Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Staff, Security Engineer (App & Product Sec)

Sprinter Health

About Sprinter Health

At Sprinter Health, our mission is reimagining how people access care by bringing it directly to their homes. Nearly 30% of patients in the U.S. skip preventive or chronic care simply because they can't get to a doctor's office. For many, the ER becomes their first touchpoint with the healthcare system, driving over $300B in avoidable costs every year.

By using the same technologies that power leading marketplace and last-mile platforms, we deliver care where people are, especially those who need it most. So far, we've supported more than 2 million patients across 22 states, completed 130,000+ in-home visits, and maintained a 92 NPS. Our team of clinicians, technologists, and operators has raised over $125M from investors like a16z, General Catalyst, GV, and Accel and enjoys multi-year runway.

About the Role

We're looking for a Staff Security Engineer to be Sprinter's first dedicated security hire and help build the foundation for how security scales across the company.

This is a high-ownership role for someone who can operate strategically and hands-on. You'll define our security roadmap, strengthen our cloud and application security posture, support HIPAA, SOC 2, and HITRUST readiness, and partner closely with engineering, product, IT, legal, operations, and leadership to make security a core part of how we build and operate.

As our first security function hire, you will not just execute against an existing program. You'll help decide what the program should be. That includes designing controls, implementing tools, driving vulnerability management, supporting partner security reviews, improving IAM, embedding security into the SDLC, and helping Sprinter make smart risk decisions as we scale.

This role is ideal for someone who wants to build a security function from the ground up in a high-growth, mission-driven healthcare company.

Office Location

We are a hybrid company based in the Bay Area with offices in both San Francisco and Menlo Park. For this role, we are also open to considering remote candidates. We will give priority to candidates who are based in or open to working from the San Francisco Bay Area.

What you will do
  • Build and lead Sprinter's security program as the company's first dedicated security hire
  • Define and execute a practical security roadmap across cloud infrastructure, application security, compliance, identity, vendor risk, and incident readiness
  • Design, implement, and maintain security controls that support HIPAA, SOC 2, and HITRUST requirements
  • Partner with legal, product, IT, engineering, and operations teams to ensure ongoing audit readiness and compliance maturity
  • Improve security across AWS and GCP environments, including IAM, networking, encryption, secrets management, and cloud-native application security
  • Evaluate and implement security tooling for vulnerability management, cloud security posture management, security monitoring, DAST, and related needs
  • Lead vulnerability management efforts across applications, infrastructure, cloud environments, and third-party systems
  • Coordinate penetration testing efforts, work with external security partners, and drive remediation with engineering teams
  • Embed security into the software development lifecycle through secure design reviews, CI/CD checks, developer guidance, and pragmatic security standards
  • Own or support partner, customer, and vendor security reviews, including questionnaires, risk assessments, and remediation planning
  • Strengthen identity and access management across internal systems, applications, and cloud environments
  • Develop clear security policies, procedures, documentation, and reporting for internal teams and senior leadership
  • Advise on AI security best practices as Sprinter adopts and builds AI-enabled systems, including data handling, model risk, application security, and privacy controls
  • Build strong working relationships across teams so security is viewed as a partner to the business, not a blocker
What you have done
  • Spent 8+ years in security engineering, cloud security, application security, infrastructure security, DevSecOps, or related roles
  • Built or meaningfully scaled a security function, security program, or major security domain in a high-growth environment
  • Operated as a senior technical owner for security across engineering, infrastructure, product, IT, and compliance stakeholders
  • Worked hands-on with cloud security in AWS, GCP, or similar cloud environments
  • Implemented security controls that support compliance frameworks such as HIPAA, SOC 2, HITRUST, ISO 27001, or similar
  • Led vulnerability management, penetration testing coordination, remediation workflows, and security assessments
  • Partnered with engineering teams to embed security into architecture, development, CI/CD, and production operations
  • Worked with identity and access management systems such as Okta, Auth0, SSO, MFA, RBAC, or related tooling
  • Evaluated, selected, or implemented security tools such as SIEM, DAST, vulnerability scanners, CSPM, endpoint security, or monitoring platforms
  • Used scripting or infrastructure-as-code tools such as Python, Bash, Terraform, or similar to automate security workflows
  • Communicated security risks, tradeoffs, and priorities clearly to technical and non-technical stakeholders
  • Made practical risk decisions in environments where speed, ambiguity, compliance, and security all matter
What gives you an edge
  • You've been the first security hire or an early security leader at a startup
  • You've built security programs in healthcare, fintech, insurance, logistics, marketplace, or other regulated or operationally complex environments
  • You have deep experience with HIPAA, SOC 2, HITRUST, or healthcare security and privacy requirements
  • You've supported customer, partner, or enterprise security reviews in a B2B or healthcare environment
  • You've helped prepare for or lead security audits and compliance assessments
  • You have experience with AI security, including secure AI application development, model risk, data privacy, adversarial risk, or AI governance
  • You've worked closely with product and engineering teams to make security usable, scalable, and developer-friendly
  • You have experience with container security, Kubernetes, network security, endpoint security, or encryption standards
  • You hold certifications such as CISSP, CISM, AWS Certified Security Specialty, CEH, or similar
The Interview Process

