1,333,678open jobs
78,299companies
215,107added this week
Browse all
Salary
≈ $116k – $212k per year (Estimated)
Location
Remote (United States)
Seniority
Senior · 5+ years exp
Visa
H-1B filings in 12 months: 3
Employment
Full-Time

Confirmed on the employer's own hiring board on Oct 7, 2026. First seen by Alion on Oct 6, 2026.

Overview
Company
Impact
Profile match
Unify risk adjustment and quality workflows with Reveleer's AI platform. Improve patient care and maximize performance.
Backed by Oak HC/FT

Sr. Information Security Engineer

Hybrid/Remote

About Reveleer

Reveleer delivers a unified platform spanning risk adjustment, quality improvement, clinical intelligence, and member management for health plans and provider organizations navigating the complexity of value-based care. Trusted by 80+ customer organizations nationwide, the platform integrates data, analytics, and intelligent workflow automation into one governed system designed to support traceable documentation across diagnoses, quality measures, and submissions. With regulatory expertise and transparent, human-in-the-loop AI at its core, Reveleer supports organizations working to advance care quality, strengthen documentation integrity, and sustain the operational readiness needed to navigate audits with confidence.

Position Summary

  • The Senior Information Security Engineer plays a key role in safeguarding Reveleer's cloud-based healthcare SaaS platforms, AI/ML systems, infrastructure, and customer data. This position designs, implements, and manages enterprise-grade security solutions aligned to HIPAA, HITRUST, SOC 2, NIST 800-53, and NIST AI RMF. Because Reveleer's platform relies heavily on AI and large language models to process clinical data, this role carries direct responsibility for securing AI pipelines, models, and the PHI that flows through them. The ideal candidate is a hands-on technologist with depth in cloud security, AI/LLM security, application security, DevSecOps, identity, and security automation.

Cloud and Infrastructure Security

  • Design and maintain secure architectures across AWS, Azure, and GCP, with emphasis on infrastructure-as-code security (Terraform, CloudFormation) and policy-as-code enforcement (OPA, Sentinel, AWS SCPs).
  • Implement guardrails using AWS Security Hub, GuardDuty, Macie, Inspector, Config, Azure Defender for Cloud, and native IAM controls.
  • Operate CSPM/CNAPP tooling (e.g., Wiz, Prisma Cloud, Orca) to detect misconfigurations, toxic combinations, and exposed PHI data stores.
  • Secure containerized and serverless workloads across EKS/ECS and Lambda, including image scanning, admission control, runtime protection, and least-privilege task roles.
  • Enforce network segmentation, TLS/encryption standards, and centralized key and secrets management (AWS KMS, Secrets Manager, HashiCorp Vault).

AI and Machine Learning Security

  • Partner with Data Science and AI Engineering to secure model development, training, fine-tuning, inference, and RAG pipelines that handle PHI and PII.
  • Apply the OWASP Top 10 for LLM Applications and MITRE ATLAS to threat model AI features, addressing prompt injection, insecure output handling, training data poisoning, model and data exfiltration, and excessive agency in agentic workflows.
  • Implement AI gateway, guardrail, and content-filtering controls (e.g., Bedrock Guardrails, Azure AI Content Safety, LLM firewalls) along with input/output validation, rate limiting, and prompt and completion logging for audit.
  • Govern third-party and foundation model usage: vendor security review, data residency and retention terms, zero-retention and no-training contractual controls, and BAA coverage for any AI service touching PHI.
  • Establish controls against shadow AI, including discovery of unsanctioned generative AI tools, DLP policies for AI endpoints, and enterprise-approved alternatives.
  • Secure the ML supply chain: model and artifact provenance, signed models, dependency scanning for ML libraries, notebook and MLOps platform hardening (SageMaker, Databricks, MLflow).
  • Contribute to AI governance alongside Compliance and Legal, mapping controls to NIST AI RMF, ISO/IEC 42001, HITRUST AI assurance criteria, and emerging state and federal AI regulation.

