Sift Healthcare logo
Sift Healthcare

Sift transforms healthcare payments through advanced data science.

Senior Cloud Security Engineer

Security EngineerSecurity EngineerOtherRemoteSeniorTeam 11-50Since 2017H1B No SponsorCompany SiteLinkedIn

Location

United States

Posted

82 days ago

Salary

0

Seniority

Senior

Job Description

Senior Cloud Security Engineer

Sift Healthcare

Role Description Sift Healthcare is seeking a Senior Cloud Security Engineer to join our growing team. The Senior Cloud Security Engineer will be responsible for designing, implementing, and maintaining secure cloud infrastructure, platforms, and applications for Sift and will work closely with cross-functional teams to identify and mitigate risks, develop and implement cloud security strategies, and ensure compliance with regulatory requirements. - Cloud Security Engineering: Design, develop, and implement cloud-based infrastructure and programs, including identity and access management, configuration management, and security monitoring. - Cloud Security Architecture: Design and implement secure cloud architectures. - Security Operations: Lead the secure operations of cloud infrastructure, platforms, and software, including installation, maintenance, and improvement of cloud computing environments. - Threat Modeling and Risk Assessment: Analyze and identify potential security threats, assess risks, and develop mitigation strategies to ensure the security and integrity of cloud-based systems. - Compliance and Governance: Ensure compliance with regulatory requirements (e.g., HIPAA, Fed/StateRAMP, GDPR) and organizational policies, and develop and maintain cloud security governance frameworks. - Collaboration and Communication: Partner with architects, engineers, and data scientists to develop and implement AI/ML and cloud security strategies. - Continuous Improvement: Identify areas for improvement to enhance visibility, detective capabilities, and risk reduction. Qualifications - 8+ years of relevant Cyber Security experience. - Strong understanding of cloud security frameworks, regulations, and standards (e.g., NIST, ISO 27001). - Experience with cloud security tools and technologies (e.g., AWS IAM, AWS Control Tower, GuardDuty, Macie, CNAPP, CWPP, SIEM). - Excellent communication and collaboration skills, with the ability to work with technical and non-technical stakeholders. - Highly organized and motivated, with the ability to deliver results with minimal direction. Requirements - Cloud certifications (e.g., AWS Certified Security). - Experience with DevOps and automation tools (e.g., Terraform, Ansible, GitHub Actions). - Knowledge of scripting languages (e.g., Python, Bash, R, Jupyter Notebook, PowerShell). - Familiarity with Agile development methodologies. - Healthcare experience. Compensation Compensation will be based on skills, experience, and performance. Company Description Sift is a data science company working to improve payments operations and outcomes in the healthcare industry. We are a growing and dynamic team that is serious about AI. Based in Milwaukee, Wisconsin, Sift is thriving and looking for motivated team members who will help shape our culture. Sift offers competitive salaries and benefits. Learn more about Sift at www.sifthealthcare.com .

Job Requirements

  • 8+ years of relevant Cyber Security experience.
  • Strong understanding of cloud security frameworks, regulations, and standards (e.g., NIST, ISO 27001).
  • Experience with cloud security tools and technologies (e.g., AWS IAM, AWS Control Tower, GuardDuty, Macie, CNAPP, CWPP, SIEM).
  • Excellent communication and collaboration skills, with the ability to work with technical and non-technical stakeholders.
  • Highly organized and motivated, with the ability to deliver results with minimal direction.
  • Cloud certifications (e.g., AWS Certified Security).
  • Experience with DevOps and automation tools (e.g., Terraform, Ansible, GitHub Actions).
  • Knowledge of scripting languages (e.g., Python, Bash, R, Jupyter Notebook, PowerShell).
  • Familiarity with Agile development methodologies.
  • Healthcare experience.
  • Compensation
  • Compensation will be based on skills, experience, and performance.

