Principal Security Engineer

🔥 10 minutes ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Curative

Curative

501 - 1000 employees

Founded 2020

🏥 Healthcare

🛡️ Insurance

Healthcare • Insurance

Curative is an employer-focused health insurance company offering a next-generation group health plan that emphasizes affordability, engagement, and simplicity. Their plans promise $0 in-network copays, $0 deductibles, and a single competitive monthly premium, along with a broad provider network, telehealth, an extensive $0-preferred prescription formulary, care navigators, and the Curative Cash Card to eliminate out-of-pocket costs in many settings. Curative markets to employers and brokers while providing members with resources like a Baseline Visit, care programs, online portals, and pharmacy services, and holds an A- rating from AM Best and HITRUST r2 certification.

📋 Description

• Own strategy and hands-on engineering for Detection and Response platforms; identify, onboard, and normalize all log sources including cloud, containers, endpoints, and SaaS • Build and maintain Security Orchestration, Automation, and Response (SOAR) tooling to reduce response time and analyst toil • Lead incident response for complex threats including developing runbooks, driving post- incident improvements, and designing/running BCP/DR tabletop exercises. • Embed security into the SDLC: threat modeling, secure design reviews, SAST/DAST tooling, and automated security gates in CI/CD pipelines • Own the vulnerability management program at host and application levels; track and drive remediation • Champion "security as code" practices across engineering teams • Build AI-powered security tooling: threat detection and anomaly identification at appropriate confidence thresholds, automated triage and remediation workflows, and AI-assisted post- mortem summarization • Define and implement the security model for LLM-based systems and internal AI tooling • Architect harness patterns to constrain LLM behavior and harden against prompt injection, indirect injection via RAG pipelines, and data exfiltration via model outputs • Evaluate and govern AI tool adoption from a security and data-risk perspective • Own AWS security posture and enforce baselines across Linux/Windows, network devices, and enterprise SaaS (M365, Google Workspace, Azure) • Engineer, configure, and operate EDR, DLP, and endpoint security programs • Provide IAM architecture expertise across identity and access systems • Mentor and actively develop junior and mid-level security engineers through design reviews, pairing, and direct feedback. Growing team capability is a core expectation of this role • Define and drive security engineering standards across the organization • Collaborate closely with IT operations, platform, and software to translate threat intelligence into detection and hardening priorities

🎯 Requirements

• 8+ years in security engineering with demonstrated growth into technical leadership • Hands-on SIEM experience (DataDog, ELK, or equivalent) • Deep AWS security and IAM expertise • Application security fundamentals: threat modeling, SAST/DAST, secure SDLC • Experience building with AI/LLM APIs and practical knowledge of LLM security risks • EDR, DLP, and vulnerability management experience • Experience with containerized workloads and Kubernetes security • Proven track record of mentoring engineers and raising team capability • Nice to Have - CISSP, GIAC, or OSCP certification • MITRE ATT&CK knowledge applied to detection engineering • "Security as code" experience (OPA, Checkov, tfsec, or similar) • Data science or anomaly detection skills applied to security telemetry • Healthcare industry background (HIPAA, HITRUST) • Experience with the following tools/technologies: Kubernetes/EKS, Terraform/Terragrunt, Atlantis, Cloudflare, Buildkite, Wiz, Semgrep, EscapeTech, GitHub Advanced Security, Datadog, HashiCorp Vault, N8N, Snowflake, Linear

🏖️ Benefits

• Curative Health Plan (100% employer-covered medical premiums for you and 50% coverage for dependents on the base plan.) • $0 copays and $0 deductibles (with completion of our Baseline Visit) • Preventive and primary care built in • Mental health support (Rula, Televero, Two Chairs, Recovery Unplugged) • One-on-one care navigation • Chronic condition programs (diabetes, weight, hypertension) • Maternity and family planning support • 24/7/365 Curative Telehealth • Pharmacy benefits • Comprehensive dental and vision coverage • Employer-provided life and disability coverage with additional supplemental options • Flexible spending accounts • Generous PTO policy plus 11 paid annual company holidays • 401K for full-time employees • Generous Up to 8–12 weeks paid parental leave, based on role eligibility.

Apply Now

Similar Jobs

🕒 2 days ago

Quorum Federal Credit Union

51 - 200

🛡️ Insurance

💼 Consulting

🏦 Banking

Vice President of Cybersecurity overseeing the enterprise cybersecurity strategy at Quorum Federal Credit Union. Leading cyber risk oversight and board reporting in a remote role.

🕒 2 days ago

Gainwell Technologies

10,000+ employees

💼 Consulting

📦 Logistics

⚕️ Healthcare Insurance

Information Security Officer responsible for security compliance and client delivery in healthcare. Collaborating with leadership to identify security issues and manage risks.

🕒 2 days ago

TopDog Law

51 - 200

💼 Consulting

📣 Marketing

⚖️ Legal

Senior IT Security System Administrator at TopDog Law overseeing IT systems and security operations. Leading migration and compliance activities in a fully remote environment.

🕒 2 days ago

Red Hat

10,000+ employees

🏢 Enterprise

Security Technical Account Manager working closely with engineering and support to enhance security solutions at Red Hat. Engage with customers to improve security practices within their systems.

🕒 2 days ago

Binary Defense

51 - 200

💼 Consulting

🎖️ Defense

🏥 Healthcare

Principal Security Consultant overseeing security operations and incident response in IT and OT settings. Managing a dedicated security program and collaborating with cross-functional teams at Binary Defense.