Application and SaaS Security

  • Embed security into CI/CD pipelines with SAST, DAST, SCA, secrets scanning, and IaC scanning (Snyk, StackHawk, Semgrep, etc).
  • Perform threat modeling, secure design reviews, and code reviews for microservices, APIs, and AI-enabled features.
  • Secure API and machine-to-machine authorization patterns (OAuth 2.0, OIDC, mTLS, scoped service tokens) across internal and partner integrations.
  • Manage software supply chain risk through SBOM generation, dependency governance, and artifact signing.
  • Drive penetration testing, bug bounty intake, and remediation validation; track findings to closure with Engineering.
  • Ensure PHI and PII protection across SaaS platforms through data classification, tokenization, de-identification, and DLP.

Endpoint and Identity Security

  • Manage and tune EDR/XDR platforms (Palo Alto Cortex XDR, Microsoft Defender for Endpoint), including detection engineering and response automation.
  • Implement identity security through Microsoft Entra ID, Conditional Access, PIM, and risk-based authentication; advance phishing-resistant MFA and password less adoption.
  • Govern non-human identities, service principals, workload identities, and AI agent credentials with least privilege and short-lived tokens.
  • Support Intune and MDM compliance baselines for Windows, macOS, iOS, and Android; apply CIS Benchmarks and configuration drift monitoring.
  • Operate SaaS security posture management (SSPM) for third-party app integrations and OAuth grant risk.

Security Operations and Incident Response

  • Monitor and triage alerts, investigate incidents, and coordinate response with the SOC and MDR partners.
  • Build and maintain detection content in the SIEM, including detection-as-code, log pipeline coverage, and MITRE ATT&CK mapping.
  • Develop incident response runbooks, playbooks, and forensic procedures, including scenarios specific to AI systems such as model misuse, data leakage through prompts, and compromised AI integrations.
  • Automate response and enrichment through SOAR workflows, Python, and PowerShell.
  • Participate in tabletop exercises, purple team activity, and post-incident reviews.

Governance, Risk, and Compliance

  • Support audits and evidence collection for HIPAA, HITRUST, SOC 2 Type 2, NIST 800-53, and customer security assessments; leverage compliance automation platforms.
  • Maintain asset and AI system inventories, risk registers, and remediation tracking with clear SLAs.
  • Conduct vendor and third-party risk reviews, with added scrutiny for AI subprocessors and data flows.
  • Partner with Compliance to keep technical controls, policies, and standards in alignment.
  • Contribute to security awareness and training, including secure and responsible AI use guidance for employees and engineers.

Qualifications

Required:

  • Bachelor’s degree in Computer Science, Information Security, or equivalent experience.
  • 5+ years of experience in security engineering or related technical security roles.
  • Strong knowledge of cloud-native security (AWS, Azure, GCP) and modern SaaS architectures.
  • Hands-on experience with SIEM, EDR/XDR, IAM, vulnerability management, and security automation.
  • Familiarity with HIPAA, HITRUST, NIST, and SOC 2 requirements.
  • Experience securing containerized and serverless workloads (e.g., EKS, Lambda).

Preferred:

  • Certifications such as CISSP, CISM, CCSP, AWS Security Specialty, or GIAC (GSEC, GCIA, GCIH).
  • Experience with Terraform, Ansible, or CloudFormation for infrastructure-as-code security.
  • Experience in DevSecOps pipelines and tools (e.g., Jenkins, Bitbucket).
  • Strong scripting skills (Python, PowerShell, or Bash).

Key Competencies

  • Analytical and detail-oriented with strong problem-solving skills.
  • Ability to balance business needs with risk mitigation.
  • Excellent communication skills, able to translate complex technical topics for non-technical stakeholders.
  • Collaborative team player with a proactive approach to continuous improvement.

WHAT YOU’LL RECEIVE:

  • Competitive salary
  • Medical, Dental and Vision benefits
  • 401k match
  • Generous PTO plan

Our compensation reflects the cost of labor across several US geographic markets. Pay is based on several factors including market location and may vary depending on job-related knowledge, skills, and experience.

Reveleer E-Verifies all new hires.