We aim to complete the interview process within 2-3 weeks. It will usually consist of:
  • Recruiter Screen: Background fit, motivation, and compensation alignment
  • Hiring Manager Interview: Security leadership, technical depth, and first-of-function experience
  • Technical Interview: Cloud security, application security, compliance, vulnerability management, and security architecture
  • Cross-Functional Interview: Collaboration style and ability to partner with engineering, product, IT, legal, and operations
  • References: Validation of performance, judgment, and working style
What we offer
  • Meaningful pre-IPO equity
  • Medical, dental, and vision plans 100% paid for you and your dependents
  • Flexible PTO + 10 paid holidays per year
  • 401(k) with match
  • 16-week parental leave policy for birthing parent, 8 weeks for all other parents
  • HSA + FSA contributions
  • Life insurance, plus short and long-term disability coverage
  • Free daily lunch in-office
  • Annual learning stipend
  • Relocation assistance
Our Technology Stack
  • AWS
  • GCP
  • Terraform and infrastructure-as-code tooling
  • TypeScript
  • Python
  • Bash
  • CI/CD systems
  • Okta
  • Auth0
  • SIEM, DAST, vulnerability management, and cloud security tooling
  • Identity, access, and secrets management systems
  • Cloud networking and infrastructure tooling
  • Container and deployment systems
  • Serverless AWS, including AppSync, DynamoDB, Lambda, Amplify, CloudFormation, and Node
  • GraphQL
  • React Native and React Native for Web
Equal Opportunity Statement

Sprinter Health is an equal opportunity employer. We value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, disability status, or other protected classes.

Beware of recruitment fraud and scams that involve fictitious job descriptions followed by false job offers.

If you are applying for a job, you can confirm the legitimacy of a job posting by viewing current open roles on our official Sprinter Health Careers website. All legitimate job postings will require an application to be made directly on our official Sprinter Health Careers website. Job-related communications will only be sent from email addresses ending in @sprinterhealth.com. Please ensure that you're only replying to emails that end with @sprinterhealth.com.
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Staff, Security Engineer (App & Product Sec) in United States vacancy
  •  ...Staff Security Engineer Our mission is to transform high finance by making capital markets faster...  ...rapidly growing, global client base, proven product-market fit, and backing from world-...  ...testing experience across web apps, APIs, cloud environments, and ideally... 
    Application

    Rogo AI

    New York, NY
    1 day ago
  • $276k - $320k

     ...while preserving privacy. Our products make this possible: the Orb...  ...proves it privately, and World App enables and distributes the...  ...software, AI, cryptography, mobile engineering, and global operations. Our...  .... About The Team The Security team at Tools for Humanity... 
    Application
    Flexible hours

    Tools for Humanity

    San Francisco, CA
    6 hours ago
  • $230k - $275k

     ...fast as possible. Zipline’s security problems aren’t “website got...  ...hats, and collaborates across engineering disciplines. You’ll join a small...  ...Think: “obedient intern with production credentials.”) Industry...  ...multiple engineering domains (web app + cloud infra + embedded/... 
    Application
    Internship
    Work at office
    Local area

    Namely

    South San Francisco, CA
    4 days ago
  • $180k - $247.5k

    Secure Every Identity, from AI to Human Identity is the key to unlocking the potential...  ...—anywhere, on any device or app. Our Workforce and Customer Identity...  ...where Identity belongs to you. The Staff Product Security Engineer Opportunity The Security team's mission... 
    Application
    Local area
    Worldwide
    Flexible hours

    Okta, Inc.

