Security Engineer III
$150kAspirion
Job Type
Full-time
For more than two decades, Aspirion has been a market leader in revenue cycle services, specializing in some of the most complex and high impact areas of reimbursement. From challenging denials and zero balance reviews to aged accounts receivable, motor vehicle accident claims, workers' compensation, Veterans Affairs, and out of state Medicaid, we take on the work that others cannot solve and deliver real results for our clients. At the heart of that success is our team. Our teammates are the foundation of everything we do. With more than 1,400 individuals across the organization, we are united by a shared commitment to delivering exceptional outcomes and creating meaningful impact for the hospitals and health systems we serve.
We are building a results driven environment where high performance, collaboration, and continuous growth are expected and supported. The people who thrive here bring a growth mindset, stay open to new technology, and collaborate across teams to solve problems. You will have the opportunity to work alongside a talented and driven team, engage with innovative technology, and play a direct role in solving complex challenges that matter.
Joining Aspirion means more than taking a job. It means being part of a team that is shaping the future of healthcare operations while making a measurable difference for providers and patients alike.
SUMMARY
The Security Engineer III is a senior, hands-on engineer responsible for designing, implementing, and operating security controls in our AWS cloud and Kubernetes/containerized environments. This role operates independently with minimal oversight, translating governance, risk, and compliance requirements (including HIPAA and HITRUST MyCSF) into practical guardrails, engineering standards, and automated enforcement. The Security Engineer III partners closely with Infrastructure and application teams to strengthen secure SDLC practices (code and dependency scanning, secrets detection, CI/CD policy gates), improve cloud security posture, and ensure controls are measurable, auditable, and sustainable in production.
DUTIES AND RESPONSIBILIITES
- Own cloud security engineering for AWS by defining guardrails and configuration baselines (e.g., IAM least privilege, network segmentation, encryption, logging), partnering on implementation, and driving remediation of cloud posture findings to closure.
- Engineer security controls and governance for Kubernetes and containerized workloads (e.g., EKS): define and enforce admission policies, Pod Security standards, network policies, image governance, runtime protections, and secrets management patterns; partner with platform teams on implementation within clusters and supporting IAM.
- Drive secure SDLC controls and engineering governance: integrate and operate scanning and policy gates for application code (SAST), dependencies (SCA), secrets, containers/images, and Infrastructure as Code (IaC); define practical remediation SLAs and exception/waiver workflows aligned to risk.
- Define security policies, standards, and best practices for cloud and containerized environments, and translate them into implementable guardrails and reference patterns (policy-as-code, reference configurations, and developer guidance), including encryption/key management (e.g., KMS), secrets storage, and secure workload access patterns; validate adoption and baseline compliance in partnership with Infrastructure/Platform teams.
- Partner with Compliance to align technical controls to HIPAA requirements and produce audit-ready evidence (configurations, screenshots/exports, control narratives, and remediation tracking) for cloud and container platforms.
- Improve security visibility and detection in AWS and Kubernetes: define requirements, ensure high-quality logging, and create actionable detections/alerts in partnership with the SOC/SIEM owners.
- Run vulnerability management across the stack for cloud and containerized applications: triage and prioritize findings for application code, Infrastructure as Code, container images, third-party dependencies, and OS packages; coordinate fixes with engineering/platform teams, validate remediation, and track risk-based exceptions.
- Support incident response for cloud and container security events: perform technical triage, containment support, root cause analysis, and deliver preventative engineering changes.
- Develop and maintain security-as-code standards and reusable guardrails (e.g., Terraform modules/policies) and automated checks/policy gates to enforce baseline compliance across AWS accounts and Kubernetes clusters; partner with Infrastructure/Platform teams to roll out and operationalize these controls at scale.
- Independently manage security engineering deliverables from intake through delivery: clarify requirements, design solutions, document decisions/runbooks, and communicate status/risks to stakeholders.
- Translate HITRUST MyCSF/HIPAA and internal security policies into measurable cloud and SDLC control requirements; validate control effectiveness through testing and evidence collection.
- Contribute to security tool administration and continuous improvement (e.g., cloud posture management, vulnerability scanning, CI/CD scanning tools) by tuning rules, reducing false positives, and improving developer usability.