Related Categories

Related Job Pages

More Security Engineer Jobs

Role Description cFocus Software seeks a Sr. Cybersecurity Engineer / Architect to join our program supporting the National Institutes of Health (NIH). This position is remote and requires a Public Trust clearance. - Lead security engineering and architecture activities - Implement NIST 800-53 controls - Advise development teams on secure SDLC practices - Support incident response analysis - Implement security controls and network protections - Design, review, and implement secure architectures supporting hybrid scientific and IT environments across NCATS infrastructure - Provide technical leadership on security engineering solutions supporting secure system development and infrastructure modernization - Ensure architectures align with NIST SP 800‑53, NIST SP 800‑37, NIST SP 800‑160, FISMA, and NIH security policies - Integrate security engineering practices across the system development lifecycle (SDLC) using DevSecOps and security‑by‑design principles - Provide technical cybersecurity consulting to developers, engineers, and project stakeholders implementing NIST SP 800‑53 Rev. 5 security and privacy controls throughout system development - Participate in architecture discussions, sprint reviews, and design reviews to ensure security requirements are integrated into system design and implementation - Map system functionality to applicable security controls and develop control baselines aligned with system FIPS‑199 categorizations - Provide implementation guidance on encryption, identity management, logging, secure API management, and other security technologies - Assist with development of RMF artifacts including SSPs, SAPs, SARs, POA&Ms, Continuous Monitoring Strategies, and PIAs - Serve as a technical lead supporting incident response coordination, analysis, and remediation across NCATS systems - Coordinate with NCATS IT teams, security stakeholders, and the NIH Cyber Security Operations team - Perform incident triage, containment, analysis, escalation, and remediation activities - Conduct forensic analysis, malware review, and technical investigations supporting incident response activities - Develop incident reports documenting root cause, impact, remediation steps, and lessons learned - Support system authorization and assessment readiness activities for NCATS information systems - Conduct pre‑assessment reviews and security control validation to prepare systems for compliance with federal security requirements - Develop and maintain Authority to Operate (ATO) documentation and supporting artifacts - Support FedRAMP authorization activities where applicable - Assist with independent security assessments and remediation of identified vulnerabilities - Provide engineering support for network security architecture and firewall management across the NCATS environment - Design and maintain network segmentation strategies and security zones based on risk and sensitivity - Implement firewall rules based on least privilege and default‑deny principles - Conduct firewall configuration management, rule validation, and change control - Validate logging configurations across network devices to support federal logging and monitoring requirements Qualifications - Bachelor’s degree in Computer Science, Cyber Security, or related field - 10+ years of cybersecurity engineering or security architecture experience - Experience designing and implementing security controls in federal or regulated environments - Security architecture and engineering practices - NIST Risk Management Framework (RMF) - NIST SP 800‑53 security controls - FISMA compliance - Security authorization / ATO processes - Incident response and threat analysis - Network security architecture and firewall management

United States
Job Closed
OtherRemoteTeam 10,001+H1B Sponsor

Description This is a London-based position; relocation to London, UK is required. About the Role: The Business Information Security Officer (BISO) serves as a vital strategic partner to technology and business leaders within LII of the GRS Strategic Business Unit (SBU). This role is at the forefront of implementing Liberty Mutual's cybersecurity program, proactively aligning SBU objectives with the enterprise security strategy. As a trusted business enabler, the BISO ensures all business decisions adhere to corporate security policies and are executed with a strong security mindset-without compromising speed, agility, or business outcomes. Leveraging a deep understanding of SBU strategic security needs, the BISO significantly influences the prioritization and delivery of security service features and the development of new security solutions. The BISO is committed to fostering a strong security culture, continuously improving security processes and technologies to protect our policyholders and employees. With a keen awareness of industry trends, the BISO champions security awareness and best practices across all employees. About the Department & Team: Liberty International Insurance (LII) within the Global Retail Solutions (GRS) is one of Liberty Mutual's core markets, focused on serving commercial and retail insurance customers. LII delivers specialized insurance solutions in partnership with customers, agents, and brokers across 27 countries, reflecting a truly global reach and commitment to excellence. Responsibilities: - Build and nurture strong partnerships with SBU stakeholders-including IT leadership, Product Owners, and senior business executives-to foster trust and drive efficient program implementation. - Balance individual customer needs with broader business priorities, ensuring alignment with Global Cybersecurity strategies. - Participate actively in SBU program increment planning events and, as a dotted-line member of the LII CIO leadership team, help cascade and influence a strategic cyber risk management vision that supports innovation and business execution. - Influence the prioritization and delivery of security services, as well as the development of new security products and features. - Support the creation and execution of risk remediation action plans and manage exception processes as needed. - Ensure the prioritization of security initiatives within SBU teams is balanced effectively alongside other business priorities. - Drive shared accountability for the development and ongoing management of secure applications. - Collaborate with other BISOs, the Market Strategy & Delivery Leader and the CISO to define and communicate key performance indicators (KPIs), key risk indicators (KRIs), and relevant metrics. - Stay abreast of the evolving threat landscape and advise stakeholders on emerging risks and recommended courses of action. - Commit to ongoing professional development, especially in areas of regulatory change, technology evolution, and cybersecurity and privacy trends-applying this knowledge to enhance global strategies and programs. - Partner with local counsel on incident response and regulatory compliance matters as applicable. - Support SOC and/or legal functions by assisting in the management of security incidents and events to safeguard IT assets, regulated data, and the company's reputation. - Champion third-party risk management by advising business owners on vendor engagement, remediation efforts, and continuous monitoring actions. - Advance the security champion program to deepen and broaden security engagement across SBU application development teams. - Develop and maintain a robust network of industry contacts; conduct research on industry trends, competitive landscape, and emerging technologies to inform strategic and tactical recommendations. - Travel up to roughly 20-25% of the time across the region to engage in - market with leadership teams, technology partners, and key stakeholders. Qualifications - Bachelor`s or Master`s Degree in technical or business discipline or related experience; Master`s Degree preferred. - Generally more than 10 years related experience with 5 years in leadership role. - Demonstrated real world, hands on technical design and implementation experience. - Strong familiarity with Information Security precepts, practices, and solutions. - Extensive knowledge across a broad range of identity and access management technologies. - In depth knowledge of IT concepts, strategies and methodologies and their application to business opportunities. - In depth knowledge of project delivery, business operations, objectives and strategies. - Advanced knowledge of management concepts, practices and techniques. - Strong interpersonal skills with the ability to effectively influence others. - Ability to build collaborative working relationships with a broad range of enterprise stakeholders. - Strong decision making capabilities, with proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one. About Us Pay Philosophy: The typical starting salary range for this role is determined by a number of factors including skills, experience, education, certifications and location. The full salary range for this role reflects the competitive labor market value for all employees in these positions across the national market and provides an opportunity to progress as employees grow and develop within the role. Some roles at Liberty Mutual have a corresponding compensation plan which may include commission and/or bonus earnings at rates that vary based on multiple factors set forth in the compensation plan for the role. At Liberty Mutual, our goal is to create a workplace where everyone feels valued, supported, and can thrive. We build an environment that welcomes a wide range of perspectives and experiences, with inclusion embedded in every aspect of our culture and reflected in everyday interactions. This comes to life through comprehensive benefits, workplace flexibility, professional development opportunities, and a host of opportunities provided through our Employee Resource Groups. Each employee plays a role in creating our inclusive culture, which supports every individual to do their best work. Together, we cultivate a community where everyone can make a meaningful impact for our business, our customers, and the communities we serve. We value your hard work, integrity and commitment to make things better, and we put people first by offering you benefits that support your life and well-being. To learn more about our benefit offerings please visit: https://LMI.co/Benefits Liberty Mutual is an equal opportunity employer. We will not tolerate discrimination on the basis of race, color, national origin, sex, sexual orientation, gender identity, religion, age, disability, veteran's status, pregnancy, genetic information or on any basis prohibited by federal, state or local law. Fair Chance Notices - California - Los Angeles Incorporated - Los Angeles Unincorporated - Philadelphia - San Francisco USD $179000.00 - $322000.00

United States
$179K - $322K / year
Job Closed
Delinea logo

Senior .NET Cloud Security Software Engineer

Delinea

Delinea, Inc. is a leading privileged access management solutions provider that helps make security a seamless experience for the modern, hybrid enterprise. The

About Delinea: Delinea is a pioneer in securing human and machine identities through intelligent, centralized authorization, empowering organizations to seamlessly govern their interactions across the modern enterprise. Leveraging AI-powered intelligence, Delinea’s leading cloud-native Identity Security Platform applies context throughout the entire identity lifecycle – across cloud and traditional infrastructure, data, SaaS applications, and AI. It is the only platform that enables you to discover all identities – including workforce, IT administrator, developers, and machines – assign appropriate access levels, detect irregularities, and respond to threats in real-time. With deployment in weeks, not months, 90% fewer resources to manage than the nearest competitor, and a 99.995% uptime, Delinea delivers robust security and operational efficiency without compromise. Learn more about Delinea on Delinea.com, LinkedIn, X, and YouTube. Join our passionate, global team at Delinea and help us make the world a safer and more secure place. Our success is driven by world-class product leadership, outstanding engineers, and strategic investment from TPG. We value diversity, innovation, and a culture of respect and fairness. If you're ready to push boundaries and challenge the status quo in security, we want to hear from you. Apply today to help us achieve our mission. Summary: Our growing technology company seeks enthusiastic and passionate individuals to join our platform engineering team. In this role, you will update libraries and application services to support Azure Government deployment for FedRAMP certification while maintaining our existing commercial cloud deployments. You will modernize observability infrastructure, implement security hardening, and create reference implementations that enable other service teams to deploy to government cloud environments. What You'll Do: - Design, develop, and deploy scalable and highly available cloud-based applications using C#/.NET Core in performant Kubernetes clusters. - Update libraries to support both Azure commercial and Azure Government environments. - Address security findings including cryptographic implementation reviews and PII scrubbing in telemetry. - Create abstraction layers for infrastructure services (message brokers, caching) to support multiple backend implementations including Azure Service Bus. - Using Scrum processes, collaborate with cross-functional teams (PM, UX, Dev) to understand requirements, propose technical solutions, and contribute to architectural decisions. - Participate in code reviews to ensure high-quality and maintainable code. - Mentor and provide technical guidance to other engineers, fostering a culture of continuous learning and growth. - Create reference implementations and documentation that enable other teams to migrate their services to government cloud. What You'll Bring: - Bachelor's or higher degree in Computer Science, Software Engineering, or a related field, or equivalent experience. - 5+ years of professional experience working as a software engineer, with a focus on .NET development. - Proficiency in C#, .NET, and Azure SDK for .NET (Azure.Identity, Azure.Security.KeyVault, Azure.Messaging.ServiceBus). - Experience with OpenTelemetry and observability instrumentation. - Deep understanding of authentication, authorization, and cloud security patterns. - Experience with message broker technologies (RabbitMQ, Azure Service Bus). - Excellent English communication skills (written and oral). We'd Love to See: - Microsoft Azure certifications (AZ-204, AZ-500). - Experience with Helm charts and Kubernetes application configuration. - Experience with multi-tenant SaaS architectures. - Experience working in compliance-regulated environments (FedRAMP, FISMA, SOC2, NIST 800-53). For this Job, Delinea is not considering candidates that need any type of US work authorization now or in the future. This includes, but is not limited to: F1-OPT, F1-CPT, H-1B, TN, L-1, J1, etc. Why work at Delinea? - We're passionate problem-solvers helping the world's largest organizations protect what matters most: their human and machine identities. - We invest in people who are smart, self-motivated, and collaborative. - What we offer in return is meaningful work, a culture of innovation and great career progression. At Delinea, our core values are STRONG and guide our behaviors and success: - Spirited - We bring energy and passion to everything we do - Trust - We act with integrity and deliver on our commitments - Respect - We listen, value different perspectives, and work as one team - Ownership - We take initiative and follow through - Nimble - We adapt quickly in a fast-changing environment - Global - We embrace diverse people and ideas to drive better outcomes We believe weaving these core values into our day-to-day actions, and our process for hiring, evaluating, and promoting employees, helps us cultivate a work environment that embraces collaboration and camaraderie. We take care of our employees. We offer competitive salaries, a meaningful bonus program, and excellent benefits, including healthcare insurance, as well as pension/retirement matching, comprehensive life insurance, an employee assistance program, time off plans, and paid company holidays. Delinea is an Equal Opportunity and Affirmative Action employer and prohibits discrimination and harassment of any type with regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. Upon conditional offer of employment, candidates are required to complete comprehensive criminal background check, verification of education, and verification of employment, per employment policy. In addition, all publicly posted social media sites may be reviewed.

United States
Job Closed

AWS Cloud Security Engineer

Fluent, Inc.

Fluent, Inc. (NASDAQ: FLNT) is a commerce media solutions provider connecting top-tier brands with highly engaged consumers. Leveraging diverse ad inventory, robust first-party data, and proprietary machine learning, Fluent unlocks additional revenue streams for partners and empowers advertisers to acquire their most valuable customers at scale. Founded in 2010, Fluent uses its deep expertise in performance marketing to drive monetization and increase engagement at key touchpoints across the customer journey. For more insights, visit https://www.fluentco.com/.

