368,634open jobs
9,437companies
50,578added this week
Browse all
Salary
$141k – $278k per year (Estimated)
Location
Remote (United States)
Seniority
Staff · 8+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Jobgether is an AI-powered job platform focused on remote and flexible work. It matches candidates with relevant roles using skills and preference-based algorithms, and also offers career coaching and job-search guidance.

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Staff Security Engineer based in the United States.

This is a high-impact, hands-on security engineering role focused on strengthening cloud-native and application security across a large-scale healthcare data platform. You will partner closely with engineering teams to embed security throughout the software development lifecycle and make secure practices the default. The role offers significant autonomy to shape security standards across Kubernetes, containers, infrastructure, CI/CD, and application architecture. You will translate complex vulnerabilities and compliance requirements into practical technical solutions that improve production security. As a senior individual contributor, your decisions will influence systems and engineering practices across the organization. You’ll join a small, experienced team operating with transparency, ownership, and a strong bias toward meaningful outcomes.

Accountabilities

    • Own cloud security posture management, including Kubernetes and container security, admission controls, network policies, image integrity, and environment hardening.
    • Manage the complete vulnerability lifecycle, prioritizing remediation according to real-world production exposure and business risk rather than relying solely on finding counts.
    • Partner with Platform Engineering to establish secure SDLC and CI/CD practices, with particular focus on artifact integrity, pipeline security, and GitHub Actions safeguards.
    • Translate HITRUST and SOC 2 requirements into practical technical configurations, security controls, and operational processes that integrate naturally into engineering workflows.
    • Review and harden infrastructure-as-code across environments, including Terraform-based deployments and related cloud infrastructure.
    • Lead incident response activities, including forensic investigations, remediation coordination, and blameless post-incident reviews.
    • Strengthen engineering security standards through architecture and design reviews, collaborative technical pairing, mentorship, and security guidance.
    • Oversee bug bounty triage and maintain constructive relationships with external security researchers.
    • Identify and drive security initiatives from initial scope and design through implementation and operationalization, taking ownership of systems rather than focusing only on roadmap features.
    • Evaluate emerging security challenges involving AI and agentic systems, and help establish appropriate safeguards as AI capabilities become increasingly integrated into engineering workflows.
    • Requirements

      • 8+ years of experience in security engineering, with demonstrated Staff-level impact through architecture, strategic initiatives, technical leadership, and mentorship.
      • Deep expertise in Kubernetes security, including network policy orchestration, admission control technologies such as Kyverno, and container hardening.
      • Strong experience with threat modeling applications built with technologies such as Node.js, TypeScript, Python, or Go.
      • Proven ability to establish secure SDLC practices and CI/CD security controls using GitHub Actions, including artifact validation and pipeline integrity.
      • Hands-on experience securing infrastructure-as-code, particularly Terraform, and managing enterprise secrets through AWS Secrets Manager, Vault, or comparable platforms.
      • End-to-end experience managing vulnerability programs, from initial triage and risk assessment through production remediation and verification.
      • Ability to operationalize compliance frameworks such as HITRUST and SOC 2 into pragmatic, engineering-friendly technical controls.
      • Excellent written and verbal communication skills, with the ability to influence technical roadmaps and communicate effectively in a remote, asynchronous environment.
      • Proficiency with AI tools and techniques, including prompt engineering, multiple large language model platforms, and AI-powered workflow automation.
      • Hands-on familiarity with AWS, Docker, EKS, CrowdStrike, Jamf, Okta, GuardDuty, Sumo Logic, Kyverno, Karpenter, KEDA, VPA, Velero, Crossplane, GitHub Actions, Terraform, Helm, ArgoCD, Atlantis, PostgreSQL, Redis, and Kafka is valuable.
      • Experience securing autonomous agentic systems, tool-calling frameworks, indirect prompt injection risks, or human-in-the-loop controls is a strong advantage.
      • Knowledge of Model Context Protocol security, including context isolation, sandboxing, and identity propagation between LLMs and private data sources, is a plus.
      • Familiarity with the NIST AI Risk Management Framework, OWASP Top 10 for LLMs, VPN administration, enterprise network security, or dependency management tools such as Renovate and Dependabot is beneficial.
      • Strong TypeScript, Go, or Node.js experience is advantageous.
      • Must be eligible to work in the United States and reside and work in the continental U.S.
      • Benefits