- Participate in on-call/escalation processes as needed; maintain runbooks and support post-incident reviews and corrective actions.
- Serve as a technical resource for peers through code/config reviews, pairing, and clear documentation; help raise the security bar through pragmatic standards and guidance.
- Perform other duties as assigned.
- Hands-on AWS security engineering: strong working knowledge of IAM, networking, encryption, logging/monitoring, and common AWS services in production environments.
- Kubernetes/container security expertise: ability to secure clusters and workloads (RBAC, network policies, pod security standards, image scanning/signing, secrets, and runtime considerations).
- Cloud governance mindset: ability to translate policy and risk into guardrails, standards, and automated enforcement (policy-as-code, baseline configurations, continuous compliance).
- Secure SDLC execution: experience operating SAST/SCA and secrets scanning in CI/CD, tuning results, and driving remediation workflows with engineering teams.
- Application and IaC security: ability to review patterns and code changes for secure configuration, identify common IaC misconfigurations, and partner with engineering teams to remediate issues.
- Full-stack vulnerability fundamentals: understands container image composition (base images, OS packages), dependency risk, and remediation approaches (patching, version pinning, rebuilds) in CI/CD and runtime contexts.
- Independent operator: can take ambiguous problems from concept to implementation with minimal oversight, documenting decisions and communicating progress, risks, and tradeoffs.
- Operational security fundamentals: ability to improve logging quality, support investigations, and implement preventative fixes based on root cause analysis.
- Collaboration and influence: works effectively with DevOps and developers to drive adoption of security standards without blocking delivery.
- Regulated environment awareness: understands what "audit-ready" looks like and can implement and evidence controls in HIPAA-regulated environments.
- Clear written communication: produces runbooks, implementation notes, and control evidence that is understandable to engineering, security, and compliance stakeholders.
- Comfort operating in ambiguity with high ownership, prioritizing effectively, and delivering measurable outcomes.
- 5+ years in security engineering, cloud infrastructure, DevOps, or related technical roles, with significant hands-on responsibility securing production AWS environments.
- Demonstrated experience implementing and improving cloud security posture (guardrails, standards, continuous compliance, vulnerability management) with measurable remediation outcomes.
- Strong AWS IAM skills (roles/policies, least privilege design, identity federation, service roles) and experience implementing secure access patterns for humans and workloads.
- Hands-on Kubernetes/container security experience, including implementing secure cluster/workload configuration and image governance in a production containerized environment.
- Experience implementing and evidencing security controls in regulated environments (HIPAA required), including encryption/key management, logging retention, and change/audit trails.
- Experience supporting incident response for cloud/workload security events, including investigation support, containment actions, and post-incident remediation.
- Automation and IaC experience (e.g., Python/Bash; Terraform) and familiarity with implementing policy-as-code and continuous compliance checks.
- Experience assessing and improving security for application code and IaC (e.g., Terraform/CloudFormation/Kubernetes manifests), including code review support, scanning, and remediation guidance.
- Experience managing container security vulnerabilities end-to-end, including image scanning, base image/OS package patching strategies, rebuild processes, and validation of remediations in deployment pipelines.
- Demonstrated experience implementing secure SDLC controls in CI/CD (e.g., GitHub Actions/Jenkins/GitLab), including SAST/SCA, container image scanning, secrets scanning, pipeline gates, and actionable remediation workflows.
- Experience operating in regulated environments (HIPAA required); familiarity with NIST and/or HITRUST is strongly preferred.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or related field preferred (or equivalent practical experience).
- Security and cloud certifications preferred: AWS Certified Security - Specialty or AWS Solutions Architect, Certified Kubernetes Security Specialist (CKS) or equivalent, and/or CISSP/CCSP (or ability to obtain within an agreed timeframe).
