{"id":1565780,"url":"https://alion.io/job/medable-cloud-security-operations-engineer-gcpaws-remote","title":"Cloud Security Operations Engineer (GCP/AWS) - Remote","company":{"id":1977306,"name":"Medable","domain":"medable.com","url":"https://alion.io/company/medable-com","size_band":"51-200","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Workday","truth_index":{"grade":"B","score":75,"open_postings":3,"ghost_share":0,"stale_share":1,"repost_share":0,"time_to_fill_p50_days":null,"computed_at":"2026-10-04T05:45:00Z"}},"role":"Security","role_family":"Security","seniority":"middle","employment_type":"full_time","work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["United States"],"countries":["US"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":88000,"max_usd":183000,"period":"year","method":"role_seniority_country_remote_cell","sample_n":237},"experience_years_min":4,"visa_sponsorship":false,"relocation_package":false,"has_equity":true,"technologies":[{"name":"AI Agents","optional":false},{"name":"AWS","optional":false},{"name":"ChatGPT","optional":false},{"name":"CI/CD","optional":false},{"name":"CloudFormation","optional":false},{"name":"GCP","optional":false},{"name":"Grok","optional":false},{"name":"IAM","optional":false},{"name":"JavaScript","optional":false},{"name":"Kubernetes","optional":false},{"name":"Least Privilege","optional":false},{"name":"LLM","optional":false},{"name":"LLM Guardrails","optional":false},{"name":"NIST 800-53","optional":false},{"name":"OWASP Top 10","optional":false},{"name":"Python","optional":false},{"name":"SOC 2","optional":false},{"name":"Terraform","optional":false}],"status":"live","first_seen_at":"2026-06-02T00:00:00Z","employer_posted_date":"2026-06-02","last_verified_at":"2026-10-03T06:57:32Z","board_verified":true,"closed_at":null,"days_open":125,"trust":{"level":"stale","repost_count":0,"flags":["stale"],"days_open":124},"description":"Medable's mission is to get effective therapies to patients faster. We provide an end-to-end, agentic clinical trial platform with a flexible suite of tools that allows patients, healthcare providers, clinical research organizations and pharmaceutical sponsors to work together as a team in clinical trials. Our solutions enable more efficient clinical research, more effective healthcare delivery, and more accurate precision and predictive medicine. Our target audiences are patients, providers, principal investigators, and innovators who work in healthcare and life sciences.\nOur vision is to accelerate the path to human discovery and medical cures. We are passionate about driving innovation and empowering consumers. We are proactive, collaborative, self-motivated learners, committed, bold and tenacious. We are dedicated to making this world a healthier place.\n1. Responsibilities\nWork cross-functionally with Information Security Operations and Infrastructure/DevOps teams, to administer and optimize security posture across multi-cloud (GCP/AWS) infrastructure, including native security services, IAM, logging, and threat detection.\nTriage and respond to cloud security alerts and vulnerabilities; implement timely mitigations, configuration changes, and patches.\nOwn configuration and hygiene for cloud security consoles (examples: GCP Security Command Center, Cloud Logging, Cloud Armor, KMS, IAM , etc.).\nPartner with DevOps to implement secure baseline configurations and guardrails (network segmentation, least privilege, encryption, key management, secrets handling, egress controls), in alignment with industry standard frameworks such as CIS, NIST 800-53, OWASP Top 10, etc.\nRun day-to-day vulnerability workflows: detection, prioritization, remediation, and validation across cloud services, hosts, containers, and third-party dependencies.\nManage and harden security configurations for Kubernetes Engine environments, including:Cluster and node security settings, RBAC, pod security controls, network policies, admission controls, and runtime security, Image vulnerability scanning, container supply-chain controls, patch cadence and version lifecycle management for clusters/nodes and supporting components.\n\nSupport secure implementations/integrations of AI within cloud infrastructure, including:Data protection controls (PII/PHI handling, encryption, retention, audit logging).\nNetwork controls (private connectivity where feasible, egress restrictions, proxying, allowlists).\nUsage monitoring, abuse prevention, and security reviews for AI-driven features/workflows.\nContributing to internal AI security standards (prompt/data handling guidance, logging strategy, third-party risk considerations).