Senior Security Engineer
$128.13k - $180.99kGrand Rounds Inc.
Senior Security Engineer
The Senior Security Engineer is a hands-on, high-impact technical role responsible for designing, implementing, and automating robust security controls across our application stack and cloud environments (primarily AWS, with GCP considerations). You will strengthen our end-to-end security posture by proactively identifying and remediating vulnerabilities, developing advanced security solutions across the SDLC through production, and building scalable automation using Python, Go, Terraform, and Tines. Your work will directly contribute to the prevention of unauthorized PHI access and exfiltration, helping us evolve toward a proactive defense model.
This is a remote role reporting to the Senior Manager, Security Engineering and plays a critical role in advancing our overall security maturity and resilience.
Responsibilities:
- Design, build, and implement Just-in-Time (JIT) access controls and Privileged Access Management (PAM) workflows to eliminate standing privileged accounts in production.
- Conduct platform permission reviews and implement a least-privilege access model for cloud and application roles.
- Ensure 100% of production access requests and approvals are captured in audit logs.
- Lead the implementation, tuning, and operation of security tools in the CI/CD pipeline, including SAST, DAST, SCA, and secrets scanning.
- Develop custom SAST rules to detect specific, high-risk flaw patterns, such as authorization bypasses or insecure PII/PHI handling.
- Partner with engineering to deploy IDE plugins and automated PR checks that block sensitive data exposure before deployment.
- Conduct manual security code reviews for high-risk features and cryptographic implementations.
- Design, build, and maintain automation for the end-to-end vulnerability management lifecycle.
- Engineer automated workflows to triage, validate, and assign new vulnerabilities
- Develop and maintain security automation scripts, tools, and services in Python or Go to streamline security operations and compliance checks.
- Partner with SecOps to build high-fidelity SIEM correlation rules and automated response playbooks.
- Design, implement, and maintain encryption strategies for data at rest and in transit, ensuring PHI is protected in compliance with HIPAA.
- Manage the cryptographic key lifecycle and administer key management systems
- Design and implement secure cloud network architectures (VPCs, subnets, security groups, NACLs) and network segmentation strategies.
- Lead the remediation of cloud security findings
- Implement and manage a centralized security control plane
- Design and implement Data Loss Prevention (DLP) policies for endpoints and cloud services to protect against sensitive data exfiltration.
- Design and enforce security configurations and hardening standards for diverse operating systems (macOS, Windows, Linux) via MDM/UEM platforms.
- Manage and tune endpoint security solutions, including EDR/XDR (e.g., CrowdStrike).
- Lead threat modeling sessions for new features and conduct secure design reviews of system architectures, applications, and APIs.
- Act as an embedded security partner and subject matter expert for product and platform teams, providing technical guidance and mentorship.
- Develop and manage security programs for emerging risks, including SaaS security and AI security.
Required Qualifications:
- 6+ years of experience in security engineering, with hands-on expertise in both application security and cloud security (AWS strongly preferred).
- Strong proficiency in at least one scripting or programming language (Python or Go preferred) for security automation.
- Demonstrable experience in two or more of the following core areas: 1) Application & SDLC Security, specifically with SAST, DAST, and SCA tools (e.g., Semgrep, Snyk, Burp Suite) and CI/CD automation; 2) Security Automation & Engineering using SOAR platforms (e.g., Tines) and Terraform; 3) Cloud Security (AWS/GCP) with a focus on designing secure cloud-native services (VPCs, IAM, WAF, CSPM); 4) Identity & Encryption, including JIT access controls, PAM, and cryptographic key lifecycles; or 5) Endpoint & Data Security utilizing EDR/XDR, DLP, and MDM solutions.
- Experience securing containerized environments (Docker, Kubernetes).
- Previous experience in healthcare, fintech, or other highly regulated industries
- Excellent communication skills, with the ability to explain complex security risks to both technical and non-technical stakeholders.
Preferred Qualifications:
- Experience with mobile application security (iOS/Android).
- Familiarity with AI security principles and governing LLM usage.
- Experience building or managing a SaaS security (SSPM) program.
- Background in software development, DevOps, or Site Reliability Engineering.
- Experience with incident response, threat hunting, and forensics.
- Relevant security certifications such as: CISSP, GIAC certifications (GWAPT, GPEN, GCIH), AWS Certified Security – Specialty or GCP Professional Cloud Security Engineer, OSCP, CEH, or other offensive security certifications
- Contributions to open-source security projects or active participation in the security community
Physical/Cognitive Requirements:
- Capability to remain seated in a stationary position for prolonged periods.
- Eye-hand coordination and manual dexterity to operate keyboard, computer and other office-related equipment.
- Capability to work with leadership, employees, and members in an appropriate manner.
Pay:
The United States new hire base salary target ranges for this full-time position are:
Zone A: $128,130 - $180,990+ equity + benefits
Zone B: $140,943 - $199,089 + equity + benefits
Zone C: $153,756 - $217,188 + equity + benefits
Zone D: $166,569 - $235,287 + equity + benefits
This range reflects the minimum and maximum target for new hire salaries for candidates based on their respective Zone. Below is additional information on Included Health's commitment to maintaining transparent and equitable compensation practices across our distinct geographic zones.
