ApplyStaff Security Engineer
Posted about 1 month agoViewed
View full description
💎 Seniority level: Staff, 5+ years
📍 Location: United States
💸 Salary: 180000.0 - 220000.0 USD per year
🔍 Industry: Healthcare
🗣️ Languages: English
⏳ Experience: 5+ years
🪄 Skills: AWSPythonSQLCloud ComputingCybersecurityKubernetes*NixAPI testingAzureGoCI/CDProblem SolvingRESTful APIsLinuxDevOpsTerraformMicroservicesComplianceJSONRisk ManagementAnsibleScriptingSoftware Engineering
Requirements:
- 5+ years of experience as a Staff Security Engineer on a high-growth startup team.
- Strong knowledge of cloud security (AWS, Azure), identity management, application security, modern security frameworks (ie OWASP, NIST) and HIPAA regulatory experience.
- Diverse experience with application security tooling and processes that include code review, SAST, penetration testing, and risk management.
- High proficiency with source code management tools and security features of each(e.g., Github, Bitbucket)
- Proficiency in at least one programming language (Python, Go, or similar) and experience integrating security into DevOps CI/CD pipelines.
- Ability to assess risk, anticipate attack vectors, and proactively mitigate threats through layered security.
- Ability to work cross-functionally with engineering, IT, compliance, and leadership to drive security initiatives forward.
Responsibilities:
- Architect and implement security solutions that scale with the company’s growth, focusing on automation, resilience, and developer & user-friendly security.
- Build tools with an emphasis on self-service, automation, and performance that identify and mitigate application security risks and flaws.
- Eliminate classes of security problems by shifting the detection and preventions left into the developer workflow.
- Provide architectural, design, and threat-based guidance to software development teams to improve security maturity before code is created.
- Work with SecOps to enhance our ability to detect threats early and respond effectively.
- Partner with our DevOps team to assess infrastructure security and propose improved security solutions.
- Partner with cross-functional teams to ensure security maturity work is being prioritized and addressed in ways both timely and durable.
- Ensure security controls align with HIPAA framework without impeding development and productivity velocity.
Apply