Senior Security Engineer

Job not on LinkedIn

🔥 0 minutes ago

🇺🇸 United States – Remote

💵 $170k - $190k / year

⏰ Full Time

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

👻 Ghost score 0%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Connecting for Better Health

Connecting for Better Health

1 - 10 employees

Founded 2021

🏥 Healthcare

💼 Consulting

⚖️ Legal

Healthcare • Consulting • Legal

Connecting for Better Health is a nonprofit coalition dedicated to improving health and social service data sharing in California. The organization brings together providers, caregivers, health plans, advocates, and community organizations to collaborate on enhancing data sharing policies. Their initiative promotes the Data Exchange Framework (DxF), which aims to facilitate secure and efficient exchanges of health and social services information to support better whole-person care.

📋 Description

• Own application and product security through threat modeling, secure design review, and secure code review • Enforce and tune GitHub Advanced Security, CodeQL, secret scanning, push protection, branch protection, and CODEOWNERS review • Design and own security architecture for Oshi’s agentic software development lifecycle • Define security gates, controls for agent-written code, and clawback procedures • Build and run non-human identity and secrets management across SaaS and AWS • Secure the AWS environment, including IAM/IC, network segmentation, logging, configuration baselines, encryption, S3, EKS, and Terraform • Review AI and third-party vendor integrations before they access PHI • Stand up and tune detection and response using behavioral baselines and anomaly detection • Support HIPAA Security Rule technical safeguards with the Sr. Director • Own vulnerability management and penetration-testing cadence and drive findings to closure • Reduce attack surface through SaaS and identity rationalization • Develop security policies, standards, runbooks, scripting, and infrastructure-as-code automation • Partner with Product & Engineering and the Sr. Director, Security & IT • Lead Oshi Health’s technical security for its SaaS- and cloud-native healthcare platform

🎯 Requirements

• 6+ years in security engineering • Demonstrated depth in application/product security and cloud security (AWS) • Experience in healthcare, fintech, or another regulated, data-sensitive environment is a strong plus • Hands-on experience with SAST/DAST, GitHub Advanced Security / CodeQL, secret scanning, and software supply-chain / dependency security • Experience with Okta, OAuth/OIDC, SAML, phishing-resistant MFA, and non-human identities and secrets • Familiarity with securing AI/LLM and agentic systems, including prompt injection, agent authorization and over-permissioning, NHI sprawl, and model/supply-chain risk • Working knowledge of the HIPAA Security Rule, SOC 2, and the NIST Cybersecurity Framework • Proficiency with Python and at least one shell • Bachelor’s degree in Computer Science or equivalent practical experience • Certifications such as OSCP, GIAC, AWS Certified Security – Specialty, CISSP, or Okta Certified Professional are nice to have, not required

🏖️ Benefits

• Mission-driven organization focused on innovative digestive care • Thrive on diversity with monthly DEIB discussions and activities • Virtual-first culture: Work from home anywhere in the U.S. • Competitive compensation and meaningful equity • Employer-sponsored medical, dental, and vision plans • Access to a “Life Concierge” through Overalls • Tailored professional development opportunities • Flexible paid time off • 13 paid company holidays • Team events, such as virtual cooking classes, games, and more • Recognition of professional and personal accomplishments

Apply Now

Similar Jobs

🔥 0 minutes ago

Chainguard

51 - 200

🔐 Security

☁️ SaaS

🔒 Cybersecurity

Security Engineer improving information security and cyber resiliency at Chainguard, the trusted source for hardened open-source software. Engineering detections, incident response, threat hunts, and AI security playbooks.

🔥 1 hour ago

GuidePoint Security

201 - 500

💼 Consulting

🏥 Healthcare

📦 Logistics

Microsoft Security Engagement Lead guiding enterprise Entra ID, Microsoft 365, and Azure consulting engagements. Advising clients, shaping solutions, and leading delivery for GuidePoint Security’s cybersecurity services.

🔥 2 hours ago

PingWind Inc. (SDVOSB)

51 - 200

💼 Consulting

📦 Logistics

🏥 Healthcare

Security Engineer protecting FSA IAM systems through SIEM, EL3 logging, and incident response. Supporting PingWind’s federal cybersecurity compliance and Authority to Operate requirements.

🔥 15 hours ago

Excentium, Inc

51 - 200

🔒 Cybersecurity

🏢 Enterprise

🏛️ Government

Technical security architecture lead guiding cloud, identity, network, and Zero Trust modernization for the U.S. Department of Veterans Affairs. Representing Excentium in governance and technical design reviews.

🔥 15 hours ago

Excentium, Inc

51 - 200

🔒 Cybersecurity

🏢 Enterprise

🏛️ Government

Senior cybersecurity consultant advising government and commercial organizations on GRC, assessments, and compliance. Supporting FedRAMP, CMMC, and Excentium’s cloud compliance platform.