Salary Description
$150,000 a yr
Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Security Engineer III in Durham, NC vacancy
$98.7k - $183.3k
...Job Description Summary Step into a pivotal engineering role where your expertise directly shapes the future of advanced manufacturing. As a Process Engineer III, you will provide engineering, validation, and maintenance support for process manufacturing equipment...SuggestedRelocation package- ...Security Incident Detection Engineer We are seeking a Security Incident Detection Engineer with deep Splunk and Splunk Enterprise Security experience to support detection engineering, incident visibility, and security monitoring across the Webex cloud service environment...Suggested
$137k - $200.5k
...This is a hybrid role at the RTP, NC office. Meet the Team We are the CCPS IDR (Intrusion Detection & Response) team. A security engineering group within Cisco's Webex & Collaboration Cloud Platform Security organization. Our mission is to ensure every meaningful...SuggestedFull timeTemporary workWork at officeLocal areaFlexible hours- ...Automation Engineer III Location: Durham, NC, US Company: oxfordbiom Join Us in Changing Lives At OXB, our people are at the heart of everything we do. We're on a mission to enable life-changing therapies to reach patients around the world—and we're looking for...SuggestedFor contractorsWorldwide
- ...Validation Engineer III Location: Durham, NC, US Company: oxfordbiom Join Us in Changing Lives Full time, On-site At OXB, our people are at the heart of everything we do. We're on a mission to enable life-changing therapies to reach patients around the world—and we...SuggestedFull timeRemote work
$98.7k - $183.3k
...a role where your expertise directly enables life-changing therapies to reach patients safely and efficiently. As a Validation Engineer III, you will play a critical role in bringing manufacturing systems to life-leading validation efforts that ensure compliance, quality...Relocation package- ...What You'll Do Cloud Security builds scalable, automated security solutions that integrate directly into how we design and operate... ...reliable operation of Avalara's cloud platforms. We focus on engineering guardrails, developing event-driven automation, and applying cloud...
- ...Software Test Engineer Microservices & REST API Location: Raleigh, NC or Dallas, TX (4 days onsite) Duration: 12 months+ Responsibilities: # Review business requirements, software designs, functional specifications, user scenarios, and existing test coverage...Local area
- ...Labcorp is seeking a Lead Network Security Engineer - Palo Alto to join our team at our Durham, NC location! Location : Durham, NC. Applicants who live within 35 miles of Durham, NC location will follow a hybrid schedule. This schedule includes a minimum of three...Full timeTemporary workCasual workInternshipWork at officeRemote workMonday to FridayFlexible hoursDay shift3 days per week
- ...Humacyte’s initial opportunity, a portfolio of Acellular Tissue Engineered Vessel (ATEVs), is currently approved for use in vascular... ...information, visit JOB SUMMARY: The CQV Engineer II / III will be responsible for writing, execution, and summary of commissioning...Temporary workCasual workWork at officeLocal areaVisa sponsorshipWeekend work
$167k - $211.4k
...research that advances the field of AI, as it relates to networking, security, programming, human-computer interaction, or other strategic... ...to relevant teams. Serves as research strategy liaison to engineers and product managers and works collaboratively with product...Full timeTemporary workLocal areaFlexible hours- ...Senior Application Security Engineer This role has been designed as ‘Hybrid’ with an expectation that you will work on average 2 days per week from an HPE office. Who We Are: Hewlett Packard Enterprise is the global edge-to-cloud company advancing the way people...Work experience placementWork at office2 days per week
$150.3k - $195.2k
...research that advances the field of AI, as it relates to networking, security, programming, human-computer interaction, or other strategic... ...to relevant teams. Serves as research strategy liaison to engineers and product managers and works collaboratively with product...Full timeTemporary workLocal areaFlexible hours$102.17k
...clients across the country. Job Description Join the Trinnex Security Team as a Senior Cyber Security Analyst, where you will operate... ...against evolving threats. You will work closely with engineering and development teams to safeguard systems that communities depend...H1b- Trinnex is seeking a Senior Cyber Security Analyst to join their Security Team in Durham, NC. In this role, you will protect critical... ...incident response, vulnerability assessments, and collaboration with engineering teams to enhance security practices. Ideal candidates will...
