 64 countries. Founded in 2013 by security and risk experts Dr. Alex Yampolskiy and Sam Kassoumeh and funded by world-class investors, SecurityScorecard’s patented rating technology is used by over 25,000 organizations for self-monitoring, third-party risk management, board reporting, and cyber insurance underwriting; making all organizations more resilient by allowing them to easily find and fix cybersecurity risks across their digital footprint.
Headquartered in New York City, our culture has been recognized by Inc Magazine as a "Best Workplace,” by Crain’s NY as a "Best Places to Work in NYC," and as one of the 10 hottest SaaS startups in New York for two years in a row. Most recently, SecurityScorecard was named to Fast Company’s annual list of theWorld’s Most Innovative Companies for 2023 and to the Achievers 50 Most Engaged Workplaces in 2023 award recognizing “forward-thinking employers for their unwavering commitment to employee engagement.” SecurityScorecard is proud to be funded by world-class investors including Silver Lake Waterman, Moody’s, Sequoia Capital, GV and Riverwood Capital.
About the Role:
You'll join STRIKE, SecurityScorecard's Threat Intelligence team, as the engineering counterpart to research. STRIKE runs several research motions in parallel, each on its own clock: rapid response to active events, longer product-tied work, and standards-anchored research on a quarterly cadence. The path from a finding to a shipped detection or feed gets reinvented every time. That's the problem this role is here to solve.
You'll work directly with the senior technical leader who owns STRIKE's R&D direction, and report to the Head of Threat Research for people management. Technical direction comes from R&D leadership; you own delivery. You'll take a research artifact (a malware finding, an infrastructure cluster, a new indicator class, a behavioral pattern) and turn it into something the company can use without a second round of engineering: schemas, pipeline hooks, distribution feeds, detection rules, or platform APIs.
This isn't a pure research role, and it isn't a pure platform role either. Researchers ideate, you ship.
Key Responsibilities:
Research-to-Production Pipeline
Own the path from research output to production-ready artifact: a detection rule, a distributed feed, a scoring input, or a customer alert. Partner with adjacent teams to define clean handoff contracts, so new signals arrive downstream with the schema, value framing, and consumption pattern already defined.
Threat Intelligence Platform Engineering
Build and maintain STRIKE platform components across multiple services and runtimes, including distribution servers, sandbox orchestration, OSINT ingestion, federated sharing endpoints, agent runtimes, and rules engines that operate over standards-anchored predicates. Extend these systems without breaking the data contracts already in production.
Detection Content and Signal Production
Turn research into shipped detection content: YARA, Sigma, STIX patterns, behavioral indicators, and the pipelines that distribute them. Build correlation pipelines that link scan data, attack surface signals, vulnerability data, and adversary tracking into customer-facing intelligence.
Data Model and Standards Adoption
Drive STIX 2.1 adoption as a unified output schema and TAXII 2.1 as a distribution standard. Define and govern schemas that hold up once they reach downstream teams.
Research Workflow Engineering
Build the automation that removes commodity overhead from research work: indicator enrichment, report drafting, corpus correlation, feed normalization, and sandbox triage. Help move the team from analyst-driven, model-assisted workflows toward model-driven workflows with analyst review.
The work that matters most here is often the unglamorous part: retrieval grounded in the team's own corpus so outputs cite sources rather than model priors, schema-constrained output so a generated indicator is a valid one, and eval harnesses that catch regressions before analysts do. Cost accounting, latency budgeting, prompt versioning, and output logging round out the infrastructure that makes a workflow safe to run unattended.
You should have a clear sense of when a model is the wrong tool. A regex beats a model for known patterns; a SQL query beats a model for structured data. Knowing where that line sits, and respecting it, is part of the job.
Cross-Functional Delivery
Coordinate with engineering, measurement, and platform product teams so research actually lands in product. You'll often serve as the engineering voice translating between researchers, product managers, and platform engineers, and you may occasionally explain the work to customers, journalists, or executives.
Qualifications
Education: Bachelor's or Master's in Computer Science, Cybersecurity, or a related technical field. Self-taught practitioners with strong public work are welcome.
Experience: 5 to 8 years in a hands-on engineering role with meaningful exposure to threat intelligence, security research, or detection engineering. Prior experience building production systems that consume or emit threat intel data is required.
Technical Skills:
Python and TypeScript/Node at a production level
Relational and cache data stores, plus at least one streaming or batch data platform
Cloud infrastructure (AWS preferred), containers, and CI/CD pipelines
Working knowledge of STIX 2.1, TAXII 2.1, MISP, and MITRE ATT&CK, and how they work together in practice
Detection and Research Tooling: Hands-on experience with YARA, Sigma, and STIX Patterning. Comfortable reading malware analysis output, parsing adversary infrastructure data, and writing detection logic that holds up under production load.
Applied Language Models: You've shipped production systems that use language models, not just demos. That includes retrieval over a real corpus, structured output with schema validation, eval harnesses that catch regressions before users do, and a solid understanding of where models fail: recency, long-tail facts, numerical reasoning, and adversarial input or prompt injection. You can do the cost-per-task math for your workloads, and you can make the case when a smaller, tightly scaffolded model beats a larger one.
You approach model output with healthy skepticism by default. The bar for shipping a model-generated indicator or detection is higher than for shipping a regex, and you understand why and design accordingly.
