1,466,394open jobs
87,697companies
230,126added this week
Browse all
Salary
≈ $136k – $235k per year (Estimated)
Location
Remote (United States)
Seniority
Senior · 5+ years exp
Employment
Full-Time

Confirmed on the employer's own hiring board on Oct 11, 2026. First seen by Alion on Oct 8, 2026.

Overview
Company
Impact
Profile match
EVisit is the leading digital care transformation partner for health systems and large, complex healthcare delivery organizations.

We are looking for a hands-on full-stack Software Engineer who will focus primarily on security remediation. Your first priority will be owning the remediation of vulnerabilities identified through penetration testing: not just reporting findings, but digging into the codebase, session traffic, and infrastructure to fix the underlying issues and prevent them from recurring. You will work closely with engineering and design teams to translate real-world security findings into concrete, testable requirements in our Technical Requirements Documents (TRDs), and you will personally implement or oversee the fixes.

This is an engineering role first. As the security backlog comes under control, you will have the flexibility to contribute to application development across our Ruby on Rails and React platform, bringing a security-minded perspective to the features you build.

Key Responsibilities

Security Remediation

  • Vulnerability Remediation: Own end-to-end remediation of vulnerabilities surfaced by penetration tests and other security assessments, from triage through verified fix.
  • Traffic and Session Analysis: Use browser-based code inspection tools to examine session traffic between the front end and back end, identify cases where excessive or sensitive information is being exposed, and translate those findings into concrete design and engineering requirements.
  • TRD Input: Feed vulnerability findings and remediation requirements directly into the Technical Requirements Document (TRD) process so fixes are captured as durable design requirements, not one-off patches.
  • Session Management: Review and harden session management practices across the application stack.
  • Full-Stack Remediation: Work within a Ruby on Rails and React codebase and across containerized services (AWS, Fargate) to implement fixes at both the application and infrastructure layers.
  • API and Real-Time Systems: Assess and secure real-time and API-driven features, including those built on Pusher and AnyCable, and RESTful APIs generally.
  • Documentation: Produce clear, thorough documentation of vulnerabilities, root causes, remediation steps, and verification results.
  • Compliance Support: Contribute security context and vocabulary to FedRAMP-related discussions and requirements, partnering with compliance and engineering stakeholders.

Application Development

  • Feature Development: Design, build, and ship features across the Ruby on Rails back end and React front end alongside the broader engineering team.
  • Secure by Design: Apply what you learn from remediation work to new development, helping the team avoid reintroducing known classes of vulnerabilities.
  • Code Quality: Participate in code reviews, testing, and technical design discussions, with an eye toward both security and maintainability.

Requirements

Engineering Experience

  • 5+ years of hands-on software engineering experience, with broad full-stack work across multiple applications and technology layers.
  • Working proficiency in Ruby on Rails and React.
  • Experience with containerized environments, AWS, and Fargate.
  • Solid API experience, including RESTful API design and security considerations.
  • Hands-on experience with Pusher and AnyCable, or comparable real-time messaging technologies.
  • Knowledge of Ruby data models and how schema and query design affect performance and scalability.

Security Experience

  • 5+ years of experience in a security engineering or closely related role.
  • Proven experience remediating vulnerabilities identified through penetration testing.
  • AWS Security certification(s) (e.g., AWS Certified Security - Specialty).
  • General familiarity with FedRAMP: enough understanding of the vocabulary and framework to contribute meaningfully to a FedRAMP-related project.

Analytical Skills

  • Comfortable using browser developer/code inspection tools to inspect network and session traffic.
  • Able to identify when too much information is being exposed between backend and frontend, and to explain the risk clearly to engineering and design stakeholders.
  • Able to translate security findings into actionable design requirements that feed directly into the TRD.

Coding and Technical Skills

  • Working proficiency in Ruby on Rails.
  • Experience with containerized environments, AWS, and Fargate.
  • Solid API experience, including RESTful API design and security considerations.
  • Solid understanding of session management principles and common pitfalls.
  • Hands-on experience with Pusher and AnyCable, or comparable real-time messaging technologies.
  • Broad, full-stack experience across multiple applications and technology layers.
  • Knowledge of Ruby data models and how schema and query design affect performance and scalability.

Documentation

  • Strong written communication skills, with the ability to document vulnerabilities, remediations, and technical requirements clearly for both engineering and non-engineering audiences.

