Security Engineer II

Salary ? Salary range shown is either directly from the job description or estimated based on typical salaries for similar roles in this industry. This estimate aims to give a general idea of the expected compensation for the position.
$150000 - $180000

Job Description

Garner's mission is to transform the healthcare economy, delivering high quality and affordable care for all. By helping employers restructure their healthcare benefit to provide clear incentives and data-driven insights, we direct employees to higher quality and lower cost healthcare providers. The result is that patients get better health outcomes while doctors are rewarded for practicing well, not performing more procedures. We are backed by top-tier venture capital firms, are growing rapidly and looking to expand our team.

We are seeking a skilled and motivated Security Engineer to join our dynamic team. As a Security Engineer, you will play a crucial role in safeguarding our organization's digital assets, ensuring the integrity and confidentiality of our systems and data. You will be responsible for the implementation and operations of security tooling, maintaining security controls, responding to security incidents and breaches. This role offers an exciting opportunity to work with cutting-edge technology and improve the overall security posture of our organization.

Responsibilities will include:

  • Security Engineering: Design, implement, and operate security tooling and components in cloud and on-premises ecosystems including, but not limited to, AWS and GCP, Snowflake, Wiz, Okta.
  • Incident Detection and Response: Monitor security landscape for suspicious activity, investigate potential security incidents, and coordinate incident response efforts to mitigate threats and minimize their impact.
  • Vulnerability Management: Assist regular vulnerability assessments and penetration tests, analyze results, and collaborate with relevant teams to prioritize and remediate security vulnerabilities in a timely manner.
  • Security Compliance: Ensure compliance with relevant security standards, regulations, and best practices (e.g., HITRUST, SOC 2, ISO 27001) through continuous monitoring, auditing, and enforcement of security policies and procedures.
  • Security Awareness and Training: Develop and deliver security awareness training programs for employees, educate stakeholders on security best practices, and promote a culture of security awareness throughout the organization.
  • Security Incident Documentation and Reporting: Document security incidents, their resolution, and lessons learned for future reference. Prepare and present regular reports on security metrics, incidents, and trends to management and relevant stakeholders.
  • Security Tool Evaluation and Integration: Research, evaluate, and recommend new security technologies, tools, and processes to enhance the organization's security posture and capabilities. Integrate new security solutions into existing infrastructure as needed.

Ideal candidate has:

  • Bachelor's degree in Computer Science, Information Security, or a related field. Advanced degree or relevant certifications (e.g., CISSP, CEH, GIAC) is a plus.
  • Proven experience (4+ years) in a security engineering role, preferably in a fast-paced environment such as a technology company or HealthTech company.
  • In-depth knowledge of network security principles, protocols, and technologies.
  • Hands-on experience with security tools and technologies such as Datadog, Wiz, or similar
  • In-depth knowledge of AWS cloud infrastructure, cloud based security tools and services
  • Strong understanding of common security vulnerabilities and attack vectors, including experience with threat modeling, as well as techniques for their detection, prevention, and mitigation.
  • Excellent analytical and problem-solving skills, with the ability to analyze complex security incidents and recommend effective solutions.
  • Strong communication skills, with the ability to convey technical information to non-technical stakeholders and collaborate effectively with cross-functional teams.
  • Proven ability to work independently, prioritize tasks, and manage multiple projects simultaneously while adhering to deadlines.

What we look for at Garner:

  • Mission First: Our mission is to transform our healthcare system, delivering high quality and affordable care to all. Everything else is secondary.
  • Expect Extraordinary: Our mission is audacious, so we will only succeed by producing exceptional results. We continually push ourselves and each other to new heights and beyond our comfort zones.
  • Courageous Communication: Transparency and candor are imperative to realizing our potential as an organization and as individuals—even when uncomfortable. Many companies talk about these values. We live them.
  • Supportive community: We know that people do their best work and learn the most when they feel genuinely supported and cared for. It’s also more fun that way.

The target salary range for this position is: $150,000 - $180,000. Individual compensation for this role will depend on a variety of factors including qualifications, skills and applicable laws. In addition to base compensation, this role is eligible to participate in our equity incentive and competitive benefits plans.

Garner Health is proud to be an Equal Employment Opportunity employer and values diversity in the workplace. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, reproductive health decisions, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, genetic information, political views or activity, or other applicable legally protected characteristics.
Garner Health is committed to providing accommodations for qualified individuals with disabilities in our recruiting process. If you need assistance or an accommodation due to a disability, you may contact us at talent@getgarner.com.
Beware of job scam fraudsters! Our recruiters use getgarner.com email addresses exclusively. We do not post open roles on Indeed, conduct interviews via text, instant message, or Teams and we do not ask candidates to download software, purchase equipment through us, or to provide sensitive information such as bank account or social security numbers. If you have been contacted by someone claiming to be a Garner recruiter or hiring manager from a different domain about a job offer, please report it as potential job fraud to law enforcement here and to candidateprotection@getgarner.com