{"id":13892,"url":"https://alion.io/job/aidoc-senior-security-engineer","title":"Senior Security Engineer","company":{"id":4324,"name":"Aidoc","domain":"aidoc.com","url":"https://alion.io/company/aidoc","size_band":"201-500","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Greenhouse","truth_index":{"grade":"A","score":95,"open_postings":29,"ghost_share":0,"stale_share":0,"repost_share":0,"time_to_fill_p50_days":70,"computed_at":"2026-09-30T05:45:00Z"}},"role":"Security","role_family":"Security","seniority":"senior","employment_type":null,"work_mode":"hybrid","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Tel Aviv, Israel"],"countries":["IL"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":95000,"max_usd":215000,"period":"year","method":"global_role_cell_scaled_by_country","sample_n":1261},"experience_years_min":5,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"AWS","optional":false},{"name":"Azure","optional":false},{"name":"CI/CD","optional":false},{"name":"IAM","optional":false},{"name":"JavaScript","optional":false},{"name":"Kubernetes","optional":false},{"name":"OWASP Top 10","optional":false},{"name":"Python","optional":false},{"name":"React.js","optional":false},{"name":"SBOM","optional":false},{"name":"Threat Modeling","optional":false},{"name":"TypeScript","optional":false}],"status":"live","first_seen_at":"2026-07-06T15:55:26Z","employer_posted_date":"2026-08-11","last_verified_at":"2026-09-30T15:56:21Z","board_verified":true,"closed_at":null,"days_open":86,"trust":{"level":"ok","repost_count":0,"flags":["company_stale"],"days_open":85},"description":"About Aidoc\nAidoc is the market leader in healthcare AI and has developed the world's largest clinical frontier model, supporting nearly 50 million patients each year.\nAidoc is deployed in more than 2,000 medical centers worldwide. Since our founding in 2016, Aidoc has raised over $500 million and achieved a record number of FDA-cleared solutions.\nMedical diagnosis is hitting a breaking point, where the number of physicians hasn't kept up with the rapidly growing patient load. This leads to misdiagnosis and treatment delays that result in hundreds of thousands of deaths every year. Aidoc assists clinicians by precisely highlighting diseases directly on medical images, preventing misdiagnosis and ensuring that urgent patients receive the immediate attention they need.\nAbout this role\nAs a Senior Product Security Engineer, you will help ensure that security is built into the products, platforms, AI systems, and clinical workflows that support healthcare providers and patients at scale. This is a hands-on technical role focused on securing real systems in production, influencing architecture, and partnering closely with engineering, AI, DevOps, product, quality and regulatory.\nYou will work across cloud-native services, medical imaging workflows, healthcare integrations, AI/ML pipelines, APIs, data flows, and regulated product development processes. Your work will directly support Aidoc's ability to deliver secure, reliable, and trusted clinical AI solutions to healthcare organizations worldwide.\nWhat Makes This Role Unique at Aidoc\nClinical AI with real-world patient impact - Aidoc operates in an environment where security is not only about protecting systems and data. Security decisions can affect clinical workflows, care-team coordination, customer trust, and patient safety.\nHighly sensitive healthcare data - You will help protect medical imaging data, clinical metadata, PHI/PII, customer environments, and AI-driven workflows that require strong privacy, access control, data protection, and auditability.\nSecurity for AI/ML and medical imaging systems - The role extends beyond traditional AppSec into AI/ML security, data pipeline protection, inference integrity, model-related risks, and misuse scenarios in clinical workflows.\nComplex healthcare integrations - Aidoc integrates with hospital systems and healthcare workflows that may include PACS, EHR, VNA, RIS/worklists, scheduling systems, and communication platforms. You will help secure the data flows, authentication models, APIs, and deployment patterns behind these integrations.\nEngineering-driven security in a regulated environment - This is not a checkbox compliance role. However, because Aidoc operates in healthcare and clinical AI, security must be practical, evidence-based, and aligned with regulatory, customer, and quality expectations.\nCloud-native scale and production ownership - You will work with modern cloud infrastructure, Kubernetes, containers, CI/CD pipelines, identity and access management, observability, vulnerability management, and software supply-chain controls.\nResponsibilities\nSecure product and clinical workflows end-to-end - Work directly with engineering and product teams to identify, prioritize, and remediate security risks across services, APIs, medical imaging workflows, AI outputs, data flows, and customer-facing product features.\nDrive secure-by-design architecture - Provide practical security guidance on authentication, authorization, tenant/customer isolation, encryption, secrets management, service-to-service communication, audit logging, and secure data handling.\nStrengthen cloud-native security - Improve security across cloud environments, Kubernetes, containers, IAM, network segmentation, workload identity, infrastructure-as-code, logging, monitoring, and cloud security posture management.\nEmbed security into the development lifecycle - Integrate, tune, and operationalize security tooling across CI/CD pipelines, including SAST, SCA, IaC scanning, container scanning, secrets detection and build/release integrity controls.\nOwn vulnerability management as an engineering system - Prioritize vulnerabilities based on exploitability, product exposure, customer impact, clinical risk, and regulatory relevance. Drive remediation with engineering teams and reduce recurring issues through root-cause improvements.\nSecure AI/ML-driven features and data pipelines - Partner with AI, data, and platform teams to identify risks related to training and inference data, model inputs and outputs, model misuse, data leakage, access to sensitive datasets, pipeline integrity, and production monitoring.\nImprove software supply-chain security - Reduce risk across open-source dependencies, third-party components, third-party algorithms, container images, build systems, artifact repositories, release pipelines, and deployment processes.\nMentor and enable engineers - Help developers understand security risks, make secure design decisions, and take ownership of security in their code, services, and infrastructure.\nCommunicate risk clearly - Translate technical security findings into clear risk, impact, and trade-off language for engineering, product, leadership, quality, regulatory, and customer-facing stakeholders.\nRequirements\n5+ years of experience in Product Security, Application Security, Cloud Security, or a similar hands-on security engineering role.\nStrong hands-on experience securing production systems, not only performing assessments or reviews.\nStrong understanding of secure design, threat modeling, and architecture risk analysis.\nDeep knowledge of application security, including OWASP Top 10, API security, authentication, authorization, access control, secure session handling, input validation, and modern attack vectors.\nExperience securing distributed systems, APIs, web applications, backend services, and cloud-native architectures.\nStrong experience with cloud environments, especially AWS and/or Azure, including IAM, network security, encryption, logging, monitoring, and workload security.\nExperience with Kubernetes, containers, infrastructure-as-code, CI/CD pipelines, and modern DevOps workflows.\nPractical experience with security tooling such as SAST, SCA, IaC scanning, container scanning, secrets detection, SBOM tools, vulnerability scanners, and cloud security tools.\nExperience with vulnerability management, risk prioritization, remediation planning, and working with engineering teams to fix issues at scale.\nStrong understanding of software supply-chain security, including dependency risk, build/release integrity, artifact security, and third-party component governance.\nExperience working with modern development stacks such as Python, Java, JavaScript/TypeScript, React, microservices, APIs, and cloud-native services.\nAbility to influence engineers through technical credibility, practical guidance, and strong collaboration.\nStrong communication skills and the ability to explain security risks to technical and non-technical stakeholders.\nWorking at Aidoc\nOur Perks:\nBe part of something big - using cutting-edge technologies to transform the Healthcare industry (while saving patients’ lives)\nWe work in a hybrid model, with our new offices located at 34 HaMasger Street in Tel Aviv and parking for employees.\nAmazing and healthy breakfasts and lunches prepared daily by our personal chef!\nStocked up kitchen & meal card\nWellness: Aidoc employees-only gym, plus Pilates, Yoga, and functional workouts classes.\nAmazing culture - collaborative, transparent & fun!\nAttractive compensation package & benefits\nAidoc is deeply committed to creating an inclusive workplace, and to the principle of equal opportunity for all individuals. We prohibit discrimination and harassment based on race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, veteran status, or any other status protected by law.","description_format":"text","description_chars":7938,"description_truncated":false,"requirements":{"experience_years_min":5,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[]},"benefits":[],"hiring_locations":[{"name":"Israel","iso":"IL","kind":"country"}],"hiring_excludes":[],"relocation_offered":false,"industries":["Hospitals & Health Systems","Computer Vision","Medical Imaging Systems","Medical AI"],"lifecycle":[{"event":"open","at":"2026-07-06T15:55:26Z"}],"liveness":{"score":38,"band":"fade","label":"Fading","p_open":1,"p_active":0.862,"p_room":0.44,"age_days":85,"expected_fill_days":70,"reasons":["conf:2","velocity","win:tail","crowd:"],"computed_at":"2026-09-30T05:45:00Z"},"pay":null,"html_url":"https://alion.io/job/aidoc-senior-security-engineer","json_url":"https://alion.io/job/aidoc-senior-security-engineer.json","meta":{"generated_at":"2026-10-01T04:31:11Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":3856,"day_limit":5000,"remaining_today":1144,"minute_limit":60,"resets_at":"2026-10-02T00:00:00Z"}}}