Principal Security Engineer

🕒 il y a 9 jours

🗣️🇺🇸🇬🇧 Anglais requis

Postuler Maintenant
Trouver des Emplois à Distance Similaires

📊 Vérifiez votre score de CV pour ce poste

Améliorez vos chances d'obtenir un entretien en vérifiant votre score de CV avant de postuler.

Logo of Curative

Curative

501 - 1000 employés

Fondée en 2020

🏥 Santé

🛡️ Assurance

Healthcare • Insurance

Curative est une entreprise d'assurance santé orientée vers les employeurs, proposant un plan de santé de groupe de nouvelle génération mettant l'accent sur l'accessibilité financière, l'engagement et la simplicité. Leurs plans promettent zéro frais de consultation en réseau, zéro franchise et une prime mensuelle unique et compétitive, accompagnés d'un large réseau de prestataires, de télémédecine, d'une vaste liste de médicaments préférentiels à zéro, de navigateurs de soins et de la Curative Cash Card pour éliminer les coûts à la charge des membres dans de nombreux contextes. Curative s'adresse aux employeurs et courtiers tout en fournissant aux membres des ressources telles qu'une visite de base, des programmes de soins, des portails en ligne et des services de pharmacie. L'entreprise détient une note A- de AM Best et la certification HITRUST r2.

Description

• Own strategy and hands-on engineering for Detection and Response platforms; identify, onboard, and normalize all log sources including cloud, containers, endpoints, and SaaS • Build and maintain Security Orchestration, Automation, and Response (SOAR) tooling to reduce response time and analyst toil • Lead incident response for complex threats including developing runbooks, driving post- incident improvements, and designing/running BCP/DR tabletop exercises. • Embed security into the SDLC: threat modeling, secure design reviews, SAST/DAST tooling, and automated security gates in CI/CD pipelines • Own the vulnerability management program at host and application levels; track and drive remediation • Champion "security as code" practices across engineering teams • Build AI-powered security tooling: threat detection and anomaly identification at appropriate confidence thresholds, automated triage and remediation workflows, and AI-assisted post- mortem summarization • Define and implement the security model for LLM-based systems and internal AI tooling • Architect harness patterns to constrain LLM behavior and harden against prompt injection, indirect injection via RAG pipelines, and data exfiltration via model outputs • Evaluate and govern AI tool adoption from a security and data-risk perspective • Own AWS security posture and enforce baselines across Linux/Windows, network devices, and enterprise SaaS (M365, Google Workspace, Azure) • Engineer, configure, and operate EDR, DLP, and endpoint security programs • Provide IAM architecture expertise across identity and access systems • Mentor and actively develop junior and mid-level security engineers through design reviews, pairing, and direct feedback. Growing team capability is a core expectation of this role • Define and drive security engineering standards across the organization • Collaborate closely with IT operations, platform, and software to translate threat intelligence into detection and hardening priorities

🎯 Exigences

• 8+ years in security engineering with demonstrated growth into technical leadership • Hands-on SIEM experience (DataDog, ELK, or equivalent) • Deep AWS security and IAM expertise • Application security fundamentals: threat modeling, SAST/DAST, secure SDLC • Experience building with AI/LLM APIs and practical knowledge of LLM security risks • EDR, DLP, and vulnerability management experience • Experience with containerized workloads and Kubernetes security • Proven track record of mentoring engineers and raising team capability • Nice to Have - CISSP, GIAC, or OSCP certification • MITRE ATT&CK knowledge applied to detection engineering • "Security as code" experience (OPA, Checkov, tfsec, or similar) • Data science or anomaly detection skills applied to security telemetry • Healthcare industry background (HIPAA, HITRUST) • Experience with the following tools/technologies: Kubernetes/EKS, Terraform/Terragrunt, Atlantis, Cloudflare, Buildkite, Wiz, Semgrep, EscapeTech, GitHub Advanced Security, Datadog, HashiCorp Vault, N8N, Snowflake, Linear

🏖️ Avantages

• Curative Health Plan (100% employer-covered medical premiums for you and 50% coverage for dependents on the base plan.) • $0 copays and $0 deductibles (with completion of our Baseline Visit) • Preventive and primary care built in • Mental health support (Rula, Televero, Two Chairs, Recovery Unplugged) • One-on-one care navigation • Chronic condition programs (diabetes, weight, hypertension) • Maternity and family planning support • 24/7/365 Curative Telehealth • Pharmacy benefits • Comprehensive dental and vision coverage • Employer-provided life and disability coverage with additional supplemental options • Flexible spending accounts • Generous PTO policy plus 11 paid annual company holidays • 401K for full-time employees • Generous Up to 8–12 weeks paid parental leave, based on role eligibility.

Postuler Maintenant

Emplois Similaires

🕒 il y a 11 jours

Quorum Federal Credit Union

51 - 200

🛡️ Assurance

💼 Conseil

🏦 Banque

Vice President of Cybersecurity overseeing the enterprise cybersecurity strategy at Quorum Federal Credit Union. Leading cyber risk oversight and board reporting in a remote role.

🇺🇸 États-Unis – Télétravail

💵 $225 000 - $275 000 / an

⏰ Temps Plein

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

Cloud

Cyber Security

🕒 il y a 12 jours

Gainwell Technologies

10 000+ employés

💼 Conseil

📦 Logistique

⚕️ Assurance santé

Information Security Officer responsible for security compliance and client delivery in healthcare. Collaborating with leadership to identify security issues and manage risks.

🇺🇸 États-Unis – Télétravail

💵 $90 900 - $129 900 / an

💰 Grant en 2023-06

⏰ Temps Plein

🟠 Senior

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🦅 Parrain de Visa H1B

info

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 12 jours

TopDog Law

51 - 200

💼 Conseil

📣 Marketing

⚖️ Juridique

Senior IT Security System Administrator at TopDog Law overseeing IT systems and security operations. Leading migration and compliance activities in a fully remote environment.

🇺🇸 États-Unis – Télétravail

💵 $115 000 - $135 000 / an

⏰ Temps Plein

🟠 Senior

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 12 jours

Red Hat

10 000+ employés

🏢 Entreprise

Security Technical Account Manager working closely with engineering and support to enhance security solutions at Red Hat. Engage with customers to improve security practices within their systems.

🇺🇸 États-Unis – Télétravail

💵 $107 980 - $172 730 / an

💰 Corporate Round en 1999-03

⏰ Temps Plein

🟠 Senior

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🦅 Parrain de Visa H1B

info

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 12 jours

Pinnacle Treatment Centers, Inc.

1001 - 5000

🏥 Santé

🧘 Bien-être

🌍 Impact social

Director of Security & Network at Pinnacle Treatment Centers leading cybersecurity strategy and operations. Overseeing enterprise networking, security initiatives, and team leadership in addiction treatment services.

🇺🇸 États-Unis – Télétravail

⏰ Temps Plein

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

Azure

Cyber Security

Firewalls