$83.2k
...human life on Mars. FALL 2026 GRADUATE ENGINEER As a Graduate Engineer, you will be responsible... ...resident (e.g., green card holder), (iii) Refugee under 8 U.S.C. § 1157, or (iv)... ...for delivering commercial, national security, and NASA satellites into orbit, as well...Permanent employmentFull timeWork experience placementInternshipWorldwideRelocation- ...Network Engineer Client is seeking a Network Engineer who will support several projects at a large federal agency. This position will... ..., MD. Provides technical analysis in data center and cyber security network planning, engineering, and design. Provides analysis for...Permanent employmentWork experience placementLocal areaWeekend work
- ...Reports to: Vice-President of Information Technology JOB SUMMARY The Senior Network Engineer is responsible for the design, implementation, administration, security, and continuous improvement of the organization's enterprise network infrastructure. This role...Full timeWork at officeRemote work
- ...Organisation, organiser of the Tour de France, and the title partner of the cycling team, Team Job Description Job Title: Cisco Network Engineer Location: RESEARCH TRIANGLE PARK, NC Bill Rate: $55-60/hr on W2 Duration: Long Term Interview: Phone+ Face2Face Required Skills...
- ...team as we help shape a brighter way forward. Specialist, Engineering Services - JLL What this job involves: As a... ...activities including electrical, audio visual, coordinating with security, or other tasks as needed Required Qualifications:...Daily paidFor contractors
- ...Elements is manufacturing American rare‑earth permanent magnets for a secure, resilient future. With a focus on national security and... ...Mission Focus, Technical Excellence and Transparency. As a Network Engineer, you will design, deploy, and maintain the network...Permanent employmentContract workFor contractorsWork at officeRemote work
- A leading technology firm located in Research Triangle Park, NC, is seeking a Cisco Network Engineer. This position requires skills in troubleshooting and configuring ASR9K and CRS devices, an in-depth knowledge of IOS-XR, and proficiency in routing protocols like BGP,...Hourly pay
$67.7k - $90.27k
...our expansive fiber network and connected ecosystem. We enable secure, high‑performance connectivity across cloud, edge, and AI workloads... ..., join us today. The Role The Network Inventory GIS Engineer supports the organization’s GIS network inventory. This role is...Full timeTemporary workRemote workWork from home- Overview The Networks Engineer is responsible for designing, engineering, documenting, and implementing core network routing and switching... ..., coordinate network changes, and ensure adherence to security and change-management processes. Provide operational support, troubleshoot...
- ...Management & Compliance Business Continuity & Disaster Recovery Security & Privacy Specialties Contract Staffing (Staff Augmentation)... ...Flextrack (Vendor Management System) Job Description Network Security Engineer On behalf of our client, Procom Services is searching for a...Permanent employmentContract workFor contractorsImmediate start
$110k - $119k
Business Unit: Cubic Defense Company Details: We are seeking a highly-motivated, full-time Senior Photolithography Process Engineer onsite at our Durham, NC facility to lead the development, optimization, and scale-up of advanced photolithography-based additive manufacturing...Full time- ...Senior Cloud Systems Engineer Dynamic Work schedule - This is 5 days on site a month- in the same week then the remainder of the month is working from home. ( They can fly/drive into the office as well). If your candidate is not open to this please tell them they will...Work at officeRemote workWork from home
$79.06k - $120.13k
...grants; and prepares and distributes project updates. Prepares and/or reviews technical presentations, reports, traffic reports, engineering and construction drawings, contracts, and correspondence; maintains records, logs, and databases; reviews and analyzes...Full timeTemporary workPart timeFor contractorsLocal areaRelocation packageMonday to Friday- Azure LAN Network Proactive Testing Role Primarily focused on Azure LAN Network Proactive Testing Role, creating testing scripts. Supports critical customer so soft skills in working with important clients is desired. Required skills: Coding experience (Python and...
- ...Labcorp is seeking a Senior AWS Cloud Engineer to join our team at our Durham, NC! Location : Durham, NC. Applicants who live within... ...AWS cloud infrastructure and services with a focus on security, scalability, and operational efficiency. Provision and manage...Full timeTemporary workCasual workInternshipWork at officeMonday to FridayFlexible hoursDay shift3 days per week
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Engineer III. Be the first to apply!
Related searches
- senior cloud security engineer Durham, NC
- sr information security engineer Durham, NC
- aws cloud security engineer Durham, NC
- senior application security engineer Durham, NC
- hardware security engineer
- entry level security engineer
- lead security engineer
- electronic security engineer
- principal security engineer
- staff security engineer