Starting base salary for you will depend on several job-related factors, unique to each candidate, which may include education; training; skills; years and depth of experience; certifications and licensure; our needs; internal peer equity; organizational considerations; and understanding of geographic and market data. Compensation structures and ranges are tailored to each zone's unique market conditions to ensure that all employees receive fair and great compensation package based on their roles and locations. Your Recruiter can share your geographic zone upon inquiry.
Benefits & Perks:
In addition to receiving a great compensation package, the compensation package may include, depending on the role, the following and more:
Remote-first culture
401(k) savings plan through Fidelity
Comprehensive medical, vision, and dental coverage through multiple medical plan options (including disability insurance)
Paid Time Off ("PTO") and Discretionary Time Off ("DTO")
12 weeks of 100% Paid Parental leave
Family Building & Compassionate Leave: Fertility coverage, $25,000 for surrogacy/adoption, and paid leave for failed treatments, adoption or pregnancies.
Work-From-Home reimbursement to support team collaboration home office work
Your recruiter will share more about the salary range and benefits package for your role during the hiring process.
About Included Health
Included Health is a new kind of healthcare company, delivering integrated virtual care and navigation. We're on a mission to raise the standard of healthcare for everyone. We break down barriers to provide high-quality care for every person in every community — no matter where they are in their health journey or what type of care they need, from acute to chronic, behavioral to physical. We offer our members care guidance, advocacy, and access to personalized virtual and in-person care for everyday and urgent care, primary care, behavioral health, and specialty care. It's all included. Learn more at includedhealth.com.
Included Health is an Equal Opportunity Employer and considers applicants for employment without regard to
- ...the U.S. Department of State's Bureau of Diplomatic Security (DS) - Training - Technical Security Engineering. The Advisor will play a critical role in refining... ...Security. Demonstrated track record of engagement with senior-level DS personnel and contract leadership....SeniorContract workWork at office
$111.12k - $130.73k
...Work Schedule: Monday - Friday, 8 a.m. - 5 p.m. Summary The Senior IT Security Associate serves as a critical bridge between security architecture and engineering execution, driving the configuration, deployment, and operational maturity of enterprise...SeniorMonday to Friday- ...AI Security Engineer Join the team redefining how the world experiences design. Hey, g'day, mabuhay, kia ora, hallo, vítejte! Thanks for stopping by. We know job hunting can be a little time consuming and you're probably keen to find out what's on offer, so we...SeniorWork at officeRemote workFlexible hours
- ...About TensorWave Our mission is simple: deliver seamless, secure, reliable, and resilient AI compute at scale. We've built a versatile... ...directly to the CISO and partnering with leads across Engineering, Platform, and the business, you'll be the technical linchpin...SeniorTemporary workWork at officeFlexible hoursShift work
$165k - $215k
...Senior Security Engineer, Product & Application Security Seattle, Washington, United States Who We Are The real world is the next frontier, and at Metropolis, we are creating the artificial intelligence to make it responsive. We are pioneering the Recognition...SeniorTemporary workWork at officeLocal area- ...Cloud Security Engineer Responsibilities Define and lead cloud security standards across Azure and AWS, covering identity, networking, compute, storage, and containers Design and manage security controls including CSPM, CWPP, and CIEM tooling to detect misconfigurations...Senior
- ...Developer Experience Security Engineer Motorway is rapidly growing its technology team and business, and we are looking for a Developer Experience Security Engineer to help enable a secure, scalable, and frictionless developer experience across Motorway. We have...SeniorRemote workShift work
- ...ServiceNow's leading workflow automation with Moveworks' Reasoning Engine and natural language capabilities, we deliver the AI platform... ...better for everyone. Job Description The Moveworks Security team at ServiceNow is not looking for a traditional SOC analyst...SeniorWork at officeImmediate startRemote workFlexible hours
$196k - $220.5k
...more fun for people to talk and hang out before, during, and after playing games. We are looking for an experienced Senior Enterprise Security Engineer reporting to the Engineering Manager of Enterprise Security. In this role, you will implement and maintain Discord's...SeniorFull timeWork at officeRelocationRelocation package2 days per week1 day per week$187k - $220k
...so are the rewards. The Product and Application Security team builds and operates systems that help engineers identify and resolve security risks earlier in the... ...strengthen application security across Robinhood! As a Senior Security Engineer, Application Security, you will...SeniorWork at officeFlexible hoursShift work3 days per week$195k - $240k
Here at Datadog, we think about offensive security a little bit differently. We embrace automation... ...environment, and we expect our offensive engineers to build the tooling that makes that possible. We're looking for a Senior Security Engineer who can execute sophisticated...SeniorWork at office- A technology solutions provider in Columbia, MD, is seeking a Senior Security Engineer to architect and maintain security controls across varied environments. Ideal candidates will have over 8 years of experience securing enterprise IT systems and expert knowledge of industry...SeniorFlexible hours
$1,500 - $3,000 per month