    San Francisco, CA
    2 days ago
  • $50 per hour

     ...biology. About This Role Crusoe Security & Compliance is hiring a Senior/Staff Application Security Engineer to play a critical role in...  ...security posture, making our products safer and our customers' data...  ...reimbursement Subscription to the Calm app MetLife Legal Company paid... 
    Application
    Temporary work

    ProducePay

    San Francisco, CA
    3 days ago
  • $180k - $240k

     ...6 million parents and kids with our award-winning banking app for families. With Greenlight, parents can automate allowance...  ...We are seeking a seasoned and highly accomplished Senior Staff Product Security Engineer to join our security leadership team. This is a senior... 
    Application
    Work at office
    Local area
    Remote work
    Work from home
    Flexible hours
    Day shift

    Greenlight Financial Technology

    Atlanta, TX
    5 days ago
  •  ...Staff Product Security Engineer Product Security at Chainalysis keeps our SaaS platform — used by governments, banks, and crypto exchanges to investigate financial crime — secure by design. We partner directly with product and platform engineering on threat modeling... 
    Application
    Remote work

    Chainalysis Inc.

    United States
    2 days ago
  • $170k - $231k

     ...Staff Product Security Engineer United States - Remote Chainguard is the trusted source for open source. By delivering hardened, secure, and production-ready builds of all the open source software engineers and AI agents rely on, Chainguard helps organizations build... 
    Application
    Local area
    Remote work
    Flexible hours

    Chainguard

    United States
    1 day ago
  • $200k - $275k

     ...A leading financial technology company is seeking a Security Engineer to ensure security in the product development lifecycle. This remote role involves threat modeling, source code reviews, and vulnerability management. Ideal candidates should have expertise in web application... 
    Application
    Remote work

    Affirm

    Minneapolis, MN
    6 hours ago
  • $225k - $275k

     ...hidden fees or compounding interest. Affirm values information security as a critical part of the company’s continued success. Our mission...  ..., enabling the company to succeed in building honest financial products. The Security team posture increases security and reduces risk... 
    Application
    Work at office
    Remote work
    Flexible hours

    Affirm

    Austin, TX
    10 days ago
  •  ...A fintech company is looking for a professional to enhance security measures in product development. This role focuses on conducting threat modeling, conducting architecture reviews, and ensuring that security best practices are incorporated throughout the product lifecycle... 
    Application
    Remote work

    Affirm

    Boise, ID
    6 hours ago
  • $180k - $200k

     ...testing, deployments, application security, reliability, compliance, and...  .... About the Role Product Security is responsible for...  ...developing partnerships with engineering and product teams to accelerate...  ...security by design. The Staff Product Security Engineer is... 
    Application
    Local area
    Immediate start
    Remote work
    Shift work

    Harness

    United States
    2 days ago
  • $200k - $275k

     ...A leading technology company is seeking a Security Engineer to enhance product security throughout the development lifecycle. This role involves threat modeling, reviewing code for vulnerabilities, and automating security processes. Candidates should have a deep understanding... 
    Application
    Remote work
    Flexible hours

    Affirm

    San Jose, CA
    4 days ago
  • $200k - $275k

     ...A leading financial technology company is seeking a security expert to partner with product teams, conduct threat modeling, and review product source code. This remote role requires expertise in web application architecture, cloud services, and experience with security... 
    Application
    Remote work

    Affirm

    Doral, FL
    5 days ago
  •  ...collaborative; turn zerotoone ideas into real products, and you "get stuff done" end-to-...  ...team Airwallex's Information Security team partners closely with engineering, IT, and other stakeholders to...  ...a blocker. Your role As a Staff Product Security Engineer at... 
    Application
    Worldwide

    Airwallex

    San Francisco, CA
    3 days ago
  •  ...delivered for millions of patients worldwide. We're a team of engineers, clinicians, and innovators united by one purpose: to make...  ..., you'll find your purpose here. Job Description Staff Product Security Engineer At Intuitive, we are united behind our... 
    Application
    Local area
    Worldwide
    Flexible hours

    Intuitive

    Sunnyvale, CA
    6 hours ago
  • $200k - $250k

    A financial technology firm is seeking a security expert to partner with product teams and integrate security into the development lifecycle. Ideal candidates will have a deep understanding of web application architecture, experience with modern software development, and... 
    Application
    Remote work

    Affirm

    Chicago, IL
    3 days ago
  • $217k - $303.9k

     ...one of the internet's largest sources of information. For more information, visit redditinc.com. Reddit is hiring a Staff Product Security Engineer to make the secure path the easiest path for engineers and AI agents. You'll lead the design and delivery of secure... 
    Application
    For contractors
    Work experience placement
    Remote work

