Job Closed
This listing is no longer active.
Open source password management solutions for individuals, teams, and business organizations.
Senior Security Engineer
Location
United States
Posted
60 days ago
Salary
$140K - $180K / year
Seniority
Senior
Job Description
Senior Security Engineer
Bitwarden
• Research emerging threats across the surface web, dark web, and deep web • Build threat models, conduct threat hunts, and plan and execute purple team engagements • Coordinate internal red team testing operations that emulate a threat actor • Collaborate with application development teams, platform engineers, and Security Operations Center (SOC) engineers to improve our offensive and defensive security controls • Contribute to vulnerability testing and analysis as well as incident response and analysis • Include testing for web, mobile, CLI, and desktop application security issues across our multi-product portfolio, including Bitwarden Password Manager, Secrets Manager, and Passwordless.dev, our APIs, serverless functions, and database • Participate in code reviews, learning and spreading technical knowledge about security posture • Contribute to resolutions for security-related issues • Coordinate technical validation and leadership review of purple team reports detailing testing results and potential areas of improvement • Conduct internal penetration tests on systems and networks to determine realistic threat vectors • Manage software tools for code scanning, vulnerability identification, and finding reporting • Effectively communicate findings, attack paths, and recommendations to stakeholders • Train others on the adversary simulation tactics and procedures used • Stay informed on current security trends, publications, and advisories • Assist to provide guidance and subject matter expertise as it pertains to all areas of security and technical operations, including analysis of our cloud environments, security testing and documentation, as well as investigations, software research, new technology, services and tools research, and vendor security analysis
Job Requirements
- Experience with Penetration Testing Tools, such as Burp Suite, NMAP, Nessus, Metasploit, Kali Linux, SQLMap, Owasp ZAP, and manual testing tools
- In-depth knowledge of leading vulnerability management tools and strategies
- In-depth understanding and usage of application security testing technologies is a plus
- Understanding of authentication concepts, including OpenIDConnect, SAML, OAuth, and SSO flows
- Strong working knowledge of vulnerability management tools, data and network security technologies
- Collaborative and adaptable mindset
- Openness and authenticity combined with excellent communication skills
- Excitement and enthusiasm for open source and for better internet security
- Excellent problem-solving skills – you might not know all the answers, but you know how to find and communicate the solution
- Ability to maintain discretion, handle sensitive information, and maintain security best-practices
- Security purple team technocrat at heart, staying current with trends and new technologies
Benefits
- Competitive salary
- Dedicated to building a diverse and talented team
- Learn and grow professionally
- Work remotely with motivated and supportive team members across the world
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Security Architect – Southeast region
GuidePoint SecurityFounded in 2011 and headquartered in Herndon, Virginia, GuidePoint Security furnishes commercial and federal organizations with customized information security
• Develop a deep operational understanding of tools, architectures, and processes across the security ecosystem. • Build, maintain, and expand strategic relationships with key vendors and emerging technology partners. • Conduct evaluations of new technologies, products, and solutions to ensure alignment with client needs and industry best practices. • Maintain awareness of vendor certifications, industry advancements, and emerging security capabilities. • Lead and coordinate “vendor days” with key partners for internal team enablement and education. • Compare and contrast competitive solutions to determine the most effective fit for client requirements. • Serve as the design/architecture lead and primary technical interface for clients throughout the engagement lifecycle. • Identify vendors and partners that align to operational requirements, budgets, and client resource constraints. • Lead solution demos with vendor support, ensuring the demos are tailored to client objectives and clearly differentiated. • Produce, socialize, and document both operational and technical requirements. • Provide options and solution pathways that best align with client maturity, business strategy, and budget. • Evaluate client people, processes, and existing technologies to identify optimization opportunities. • Assist clients with the development of RFIs, RFPs, and program requirements. • Collaborate with GPS SMEs to provide specialized insight, assessments, or validation as needed. • Identify overlaps and gaps within client environments and provide clear recommendations for remediation or enhancement. • Perform technical validation and rationalization of proposed solutions to ensure feasibility, effectiveness, and long-term value. • Support compliance-aligned documentation efforts, ensuring architectures and decisions reflect industry and regulatory expectations. • Lead risk-mitigation activities throughout solution evaluation and implementation. • Advocate for client engineers and technical leaders, ensuring their priorities are incorporated and supported. • Support ongoing alignment of technical roadmaps with client strategic objectives and security programs. • Provide optimization strategies to improve solution adoption, operational efficiency, and measurable outcomes. • Coach client teams, ensuring clarity of roles, solution capabilities, and expected results. • Continuously update, refine, and communicate architectural plans to keep pace with evolving technologies and business needs.
Senior Security Engineer – Firewall
GuidePoint SecurityFounded in 2011 and headquartered in Herndon, Virginia, GuidePoint Security furnishes commercial and federal organizations with customized information security
• Design, implement, and manage firewall policies across Palo Alto and Checkpoint (Cloud) virtual firewalls • Configure and optimize firewall rules to meet business and security requirements • Implement security best practices for firewall configurations and policy management • Configure and manage Prisma Access for secure remote access and cloud-delivered security services • Implement and optimize Prisma Access policies and configurations • Integrate Prisma Access with existing security infrastructure • Utilize Strata Cloud Manager for centralized firewall management and configuration • Leverage Palo Alto Networks Panorama for policy deployment and management across multiple firewalls • Manage Checkpoint Cloud configurations through centralized management platforms • Process and implement firewall change requests following change control procedures • Troubleshoot firewall connectivity and policy issues • Perform firewall configuration updates and enhancements • Collaborate with network and security teams on firewall-related projects • Utilize Strata Cloud Manager and FireMon Security Manager for configuration management • Leverage existing tools for policy deployment and operational efficiency
Security Engineer I
Akumin®Akumin Operating Corp. and its divisions are an equal opportunity employer and we believe in strength through diversity. All qualified applicants will receive consideration for employment without regard to, among other things, age, race, religion, color, national origin, sex, sexual orientation, gender identity & expression, status as a protected veteran, or disability.