Nice to Have

  • Experience with Pulumi for infrastructure as code.
  • Python experience.
  • SQL skills.
  • Active or eligible for security clearance.
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,466,394 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Backend
Similar stack
Same company
Mesa
$47k – $61k per year (gross) • Remote (Croatia) • Full-Time • 5+ years exp • Bachelor's Degree • Zagreb
JavaScript
TypeScript
SQL
C#
C#
ASP.NET Core
AI/ML
Copilot
Claude
Frontend
Angular
DevOps
Azure
CI/CD
Git
AWS
Shift-Left
Cybersecurity
Shift-Left Security
Management
Agile
Scrum
Apply
≈ $81k – $201k per year (Estimated) • Remote (LATAM) • 7+ years exp • Bachelor's Degree
JavaScript
TypeScript
C#
C#
.NET
Databases
Oracle
MS SQL
Frontend
Angular
Bootstrap
JQuery
DevOps
Azure DevOps
Azure
Git
Docker
Management
Agile
Scrum
QA
Swagger
Apply
≈ $34k – $98k per year (Estimated) • Remote (EU, CET hours) • Full-Time • Zagreb
JavaScript
TypeScript
C
Node JS
C
ZeroMQ
Databases
Redis
Frontend
GraphQL
Next.js
React.js
video.js
DevOps
gRPC
Git
AWS
Docker
Kubernetes
Unix
Management
Agile
Apply
≈ $32k – $93k per year (Estimated) • Remote (Croatia) • Full-Time • Zagreb
JavaScript
TypeScript
SQL
C#
C#
ASP.NET Core
Frontend
Angular
React.js
DevOps
Git
Management
Agile
Scrum
Apply
Software Engineer 11 days ago
≈ $34k – $99k per year (Estimated) • Remote (Croatia) • 5+ years exp • Bachelor's Degree • Zagreb
Python
SQL
C++
MATLAB
C++
CMake
MATLAB
Simulink
Databases
MySQL
DevOps
Jenkins
AWS
Docker
Linux
TCP/IP
IoT
MQTT
Management
Agile
QA
Rest-Assured
Apply
Full Stack Engineer 2 days ago
In office • Delhi
Python
JavaScript
TypeScript
Python
Flask
FastAPI
Django
AI/ML
LangGraph
LangChain
Prompt Engineering
Function Calling
AI Agents
LLM
RAG
Tool Use
Frontend
React.js
DevOps
Rest API
Apply
$141k – $183k per year • In office • Full-Time • 6+ years exp • Bachelor's Degree • Chicago
AI/ML
Kong AI Gateway
DevOps
Rest API
GCP
Kong
Azure
AWS
Platform Engineering
Apply
$147k – $192k per year • In office • Full-Time • 5+ years exp • Bachelor's Degree • Chicago
Python
Java
SQL
C++
C++
TensorFlow C++
PyTorch C++
AI/ML
CatBoost
Spark
XGBoost
Fine-tuning
Prompt Engineering
AI Agents
Flink
TensorFlow
NumPy
PyTorch
LLM
RAG
LLMOps
Machine Learning
DevOps
CI/CD
GitOps
ArgoCD
Jenkins
AWS
Kubernetes
Amazon EKS
Amazon ECS
Apply
$100k – $184k per year • In office • 6+ years exp • Bachelor's Degree • United States
AI/ML
AI Agents
DevOps
Splunk
Azure
AWS
Cybersecurity
Microsoft Defender
SIEM
Management
ServiceNow
ITSM
Apply
AI/ML Engineer 2 days ago
≈ $12k – $28k per year (Estimated) • Hybrid • Full-Time • Bengaluru
Python
SQL
Python
Flask
FastAPI
Databases
Pinecone
FAISS
AI/ML
LangChain
Claude
Hadoop
Spark
Fine-tuning
Reinforcement Learning
Prompt Engineering
Multimodal AI
Diffusion Models
AI Agents
NLP
AutoGPT
Llama
Mistral
Accelerate
Transformers
PyTorch
Gemini
LLM
RAG
BERT
OpenAI
Anthropic
Hugging Face
Multi-Agent Systems
Machine Learning
DevOps
GCP
Azure
CI/CD
AWS
Docker
Kubernetes
Apply
≈ $163k – $271k per year (Estimated) • Remote (United States) • Full-Time • Mesa
Ruby
Ruby
Ruby on Rails
AI/ML
LLM
Machine Learning
DevOps
GCP
Azure
CI/CD
AWS
IAM
Cybersecurity
GDPR
HIPAA
FedRAMP
Zero Trust
Management
Agile
Apply
Release Manager 3 days ago
≈ $115k – $240k per year (Estimated) • Remote (United States) • Full-Time • Mesa
Databases
MySQL
DevOps
CI/CD
Git
AWS
Cybersecurity
SOC 2
HIPAA
FedRAMP
Management
Agile
Scrum
Apply
Remote (United States) • Secret • Full-Time • Bachelor's Degree
Marketing
Salesforce
Apply
$48k – $50k per year • Equity • Remote (United States) • Full-Time • 2+ years exp • High School Diploma • Mesa
Management
Microsoft Office
Apply
≈ $24k – $54k per year (Estimated) • In office • Part-Time • Mesa
Apply
≈ $24k – $54k per year (Estimated) • In office • Part-Time • Mesa
Apply
≈ $24k – $54k per year (Estimated) • In office • Part-Time • Mesa
Apply
≈ $24k – $54k per year (Estimated) • In office • Part-Time • Mesa
Apply
See all jobs
This is one of many
1,466,394 more open roles from verified company boards, updated every day.