Security Engineer

Atlanta or Remote

⚠️ We'll shut down after Aug 1st - try foo🦍 for all jobs in tech ⚠️

Apply now Apply later

Who We Are

QGenda is redefining healthcare workforce management everywhere care is delivered. We're on a mission to empower the healthcare industry to better onboarding, deploy, and manage their workforce. Over 4,500 healthcare organizations have trusted us to help them make strategic workforce decisions through our unified software platform. With more than 600 employees across the US, we are united in our vision and culture to make a difference for our customers, while enjoying the day-to-day. 

At QGenda, we value our employees and their contributions toward the success of the business. We strive to create a dynamic work environment that fosters growth, innovation, and collaboration, where employees can be proud of the work they do and the impact it has on the healthcare industry. 

QGenda is headquartered in Atlanta. 

To learn more about QGenda, visit us at qgenda.com or follow us on Instagram or LinkedIn

About Your Role 

As a Mid-Level Security Engineer at QGenda, your primary responsibility will be to leverage your robust AWS security expertise to secure cloud-based applications, infrastructure, and customer data against evolving threats. You will collaborate closely with Product, Development, and Infrastructure Teams, integrating AWS security tools and processes into our SDLC while advancing the organization’s overall security posture. This role offers significant opportunities for professional development and direct impact on our evolving security environment.

How You’ll Make an Impact 

  • Assist in the design, implementation, and management of AWS-native security solutions such as GuardDuty, SecurityHub, Inspector, and Config to secure our infrastructure and systems.
  • Aid in automating and scaling security processes, integrating best practices and tools (e.g., SAST, DAST, SCA) into the Software Development Life Cycle (SDLC) through close collaboration with development teams.
  • Lead vulnerability management, overseeing scanning, risk prioritization, and coordination of timely remediation efforts, including patching.
  • Apply AWS Cloud security best practices to monitor, detect, respond, and mitigate risks effectively.
  • Help Develop and maintain security policies, standards, and procedures aligned with frameworks like NIST, ISO 27001, and SOC 2.
  • Support security audits and compliance efforts for regulatory requirements such as HIPAA, PCI DSS, and FedRAMP.
  • Offer security awareness training and guidance to staff, and clearly report security metrics to management.

Who You Are 

  • Extensive hands-on expertise with AWS security tools and concepts, including IAM, Key Management Service (KMS), AWS Organizations, and encryption techniques.
  • Proven ability to design and deploy secure architectures in AWS, including multi-account structure configurations.
  • Hands-on experience with DevSecOps practices and securing CI/CD pipelines, including SCA, SAST, and IaC tools.
  • Proficiency in scripting and automation (Python, Bash, PowerShell Core) to drive efficiency and scalability in security operations.
  • Expertise in vulnerability management, including hands-on experience with scanning tools (e.g., Nessus, Qualys) and a proactive approach to risk prioritization and remediation.
  • Familiarity with Cloud Native Application Protection Platform (CNAPP) solutions (e.g., Wiz, Sysdig, Orca, Lacework).
  • Knowledge of industry compliance standards and frameworks (e.g., NIST, ISO 27001, HIPAA, PCI DSS, SOC 2) and their practical application.
  • Demonstrated experience in incident response coupled with exceptional problem-solving and composure under pressure.
  • Excellent communication and collaboration skills, vital for partnering with cross-functional teams and advocating for security best practices.

Experience You Bring 

  • Bachelor's degree from an accredited college or university or equivalent industry experience.
  • 2-4+ years of experience in security engineering, security operations, or related fields.

Not Required, but Nice to Have

  • Relevant certifications such as CySA+, CEH, OSCP, E|CDE, or AWS Security Specialty.
  • Deep knowledge of container security (e.g., Docker, Kubernetes).
  • Familiarity with: zero-trust architecture principles, OpenSSF, CNCF, MITRE ATT&CK, Threat Modeling, OWASP, CIS, CVSS, DLP, and IAM.

Applicants for this position must be authorized to work for any employer in the United States(U.S.), including being located in the US. We are unable to sponsor, take over sponsorship of, or hire candidates with an employment visa at this time. 

What’s In It For You

We offer a comprehensive total rewards package to support our full-time employees and their family’s day-to-day needs, well-being and major life events, which includes: 

  • Fully company-paid options for medical (both in-person and virtual), dental and vision insurance
  • Generous paid time off (PTO) policy to enjoy periods of uninterrupted rest and relaxation for a healthy work/life balance
  • Paid parental leave for birth, adoption or permanent placement
  • 401(k) with company match 
  • Options to work in a hybrid-working model or remotely from home, depending on the position
  • Annual Costco membership, cell phone stipend, commuter benefits, in-office perks and more 

QGenda delivers technology solutions to improve how healthcare is delivered and increase access - for everyone. We can only succeed by bringing together diverse minds, thoughts, ideas and team members to create better solutions for our customers and make us a better company as a whole. We are committed to creating a culture of embracing diversity, inclusion and equity for all. 

QGenda is an Equal Employment Opportunity employer and makes all employment decisions without regard to race, color, religion, creed, gender, sex (including pregnancy), sexual orientation, gender identity or expression, natural origin, ancestry, age, marital status, disability or genetic information, military status, status as a disabled or protected veteran or any other protected status under applicable law. 

If you require accommodations or assistance to complete the online application process, please contact recruiting@qgenda.com and identify the type of accommodation or assistance you are requesting. Do not include any medical or health information in this email. We will respond to your email promptly. 

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0

Tags: Audits Automation AWS Bash CEH CI/CD Cloud CNAPP Compliance CVSS DAST DevSecOps Docker Encryption FedRAMP HIPAA IAM Incident response ISO 27001 Kubernetes MITRE ATT&CK Nessus NIST OSCP OWASP PCI DSS PowerShell Python Qualys SAST Scripting SDLC SOC SOC 2 Vulnerability management

Perks/benefits: 401(k) matching Career development Cell phone stipend Equity / stock options Health care Home office stipend Insurance Medical leave Parental leave Team events

Regions: Remote/Anywhere North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.