Senior Security Engineer II
Core
Design, build, operate, and automate security solutions for web-based SaaS applications, including API security and WAF capabilities, while leading incident response and refining security policies.
Role type
Senior Security Engineer (Application Security & DevSecOps)
Builds
Automated security testing and validation systems, security controls for SaaS applications, and incident response playbooks.
Domain
Cloud-native application security, DevSecOps, and healthcare data systems.
Deliverable
production ML models | product features | infrastructure
Required skills
Vulnerability triage (SAST/DAST), threat modeling, code reviews, secure SDLC implementation, cloud-native security architecture, incident response leadership, policy development, mentorship.
Preferred skills
Healthcare systems knowledge (EHR, PHI), AI/LLM and machine learning architecture understanding, OWASP Top 10 expertise.
Technologies
Python, R, C++, JavaScript, Java, Scala, C#, Go, AWS, Azure, GCP, SAST tools, DAST tools, WAF.
Responsibilities
Design and automate security solutions; lead incident and issue response; develop security policies and standards; conduct vulnerability identification and triage; perform code reviews and threat modeling; mentor junior engineers.
Seniority
Senior, hands-on IC with strategic decision-making
