1,269,718open jobs
73,658companies
208,609added this week
Browse all
Salary
$120k – $150k per year
Location
Remote (likely United States)
Seniority
Senior · 5+ years exp
Employment
Full-Time

Confirmed on the employer's own hiring board on Oct 6, 2026. First seen by Alion on Sep 17, 2026.

Overview
Company
Impact
Profile match
HealthMark streamlines release of information for healthcare organizations of all sizes, from hospitals and health systems to physician practices across all specialties.
Backed by TA Associates

COMPANY OVERVIEW: HealthMark Group is a leading provider of health IT solutions for healthcare providers across the country. By leveraging technology to reimagine the business of healthcare, HealthMark transforms administrative processes into seamless digital solutions. From HealthMark’ s proprietary MedRelease platform for Release of Information, the company is pioneering an efficient, compliant, and patient-centric approach to support the entire spectrum of the patient information journey. HealthMark Group was founded in 2006 with corporate headquarters in Dallas, TX, and has been named to both the Dallas 100 and the Inc. 5000 for multiple years in a row as one of the fastest-growing companies in the region and the country.

We are a mid-sized company in a transformation phase: modernizing legacy systems, building new products, and automating workflows that used to require rooms full of people. If you want to build things that matter (not just maintain them), this is a good time to join.

Position: Senior Cloud Security Engineer

Location: Remote

Role Overview:

The senior cloud security engineer is responsible for designing, implementing, and maintaining security controls for HealthMark Group developed applications and corporate systems, with a focus on the AWS cloud environment, including the platforms supporting our medical imaging business. They define AWS security guardrails appropriate for a highly-regulated environment containing Protected Health Information (PHI) and which must adhere to security regulations and frameworks such as HIPAA, HITRUST, and SOC 2. They serve as a leader in the Security Operations team, providing mentorship and guidance to fellow security engineers.

Primary Roles and Responsibilities :

  • Design and build enterprise-grade security controls utilizing native AWS services to safeguard PHI across all cloud environments.
  • Design and maintain the secure multi-account AWS architecture - account structure, organizational units, guardrails, and baseline configuration - so that new accounts and workloads inherit required PHI protections by default.
  • Author, review, and maintain secure-by-default Terraform or AWS CloudFormation templates, integrating policy-as-code tools (e.g., OPA, Checkov, Rego) to programmatically enforce HIPAA, HITRUST, and SOC 2 controls before deployment.
  • Align and enforce strict data-at-rest and data-in-transit encryption strategies utilizing AWS KMS, ensuring cryptographic standards satisfy HITRUST and HIPAA mandates for PHI.
  • Design and enforce strict least-privilege access models, complex IAM policies, Service Control Policies (SCPs), and AWS Organizations boundaries to strictly control access to sensitive healthcare workloads.
  • Embed security testing, container scanning, and secrets management (AWS Secrets Manager) directly into CI/CD pipelines, creating automated evidence-collection workflows for continuous SOC 2 and HITRUST audit readiness.
  • Collaborate with application development and cloud operations teams to triage, investigate, and remediate vulnerabilities and findings from application and cloud security tooling, such as SAST, DAST, and CSPM.
  • Develop custom detection rules using AWS CloudTrail, Amazon CloudWatch telemetry, and enterprise SIEM tool to monitor system activities to detect and respond to threats and incidents.
  • Serve as the senior escalation point for cloud security incidents, leading investigation and containment in AWS environment in partnership with our Managed Detection and Response provider, Cloud Operations team, and Managed Services Provider. Drive post-incident root cause analysis and control improvements.
  • Support third-party risk assessment and security certification processes through evidence collection and response to security questionnaires.
  • Evaluate and document cloud security exceptions and compensating controls, partnering with GRC to ensure risk acceptance decisions are appropriately assessed, approved, and tracked to closure.
  • Lead the security integration of newly acquired platforms into HealthMark Group's cloud security architecture - assessing inherited environments, closing control gaps, and bringing workloads into HIPAA, HITRUST, and SOC 2 scope.
  • Provide technical mentorship to security engineers on secure cloud design, automation, and investigative technique, and support design reviews for new and changing AWS workloads.
  • Develop and maintain cloud security documentation, defining architecture standards, runbooks, and incident response procedures for an evolving environment.
  • Define and report cloud security metrics on a recurring basis to measure control coverage, posture drift, vulnerability management, and audit-readiness in the cloud environment.
  • Contribute cloud and application security expertise to enterprise security awareness and developer training efforts.
  • Stay up to date with industry trends and advancements in attacks and remediations, making recommendations to position our defenses appropriately.
  • Provide other support to HealthMark Group Security Operations as required.