        • Fully remote work within the continental United States.
        • Opportunity to work on security infrastructure supporting large-scale healthcare data exchange.
        • High degree of autonomy and ownership within a small, senior security team.
        • Opportunity to influence engineering architecture, security standards, and technical roadmaps.
        • Collaborative, transparent, and asynchronous working environment.
        • Exposure to modern cloud-native technologies, Kubernetes, infrastructure automation, and emerging AI security challenges.
        • Mission-driven environment focused on protecting sensitive healthcare data and enabling secure technology innovation.
        • Commitment to diversity, inclusion, and an open engineering culture.
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,634 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
$185k – $260k per year • Remote • Full-Time • 8+ years exp • Bachelor's Degree
DevOps
AWS
CI/CD
GCP
Kubernetes
GitHub
Cybersecurity
Clair
Dependabot
OWASP Top 10
OWASP ZAP
Snyk
Trivy
Apply
$110k – $131k per year • Remote • Full-Time • 10+ years exp • Bachelor's Degree
DevOps
AWS
Incident Management
VMWare
Apply
$169k – $321k per year (Estimated) • In office • 8+ years exp • Bachelor's Degree • Phoenix
AI/ML
AI Agents
Anomaly Detection
LLM Guardrails
DevOps
AWS
Kong
Amazon S3
API Gateway
Cybersecurity
Zero Trust
Apply
$105k – $252k per year • Remote • Full-Time • 18+ years exp • Bachelor's Degree
Python
Java
Java
Gradle
DevOps
Ansible
AWS
CI/CD
CloudFormation
Configuration Management
Docker
GitHub Actions
GitLab CI
Helm
Jenkins
Kubernetes
Platform Engineering
Terraform
GitHub
GitLab
Cybersecurity
Sonatype Nexus IQ
Management
Confluence
Jira
Apply
$54k – $175k per year (Estimated) • Remote • Full-Time
JavaScript
Node JS
TypeScript
Frontend
React.js
Sass
DevOps
AWS
CI/CD
Docker
Kubernetes
Rest API
Apply
$185k – $260k per year • Remote • Full-Time • 8+ years exp • Bachelor's Degree
DevOps
AWS
CI/CD
GCP
Kubernetes
GitHub
Cybersecurity
Clair
Dependabot
OWASP Top 10
OWASP ZAP
Snyk
Trivy
Apply
$98k – $132k per year • Remote • Full-Time • 5+ years exp • Bachelor's Degree
Python
R
SQL
Databases
Databricks
Snowflake
AI/ML
Embeddings
LangChain
LangGraph
LLM
NumPy
Pandas
Scikit-learn
Spark
TensorFlow
Transformers
Hugging Face
RAG
Analytics
Matplotlib
Seaborn
Apply
$98k – $132k per year • Remote • Full-Time • 5+ years exp • Bachelor's Degree
Python
R
SQL
Databases
Databricks
Snowflake
AI/ML
Embeddings
LangChain
LangGraph
LLM
NumPy
Pandas
Scikit-learn
Spark
TensorFlow
Transformers
Hugging Face
RAG
Analytics
Matplotlib
Seaborn
Apply
$98k – $132k per year • Remote • Full-Time • 5+ years exp • Bachelor's Degree
Python
R
SQL
Databases
Databricks
Snowflake
AI/ML
Embeddings
LangChain
LangGraph
LLM
NumPy
Pandas
Scikit-learn
Spark
TensorFlow
Transformers
Hugging Face
RAG
Analytics
Matplotlib
Seaborn
Apply
$98k – $132k per year • Remote • Full-Time • 5+ years exp • Bachelor's Degree
Python
R
SQL
Databases
Databricks
Snowflake
AI/ML
Embeddings
LangChain
LangGraph
LLM
NumPy
Pandas
Scikit-learn
Spark
TensorFlow
Transformers
Hugging Face
RAG
Analytics
Matplotlib
Seaborn
Apply
See all jobs
This is one of many
368,634 more open roles from verified company boards, updated every day.