Bridge Mindset: You write code that ships, and you understand why researchers think the way they do. If you've only ever worked from a backlog handed down by a product manager, this probably isn't the right fit. If you've taken an idea sketched out in a chat message and turned it into a deployed pipeline before the next sprint began, that's the mode we're looking for.
Bonus:
Experience with policy-as-code or expression-language engines (CEL, OPA, or similar)
Published or co-authored security research (campaigns, vulnerabilities, adversary tracking)
Large-scale telemetry experience (Splunk, Kinesis, NetFlow, or equivalent)
Contributor or maintainer on open-source threat intel projects (MISP, OpenCTI, Sigma, STIX, ATT&CK)
Familiarity with quantitative risk frameworks such as FAIR
Familiarity with Golang at a production level
Benefits:
Specific to each country, we offer a competitive salary, stock options, Health benefits, and unlimited PTO, parental leave, tuition reimbursements, and much more!
The estimated total compensation range for this position is $140,00 - $150,000 (base plus bonus). Actual compensation for the position is based on a variety of factors, including, but not limited to affordability, skills, qualifications and experience, and may vary from the range. In addition to base salary, employees may also be eligible for annual performance-based incentive compensation awards and equity, among other company benefits.
SecurityScorecard is committed to Equal Employment Opportunity and embraces diversity. We believe that our team is strengthened through hiring and retaining employees with diverse backgrounds, skill sets, ideas, and perspectives. We make hiring decisions based on merit and do not discriminate based on race, color, religion, national origin, sex or gender (including pregnancy) gender identity or expression (including transgender status), sexual orientation, age, marital, veteran, disability status or any other protected category in accordance with applicable law.
We also consider qualified applicants regardless of criminal histories, in accordance with applicable law. We are committed to providing reasonable accommodations for qualified individuals with disabilities in our job application procedures. If you need assistance or accommodation due to a disability, please contact [email protected].
Any information you submit to SecurityScorecard as part of your application will be processed in accordance with the Company’s privacy policy and applicable law.
SecurityScorecard does not accept unsolicited resumes from employment agencies. Please note that we do not provide immigration sponsorship for this position. #LI-DNI
AI-powered, threat-informed third-party risk management. Continuous visibility and predictive intelligence.
Industry
Data Security Software Products
Company size
501-1,000 employees
Founded
2013
Headquarters
New York, New York
LinkedIn followers
67,351
Total funding
$292M
Funded by world-class investors, including Evolution Equity Partners, Silver Lake Partners, Sequoia Capital, GV, Riverwood Capital, and others, SecurityScorecard is the global leader in cybersecurity ratings, response, and resilience, with more than 12 million companies continuously rated.
Founded in 2013 by security and risk experts Dr. Aleksandr Yampolskiy and Sam Kassoumeh, SecurityScorecard's patented rating technology is used by over 25,000 organizations for enterprise risk management, third-party risk management, board reporting, due diligence, cyber insurance underwriting, and regulatory oversight.
SecurityScorecard makes the world a safer place by transforming the way companies understand, improve and communicate cybersecurity risk to their boards, employees, and vendors. SecurityScorecard is listed as a free cyber tool and service by the U.S. Cybersecurity & Infrastructure Security Agency (CISA). Every organization has the universal right to its trusted and transparent Instant SecurityScorecard rating
Founded in 2013 by security and risk experts Dr. Alex Yampolskiy and Sam Kassoumeh, SecurityScorecard’s patented rating technology is used by over 25,000 organizations for self-monitoring, third-party risk management, board reporting and cyber insurance underwriting; making all organizations more resilient by allowing them to easily find and fix security risks across their externally facing digital footprint.
SecurityScorecard is the only provider of instant cyber risk ratings that automatically map to vendor cybersecurity questionnaire responses - providing a true 360 degree view of risk. SecurityScorecard continues to make the world a safer place by transforming the way companies understand, improve and communicate security risk to their boards, employees and vendors.
To receive an email with your company’s current score, please visit instant.securityscorecard.com.
Offices: 1140 Avenue of the Americas, 19th Floor, New York, New York 10036, US
Third party securityrisk managementvendor risk managementsecurity ratingsThird Party Risk Managementcybersecuritysecurityinformation securitycyber riskrisk management
How much do Security & Safety jobs in Massachusetts pay?
Based on 1914 listings with disclosed salaries, most security & safety jobs in Massachusetts pay between $80k–$203k per year. Individual offers vary with seniority, company size, and specialization.
How many Security & Safety jobs are open in Massachusetts right now?
There are currently 4,416 open security & safety positions in Massachusetts listed on Clera. New openings are added daily as companies post roles.
Which companies are hiring for Security & Safety roles in Massachusetts?
Companies currently hiring include RTX, Allied Universal, MassDEP, mouhamedzz, General Dynamics Mission Systems, among others. Browse the listings above to see every active employer.
Are there remote or hybrid Security & Safety jobs in Massachusetts?
Yes — 715 of the 4416 open security & safety positions offer remote or hybrid work (230 remote, 485 hybrid).
How do I apply for Security & Safety jobs in Massachusetts?
Each listing links directly to the employer's application page. Apply early — fresh listings get the most recruiter attention in the first two weeks.