About the Role
We're looking for experienced Incident Response Analysts and SOC professionals to help build and evaluate AI systems designed for modern cybersecurity operations. Your hands-on expertise with real-world security events will directly shape how AI understands, investigates, and responds to threats — making a meaningful impact on the future of digital security.
- Organization: Alignerr
- Type: Hourly Contract
- Commitment: 10–40 hours/week
- Location: Remote
What You'll Do
- Analyze realistic security events, alerts, and incident cases to evaluate AI-generated responses
- Assess AI outputs for accuracy in determining impact, root cause, and appropriate remediation steps
- Review and validate detection rules, alerting pipelines, and investigative playbooks
- Identify gaps where AI-generated incident analysis doesn't reflect real-world SOC practices
- Provide structured, expert feedback that directly improves AI system performance
- Work independently and asynchronously on your own schedule
Who You Are
- 2+ years of hands-on experience in SOC operations, incident response, or security engineering
- Proficient with SIEM platforms, alert queues, and investigation tooling
- Skilled at triaging and separating genuine threats from noise
- Strong written communication skills for clear, structured feedback
- Able to think critically about how AI interprets security scenarios
- No prior AI experience required — your security expertise is what matters
Nice to Have
- Experience with threat hunting, digital forensics, or malware analysis
- Familiarity with frameworks like MITRE ATT&CK, NIST, or similar
- Background in writing or reviewing detection engineering content
- Experience mentoring junior analysts or documenting SOC playbooks
Why Join Us
- Work on frontier AI systems alongside leading AI research labs
- Fully remote and flexible — complete tasks on your own schedule
- Freelance perks: autonomy, variety, and global collaboration
- Contribute to meaningful work that advances AI safety and capability in cybersecurity
- Potential for ongoing work and contract extension