Application Security Architect
Remote- United States
Full Time Senior-level / Expert USD 150K - 184K
- Remote-first
- Website
- @DatavantHQ 𝕏
- GitHub
- Search
Datavant
Join Datavant’s network of networks, including 500+ real-world data partners, more than 70,000 hospitals and clinics, and 70% of the top 100 largest health systems.Datavant is a data platform company and the world’s leader in health data exchange. Our vision is that every healthcare decision is powered by the right data, at the right time, in the right format.
Our platform is powered by the largest, most diverse health data network in the U.S., enabling data to be secure, accessible and usable to inform better health decisions. Datavant is trusted by the world’s leading life sciences companies, government agencies, and those who deliver and pay for care.
By joining Datavant today, you’re stepping onto a high-performing, values-driven team. Together, we’re rising to the challenge of tackling some of healthcare’s most complex problems with technology-forward solutions. Datavanters bring a diversity of professional, educational and life experiences to realize our bold vision for healthcare.
Datavant is a data logistics company for healthcare whose products and solutions enable organizations to move and connect data securely. We are a data logistics company for healthcare whose products and solutions enable organizations to move and connect data securely. Datavant has a network of networks consisting of thousands of organizations, more than 70,000 hospitals and clinics, 70% of the 100 largest health systems, and an ecosystem of 500+ real-world data partners.
By joining Datavant today, you’re stepping onto a highly collaborative, remote-friendly team that is passionate about creating transformative change in healthcare. We hire for three traits: we want people who are smart, nice, and get things done. We invest in our people and believe in hiring for high-potential and humble individuals who can rapidly grow their responsibilities as the company scales. Datavant is a distributed, remote-first team, and we empower Datavanters to shape their working environment in a way that suits their needs.
You will:
- Have a deep understanding of Application and Cloud security. You’ll use this knowledge to provide architectural reviews and contributions to our development teams.
- Have a strong understanding of security controls, both those that exist in audit standards as well as practical controls that can help reduce risk and increase safety in application development environments and AWS and/or Azure.
- Work directly with security senior leadership to ensure maturity, depth, and coverage of security controls. You’ll be expected to interface with our Development Engineering leadership as well as Security Engineering leadership daily.
- Be fearless in security control descriptions and writing process related elements down. The processes you build are not a castle of tone deaf documentation but a method of enabling development teams to move faster with more clarity.
- Review application projects our development teams build. This may mean putting eyes on code as well as working with the teams to understand the broad architecture of things being built. You’ll be very comfortable providing control feedback in a review environment to development teams. This role is not merely a +1, you’ll be adept at using your knowledge to the application of practical risk management.
- Own and conduct security/threat model reviews and provide expertise on AppSec and security architecture-related topics.
- Own new projects for advancing security in our environment. Be the deep technical expert and collaborate with others on the teams to ensure project success. Your impact here cannot be understated, you are a core contributor and have deep influence to empower Datavant greatness.
What you will bring to the table:
- You are humble.
- You can read and may have developed in Python in the past. You have command of the language.
- You understand how the broad parts of a security team function and operate in unison.
- You can articulate start to finish what role security should play in ideation and build with development teams.
- You have opinions and options on most of the steps.
- You are a consummate collaborator, it’s inherent in your work behavior.
- You are heavily focused on delivery and being impactful; Understand how to operate and succeed in a very fast-paced environment where the security team should be a partner and enabler for the engineering team rather than a blocker.
- 3+ years of working in architectural and threat modeling review areas.
- 3+ years of working with compliance standards.
- We lean deeply into individuals who have experience and have practical knowledge of applying standards in low friction ways.
- Broad scoped projects don’t scare you, they energize you. However, you like to get things done fast (and help others) with limited dependencies.
Bonus points if:
- You are often viewed as the “expert in the room” on building security controls. Development teams know they can depend on you to provide appropriate guidance and build predictable review programs.
- You have experience with security in healthcare or other highly regulated space. Examples: HIPAA, HITRUST, SOC 2, PCI, FedRamp experience from an operational response standpoint.
We are committed to building a diverse team of Datavanters who are all responsible for stewarding a high-performance culture in which all Datavanters belong and thrive. We are proud to be an Equal Employment Opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, sex, sexual orientation, gender identity, religion, national origin, disability, veteran status, or other legally protected status.
Our compensation philosophy is to be externally competitive, internally fair, and not win or lose on compensation. Salary ranges for this position are developed with the support of benchmarks and industry best practices.
We’re building a high-growth, high-autonomy culture. We rely less on job titles and more on cultivating an environment where anyone can contribute, the best ideas win, and personal growth is driven by expanding impact. The range posted is for a given job title, which can include multiple levels. Individual rates for the same job title may differ based on their level, responsibilities, skills, and experience for a specific job. The estimated salary range for this role is $150,000- $184,000.
At the end of this application, you will find a set of voluntary demographic questions. If you choose to respond, your responses will be anonymous and used to help us identify areas of improvement in our recruitment process. (We can only see aggregate responses, not individual responses. In fact, we aren’t even able to see if you’ve responded or not.) Responding is your choice and it will not be used in any way in our hiring process.
This job is not eligible for employment sponsorship.
To ensure the safety of patients and staff, many of our clients require post-offer health screenings and proof and/or completion of various vaccinations such as the flu shot, Tdap, COVID-19, etc. Any requests to be exempted from these requirements will be reviewed by Datavant Human Resources and determined on a case-by-case basis. Depending on the state in which you will be working, exemptions may be available on the basis of disability, medical contraindications to the vaccine or any of its components, pregnancy or pregnancy-related medical conditions, and/or religion.
This job is not eligible for employment sponsorship.
Datavant is committed to a work environment free from job discrimination. We are proud to be an Equal Employment Opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, sex, sexual orientation, gender identity, religion, national origin, disability, veteran status, or other legally protected status. To learn more about our commitment, please review our EEO Commitment Statement here. Know Your Rights, explore the resources available through the EEOC for more information regarding your legal rights and protections. In addition, Datavant does not and will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay. Learn more here.
At the end of this application, you will find a set of voluntary demographic questions. If you choose to respond, your answers will be anonymous and will help us identify areas for improvement in our recruitment process. (We can only see aggregate responses, not individual ones. In fact, we aren’t even able to see whether you’ve responded.) Responding is entirely optional and will not affect your application or hiring process in any way.
Datavant is committed to working with and providing reasonable accommodations to individuals with physical and mental disabilities. If you need an accommodation while seeking employment, please contact us at peopleteam@datavant.com. We will review your request for reasonable accommodation on a case-by-case basis.
For more information about how we collect and use your data, please review our Privacy Policy.
Tags: Application security AWS Azure Cloud Compliance FedRAMP HIPAA HITRUST Privacy Python Risk management SOC SOC 2
Perks/benefits: Career development Competitive pay Health care Startup environment
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.