Security Engineer
Birdi
Why Join Birdi? At Birdi, we are transforming the pharmacy experience through innovation, collaboration, and a relentless focus on patient care. We offer team members the opportunity to make a meaningful impact while working alongside talented professionals in a collaborative and entrepreneurial environment where ideas are valued and continuous improvement is encouraged.
Position Summary The Security Engineer is responsible for designing, implementing, and managing the organization's cybersecurity program, with a primary focus on software supply chain security, Identity and Access Management (IAM), permissions governance, cloud security, and compliance readiness within a healthcare environment. This role serves as a key cybersecurity leader responsible for protecting systems, applications, infrastructure, and sensitive data while supporting compliance with SOC 2 Type II, HIPAA, and industry security standards. Working closely with IT, Development, DevOps, Operations, and business stakeholders, the Security Engineer develops and maintains security controls, monitoring capabilities, policies, procedures, and awareness programs that support enterprise-wide risk management and security maturity. This role is ideal for a self-directed security professional who enjoys building programs from the ground up, improving organizational security posture, and partnering across teams to create a culture of security and compliance.
Why You'll Love Working Here
Cybersecurity Program Management & Compliance
Cybersecurity & Compliance Expertise
Pre-Employment Requirements As a condition of employment, BirdiRx requires the successful completion of a pre-employment criminal background check and drug screening. A criminal conviction does not automatically disqualify an applicant. Each case will be reviewed individually, considering the nature of the offense, its relevance to the position, and the time elapsed since the conviction. Equal Opportunity Employer
This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.
Position Summary The Security Engineer is responsible for designing, implementing, and managing the organization's cybersecurity program, with a primary focus on software supply chain security, Identity and Access Management (IAM), permissions governance, cloud security, and compliance readiness within a healthcare environment. This role serves as a key cybersecurity leader responsible for protecting systems, applications, infrastructure, and sensitive data while supporting compliance with SOC 2 Type II, HIPAA, and industry security standards. Working closely with IT, Development, DevOps, Operations, and business stakeholders, the Security Engineer develops and maintains security controls, monitoring capabilities, policies, procedures, and awareness programs that support enterprise-wide risk management and security maturity. This role is ideal for a self-directed security professional who enjoys building programs from the ground up, improving organizational security posture, and partnering across teams to create a culture of security and compliance.
Why You'll Love Working Here
- Opportunity to build and shape the organization's cybersecurity program and security roadmap.
- Exposure to cloud security, DevSecOps, compliance, risk management, and healthcare cybersecurity initiatives.
- Ability to make a meaningful impact by protecting critical systems, applications, and sensitive healthcare data.
- Collaborative environment that values innovation, continuous improvement, and operational excellence.
- Partnership opportunities with Development, DevOps, Operations, and leadership teams to drive security initiatives.
- Remote flexibility within a growing healthcare organization.
- Professional development opportunities and support for ongoing certification and career growth.
Cybersecurity Program Management & Compliance
- Research, develop, implement, and maintain comprehensive cybersecurity policies, standards, procedures, and controls.
- Lead cybersecurity efforts supporting SOC 2 Type II compliance and ongoing certification activities.
- Coordinate security control documentation, evidence collection, audit preparation, and remediation activities.
- Support HIPAA Security Rule compliance by implementing administrative, technical, and physical safeguards.
- Conduct regular reviews of security controls and identify opportunities for continuous improvement.
- Partner with internal stakeholders and external auditors to ensure compliance requirements are met.
- Conduct security risk assessments, vulnerability reviews, and threat analyses to identify potential risks and vulnerabilities.
- Develop and implement mitigation strategies aligned with regulatory requirements and industry best practices.
- Monitor security alerts, events, and threats across enterprise environments.
- Design and maintain security monitoring, threat detection, and alerting capabilities.
- Lead incident response activities, including investigation, containment, remediation, recovery, and post-incident review.
- Maintain breach response and notification processes in accordance with HIPAA and organizational requirements.
- Participate in an on-call rotation supporting critical security incidents and operational security events.
- Design, implement, and manage enterprise Identity and Access Management strategies.
- Develop and maintain role-based access control (RBAC) models and least-privilege access frameworks.
- Manage and support multi-factor authentication (MFA), single sign-on (SSO), privileged access management, and identity governance initiatives.
- Conduct periodic access reviews and user entitlement audits to ensure appropriate authorization levels.
- Develop permissions governance standards that support regulatory compliance and data protection requirements.
- Monitor and improve identity security controls across business and technology platforms.
- Establish and maintain software supply chain security programs and controls.
