Lead Cybersecurity Engineer

Job not on LinkedIn

🔥 14 hours ago

🇺🇸 United States – Remote

⏰ Full Time

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

👻 Ghost score 15%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of OptiMantra

OptiMantra

11 - 50 employees

Founded 2011

🏥 Healthcare

🛡️ Insurance

💼 Consulting

Healthcare • Insurance • Consulting

OptiMantra is a cloud-based, next-generation electronic medical record (EMR) and practice management platform designed for integrative, functional, primary care, behavioral health, psychiatry, medspa, and multi-disciplinary clinics. The software provides end-to-end practice tools including customizable clinical charting and SOAP templates, scheduling, telehealth, billing and electronic claims, point-of-sale and inventory management, secure patient portals, automated reminders, and third-party integrations—delivered as an easy-to-use SaaS product for small to multi-practitioner practices. OptiMantra emphasizes HIPAA-compliant workflows, specialty-specific templates, onboarding/support, and operational and financial reporting to help practices streamline care delivery and administration.

📋 Description

• Lead the company’s cybersecurity program across Cerbo and OptiMantra • Protect protected health information (PHI) and production platforms serving thousands of clinicians and millions of patients • Develop, implement, and continuously improve a unified security program across both products • Own the technical implementation and ongoing management of SOC 2 Trust Services Criteria and HIPAA Security Rule requirements across AWS environments • Lead compliance documentation, remediation, control narratives, system and data-flow documentation, scope determinations, and security gap closure • Serve as technical point of contact for auditors and assessors and coordinate audit activities and milestones • Secure and harden production AWS environments, including cloud infrastructure, Kubernetes and container environments, databases, networking, web application security, and disaster recovery environments • Implement and operate AWS security controls and tooling, including IAM, privileged access management, MFA, least-privilege access, security monitoring, encryption and key management, vulnerability management, and audit logging • Establish common standards for access, tenant isolation, data protection, backup, and disaster recovery • Establish and operate centralized logging, alerting, threat detection, and security response processes • Own security incident response and vulnerability management programs, including playbooks, tabletop exercises, breach assessment, vulnerability scanning, remediation tracking, and coordination with Engineering and external security providers • Lead penetration testing, DAST, security assessments, findings remediation, and retesting • Own security policies, procedures, workforce security, security awareness, phishing simulations, HIPAA training, and compliance tracking • Lead identity and endpoint security practices for corporate systems, users, and sensitive data • Manage third-party security and vendor risk, including security assessments, business associate agreements, subprocessor diligence, and vendor oversight • Serve as technical security partner for customers and strategic partners, leading security questionnaires, architecture reviews, and security discussions • Support customer and partner security requirements during sales and contracting, including incident notification, data retention and export, backup and disaster recovery, AI, and subprocessors • Report to the Chief Technology Officer and collaborate with DevOps, Engineering, IT, Product, and other stakeholders

🎯 Requirements

• 5+ years of experience in cybersecurity or information security, with increasing responsibility in security engineering • 2+ years of experience securing production cloud environments, preferably AWS, including cloud identity and access management, network security, logging/monitoring, and security controls • Demonstrated experience with the AWS security ecosystem, including IAM, CloudTrail, GuardDuty, Security Hub, KMS, VPC security and related AWS security services • Experience implementing, maintaining and evidencing security controls aligned with frameworks and standards such as NIST, HITRUST, ISO 27001, HIPAA, SOC 2, or similar • Experience securing Kubernetes and containerized production environments, including identity, network security, image security, and runtime controls • Experience serving as a technical owner during a third-party security audit, assessment, or certification • Experience deploying, configuring, and operating cybersecurity tools in production, such as EDR, SIEM/log management, vulnerability management, WAF, or similar technologies • Demonstrated ability to lead complex cybersecurity initiatives, establish security standards and processes, and serve as a technical subject-matter expert across the organization • Bachelor's degree in cybersecurity, information security or relevant field (preferred) • Experience working in a PE-backed, high-growth, or rapidly scaling organization (preferred) • Experience working with healthcare technology, SaaS or other technology-enabled B2B businesses (preferred) • Experience securing multi-tenant SaaS environments, including tenant isolation, access controls, and shared infrastructure (preferred) • Experience working across cloud, DevOps, SRE, or application security environments, with exposure to infrastructure as code, CI/CD, Kubernetes, secure code practices, or vulnerability remediation (preferred)

🏖️ Benefits

• Competitive compensation based on experience • Paid Time Off and company holidays • Comprehensive health, dental and vision benefits • Short-term and long-term disability Insurance • 401k plan with matching company contribution • Real ownership and impact in a fast-growing health tech company

Apply Now

Similar Jobs

🔥 16 hours ago

Eli Lilly and Company

10,000+ employees

💊 Pharmaceuticals

🏥 Healthcare

🧬 Biotechnology

Enterprise AI Security Advisor securing Lilly’s AI agents, models, and infrastructure. Setting cybersecurity strategy and controls for a global pharmaceutical company.

🇺🇸 United States – Remote

💵 $129k - $253k / year

💰 $6.5M Post-IPO Debt - Eli Lilly on 2024-02

⏰ Full Time

🟠 Senior

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

🔥 18 hours ago

LaunchDarkly

201 - 500

💼 Consulting

🏥 Healthcare

📦 Logistics

Senior Security Manager leading LaunchDarkly's Product Security team. Building risk-led security operations for a feature-management platform that helps developers release software safely.

🔥 19 hours ago

DaVita Kidney Care

10,000+ employees

🏥 Healthcare

⚕️ Healthcare Insurance

IT Security Engineer administering enterprise cybersecurity platforms for DaVita’s healthcare technology environment. Implementing security controls, vulnerability reporting, SIEM integration, and threat-analysis support.

🔥 20 hours ago

Radformation

51 - 200

🏥 Healthcare

☁️ SaaS

🤖 Artificial Intelligence

Senior Security Engineer securing Radformation’s radiation oncology cancer treatment software. Leading DevSecOps, vulnerability management, compliance audits, and cloud infrastructure security.

🔥 21 hours ago

Eli Lilly and Company

10,000+ employees

💊 Pharmaceuticals

🏥 Healthcare

🧬 Biotechnology

Enterprise AI Security Advisor securing AI agents, models, and infrastructure at pharmaceutical company Eli Lilly. Defining enterprise controls, threat models, guardrails, and security roadmaps.

🇺🇸 United States – Remote

💵 $129k - $253k / year

💰 $6.5M Post-IPO Debt - Eli Lilly on 2024-02

⏰ Full Time

🟠 Senior

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer