Lead Application Security Engineer – DevSecOps

🔥 2 minutes ago

🍂 Massachusetts – Remote

infoinfo

💵 $143k - $243k / year

⏰ Full Time

🟠 Senior

💻 Application Engineer

🦅 H1B Visa Sponsor

infoinfo

👻 Ghost score 0%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of athenahealth

athenahealth

5001 - 10000 employees

Founded 1997

🏥 Healthcare

⚕️ Healthcare Insurance

☁️ SaaS

💰 Post-IPO Equity on 2017-05

Healthcare • Healthcare Insurance • SaaS

athenahealth is a provider of healthcare software solutions focused on enhancing clinical effectiveness, patient experience, and financial performance. Its flagship product, athenaOne, is an all-in-one solution that includes electronic health records (EHR), revenue cycle management (RCM), and patient engagement tools. The company offers tailor-made solutions for various healthcare providers, ranging from small practices to large health systems and specialities like behavioral health and pediatrics. athenahealth also provides payer solutions, advisory services, and platform services to improve patient outcomes and reduce costs, while ensuring a highly reliable service with 99. 98% uptime. Their solutions also incorporate AI-powered features like Ambient Notes to streamline clinical documentation. With a focus on interoperability and efficiency, athenahealth aims to simplify healthcare delivery and improve outcomes for both providers and patients.

📋 Description

• Socialize and drive execution of key security best practices across the R&D organization • Contribute to the enterprise security catalog of best practices, techniques, and patterns • Improve the quality and adoption of Security Development Lifecycle practices • Own the evaluation, design, implementation, integration, reliability, and continuous improvement of application security capabilities • Support SAST, SCA, DAST, API security testing, and vulnerability management workflows • Document, share, and help automate coverage for common abuse cases and attacks • Lead the API security testing program • Manage API discovery, authenticated and unauthenticated testing, scanner attribution, onboarding, exclusions, ownership mapping, findings routing, and operational readiness • Identify and explain feature-level design or architectural weaknesses that could create security issues • Partner with enterprise security leadership to track and prioritize open issues and follow through on resolution • Work with DevOps, Infrastructure, IAM, API Gateway, NOC, Enterprise Security, and application teams to design and operate security-hardened platforms • Set technical strategy, influence stakeholders, and define measurable security outcomes

🎯 Requirements

• Bachelor’s degree in Computer Science, Computer Engineering, Cyber Security, or similar, or equivalent experience • At least 3 years of experience as a software developer • 3–5 years in a security-focused development role in an agile environment • Experience in software and product design and architecture, product security, and security issue prevention and mitigation • Strong software engineering background • Ability to develop, review, and troubleshoot code in one or more languages • Practical experience with Docker and Terraform • Strong knowledge of OAuth 2.0, OpenID Connect, JWT, SAML, and service-to-service authentication • Solid understanding of RESTful services, service bus architectures, JSON, and related web services concepts • Experience with SAST, SCA, DAST, API security testing, vulnerability aggregation, and CI/CD security controls • Hands-on experience with cloud platforms, containers, infrastructure as code, secrets management, and CI/CD • Knowledge of HIPAA, HITRUST, and PCI-DSS is a plus

🏖️ Benefits

• Health and financial benefits • Commuter support • Employee assistance programs • Tuition assistance • Employee resource groups • Collaborative workspaces • Flexible work arrangements and work-life balance support • Company events including book clubs, external speakers, and hackathons • Learning-focused company culture • Engaged team support • Inclusive environment • Annual discretionary bonus plan, variable compensation plan, and equity plans (depending on role eligibility)

Apply Now

Similar Jobs

🔥 53 minutes ago

EVERSANA

5001 - 10000

💼 Consulting

🏥 Healthcare

⚕️ Healthcare Insurance

AI engineer building secure multi-agent systems for EVERSANA’s life sciences commercialization services. Developing agents, APIs, RAG pipelines, and LLMOps solutions.

🔥 2 hours ago

New Charter Technologies

501 - 1000

💼 Consulting

📦 Logistics

📣 Marketing

Application Engineer building and migrating client document management systems to NetDocuments for New Charter’s technology services business. Delivering SQL-driven ETL, configurations, and client-facing implementation support.

🔥 5 hours ago

EVERSANA

5001 - 10000

💼 Consulting

🏥 Healthcare

⚕️ Healthcare Insurance

AI application engineer building secure multi-agent systems for EVERSANA’s life sciences commercialization services. Developing agent tools, APIs, RAG pipelines, and LLMOps/AgentOps solutions.

🔥 6 hours ago

Cree

5001 - 10000

🚘 Automotive

🏭 Manufacturing

📦 Logistics

Field Application Engineer driving Wolfspeed’s SiC design wins and system-level power conversion for East Coast customers. Supporting automotive, energy, and AI data center platforms.

🕒 2 days ago

PowerSchool

1001 - 5000

📚 Education

🤖 Artificial Intelligence

Technical services representative at PowerSchool, a cloud-based K-12 education software provider. Building SQL, database, and ETL integrations for Talent HR, payroll, and workforce systems.