Senior Engineer, Security (AppSec)

1 month, 2 weeks ago
Full-time
Senior
Cybersecurity
Arcadia

Arcadia

Arcadia provides a healthcare data platform that enables organizations to unify diverse data sources, derive actionable insights through analytics, and enhance patient outcomes by delivering high-quality care experiences.

IT Services
251-1K
Founded 2002
$154M raised

Description

  • Design, implement, and maintain application security controls across Arcadia’s cloud-native SaaS platform.
  • Partner with Product and Engineering teams to embed security into system design, development workflows, and CI/CD pipelines.
  • Conduct threat modeling, architecture reviews, and secure design assessments for new and existing services.
  • Own and improve vulnerability management processes, including identification, prioritization, and remediation tracking.
  • Implement and maintain security tooling such as SAST, DAST, dependency scanning, container scanning, and secrets detection.
  • Participate in incident response activities including detection, investigation, containment, and remediation.
  • Monitor and analyze logs, alerts, and security events to identify suspicious activity and emerging threats.
  • Contribute to detection engineering by tuning alerts, improving signal quality, and reducing noise.
  • Build security-as-code solutions to automate control enforcement, validation, and remediation.
  • Support secure AWS architecture and identity/access management practices across AWS, Okta/Auth0, and SaaS platforms.
  • Translate compliance requirements into practical technical controls and support audits, evidence collection, and continuous control monitoring.

Requirements

  • 6+ years of experience in application security, cloud security, or security engineering roles.
  • Strong hands-on experience securing cloud-native, SaaS-based environments.
  • AWS experience is required.
  • Solid understanding of application security principles and common vulnerabilities, including OWASP Top 10.
  • Experience with secure software development practices and CI/CD integration.
  • Understanding of cloud security architecture and IAM.
  • Experience with incident detection and response fundamentals.
  • Experience with security tools such as SIEM, SAST/DAST, EDR, vulnerability scanners, and cloud security platforms.
  • Ability to script and automate security workflows using Python, Bash, or similar languages.
  • Strong analytical skills and the ability to clearly communicate security risks and recommendations.
  • Experience in healthcare or other regulated industries is preferred.
  • Familiarity with Kubernetes, container security, and modern DevSecOps tooling is preferred.
  • Experience contributing to detection engineering or threat analysis efforts is preferred.
  • Relevant certifications such as AWS Security Specialty, CISSP, CCSP, or GIAC are preferred.

Benefits

  • Salary range of $140,000 to $175,000 per year.
  • Flexible, remote-friendly work environment.
  • Employee-driven programs and initiatives for personal and professional development.
  • Opportunity to work in a senior, high-impact role at a mission-driven healthcare company.
  • Hands-on work with modern cloud and application security challenges.
  • Be part of a talented, energized, diverse, and purpose-driven community.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Arquiteto de Segurança em Desenvolvimento (AppSec) Senior

Harford County Public Library 51-250 Diversified Consumer Services

Stone Tech, parte da Stone Co., is hiring a Senior Application Security Architect to help secure the development and operation of payment and financial systems, including products that use LLMs and generative AI.

Agile AWS Azure CI/CD GCP Generative AI LLM
1 hour, 35 minutes ago

Application Engineer

Parachute Health 51-250 Health Care Providers & Services

Parachute Health is hiring a software engineer for its IT & Security team to build internal platforms and AI-driven workflows that improve security, compliance, and operational efficiency across its healthcare technology environment.

AWS Datadog EC2 GCP GitHub GraphQL HIPAA JavaScript Node.js Penetration Testing Python React REST API Ruby on Rails SIEM Splunk SQL TDD TypeScript
2 hours, 20 minutes ago

Application Security Engineer

Swapcard 251-1K Professional Services

Swapcard is hiring an Application Security Engineer to strengthen the security of its AI-powered event platform by driving vulnerability remediation, security testing, and secure development practices across the product lifecycle.

Burp Suite CI/CD GitLab CI Helm Jenkins Penetration Testing SonarQube Terraform WAF
1 day, 2 hours ago

Senior Security Engineer II, Application Security (Remote Eligible)

Smartsheet 1K-5K Internet Software & Services

Smartsheet is hiring a Senior Security Engineer II to strengthen application security for its global SaaS platform by securing AI-integrated features, expanding security automation, and leading high-impact security reviews.

AWS Azure CI/CD GCP GitLab Go Java JavaScript LLM Penetration Testing Python Ruby TypeScript
4 days, 2 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers