Senior Security (DevSecOps) Engineer II, Remote

Job Description

As a Senior Security Engineer II for Product Security at Aledade, you will play a central role in helping secure our enterprise, cloud native environments, applications and data. You will work with various engineering and infrastructure teams to ensure our cloud environments are secure and scalable. 

We’re looking for engineers that understand cloud, data and automation are important ingredients to our mission and know how to actively employ these ingredients at scale. Beyond the technical expertise, we value individuals who can partner cross-functionally across various teams, driving impactful outcomes and further securing our digital landscape.




Primary Duties:
  • Working cross-functionally to design, build, and operate solutions that improve  and mature our security capabilities
  • Leveraging data to understand trends, metrics, and opportunities to improve our security posture, researching options, and then making recommendations as options to secure those opportunities with stakeholders
  • Leading and enhancing incident / issues response efforts, spearheading analysis, containment, and mitigation strategies in a cross-functional environment to ensure effective resolution and remediation of security incidents / issues
  • Helping craft and refine security documentation pertinent to our Security Program, such as policies, standards, baselines, and standard operating procedures
  • Mentoring and coaching more junior engineers or analysts.

  • Minimum Qualifications:
  • BS/BTech (or higher) in Computer Science, Information Technology, Cybersecurity or a related field, 10 years security domain experience without degree
  • 6+ years of experience in securing and deploying applications within Cloud Native environments
  • 3+ years of experience in a dedicated DevOps/DevSecOps/SRE role with focus on establishing secure SDLC and DevSecOps processes.

  • Preferred Knowledge, Skills, and/or Abilities:
  • Prior experience working in the healthcare industry with health-tech systems, like Electronic Health Records, Clinical data, etc.
  • Experience in scripting languages such as Python and Bash is required.
  • Experience with Cloud Native Software Development environments and practices with a focus on multi-cloud deployments in AWS, Azure and/or GCP is required.
  • Prior experience with a focus on tooling, automation, and distributed systems development is preferred.
  • Experience with continuous integration tools (e.g. Cloud formation, Code deploy, Jenkins, CircleCI, Codefresh, Github Actions etc.).
  • Experience with configuration management platforms (e.g. Ansible, Chef, Salt).
  • Hands-on experience using Terraform, Python and/or other orchestration platforms at scale.
  • Familiarity with Agile and waterfall development methodologies.
  • Familiarity with automated testing methodologies, and continuous integration concepts.
  • Experience in creating, deploying, maintaining, and troubleshooting Docker images.
  • Experience in scoping, deploying, maintaining and troubleshooting Kubernetes clusters.
  • Experience with deploying policies with AWS Control tower, Azure Security hub etc.
  • Experience generating automated metrics to measure service and program effectiveness and consistency.
  • Strong communication skills, both written and verbal, with the capability to articulate complex technical issues  to a diverse audience.