- Implement Software Bill of Materials (SBOM) management practices and dependency monitoring processes.
- Manage application dependency scanning, vulnerability assessments, and remediation activities.
- Collaborate with Development and DevOps teams to integrate security throughout the Software Development Life Cycle (SDLC).
- Support secure coding standards, application security testing, code review processes, and CI/CD security controls.
- Evaluate and implement tools that improve application security, container security, and software integrity.
- Design and implement security controls supporting cloud-based environments, particularly AWS.
- Assess cloud infrastructure configurations and implement security best practices.
- Support endpoint protection technologies, network security controls, firewall management, and threat prevention solutions.
- Monitor cloud and infrastructure environments for security risks and compliance concerns.
- Partner with technical teams to strengthen overall infrastructure security and resilience.
- Develop, implement, and maintain a company-wide Security Awareness Training Program.
- Deliver cybersecurity education focused on phishing awareness, social engineering defense, HIPAA requirements, and secure handling of sensitive information.
- Track employee training completion and maintain records for compliance and audit purposes.
- Conduct ongoing awareness campaigns and educational initiatives to strengthen organizational security culture.
- Ensure training content remains current with evolving cybersecurity threats and industry trends.
- Evaluate third-party vendors, business associates, and service providers for cybersecurity and compliance risks.
- Conduct security reviews and assessments of vendors handling sensitive information.
- Ensure vendor security practices align with HIPAA requirements and organizational standards.
- Support risk remediation efforts and ongoing vendor monitoring activities.
- Assist with contract reviews and security-related due diligence activities.
Cybersecurity & Compliance Expertise
- Proven experience in Information Security, Cybersecurity Engineering, or related disciplines.
- Strong knowledge of SOC 2, HIPAA Security Rule, NIST Cybersecurity Framework, CIS Controls, and related compliance standards.
- Experience implementing and managing cybersecurity programs and governance frameworks.
- Demonstrated experience preparing organizations for compliance reviews, audits, and assessments.
- Deep expertise in Identity and Access Management technologies and practices.
- Experience implementing role-based access controls (RBAC), MFA, SSO, and privileged access management solutions.
- Strong understanding of authorization, authentication, access governance, and permissions management.
- Experience conducting access reviews and access control audits.
- Experience with software supply chain security concepts and technologies.
- Knowledge of SBOM management, dependency scanning tools, vulnerability management platforms, and secure software development practices.
- Experience supporting cloud security initiatives, particularly within AWS environments.
- Familiarity with endpoint protection platforms, firewalls, and security monitoring tools.
- Strong understanding of secure SDLC and DevSecOps practices.
- Excellent verbal, written, and presentation communication skills.
- Ability to translate complex technical security concepts into understandable business language.
- Strong relationship-building skills with the ability to collaborate effectively across technical and business teams.
- Ability to influence security best practices without direct authority.
- Strong analytical, investigative, and troubleshooting abilities.
- Ability to independently identify risks and implement effective solutions.
- Excellent attention to detail and organizational skills.
- Demonstrated ability to manage multiple priorities and deadlines.
- Self-directed with the ability to work independently and take ownership of initiatives.
- Identity and Access Management (IAM) platforms
- Multi-Factor Authentication (MFA) and Single Sign-On (SSO) solutions
- Security monitoring and threat detection platforms
- Endpoint Detection and Response (EDR) technologies
- Vulnerability assessment and dependency scanning tools
- AWS cloud services and security controls
- Security awareness training and phishing simulation platforms
- Microsoft Office Suite, including Word, Excel, Outlook, and PowerPoint
- DevSecOps, CI/CD, and application security technologies
- Bachelor's degree in Information Security, Computer Science, Information Technology, or a related field; equivalent combinations of education and experience may be considered.
- Minimum three (3) to five (5) years of experience in cybersecurity, information security, or security engineering roles.
- Demonstrated experience implementing security compliance programs including SOC 2, HIPAA, ISO 27001, or comparable frameworks.
- Experience conducting risk assessments and developing cybersecurity policies and procedures.
- Experience supporting security operations, incident response, and security governance initiatives.
- Experience working within healthcare environments and supporting HIPAA compliance requirements.
- Professional cybersecurity certifications such as:
- CISSP
- CISM
- Security+
- CCSP
- AWS Security Specialty
- HCISPP
- Experience designing and implementing Zero Trust security architectures.
- Familiarity with healthcare data standards, including HL7 and FHIR.
- Experience working with Electronic Health Record (EHR) systems and healthcare technology platforms.
- Knowledge of policy-as-code solutions such as Open Policy Agent (OPA) and Checkov.
- Experience with infrastructure-as-code security scanning and cloud governance tools.
- Scripting and automation experience using Python, PowerShell, Bash, or similar technologies.
- Experience with container security, Kubernetes security, and DevSecOps methodologies.
- Experience managing Security Awareness Training platforms such as KnowBe4, Proofpoint, or similar solutions.
- Familiarity with phishing simulation programs and security culture initiatives.
- Full-time remote work environment.
- Minimal exposure to excessive noise or adverse working conditions.
- Ability to sit for extended periods of time while working with computers and other office equipment.
- Ability to participate in on-call responsibilities and respond to security incidents as required.
- Ability to work flexible schedules when necessary to support security operations, incident response activities, audits, and project deadlines.
- Competitive medical, dental, and vision coverage
- Paid time off and company holidays
- Retirement savings opportunities
- Employee wellness and support programs
- Professional development and career growth opportunities
- Employee-focused culture committed to work-life balance and success
Pre-Employment Requirements As a condition of employment, BirdiRx requires the successful completion of a pre-employment criminal background check and drug screening. A criminal conviction does not automatically disqualify an applicant. Each case will be reviewed individually, considering the nature of the offense, its relevance to the position, and the time elapsed since the conviction. Equal Opportunity Employer
This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Security Engineer in Plymouth, MI vacancy
- ...applicationsEnsure solutions align with cybersecurity strategy, compliance, and enterprise architectureIdentify opportunities to improve security, efficiency, and user experienceWhat you will bring to the table:Bachelor’s degree in a related field or equivalent experience6+...Suggested
- ...are encouraged? If so, then keep reading.We fuse technology and engineering to provide product development solutions to customers in a... ...looking for a new challenge? Roush is looking to add a Cyber Security Architect II to join their team. Roush is looking for a Cyber...SuggestedPermanent employmentFull timeLocal area
- ...CMK Resources is seeking a Senior Cyber Security Architect to join our client's enterprise IT team. This is an exciting opportunity... ...Bachelor's degree in Computer Science, Computer Engineering, Information Technology, or a related field (or equivalent experience...SuggestedPermanent employment
- ...and maintain $1.21 billion in surplus.Amerisure is hiring!! This role can sit remote. We’re looking for a Senior Application Security Engineer who can take ownership of security initiatives, shape our strategy, and partner closely with engineering teams to safeguard our...SuggestedFull timeLocal areaRemote workFlexible hoursShift work
$85k - $105k
...Application Security Engineer – Remote Bright Vision Technologies is a technology consulting and software development company delivering cloud, AI, data, and enterprise solutions across the United States. This is a fantastic opportunity to join an established and...SuggestedFull timeH1bLocal areaImmediate startRemote workVisa sponsorship- ...The onsite Manufacturing IT Cyber Security Specialist will join a growing team of Engineering and Health & Safety professionals helping our customers reduce their work-related risk to quality, productivity and employee health. This key role will have the opportunity...Full timeTemporary workWork at officeFlexible hoursShift work
$115k - $135k
...Overview ANALYST - SENIOR CYBER SECURITY role at Niterra North America, Inc. Base pay range $115,000.00/yr - $135,000.00/yr About Us Founded in 1936, Niterra North America, Inc. (Formerly NGK Sparkplugs, Inc.), is the world leader in technology, innovation, and world-...Full timeTemporary workWork at office- ...Senior Cyber Security AnalystFounded in 1966, Niterra North America, Inc. (formerly NGK Spark Plugs) is the world leader in technology, innovation, and world-class quality in the design of spark plugs and oxygen sensors. Today, that tradition continues as we transform...Contract workTemporary workLocal area
- ...our employees, with regular training, opportunities for advancement, and fun events to bring everyone together. The Senior Cyber Security Analyst is responsible for leading Cyber Security initiatives to build, enhance and sustain a World-Class secure organization....Temporary workWork experience placementFlexible hours
- ...in an Enterprise Active Directory infrastructure environmentStrong knowledge of Active Directory, AD FS, Windows Server, Windows security, and Azure AD/Entra IDMicrosoft and Azure certifications preferredStrong troubleshooting skills with a customer service and continuous...
- ...position is on-site.At this time, we are not able to offer current or future work authorization transfer or sponsorship.Job Title: Engineer - Resident Job Summary Provide key Linamar customers with dedicated on-site engineering support. Responsible for all process and...Temporary workLocal areaImmediate start
- ...challenges? Do you want to work someplace where creativity and new ideas are encouraged? If so, then keep reading.We fuse technology and engineering to provide product development solutions to customers in a diverse range of industries. Widely recognized for providing...Full time
- JOB DESCRIPTIONJob DescriptionThe Trim Engineer leads the development of one or more trim programs, providing direction and follow up to staff and customer business units. Works closely with Principal Engineer or Chief Trim Engineer. Able to take direction and use basic...Full time
- ...Working on powerflow analysis for PV integration(DER) into the grid. Working knowledge of self-Healing and FISR.This position requires a master’s degree in Electrical Engineering, or a related field.Employment TypeFull TimeExperience2-25 yearsDurationFull TimeSkillsDMS, GIS
- We are requesting candidates with hands‐on technical support experience, strong customer service skills, and a solid foundation in networking, endpoint support, and troubleshooting across both consumer and small business environments. Core Technical Support Experience ...Work at officeRemote work
- The ideal candidate has extensive experience conducting end-to-end security investigations, performing root cause analysis, and responding to high-severity incidents. This is a highly technical position requiring strong analytical skills, sound judgment, and the ability...
- A leading technology firm in Wixom, Michigan is seeking an experienced Senior Cyber Security Analyst to join their SecOps team. The ideal candidate will have over 5 years of experience in security operations and a strong technical background. This role offers comprehensive...
- Lineage Logistics is seeking a Security Architect for Workday to design and govern security across HR and Finance modules. You will implement scalable authentication, access control, and governance, coordinating with Finance, HR, IT, and Cybersecurity teams. This role...Remote job
- A technology solutions provider is seeking a Workday Security Analyst in Novi, MI, to focus on security design and configuration of Workday Finance ERP and HRIS platforms. Responsibilities include implementing security frameworks, configuring security settings, and ensuring...
- ...PURPOSE Specializes in threat detection and mitigation, ensuring the security and integrity of our data network. This role involves... ...Detroit, MI $92,213.33-$125,146.66 4 weeks ago Data and Security Engineer (on W2) || Hybrid in Detroit, Michigan (Need locals) Information...Full timeWork at officeLocal area
- ...oriented and customer satisfaction management.Internal Communication:Collaboration with plant quality, manufacturing, analysis lab and engineering to manage claims.Report quality status to the stakeholder with transparency.Q mind (quality to be developed by all) to the other...Local area
- ...challenges? Do you want to work someplace where creativity and new ideas are encouraged? If so, then keep reading.We fuse technology and engineering to provide product development solutions to customers in a diverse range of industries. Widely recognized for providing...Full time
- ...diverse 800+ team of professionals works collaboratively across multiple service areas in multiple states including, architecture, engineering, planning, surveying and construction engineering. We are a team of experts with individual specialties working together, driven...Full timeTemporary workFor contractorsWork at officeLocal areaFlexible hours
- JOB DESCRIPTIONSUMMARYThe Advanced Quality Engineer will lead a cross-functional team for a new product launch by providing quality assurance support and refining production methods. Must be able to able to analyze data to provide CI improvement and will conduct audits...Full time
- ...diverse 800+ team of professionals works collaboratively across multiple service areas in multiple states, including architecture, engineering, planning, surveying, and construction engineering. We are a team of experts with individual specialties working together, driven...Full timeContract workTemporary workFor contractorsFlexible hours
- Company DescriptionRobert Bosch LLC seeks Senior Systems Engineer (Multiple Positions) at its facility located at 15000 N Haggerty Road, Plymouth, MI 48170. Lead the complete end-to-end development of a customer feature. Oversee all aspects of customer feature development...Local areaRemote work2 days per week
- ...diverse 800+ team of professionals works collaboratively across multiple service areas in multiple states, including architecture, engineering, planning, surveying, and construction engineering.We are a team of experts with individual specialties working together, driven...Full time
- ...Software (Word, Excel, PowerPoint).•Network (Router, Server, Security, Could etc.) or Programing (C, Java, R, Python etc.).Preferred... ...application system / network infrastructure working with internal engineering team and external business partners. •Keep implementation...Contract workWork experience placementWork at office
- ...challenges? Do you want to work someplace where creativity and new ideas are encouraged? If so, then keep reading.We fuse technology and engineering to provide product development solutions to customers in a diverse range of industries. Widely recognized for providing...Permanent employmentFull timeContract work
- AVL Mobility Technologies Inc offers a job in the United States (US) asSr. Project Engineer - High Voltage (HV) Battery / SystemsRoles:Lead the end-to-end development of HV battery systems, including architecture definition, component selection, and system integration....Full timeWork visa
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Engineer. Be the first to apply!