Required Experience and Qualifications:

  • Minimum of 5 to 7 years of dedicated experience in cybersecurity, infrastructure engineering, or DevOps, with at least 3 years focused strictly on AWS compliance-driven engineering.
  • Deep, hands-on knowledge of core AWS services commonly holding or routing PHI (VPC, IAM, EC2, S3, RDS, Lambda, EKS) and supporting services essential for the maintenance of a secure cloud environment.
  • Hands-on experience securing and hardening Linux systems and Linux-based cloud workloads, including access control, logging, patching, and benchmark-based configuration standards.
  • Strong working knowledge of HIPAA regulations, HITRUST CSF requirements, SOC 2 trust services criteria, or similar frameworks within a cloud context.
  • Demonstrated experience with cloud detection engineering and security incident response, including investigation and containment in AWS using CloudTrail, CloudWatch, and SIEM telemetry.
  • Advanced, production-level experience deploying and managing AWS infrastructure securely via Terraform or AWS CloudFormation, including policy-as-code enforcement and security integration into CI/CD pipelines.
  • Strong proficiency in scripting and automation using PowerShell, Python (Boto3), or similar to automate compliance evidence gathering and remediation tasks.
  • Great communicator with the ability to relay critical information to engineering teams, executive leadership, and external assessors promptly and effectively.
  • Strong troubleshooting and analytic ability to track and solve intricate problems across technical systems, such as servers, databases, developed applications, and network infrastructure, including issues spanning platforms and ownership boundaries.
  • Bachelor’s degree in Computer Science, Information Security, or equivalent practical engineering experience.

Additional Preferred Experience:

  • AWS Certified Security - Specialty
  • Certified Information Systems Security Professional (CISSP) or Certified Cloud Security Professional (CCSP)
  • HITRUST Certified CSF Practitioner (CCSFP)
  • Experience with security and maintenance of Microsoft systems, including Windows operating system, M365, Entra, and Active Directory
  • Strong experience with networking and security in physical and hybrid environments, in addition to cloud
  • Familiarity with medical imaging or healthcare interoperability technologies (DICOM, PACS, HL7/FHIR).
  • Experience securing environments through mergers, acquisitions, or platform integrations.

Note: This job description is intended to provide a general overview of the position and does not encompass all job-related responsibilities and requirements. The responsibilities and qualifications may be subject to change as the needs of the organization evolve.

This role does or may require regular access to Protected Health Information (PHI) and/or confidential client data. The incumbent must demonstrate a strong understanding of confidentiality requirements, adhere to all HIPAA regulations and organizational privacy and security policies, and report any known or suspected unauthorized access, use, or disclosure of PHI immediately to the Privacy Officer or Information Security team. This position requires timely completion of all required company-sponsored and regulatory training programs

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,269,718 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
In your city
≈ $98k – $202k per year (Estimated) • Remote (United States) • 5+ years exp • Bachelor's Degree
Python
PowerShell
Bash
DevOps
Splunk
Azure
AWS
Windows
Cybersecurity
SIEM
Management
ServiceNow
Apply
≈ $100k – $206k per year (Estimated) • Remote (United States) • 5+ years exp • Bachelor's Degree
DevOps
Splunk
Cybersecurity
SIEM
Apply
Penetration Tester 1 day ago
≈ $124k – $261k per year (Estimated) • Remote (United States) • 9+ years exp • Bachelor's Degree
Frontend
GraphQL
DevOps
Rest API
SOAP
Cybersecurity
Burp Suite
SQLmap
FFUF
Nuclei
OWASP Top 10
MobSF
Frida
Objection
OWASP
Apply
≈ $19k – $42k per year (Estimated) • Remote (India) • Contractor • 5+ years exp
AI/ML
ISO 42001
Cybersecurity
ISO 27001
PCI DSS
SOC 2
GDPR
HIPAA
Apply
≈ $66k – $128k per year (Estimated) • Remote (United States) • Full-Time • 4+ years exp • High School Diploma • Dallas
Java
DevOps
Rest API
Azure
IAM
SOAP
Cybersecurity
Active Directory
PKI
Management
ServiceNow
ITSM
Apply
≈ $30k – $58k per year (Estimated) • Remote (EAEU) • Moscow
Python
JavaScript
Java
Node JS
Bash
Groovy
Databases
Redis
MinIO
Apache Kafka
DevOps
Terraform
Ansible
Zabbix
Helm
Prometheus
VictoriaMetrics
CI/CD
GitOps
ArgoCD
Jenkins
Git
Docker
Kubernetes
Grafana
Bitbucket
Linux
Unix
Apply
≈ $13k – $30k per year (Estimated) • Hybrid • Saint Petersburg
Python
Python
Flask
FastAPI
Celery
pre-commit
Databases
MySQL
Redis
RabbitMQ
Apache Kafka
DevOps
Rest API
CI/CD
Git
Docker
Kubernetes
GitLab
Apply
Data Scientist 4 days ago
≈ $15k – $41k per year (Estimated) • In office • 3+ years exp • Bachelor's Degree • Minsk
Python
SQL
AI/ML
CatBoost
Scikit-learn
NumPy
Machine Learning
DevOps
Git
Apply
In office • Moscow
Python
SQL
Python
pySpark
Databases
ClickHouse
Greenplum
Vertica
AI/ML
Polars
Hadoop
CatBoost
Spark
Airflow
Dagster
XGBoost
Scikit-learn
Computer Vision
NLP
LightGBM
TensorFlow
Pandas
NumPy
PyTorch
LLM
RAG
Machine Learning
DevOps
GCP
Yandex Cloud
Azure
AWS
Docker
Kubernetes
Analytics
Tableau
Power BI
Apply
≈ $83k – $164k per year (Estimated) • In office • TS/SCI • 4+ years exp • Bachelor's Degree • Palm Bay
Python
Verilog
SystemVerilog
VHDL
DevOps
Linux
Chips/EDA
Xilinx Vivado
Management
Agile
Apply
$110k – $140k per year • Remote (likely United States) • Full-Time • 5+ years exp • Bachelor's Degree
DevOps
GCP
Azure
AWS
IAM
Windows
Cybersecurity
SOC 2
HIPAA
NIST 800-53
Active Directory
Management
Agile
Scrum
Kanban
Apply
Security Engineer 2 months ago
$90k – $120k per year • Remote (likely United States) • Full-Time • 3+ years exp • Bachelor's Degree
DevOps
Terraform
GCP
Azure
CI/CD
AWS
IAM
Windows
Cybersecurity
SOC 2
HIPAA
Active Directory
Apply
$30k – $34k per year • Remote (likely United States) • Full-Time • 1+ year exp • High School Diploma
Cybersecurity
HIPAA
Management
Microsoft Office
Apply
$34k – $42k per year • In office • Full-Time • Temple
Cybersecurity
HIPAA
Apply
Client Advocate 1 month ago
$45k – $50k per year • Remote (likely United States) • Full-Time • 3+ years exp • Bachelor's Degree
Cybersecurity
HIPAA
Apply
See all jobs
This is one of many
1,269,718 more open roles from verified company boards, updated every day.