Reveleer is an equal opportunity employer. We do not discriminate on the basis of race, religion, color, national origin, gender, gender identity, sexual orientation, age, marital status, veteran status, disability status or genetic information, in compliance with applicable federal, state and local law.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,333,678 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
In your city
SOC Manager 2 min ago
≈ $113k – $206k per year (Estimated) • Remote (United States) • Public Trust • 8+ years exp • Washington
DevOps
AWS
IAM
Linux
Windows
TCP/IP
DNS
Cybersecurity
MITRE ATT&CK
SIEM
Apply
≈ $91k – $181k per year (Estimated) • In office • Secret • 5+ years exp • Bachelor's Degree • Charleston
DevOps
Windows
Apply
≈ $101k – $200k per year (Estimated) • In office • Secret • 8+ years exp • Bachelor's Degree • Charleston
DevOps
Splunk
GCP
Azure
AWS
Docker
Kubernetes
Apply
SIEM/SOAR Engineer 2 min ago
≈ $77k – $152k per year (Estimated) • In office • Secret • 3+ years exp • Bachelor's Degree • Charleston
Python
PowerShell
Databases
ElasticSearch
DevOps
Splunk
Kibana
Logstash
Incident Management
Linux
Cybersecurity
SIEM
Apply
≈ $75k – $148k per year (Estimated) • In office • Secret • 3+ years exp • Bachelor's Degree • Honolulu
DevOps
Splunk
Apply
≈ $95k – $205k per year (Estimated) • Hybrid • Full-Time • Orlando
Python
Java
Rust
Databases
Snowflake
Neo4j
Databricks
Apache Kafka
Google BigQuery
Amazon Redshift
Amazon Neptune
BigQuery
AI/ML
Spark
Flink
Knowledge Graph
Machine Learning
Frontend
GraphQL
DevOps
Rest API
Terraform
CI/CD
AWS
Docker
Kubernetes
Amazon Kinesis
Analytics
ETL/ELT
Apply
≈ $73k – $145k per year (Estimated) • In office • Brampton
C#
C#
.NET
Databases
PostgreSQL
Redis
TimescaleDB
RabbitMQ
Apache Kafka
DevOps
gRPC
Terraform
GCP
Helm
Jaeger
Istio
Loki
OpenTelemetry
Consul
Prometheus
Azure
CI/CD
AWS
Docker
Kubernetes
Grafana
Service Mesh
Apply
≈ $37k – $88k per year (Estimated) • Remote (Brazil) • Brazil
Python
Java
PowerShell
AI/ML
AI Agents
DevOps
Rest API
IAM
Cybersecurity
Active Directory
Management
ITSM
Apply
$133k – $250k per year • Hybrid • TS/SCI • Full-Time • 8+ years exp • Bachelor's Degree • Colorado Springs • El Segundo • Chantilly
Python
C++
MATLAB
Fortran
DevOps
Linux
SpaceTech
GMAT
Apply
QMEL Manager 1 day ago
$44k – $78k per year • In office • Full-Time • Bachelor's Degree • United States
Python
Management
Google Drive
Apply
≈ $11k – $22k per year (Estimated) • Hybrid • Full-Time • 2+ years exp • Chennai
Python
SQL
Apex
Apex
MuleSoft
AI/ML
Human-in-the-Loop
DevOps
Terraform
Git
AWS
Amazon S3
Analytics
ETL/ELT
Apply
≈ $13k – $30k per year (Estimated) • Hybrid • Full-Time • 5+ years exp • Bachelor's Degree • Chennai
Python
JavaScript
SQL
AI/ML
Copilot
Claude
ChatGPT
Human-in-the-Loop
DevOps
GitHub Actions
GitLab CI
Azure
CI/CD
Jenkins
AWS
Docker
Bitbucket
Management
Agile
QA
Cypress
Playwright
Postman
Rest-Assured
Apply
≈ $153k – $312k per year (Estimated) • Remote (United States) • Full-Time • 8+ years exp
SQL
Apex
Apex
MuleSoft
AI/ML
Human-in-the-Loop
DevOps
Terraform
CI/CD
AWS
Self-Healing
SLI/SLO/SLA
IAM
Analytics
ETL/ELT
Apply
≈ $113k – $223k per year (Estimated) • Remote (United States) • Full-Time • 2+ years exp
AI/ML
Human-in-the-Loop
Apply
≈ $73k – $163k per year (Estimated) • Remote (United States) • Full-Time • Bachelor's Degree
Python
SQL
Databases
MS SQL
AI/ML
Human-in-the-Loop
Analytics
ETL/ELT
SSIS
Apply
See all jobs
This is one of many
1,333,678 more open roles from verified company boards, updated every day.