Job Description
📋 Description Build and harden internal security-sensitive tooling with engineering and operations teams Review engineers' code, focusing on systems that touch PHI Design and enforce SDLC security gates, CI/CD checks, pre-merge review, and policy-as-code Support application security reviews across platform and internal tooling Review security-related Terraform, cloud, firewall, VPN, VPC, and clinic connectivity changes Improve visibility into security posture across AWS, GCP, clinic networks, and internal apps 🎯 Requirements 6+ years in software engineering with security-focused production systems Strong programming in Python or a systems language Experience with cloud security controls Solid understanding of web app security and secure SDLC Familiarity with AWS and/or GCP Experience with Terraform or infrastructure-as-code 🎁 Benefits Flexible hours and flexible PTO Remote work Generous parental leave Comprehensive healthcare, vision and dental benefits Competitive salary and equity stake Supportive, mission-driven team with investors committed to healthcare transformation