\n\nWork cross-functionally with IS Risk and Compliance team to produce evidence and reporting to support internal security requirements and external compliance obligations (e.g., SOC 2 / ISO-aligned controls, healthcare and privacy expectations).\nParticipate in security incident response for cloud-related events, including containment and recovery actions.\nOther duties as assigned.\n2. Experience\n4+ years of hands-on experience in cloud security, DevSecOps, cloud engineering with security focus, or security operations in cloud environments or a combination of education and experience.\nExperience in healthcare technology and/or regulated environments (privacy, audit evidence, security control documentation).\nPractical experience administering security controls in GCP and AWS (IAM, logging, encryption/KMS, network security, cloud security services).\nExperience securing Kubernetes environments, including RBAC, cluster hardening, workload controls, and patch/version management.\nStrong vulnerability management experience (triage, remediation coordination, patching workflows, validation).\nExperience supporting secure integrations of LLM/AI services (e.g., ChatGPT/Grok) in production systems, including data governance and key management.\n3. Skills\nAbility to work cross-functionally between InfoSec and Infrastructure/DevOps, and translate security requirements into implementable controls.\nComfort working from tickets/alerts through to implemented changes in production cloud environments.\nComfortable writing code in any one programming language: Javascript/Python/Bash.\nFamiliarity with Infrastructure-as-Code and automation concepts (Terraform/CloudFormation, CI/CD pipelines, scripting).\n4. Education, Certifications, Licenses\nBachelor's degree in Cybersecurity, Information Technology, Computer Science or a related field preferred.\nSecurity certifications (one or more): GCP Professional Cloud Security Engineer, CISSP, CCSP, Security+.\n5. Travel Requirements\nAs required.\nAt Medable, we believe that our team of Medaballers is our greatest asset. That is why we are committed to your personal and professional well-being. Our rewards are more than just benefits - they demonstrate our commitment to providing an inclusive, healthy and rewarding experience for all our team members.\nFlexible Work\nRemote from the start, we believe in a flexible employee experience\n\nCompensation\nCompetitive base salaries\n\nAnnual performance-based bonus\n\nStock options for employees, aligning personal achievements to Medable's success\n\nHealth and Wellness\nComprehensive medical, dental, and vision insurance coverage\n\nCarrot Fertility Program\n\nHealth Saving Accounts (HSA) and Flexible Spending Accounts (FSA)\n\nWellness program (Mental, Physical and Financial)\n\nRecognition\nPeer-to-peer recognition program, celebrating achievements and milestones\n\nCommunity Involvement\nVolunteer time off to support causes you care about\n\nMedable is committed to providing reasonable accommodations for qualified individuals with disabilities in our job application procedures. If you need assistance or would like to request an accommodation due to a disability, please contact us at .","description_format":"text","description_chars":5912,"description_truncated":false,"requirements":{"experience_years_min":4,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"bachelor","optional":false},"security_clearance":false,"languages":[]},"benefits":["Flexible schedule","Insurance coverage","Stock options","Vision insurance"],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["Cloud Security","Artificial Intelligence","AI Agents","Clinical Trial Software"],"lifecycle":[{"event":"open","at":"2026-10-01T06:04:05Z"}],"visa":[{"country":"US","licensed_sponsor":true,"evidence":"green card filings: 1","filings_12m":0,"filings_prev_12m":1,"green_card_filings_12m":1,"median_offered_wage_usd":272500,"route":null,"cap_exempt":false,"checked_at":"2026-10-03T21:08:04+00:00","sources":["US Department of Labor: LCA disclosure data (H-1B, H-1B1, E-3)","US Department of Labor: PERM disclosure data (green cards)"],"filings_for_role_12m":0}],"liveness":{"score":8,"band":"cold","label":"Long shot","p_open":1,"p_active":0.292,"p_room":0.28,"age_days":124,"expected_fill_days":34,"reasons":["conf:22","win:tail","crowd:"],"computed_at":"2026-10-04T05:45:00Z"},"pay":null,"html_url":"https://alion.io/job/medable-cloud-security-operations-engineer-gcpaws-remote","json_url":"https://alion.io/job/medable-cloud-security-operations-engineer-gcpaws-remote.json","meta":{"generated_at":"2026-10-05T02:23:01Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":3152,"day_limit":5000,"remaining_today":1848,"minute_limit":60,"resets_at":"2026-10-06T00:00:00Z"}}}