...personal and family goals with flexibility. Tulzi offers secure network systems and software engineering solutions in both public and private sectors. With... ...cycle. Clearance Required: TS/SCI Title: Senior Security Engineer Location: Columbia, MD...SeniorHourly payTemporary workLocal area- An innovative lending technology firm is seeking a Senior Security Engineer to enhance security practices and build software solutions. The role requires ownership of security initiatives, mentoring, and improving system resilience. Candidates must have strong skills in...SeniorRemote job
$165k - $242k
...Senior Security Engineer, Enterprise Security CoreWeave is The Essential Cloud for AI™. Built for pioneers by pioneers, CoreWeave delivers a platform of technology, tools, and teams that enables innovators to build and scale AI with confidence. Trusted by leading AI...SeniorTemporary workFor contractorsRemote workFlexible hours$167.5k - $226.3k
...Senior Security Engineer (AI Security) New York, New York Apply Who We Are At Justworks, you’ll enjoy a welcoming and casual environment, great benefits, wellness program offerings, company retreats, and the ability to interact with and learn from leaders in...SeniorCasual workWork at officeLocal area$139.2k - $218.4k
...developer productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital transformation.... ...or services of GitLab. An overview of this role As a Senior Security Engineer on GitLab’s Security Incident Response Team (SIRT), you will...SeniorFull timeRemote workFlexible hours- A tech consulting firm is looking for a Sr. Infrastructure Security Engineer to develop and enhance security systems across AWS, GCP, and Azure. This remote role requires expertise in cloud security and automation, with responsibilities including architecting security systems...SeniorRemote job
- B Capital in San Francisco is seeking a hands-on Senior Security Engineer to lead and scale security efforts in a rapidly growing team. You will collaborate across functions to safeguard customer data and maintain secure infrastructure. The ideal candidate has over 5 years...Senior
$150k - $200k
...Senior Security Engineer - Application Security New York, NY About the Role This is an opportunity to join K's critical InfoSec team as a Senior Security Engineer and operate with foresight in protecting our infrastructure, applications, cloud security, and customer...SeniorFull timeWork at officeLocal area- Jaide Health is seeking a Senior Security Engineer to serve as a trusted advisor, leading security operations and integrating security into the software development lifecycle. The ideal candidate will have over 5 years of experience with a focus on security tool onboarding...SeniorRemote jobFull timeFlexible hours
- ...Job Description Job Description Senior Security Engineer Houston, TX (Westchase Area) | Hybrid | Full-Time | Must Live in the Houston Area iSphere is looking for a Senior Security Engineer who enjoys building security solutions, improving security posture, and...SeniorFull timeLive in
$145.15k - $261.2k
Nintendo of America Inc in Redmond, Washington seeks a Senior Engineer specializing in IT Security. This role involves evolving security for Microsoft 365, leading Identity and Access Management operations, and improving endpoint security across various devices. The ideal...Senior- Lyft is seeking a Software Engineer with a focus on Security to join their team in Seattle. This role involves designing secure processes, improving detection pipelines, and collaborating with various teams. The ideal candidate should have over 5 years of experience in...Senior
- ...Senior Security Engineer Rootshell Enterprise Technologies Inc. is a recognized provider of professional IT Consulting services in the US. We are actively seeking a Senior Security Engineer for one of our clients. Location: Boston, MA (mandatory onsite) Responsibilities...Senior
- ...Senior Network Security Engineer 2 positions San Francisco, CA Hybrid $70-80 W2 (don't offer the max rate by yourself, ask the candidate and negotiate. If you come across a rockstar candidate at higher pay still lock them and share with me) Required Skills...Senior
- ...Job Description Job Description Global Software Firm seeks a Sr Network Security Engineer. We're looking for an engineer with strong Palo Alto, F5, and WAF experience. Experience in threat hunting and pen testing would be a plus. This is a permanent direct...SeniorPermanent employmentRemote work
- ...The Senior Security Engineer serves as a critical guardian of CHA’s digital landscape. This role combines high-level technical expertise in Palo Alto Next-Generation Firewalls (NGFW), guiding a three-person security engineering team to ensure the confidentiality, integrity...SeniorWork at officeRemote work
- ...Senior Network Security Engineer This is a remote position. The Senior Network Security Engineer designs and supports robust security solutions to protect UW Medicine's network infrastructure. It involves architecting secure network configurations and monitoring performance...SeniorRemote work
- ...Everforth ECS Federal is seeking a Senior Endpoint Security Enginee r to support a mission-focused federal cybersecurity program in Washington... ...Join Everforth ECS Federal as a senior endpoint security engineer protecting mission-critical federal environments. You will...SeniorContract work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Security Engineer. Be the first to apply!
- security infrastructure engineer United States
- electronic security engineer United States
- senior cloud security engineer United States
- azure security engineer United States
- senior application security engineer United States
- java security engineer United States
- lead security engineer United States
- physical security engineer United States
- security engineering manager United States
- endpoint security engineer United States



