About the Role
We're partnering with leading AI research labs to build the next generation of AI-powered security tools — and we need experienced incident responders to make it happen. Your real-world expertise in threat detection, alert triage, and digital investigations will directly shape how AI understands and responds to modern security incidents.
This is a unique opportunity to move beyond the day-to-day grind of the SOC and contribute to something bigger: AI systems that could transform how security teams operate at scale.
- Organization: Alignerr
- Type: Hourly Contract
- Location: Remote
- Commitment: 10–40 hours/week (flexible)
What You'll Do
- Analyze realistic security events, alerts, and incident cases to evaluate AI-generated responses
- Assess impact, root cause, and appropriate remediation steps across a range of threat scenarios
- Review and validate detection rules, alerting pipelines, and investigative playbooks
- Identify gaps where AI analysis diverges from how real security teams think and operate
- Provide structured feedback that directly improves AI reasoning in security contexts
- Work independently and asynchronously on your own schedule
Who You Are
- 2+ years of hands-on experience in SOC operations, incident response, or security investigations
- Comfortable working with SIEM platforms, alert queues, and investigation tooling
- Strong instinct for separating signal from noise in high-volume alert environments
- Able to articulate the why behind triage and response decisions clearly and concisely
- Detail-oriented and self-motivated in a remote, async work environment
Nice to Have
- Experience with threat hunting, forensic analysis, or red/blue team operations
- Familiarity with frameworks like MITRE ATT&CK, NIST, or SANS incident response methodology
- Prior exposure to AI evaluation, annotation, or data labeling workflows
Why Join Us
- Work on cutting-edge AI projects alongside top-tier research labs
- Fully remote and flexible — work when and how much suits you
- Freelance perks: autonomy, variety, and collaboration with a global expert community
- Put your security expertise to work on problems that matter beyond the alert queue
- Potential for ongoing work and contract extension