Senior Engineer, Security (AppSec)

3 weeks, 3 days ago
Full-time
Senior
Cybersecurity
Arcadia

Arcadia

Arcadia provides a healthcare data platform that enables organizations to unify diverse data sources, derive actionable insights through analytics, and enhance patient outcomes by delivering high-quality care experiences.

IT Services
251-1K
Founded 2002
$154M raised

Description

  • Design, implement, and maintain application security controls across Arcadia’s cloud-native SaaS platform.
  • Partner with Product and Engineering teams to embed security into system design, development workflows, and CI/CD pipelines.
  • Conduct threat modeling, architecture reviews, and secure design assessments for new and existing services.
  • Own and improve vulnerability management processes, including identification, prioritization, and remediation tracking.
  • Implement and maintain security tooling such as SAST, DAST, dependency scanning, container scanning, and secrets detection.
  • Participate in incident response activities including detection, investigation, containment, and remediation.
  • Monitor and analyze logs, alerts, and security events to identify suspicious activity and emerging threats.
  • Contribute to detection engineering by tuning alerts, improving signal quality, and reducing noise.
  • Build security-as-code solutions to automate control enforcement, validation, and remediation.
  • Support secure AWS architecture and identity/access management practices across AWS, Okta/Auth0, and SaaS platforms.
  • Translate compliance requirements into practical technical controls and support audits, evidence collection, and continuous control monitoring.

Requirements

  • 6+ years of experience in application security, cloud security, or security engineering roles.
  • Strong hands-on experience securing cloud-native, SaaS-based environments.
  • AWS experience is required.
  • Solid understanding of application security principles and common vulnerabilities, including OWASP Top 10.
  • Experience with secure software development practices and CI/CD integration.
  • Understanding of cloud security architecture and IAM.
  • Experience with incident detection and response fundamentals.
  • Experience with security tools such as SIEM, SAST/DAST, EDR, vulnerability scanners, and cloud security platforms.
  • Ability to script and automate security workflows using Python, Bash, or similar languages.
  • Strong analytical skills and the ability to clearly communicate security risks and recommendations.
  • Experience in healthcare or other regulated industries is preferred.
  • Familiarity with Kubernetes, container security, and modern DevSecOps tooling is preferred.
  • Experience contributing to detection engineering or threat analysis efforts is preferred.
  • Relevant certifications such as AWS Security Specialty, CISSP, CCSP, or GIAC are preferred.

Benefits

  • Salary range of $140,000 to $175,000 per year.
  • Flexible, remote-friendly work environment.
  • Employee-driven programs and initiatives for personal and professional development.
  • Opportunity to work in a senior, high-impact role at a mission-driven healthcare company.
  • Hands-on work with modern cloud and application security challenges.
  • Be part of a talented, energized, diverse, and purpose-driven community.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior Product Security Analyst

Omilia 251-1K IT Services

Omilia is hiring a Senior Product Security Analyst to own product and application security reviews across the software lifecycle, helping protect cloud-based SaaS products, platforms, and customers as the company scales.

Agile AWS Microservices Penetration Testing
2 hours, 56 minutes ago

Application Security Engineer

Brex 1K-5K Diversified Financial Services

Brex is hiring an Application Security Engineer to help secure its finance platform by finding and responding to vulnerabilities, supporting secure development, and contributing to AI security efforts across cross-functional teams.

AWS GraphQL gRPC Kotlin Kubernetes Penetration Testing Python
4 hours, 41 minutes ago

Senior Cyber Engineer

ESG News 11-50 Internet Software & Services

The Financial Times is hiring a Senior Cyber Security Engineer to strengthen application and cloud security across its AWS-hosted, cloud-native technology estate.

Agile AWS CI/CD CloudFormation GitHub Python Scrum SIEM Splunk Terraform
17 hours, 53 minutes ago

Senior Staff Product Security Engineer

Greenlight 251-1K Capital Markets

Greenlight is hiring a Senior Staff Product Security Engineer to define and drive the product security strategy for its family fintech platform and help protect customer financial, location, and personal data across the engineering organization.

Android AWS Burp Suite DynamoDB GCP Helm iOS Java Kotlin Kubernetes Microservices MySQL Node.js Penetration Testing Rancher React Redis Swift SwiftUI
18 hours, 48 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers