FlexHired LogoFlexHired

XBOW

IT & Corporate Security Lead

Job Description

IT & Corporate Security Lead

About XBOW

At XBOW, we’re redefining the future of cybersecurity by building the world's first autonomous pentester, powered by AI. Today, the gold standard for securing software systems is human pentesters, but with the rise of artificial intelligence, we’re stepping up to scale offensive security to meet the ever-growing demand.

AI is transforming the landscape of both cybersecurity and cyberattacks. While millions of people without security expertise are creating software, bad actors are using AI to launch more effective attacks. XBOW fights back with AI-driven superpowers, enabling security teams to stay one step ahead. Our autonomous AI solves 75% of web app security benchmarks with zero human intervention—and at superhuman speed.

What makes XBOW truly unique? Like human experts, it forges creative attacks, adapts its learnings, and continuously works to find vulnerabilities faster than anyone ever could. We’re not only simulating threats—we’re also finding and responsibly disclosing real-world vulnerabilities, ensuring organizations can fix issues before they’re exploited. XBOW isn’t just a tool; it’s a transformative force in the secure development lifecycle.

Backed by Sequoia Capital and a team that includes the creators of GitHub Copilot and GitHub Advanced Security, XBOW is not just keeping up with the times—we’re shaping the future of cybersecurity. Our mission is simple: to defeat the bad actors before they strike, using AI to revolutionize how we approach offensive security.

We’re building something thatmust be built, and we’re the team to do it. Join us in shaping the next frontier of autonomous security.

Your Role: IT & Corporate Security Lead

We’re looking for a hands-on IT and corporate security specialist to support internal systems, mobile device management, developer infrastructure, and remote workers. The ideal candidate has experience working in a startup or small company while also having some enterprise exposure. This role requires deep technical expertise, particularly in AWS, Okta, and corporate security, with a focus on securing internal infrastructure and compliance (e.g. SOC 2) processes.

What You'll Do

  • Own and operate all internal IT systems — from laptops to SaaS access to IAM

  • Work closely with our engineering team to design and enforce internal security controls and policies

  • Manage onboarding/offboarding workflows (automated where possible)

  • Configure and maintain core tools like Okta, Google Workspace, MDM, VPN, etc.

  • Partner with legal and leadership on compliance needs (SOC 2, ISO 27001, etc.)

  • Manage internal security events, and incidents

  • Continuously assess and harden internal security posture

  • Build documentation and workflows that scale with the company

Who You Are

  • Strong experience with internal IT systems, mobile device management (MDM), and developer infrastructure

  • Hands-on corporate security experience, including access controls, endpoint security, and monitoring

  • Experience setting up and managing network monitoring and logging solutions

  • AWS experience, particularly around security, IAM, and infrastructure management

  • Okta experience, including identity management, SSO, and authentication security

  • Experience supporting remote workers, including VPN, device provisioning, and secure access

  • Familiarity with compliance frameworks like SOC 2, helping align IT and security practices with compliance requirements

  • Background in startups or small companies, with some exposure to enterprise environments

  • Comfortable as an individual contributor, focusing on execution rather than managing teams

  • Comfortable with remote working and async communication

Bonus Points

  • Experience supporting fast-moving engineering orgs

  • Familiarity with Apple Mac fleet management (e.g., Kandji, Mosyle, Jamf)

  • Security certs (CISSP, Security+, etc.), but not required

  • Helped a startup go from early-stage to audit-ready

What We Offer

  • Compensation & Equity: Competitive salary and a generous equity package, making you a true owner of the company.

  • Career Growth: Shape your role, lead the function, and grow with the company as we redefine cybersecurity.

  • Meaningful Work: You will tackle technically complex challenges and play a pivotal role in the growth and security of our business, working alongside an amazing team and some of the world’s experts in AI and Security.

What Else You Should Know

  • Location: Remote (all team members are remote but we meet regularly and you’re supported to travel to collaborate with colleagues in person)

  • Contract: Full-time.

  • Hiring Process:

    1. 30-min introductory chat.

    2. 30 minutes with one of our founders.

    3. 2-3 hour technical deep dive around relevant case study.

    4. 30-min final meeting with our CEO and founder, Oege de Moor.

We’re a security company that builds with AI at the core — so you’ll be protecting a team that moves fast, iterates aggressively, and lives in the command line. If that sounds like your kind of environment, let’s talk.

Interested in this job?

Application deadline: Open until filled

Logo of XBOW

XBOW

Boosting offensive security with AI

See more jobs
Date PostedApril 8th, 2025
Job TypeFull Time
LocationEurope remote
Salary$150,000 - $220,000
Exciting fully remote opportunity for a IT & Corporate Security Lead at XBOW. Offering $150,000 - $220,000 (full time). Explore more remote jobs on FlexHired!

Safe Remote Job Search Tips

Verify Employer Thoroughly

Research the company's identity thoroughly before applying. Check for a professional website with contacts, active social media, and LinkedIn profiles. Verify details across platforms and look for reviews on Glassdoor or Trustpilot to confirm legitimacy.

Never Pay to Get a Job

Legitimate employers never require payment for applications, training, background checks, or equipment. Always reject upfront payment requests or demands for bank details, even if they claim it's for purchasing necessary work gear on your behalf.

Safeguard Your Personal Information

Protect sensitive data like SSN, bank details, or ID copies. Share this only after accepting a formal, written job offer. Ensure it's submitted via a secure company system or portal, never through insecure channels like standard email attachments.

Scrutinize Communication & Interviews

Watch for communication red flags: poor grammar, generic emails (@gmail), vague details, or undue pressure. Be highly suspicious of interviews held only via text or chat apps; legitimate companies typically use video or phone calls.

Beware of Unrealistic Offers

If an offer's salary or benefits seem unrealistically high for the work involved, be cautious. Research standard pay for similar roles. Offers that appear 'too good to be true' are often scams designed to lure you into providing information or payment.

Insist on a Formal Contract

Always secure and review a formal, written job offer or employment contract before starting work or sharing final personal details. Ensure it clearly defines your role, compensation, key terms, and conditions to avoid misunderstandings or scams.

Related Jobs

Logo of XBOW
Europe remote
$150,000 - $350,000
last week

Subscribe Newsletter

Never miss a remote job opportunity. Subscribe to our newsletter today and receive exclusive job alerts, career advice, and industry insights delivered straight to your inbox.