    Reddit

    United States
    2 days ago
  • $105k - $155k

     ...enabling companies to improve operations, create better products, and empower people in all aspects of their business....  ..., we don't just imagine a better world, we enable it. Staff Product Security Engineer You'll be responsible for helping secure PTC by providing... 
    Application
    Work at office
    Local area
    Immediate start
    Remote work
    Flexible hours

    PTC

    United States
    2 days ago
  • $250k - $285k

     ...Staff Product Security Engineer Crusoe is on a mission to accelerate the abundance of energy and intelligence. As the only vertically integrated AI infrastructure company built from the ground up, we own and operate each layer of the stack — from electrons to tokens... 
    Application
    Temporary work

    Crusoe

    San Francisco, CA
    1 day ago
  •  ...uncharted. By combining our expertise across connectivity, AI, security and more, we'll map a new way forward. Working together,...  ...sustainable for everyone. Role Summary: As the Product Security Engineer, you will work closely with the product security organization... 
    Application
    Full time
    Contract work
    Local area

    Rivian and Volkswagen Group Technologies

    Palo Alto, CA
    2 days ago
  • $140.4k - $168.5k

    Senior Staff Product Security Engineer Business Unit: Draeger Medical Systems, Inc., Job-ID: 1099 Location: Andover Function: R&D Work Location: Hybrid Employment Type: Permanent The Job Responsibilities We are hiring a Senior... 
    Application
    Permanent employment
    Temporary work
    Work at office
    Flexible hours

    Draeger Safety , Inc.

    Andover, MA
    6 hours ago
  • $220k - $330k

    Role Overview As a Staff Software Engineer on the Product Security team at Harvey, you'll play a critical role in shaping how security is built into our AI platform from the ground up. We store and process our customers’ most sensitive data, and as a result, security is... 
    Application
    Work experience placement

    Harvey

    New York, NY
    3 days ago
  • $217k - $303.9k

    Tensec is seeking a Staff Product Security Engineer in San Francisco, California. The role involves leading the design of secure frameworks and integrating security into engineering workflows. Candidates should have over 8 years of experience in software or application... 
    Application
    Remote job

    Tensec

    San Francisco, CA
    1 day ago
  •  ...uncharted. By combining our expertise across connectivity, AI, security and more, we’ll map a new way forward. Working together,...  ...and more sustainable for everyone. Role Summary: As the Product Security Engineer, you will work closely with the product security... 
    Application
    Full time
    Flexible hours

    Rivian and Volkswagen Group Technologies

    Palo Alto, CA
    5 days ago
  •  ...Hybrid (2-3 days/week in-office) Team: Information Security Please note: We are unable to offer Visa...  ...that make trust and safety intrinsic to every product experience. We’re looking for a Staff Product Security Engineer to lead the transformation of complex security... 
    Application
    Work at office
    Shift work
    2 days per week
    3 days per week

    Bumble Inc.

    Austin, TX
    3 days ago
  • €4,000 per month

     ...Staff Security Engineer Bloomreach is building the world's premier agentic platform for personalization...  ...autonomous search mainstream, making product discovery more intuitive and...  ...Subscription to Calm - sleep and meditation app.* We organize 'DisConnect' days where... 
    Application
    Full time
    Immediate start
    Remote work
    Flexible hours

    bloomreach

    United States
    2 days ago
  •  ...started.We are a small, profitable, and product-led team that values craftsmanship and...  ...their best work. As our first Principal Security Engineer , you will own the security posture for...  ...penetration testing (network and web app).Proficiency in scripting (Python/Bash)... 
    Application
    Full time
    Work at office
    Relocation

    Topaz Labs

    Dallas, TX
    4 days ago
  • $200k - $300k

     ...Radar Red Team Security Engineer Radar is the global leader in geolocation...  ...side APIs. Our Protect product enforces precise jurisdictional...  ...two molds, technically: either Staff level expertise in one stack,...  ...Radar mobile & web SDKs, desktop apps and server side APIs.... 
    Application
    Full time

    RADAR

    New York, NY
    2 days ago
  • $140k - $200k

     ...About the Role: We're hiring a Staff Security Engineer, a senior, polyglot, full-stack Application...  ...to fix them. You will partner with product and engineering teams to champion secure...  ...offensive skills) and implement fixes across app and infra codebases (defensive skills).... 
    Application
    Work at office
    Remote work
    Visa sponsorship
    Work visa
    Flexible hours

    Locatee Ag

    United States
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Staff, Security Engineer (App & Product Sec). Be the first to apply!