Principal Security Engineer

🕒 Julho 27

🤠 Texas – Remoto

infoinfo

💵 $175.000 - $200.000 / ano

⏰ Tempo Integral

🔴 Especialista

👮‍♂️ Cibersegurança / Engenheiro de Segurança

👻 Score fantasma 28%

infoinfo

🗣️🇺🇸🇬🇧 Inglês obrigatório

Candidatar-se
Encontrar Vagas Remotas Similares

📊 Verifique sua pontuação de currículo para esta vaga

Melhore suas chances de conseguir uma entrevista verificando sua pontuação de currículo antes de se candidatar.

Logo of Curative

Curative

501 - 1000 funcionários

Fundada em 2020

🏥 Saúde

🛡️ Seguros

Healthcare • Insurance

A Curative é uma empresa de seguros de saúde focada em empregadores, oferecendo um plano de saúde empresarial de última geração que enfatiza a acessibilidade, engajamento e simplicidade. Seus planos prometem coparticipações de $0 na rede, $0 em franquias, um único prêmio mensal competitivo, juntamente com uma ampla rede de fornecedores, telemedicina, um extenso formulário de prescrição preferencial de $0, navegadores de cuidado e o Cartão Curative Cash para eliminar custos diretos em muitos cenários. A Curative direciona seus serviços para empregadores e corretores, ao mesmo tempo que fornece aos membros recursos como uma Visita Inicial, programas de cuidados, portais online e serviços de farmácia, além de possuir uma classificação A- da AM Best e certificação HITRUST r2.

Descrição

• Own strategy and hands-on engineering for Detection and Response platforms; identify, onboard, and normalize all log sources including cloud, containers, endpoints, and SaaS • Build and maintain Security Orchestration, Automation, and Response (SOAR) tooling to reduce response time and analyst toil • Lead incident response for complex threats including developing runbooks, driving post- incident improvements, and designing/running BCP/DR tabletop exercises. • Embed security into the SDLC: threat modeling, secure design reviews, SAST/DAST tooling, and automated security gates in CI/CD pipelines • Own the vulnerability management program at host and application levels; track and drive remediation • Champion "security as code" practices across engineering teams • Build AI-powered security tooling: threat detection and anomaly identification at appropriate confidence thresholds, automated triage and remediation workflows, and AI-assisted post- mortem summarization • Define and implement the security model for LLM-based systems and internal AI tooling • Architect harness patterns to constrain LLM behavior and harden against prompt injection, indirect injection via RAG pipelines, and data exfiltration via model outputs • Evaluate and govern AI tool adoption from a security and data-risk perspective • Own AWS security posture and enforce baselines across Linux/Windows, network devices, and enterprise SaaS (M365, Google Workspace, Azure) • Engineer, configure, and operate EDR, DLP, and endpoint security programs • Provide IAM architecture expertise across identity and access systems • Mentor and actively develop junior and mid-level security engineers through design reviews, pairing, and direct feedback. Growing team capability is a core expectation of this role • Define and drive security engineering standards across the organization • Collaborate closely with IT operations, platform, and software to translate threat intelligence into detection and hardening priorities

🎯 Requisitos

• 8+ years in security engineering with demonstrated growth into technical leadership • Hands-on SIEM experience (DataDog, ELK, or equivalent) • Deep AWS security and IAM expertise • Application security fundamentals: threat modeling, SAST/DAST, secure SDLC • Experience building with AI/LLM APIs and practical knowledge of LLM security risks • EDR, DLP, and vulnerability management experience • Experience with containerized workloads and Kubernetes security • Proven track record of mentoring engineers and raising team capability • Nice to Have - CISSP, GIAC, or OSCP certification • MITRE ATT&CK knowledge applied to detection engineering • "Security as code" experience (OPA, Checkov, tfsec, or similar) • Data science or anomaly detection skills applied to security telemetry • Healthcare industry background (HIPAA, HITRUST) • Experience with the following tools/technologies: Kubernetes/EKS, Terraform/Terragrunt, Atlantis, Cloudflare, Buildkite, Wiz, Semgrep, EscapeTech, GitHub Advanced Security, Datadog, HashiCorp Vault, N8N, Snowflake, Linear

🏖️ Benefícios

• Curative Health Plan (100% employer-covered medical premiums for you and 50% coverage for dependents on the base plan.) • $0 copays and $0 deductibles (with completion of our Baseline Visit) • Preventive and primary care built in • Mental health support (Rula, Televero, Two Chairs, Recovery Unplugged) • One-on-one care navigation • Chronic condition programs (diabetes, weight, hypertension) • Maternity and family planning support • 24/7/365 Curative Telehealth • Pharmacy benefits • Comprehensive dental and vision coverage • Employer-provided life and disability coverage with additional supplemental options • Flexible spending accounts • Generous PTO policy plus 11 paid annual company holidays • 401K for full-time employees • Generous Up to 8–12 weeks paid parental leave, based on role eligibility.

Candidatar-se

Vagas Similares

🕒 Julho 25

Gainwell Technologies

10.000+ funcionários

💼 Consultoria

📦 Logística

⚕️ Seguro de Saúde

Information Security Officer responsible for security compliance and client delivery in healthcare. Collaborating with leadership to identify security issues and manage risks.

🇺🇸 Estados Unidos – Remoto (EUA)

💵 $90.900 - $129.900 / ano

💰 Grant em 2023-06

⏰ Tempo Integral

🟠 Sênior

🔴 Especialista

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🦅 Patrocina Visto H1B

infoinfo

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Julho 23

Highmark Health

10.000+ funcionários

🛡️ Seguros

💼 Consultoria

📦 Logística

Manager Information Security & Risk Management at Highmark Health ensuring alignment with security needs and managing personnel activities. Overseeing technology products and contributing to strategic planning efforts.

🇺🇸 Estados Unidos – Remoto (EUA)

💵 $129.100 - $214.500 / ano

💰 $5.000.000 Grant em 2021-05

⏰ Tempo Integral

🟠 Sênior

🔴 Especialista

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🦅 Patrocina Visto H1B

infoinfo

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Julho 22

EZCORP

5001 - 10000

🛒 Varejo

👥 B2C

Director of Cyber Security at EZCORP responsible for enterprise security vision and measures. Leading strategies to safeguard sensitive information and manage security operations.

🇺🇸 Estados Unidos – Remoto (EUA)

⏰ Tempo Integral

🔴 Especialista

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Julho 22

Banner Bank

1001 - 5000

🏦 Bancário

💸 Finanças

💳 Fintech

Principal AI & Cloud Security Engineer shaping secure AI adoption and Azure cloud strategies at Banner Bank. Overseeing enterprise security in innovative AI solutions to ensure compliance and resilience.

🇺🇸 Estados Unidos – Remoto (EUA)

💵 $135.000 - $178.000 / ano

⏰ Tempo Integral

🔴 Especialista

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Julho 21

Tenet Healthcare

10.000+ funcionários

🏥 Saúde

👥 B2C

Cybersecurity governance manager leading SOX controls, audits, vendor risk, and client security reviews. Supporting Conifer’s healthcare organizations with enterprise compliance and risk management.

🇺🇸 Estados Unidos – Remoto (EUA)

💵 $120.016 - $191.568 / ano

💰 $2.000.000.000 Post IPO debt em 2022-07

⏰ Tempo Integral

🟠 Sênior

🔴 Especialista

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório