Staff Software Engineer, Cloud Security

1 hour, 44 minutes ago
Full-time
Senior
Software Development
Included Health

Included Health

Included Health is a healthcare company that provides cost-saving solutions for employers and health plans. They offer virtual care and navigation services, connecting millions with board-certified doctors and specialists for comprehensive and convenie...

Insurance
1K-5K
$106M raised

Description

  • Design, develop, and implement cloud authorization frameworks for roles, resource restrictions, task-based access, and granular engineering access.
  • Lead implementation of Just-In-Time (JIT) access controls for production systems, secrets, and data to reduce standing privileges.
  • Collaborate with engineering to integrate data classification into access control decisions.
  • Develop and maintain security automation scripts, tools, and services in Python or Go for operations, vulnerability management, compliance, and incident response.
  • Write clean, maintainable, and testable code for security automation, integrations, and security-focused tooling.
  • Implement Infrastructure as Code security controls using Terraform for definition, enforcement, and auditing of configurations.
  • Contribute to centralized security controls such as an engineering-owned Web Application Firewall (WAF).
  • Partner with teams to secure the development toolchain and reduce supply chain risk.
  • Design and implement a secure mechanism for webhook testing in local development environments.
  • Define and enforce container security hardening standards in collaboration with engineering teams.
  • Remediate legacy cloud environments, especially in GCP, by inventorying and improving security controls.
  • Work with infrastructure, engineering, DevOps, and product teams to embed security into systems, architectures, and CI/CD pipelines.
  • Serve as a cloud security subject matter expert by providing guidance, code reviews, and best practices.
  • Support change management for new security controls and workflows.
  • Conduct security assessments, threat modeling, and incident response support, including automation for faster prevention and response.
  • Document security architectures, controls, automation scripts, and incident response playbooks.

Requirements

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
  • 5+ years of experience in cloud security with a strong emphasis on AWS.
  • Proven hands-on software development experience in Python and Go for security automation, tools, and infrastructure management.
  • Experience designing and implementing authorization and access control frameworks such as RBAC, ABAC, or policy-as-code.
  • Experience implementing Just-In-Time (JIT) access solutions.
  • Deep proficiency with Infrastructure as Code, especially Terraform modules for security.
  • Experience with containerization technologies such as Docker and Kubernetes/EKS, including container hardening.
  • Experience with SDLC security, CI/CD pipeline security integration, and secure software development practices.
  • Experience with security logging, monitoring, and alerting tools such as SIEM, AWS CloudTrail, CloudWatch, and GuardDuty.
  • Experience with cloud security frameworks, especially HIPAA, regulations, and standards.
  • Familiarity with Ruby is a plus.
  • Experience with GCP is a plus.
  • Experience working on granular data access control in cloud environments is a plus.

Benefits

  • Remote-first culture.
  • 401(k) savings plan through Fidelity.
  • Comprehensive medical, vision, and dental coverage, including disability insurance options.
  • Paid Time Off (PTO) and Discretionary Time Off (DTO).
  • 12 weeks of 100% paid parental leave.
  • Family-building and compassionate leave, including fertility coverage and up to $25,000 for surrogacy/adoption support.
  • Work-from-home reimbursement for home office and team collaboration needs.
  • Base salary ranges from $174,320 to $320,099 depending on geographic zone, plus equity and benefits.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior Software Engineer, Manufacturing Test

Anduril Industries 1K-5K Aerospace & Defense

Anduril Industries is hiring a Senior Software Engineer for its Manufacturing Test organization to develop software and automation that improve product testing, deployment, and data-driven quality across land, sea, and air systems.

AWS Azure C# CI/CD DB2 Embedded Systems Git Linux Python SQL Server
44 minutes ago

Senior Software Engineer, Manufacturing Test

Anduril Industries 1K-5K Aerospace & Defense

Anduril Industries is hiring a Senior Software Engineer for its Manufacturing Test organization to develop software and automation that improves testing, analytics, and quality across defense products in land, sea, and air domains.

AWS Azure C# CI/CD DB2 Embedded Systems Git Linux Python SQL Server
44 minutes ago

Staff Software Engineer

Kaseya 1K-5K IT Services

Kaseya is hiring a Staff Software Engineer to lead the design and delivery of a unified Identity and Access Management platform for a large portfolio of cloud products.

Active Directory HIPAA JWT SAML Secrets Management
59 minutes ago

Senior Software Engineer, Manufacturing Test

Anduril Industries 1K-5K Aerospace & Defense

Anduril Industries is hiring a Senior Software Engineer for its Manufacturing Test organization to develop software and automation that improves product testing, deployment, and analytics across land, sea, and air systems.

AWS Azure C# CI/CD DB2 Embedded Systems Git Linux Python SQL Server
59 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers