Principal Application Security Engineer - Threat Research
Core
Design, implement, and continuously improve security across complex multi-cloud and on-premises environments to protect applications and sensitive healthcare data at scale.
Role type
Principal Application Security Engineer (Threat Research)
Builds
Secure engineering practices, security solutions, and resilient infrastructure across the full software lifecycle
Domain
Healthcare technology, Public Cloud, Network Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Security policy enforcement, Vulnerability analysis, Risk prioritization, Incident response, Security-as-Code, Infrastructure-as-Code, Web Application Firewall (WAF) management, Data protection compliance, Cloud architecture, Network security, Programming (Java, C/C++, C#, Python, JavaScript, Shell Script, PowerShell), Mentorship, Strategic planning
Preferred skills
Architecting Public Cloud solutions, Software-Defined Networking (SDN), Network/Dataflow diagramming, Compliance frameworks (HIPAA, HITRUST, PCI, NIST, CSA), Big data platform security (Snowflake), Cyber resilience standards, Open-source contribution
Technologies
AWS, Azure, GCP, Docker, Kubernetes, WAF, Snowflake
Responsibilities
Develop and enforce engineering and data security policies; Analyze, develop, and configure security solutions across multi-cloud and on-premises environments; Lead security testing, vulnerability analysis, and documentation; Participate in operational on-call duties and lead incident response; Develop mentorship programs and training sessions for junior engineers; Contribute to security research and next-generation tool exploration; Play a key role in strategic planning of the security roadmap including risk assessments and budget allocation
Seniority
Principal, hands-on IC with strategic leadership