OtherRemoteTeam 200Since 2010

We're seeking an AWS Cloud Security Engineer to strengthen our cloud security posture and ensure the secure operation of our AWS infrastructure. This role focuses on implementing security controls, managing cloud security tools, responding to security findings, and ensuring compliance across our AWS environment. What You'll DoCloud Security & Infrastructure - Design, implement, and maintain security controls across AWS services (EC2, S3, RDS, EKS, ECS, Lambda, API Gateway) - Configure and optimize AWS security services including GuardDuty, CloudTrail, CloudWatch, Security Hub, and AWS Config - Implement VPC security architecture, network segmentation, security groups, and NACLs - Manage CloudFront and ALB security configurations including WAF rules - Secure containerized workloads and serverless architectures Identity & Access Management - Design and implement least-privilege IAM policies, roles, and permission boundaries - Manage AWS Identity Center (SSO) and integration with Okta - Conduct access reviews and support user provisioning while maintaining security standards - Implement secure service-to-service authentication patterns Security Monitoring & Response - Monitor and respond to security alerts from GuardDuty, CloudTrail, and AWS security services - Investigate and remediate security findings from Wiz cloud security platform - Perform threat analysis and security incident investigation - Develop security incident response playbooks for cloud threats Databricks & Compliance - Implement and maintain security controls for Databricks workspaces on AWS - Support SOC 2 and other compliance audit requirements - Maintain security documentation and audit trail evidence - Enforce security policies and compliance standards across AWS accounts Collaboration & Automation - Partner with Engineering, DevOps, and IT teams to integrate security into cloud operations - Automate security processes using Infrastructure as Code - Document security architectures, procedures, and runbooks - Provide security guidance on AWS best practices - Coordinate with external security vendors, testers, and auditors as needed Requirements - 3+ years of hands-on experience securing AWS environments - Deep technical expertise with AWS security services: IAM, Identity Center, GuardDuty, CloudTrail, CloudWatch, Security Hub, AWS Config - Strong experience with core AWS services: EC2, S3, RDS, EKS, ECS, VPC/Networking, Lambda, SQS/SNS, CloudFront, ALBs, API Gateway - Experience with Databricks on AWS, including security configurations and best practices - Hands-on experience with Wiz or similar cloud security posture management (CSPM) tools - Knowledge of identity and access management principles, including federated identity (Okta, SAML, OIDC) - Experience supporting compliance frameworks such as SOC 2, ISO 27001, or similar standards - Scripting skills (Python, Bash, PowerShell) for security automation - Understanding of network security, encryption, and security monitoring in cloud environments - Strong problem-solving skills with ability to investigate and remediate security issues About Us Fluent, Inc. (NASDAQ: FLNT) is a commerce media solutions provider connecting top-tier brands with highly engaged consumers. Leveraging diverse ad inventory, robust first-party data, and proprietary machine learning, Fluent unlocks additional revenue streams for partners and empowers advertisers to acquire their most valuable customers at scale. Founded in 2010, Fluent uses its deep expertise in performance marketing to drive monetization and increase engagement at key touchpoints across the customer journey. For more insights visit:https://www.fluentco.com/ BenefitsAt Fluent, we like what we do, and we like who we do it with. Our team is a tight-knit crew of go-getters; we love to celebrate our successes! In addition, we offer a fully stocked kitchen, catered lunch, and our office manager keeps the calendar stocked with activity filled events. When we’re not eating, working out, or planning parties, Fluent folks can be found participating in networking events, and bonding across teams during quarterly outings to baseball games, fancy dinners, and a variety of activities. And we have all the practical benefits, too… - Competitive compensation - Ample career and professional growth opportunities - New Headquarters with an open floor plan to drive collaboration - Health, dental, and vision insurance - Pre-tax savings plans and transit/parking programs - 401K with competitive employer match - Volunteer and philanthropic activities throughout the year - Educational and social events - The amazing opportunity to work for a high-flying performance marketing company! Salary Range: $130,000 to $170,000 base, + competitive bonus. The base salary range represents the low and high end of the Fluent salary range for this position. Actual salaries will vary depending on factors including but not limited to location, experience, and performance. Candidates may be at risk of targeting by malicious actors seeking personal information. Fluent recruiters will only reach out via LinkedIn or email with an @fluentco.com domain. Any outreach by Fluent via other sources (e.g. text, other domains etc) should be ignored. Fluent participates in the E-Verify Program. As a participating employer, Fluent, LLC will provide the Social Security Administration (SSA) and, if necessary, the Department of Homeland Security (DHS), with information from each new employee’s Form I-9 to confirm work authorization. Fluent, LLC follows all federal regulations including those set forth by The Office of Special Counsel for Immigration-Related Unfair Employment Practices (OSC). The OSC enforces the anti-discrimination provision (§ 274B) of the Immigration and Nationality Act (INA), 8 U.S.C. § 1324b.

New York
$130K - $170K / year
Job Closed