Cyber Security Engineer (Application Security)
T
TherapyNotesBehavioral Health Software
RemoteFull-TimeSenior
Salary$110,000-$150,000
Apply NowOpens the employer's application page
Job Details
- Experience
- 5+ years in application security or security engineering.
- Required Skills
- AzureCI/CDTerraformGitHub ActionsHIPAA
Requirements
- 5+ years of experience in application security or security engineering.
- Demonstrated experience securing CI/CD pipelines and GitHub Actions (SAST, DAST, code/dependency scanning).
- Proficiency in reviewing Terraform or infrastructure-as-code for security misconfigurations.
- Working knowledge of SIEM, EDR/XDR, and DLP platforms.
- Strong understanding of healthcare regulations (HIPAA, HITECH, HITRUST).
- Experience securing cloud environments (Azure preferred, AWS a plus).
- Understanding of Zero Trust architecture principles.
- API security experience, including familiarity with HL7 or healthcare data standards.
- Ability to participate in an incident response on-call rotation.
- Bachelor's degree in information security, computer science, or related field preferred.
Responsibilities
- Collaborate with development teams to integrate security into the SDLC and CI/CD pipeline.
- Perform in-depth security assessments, code reviews, and threat modeling to identify vulnerabilities.
- Operate GitHub Advanced Security to triage vulnerabilities and improve scanning workflows.
- Secure CI/CD pipelines, GitHub Actions, and reduce supply chain risks.
- Review Terraform and infrastructure-as-code for security misconfigurations.
- Ensure application security compliance with HIPAA, HITRUST, and HITECH standards.
- Manage security tools like SAST, DAST, and vulnerability management platforms.
- Support incident response activities and provide remediation guidance to developers.
View Full Description & ApplyYou'll be redirected to the employer's site