Who We Are
Verily Health is a data platform and technology company purpose-built to power AI-enabled precision health solutions that accelerate research and improve care for individuals and communities. Uniquely positioned at the intersection of technology, data science, and healthcare, Verily transforms multimodal health data into insights, models, and actions that make healthcare more personalized, predictive, and precise.
Description
Verily is seeking an exceptional information security engineer to support our Information Security and Privacy Risk Management function. The Information Security Engineer position combines a deep understanding of common information security technologies with a strong information security background. This individual will work closely with Verily’s Governance, Risk and Compliance team to ensure weekly/monthly/annual contractual compliance is established and maintained, especially as it relates to vulnerability management.
Responsibilities
Manage tools and inputs that are part of the Vulnerability Management program.
Track remediation tasks, engage with systems/services owners and stakeholders to ensure vulnerability management compliance.
Ensure that regulator weekly/monthly reports are provided for continual FedRAMP certifications and/or necessarily remediations (e.g., POA&M).
Apply prior understanding and experience of federal government compliance (e.g., FISMA, FedRAMP) to regularly report on process and operational readiness.
Keep abreast of new threats and vulnerabilities, and validate the risk of reported threats using vulnerability management, scanning and red team operations.
Qualifications
Minimum Qualifications
BA/BS degree in Computer Science, Engineering, Management Information Systems.
5 years of experience in the Information Security or related domain(s).
3 years experience with NIST/FedRAMP compliance audits.
Strong knowledge of cloud security architecture, web application security, Vulnerability management, and security engineering.
Excellent written and verbal communication skills.
Preferred Qualifications
Experience with FedRAMP Moderate or higher.
Experience with GCP (preferred) or AWS, and also containerized environments (Kubernetes).
Experience with vulnerability management tools such as bug bounty programs, scanning and offensive security frameworks.
Qualified applicants must not require employer sponsored work authorization now or in the future for employment in the United States.
The US base salary range for this full-time position is $165,500 - $185,500 + bonus + equity + benefits. Our salary ranges are determined by role, level, and location. The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations. Within the range, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education or training. Your recruiter can share more about the specific salary range for your preferred location during the hiring process.
Please note that the compensation details listed in US role postings reflect the base salary only, and do not include bonus or benefits.
Verily Health Inc. is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status. For our EEO Policy Statement, pleaseclick here. If you'd like more information on your EEO rights under the law, please click here.
If you have a need that requires accommodation, please let us know by completing our Accommodations for Applicants form.

