Senior Security Engineer II (Engineering & Tooling), Remote
Remote, United States
Aledade
Aledade works with independent practices, health centers, and clinics to build and lead Accountable Care Organizations (ACOs) anchored in primary care.Primary Duties:
- Primary focus will be on infrastructure security through architecture reviews, threat modeling for new and existing services and security tool implementations, while leveraging automation to scale security solutions.
- Design, deploy, and manage advanced security tools, including SIEM, EDR, DLP, vulnerability management, and firewalls.
- Engineer solutions to integrate security tooling across cloud environments, ensuring seamless protection and visibility. Collaborate with cloud engineering teams to implement and secure cloud-native solutions (e.g., IAM, VPC, security groups, cloud firewalls), implement security controls for cloud infrastructure and containerized environments.
- Lead the evaluation, implementation, and configuration of new security technologies to address evolving threats and stay updated on emerging technologies, trends, and best practices in security engineering and tooling.
- Develop and maintain secure configurations for operating systems, applications, and networking equipment and Automate security processes using scripting languages (Python, PowerShell) and tools like Terraform or Ansible.
- Conduct security assessments and ensure vulnerability management programs are effective, addressing gaps proactively.
Minimum Qualifications:
- Bachelor’s degree in Computer Science, Information Security, or a related field (or equivalent experience).
- 7+ years of experience in security engineering, including designing and managing security tools.
- Strong understanding of Threat Modeling Principles
- Experience with Security Incident Response & Risk Management
- Strong hands-on expertise with SIEM (e.g., Splunk or Sumo logic), EDR (e.g., CrowdStrike, SentinelOne), and vulnerability management tools (e.g., Tenable, Qualys), Wiz, Snyk etc.
- Proficiency in securing cloud environments (AWS, Azure, or GCP), including experience with IAM, VPCs, security groups, EKS/ECR and cloud-native security solutions (e.g., AWS Security Hub, Azure Sentinel).
- Experience with automation tools IAC and CI/CD: Terraform, Helm, Chef, Ansible, Buildkite, Jenkins, ArgoCD and scripting (Python, PowerShell, or Bash) for integrating and managing security solutions.
- Familiarity with DevSecOps practices, container security (e.g., Kubernetes, Docker), and CI/CD pipeline security.
- Proven track record in incident response, threat hunting, and forensic investigations.
- Certifications such as CISSP, GSEC, AWS Certified Security Specialty, or equivalent.
Preferred Knowledge, Skills, and/or Abilities:
- Strongly Preferred:
- Experience with Datadog for metrics and log analysis.
- Experience in monitoring security tools and leading forensic investigations and helping in incident response efforts.
- Experience with Security incident response & Risk Management.
- Stay updated on emerging technologies, trends, and best practices in security engineering and tooling.
- Experience with Zero Trust models, microsegmentation, and cloud-native security solutions (e.g., AWS Security Hub, Azure Sentinel).
- Knowledge of regulatory frameworks (e.g., PCI DSS, GDPR, HIPAA) and how to engineer tools to support compliance.
- Has mentored junior engineers and provided technical leadership for security-focused initiatives.
- Strong analytical and problem-solving skills, with excellent communication and documentation abilities.
- Previous experience in healthcare, finance, or government sectors, particularly in managing network security within compliance frameworks like HIPAA, PCI-DSS, or SOX.
- Preferred:
- Certifications such as CISSP, CCNP, CEH, or similar are strongly preferred.
What Does This Mean for You?At Aledade, you will be part of a creative culture that is driven by a passion for tackling complex issues with respect, open-mindedness and a desire to learn. You will collaborate with team members who bring a wide range of experiences, interests, backgrounds, beliefs and achievements to their work - and who are all united by a shared passion for public health and a commitment to the Aledade mission.
In addition to time off to support work-life balance and enjoyment, we offer the following comprehensive benefits package designed for the overall well-being of our team members:Flexible work schedules and the ability to work remotely are available for many rolesHealth, dental and vision insurance paid up to 80% for employees, dependents, and domestic partners Robust time off plan 21 days of PTO in your first year 2 Paid Volunteer Days & 11 paid holidays12 weeks paid Parental Leave for all new parents6 weeks paid sabbatical after 6 years of serviceEducational Assistant Program & Clinical Employee Reimbursement Program401(K) with up to 4% matchStock optionsAnd much more!
At Aledade, we don’t just accept differences, we celebrate them! We strive to attract, develop, and retain highly qualified individuals representing the diverse communities where we live and work. Aledade is committed to creating a diverse environment and is proud to be an equal opportunity employer. Employment policies and decisions at Aledade are based on merit, qualifications, performance, and business needs. All qualified candidates will receive consideration for employment without regard to age, race, color, national origin, gender (including pregnancy, childbirth or medical conditions related to pregnancy or childbirth), gender identity or expression, religion, physical or mental disability, medical condition, legally protected genetic information, marital status, veteran status, or sexual orientation.
Privacy Policy: By applying for this job, you agree to Aledade's Applicant Privacy Policy available at https://www.aledade.com/privacy-policy-applicants
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Ansible Automation AWS Azure Bash CCNP CEH CI/CD CISSP Cloud Compliance Computer Science CrowdStrike DevSecOps Docker EDR Finance Firewalls GCP GDPR GSEC Helm HIPAA IAM Incident response Jenkins Kubernetes Log analysis Monitoring Network security PCI DSS PowerShell Privacy Python Qualys Risk management Scripting Security assessment Sentinel SIEM SOX Splunk Terraform Vulnerability management Zero Trust
Perks/benefits: Flex hours Flex vacation Health care Insurance Medical leave Paid sabbatical Parental leave
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.