Staff Security Engineer

New
J
JobgetherHealthcare Data Platform
Based in the United StatesFull-TimeStaff
Salary not disclosed
Apply NowOpens the employer's application page

Job Details

Experience
8+ years
Required Skills
AWSDockerNode.jsPythonKubernetesTypeScriptGoTerraformGitHub Actions

Requirements

  • 8+ years of experience in security engineering with demonstrated Staff-level impact.
  • Deep expertise in Kubernetes security, including network policy orchestration, admission control (e.g., Kyverno), and container hardening.
  • Strong experience with threat modeling applications built with Node.js, TypeScript, Python, or Go.
  • Proven ability to establish secure SDLC practices and CI/CD security controls using GitHub Actions.
  • Hands-on experience securing infrastructure-as-code, particularly Terraform.
  • Experience managing enterprise secrets through AWS Secrets Manager, Vault, or comparable platforms.
  • End-to-end experience managing vulnerability programs from triage through remediation.
  • Ability to operationalize compliance frameworks such as HITRUST and SOC 2 into pragmatic technical controls.
  • Proficiency with AI tools and techniques, including prompt engineering and LLM platforms.
  • Excellent written and verbal communication skills for influence in remote, asynchronous environments.

Responsibilities

  • Own cloud security posture management including Kubernetes, containers, network policies, and image integrity.
  • Manage the complete vulnerability lifecycle, prioritizing remediation based on real-world risk and production exposure.
  • Partner with Platform Engineering to establish secure SDLC and CI/CD practices, focusing on artifact integrity and GitHub Actions safeguards.
  • Translate HITRUST and SOC 2 requirements into practical technical configurations and engineering-friendly controls.
  • Review and harden infrastructure-as-code deployments utilizing Terraform.
  • Lead incident response activities including forensic investigations and post-incident reviews.
  • Oversee bug bounty triage and maintain relationships with security researchers.
  • Evaluate emerging security challenges involving AI and agentic systems, establishing appropriate organizational safeguards.
View Full Description & ApplyYou'll be redirected to the employer's site
View details
Apply Now