• Establish monitoring and detection mechanisms to identify potential threats, and lead or assist in responding to incidents. • Conduct vulnerability assessments, penetration testing, and remediation of security weaknesses. • Automate tasks where possible, using scripting and configuration management tools. • Architect and implement security controls, including firewalls, intrusion detection systems, and encryption technologies. • Review of applications and systems to ensure industry best practices and security hardening.
Release of Information Audit Abstractor
Mass General BrighamMass General Brigham connects a full spectrum of care across a system of academic medical centers, specialty and community hospitals, physician networks, a heal
Site: Mass General Brigham Incorporated Mass General Brigham relies on a wide range of professionals, including doctors, nurses, business people, tech experts, researchers, and systems analysts to advance our mission. As a not-for-profit, we support patient care, research, teaching, and community service, striving to provide exceptional care. We believe that high-performing teams drive groundbreaking medical discoveries and invite all applicants to join us and experience what it means to be part of Mass General Brigham. Job Summary Under the direction of the Audit Supervisor and according to established policies and procedures, the individual is responsible for accurately abstracting protected health information (PHI) by sorting, categorizing, searching, retrieving, and sending encounter documentation to support the Mass General Brigham reimbursement and/or compliance audits for services rendered. The Audit Abstractor is responsible for, including but not limited to, responding to third party payer requests, appeals, denials, QIO, Mass Health, RAC, CMS, ADR, HEDIS, Medicare Risk Adjustment, CERT, CDAC, DPH reporting, DRG, charge audits, joint venture audits, internal compliance audits, DME, Patient Financial Services (PFS), OIG, and/or third party payer audits. Fulfillment of such requests are performed on a timely basis ensuring that assigned due dates are met. Qualifications - Ability to prioritize competing tasks to ensure all due dates are met or exceeded - Accept ownership of assigned requests and worklists reaching out for clarification if necessary - Understands and enforces hospital confidentiality policies and procedures, department policies and procedures including Massachusetts General Laws (MGL), Federal Public Health Laws, HITECH, and HIPAA regulatory guidelines - Reviews requests to determine completeness and validity of authorization. Understands the rules governing the release of sensitive/protected PHI as pertaining to HIPAA, CFR 42 Part 2 rules, MA public health laws, MA mental health laws regulations, as well as, Mass General Brigham policies and procedures. Able to redact information when necessary. - Maintains up-to-date knowledge of third party payer billing requirements to support services billed, including required medical documentation based on billing compliance rules - Locates medical record numbers and dates of service for encounters to be reviewed in system applications in response to requests - Produces computer-generated PHI from respective system applications including legacy applications - Coordinates electronic and paper record retrievals, trouble shoots for required records/documentation in response to a request and/or audit - Orders paper records as needed - Coordinates the retrieval of site specific applicable joint venture records required for an audit - Effectively utilizes Cobius, (emDR and esMD, including accessing requests, posting pdf’s, merging and delivering pdf’s), secure delivery server, e-fax, Adobe (searching, redacting, merging files, and securing security settings), portals, legacy applications, archived systems, and scanning documents. - Acquires and maintains a strong working knowledge of the secure delivery server and e-fax functionality. Able to troubleshoot issues as needed. - Examines records to be released and/or audited to ensure required and complete documentation is available to meet the requirements of a request - Works independently, as well as, contributes as a productive member of a team - Notifies the HIM Notes Deficiency if required documentation is missing for assistance. Troubleshooting may also require contacting appropriate providers/clinics to obtain required documentation. - Prepares and delivers records to the designated review/audit location in a timely manner for onsite audits - Ensures 100% of requested records made available for an audit on time or provides expeditious mitigation to reconcile as needed - Photocopies paper records and/or prepares PDF’s for stat deliveries as needed - Prepares and coordinates the delivery of PHI via FedEx/UPS/US Mail, Cobius esMD, portal, e-fax, or secure delivery server to recipient as directed for offsite audits - Enters and fulfills all requests in logging system for tracking purposes - Meets performance measures/expectations - Other duties as assigned by the supervisor or manager Education - Associate degree or High school diploma or equivalent required - Experience working in the Health Information Management field; minimum of 1-2 years experience preferred Experience - Understands the components of a medical record, including how a record is maintained, organized and the retrieval of medical documentation in both paper and/or electronic format - General understanding of reimbursement and billing compliance requirements - General knowledge of medical terminology - General knowledge of HIPAA privacy and security rules and state and federal rules and regulations related to the disclosure of protected health information preferred - Experience working with Epic clinical and/or financial applications preferred Skills/Abilities/Competencies - Self motivated and able to manage time effectively in a fast paced work environment - Medical Terminology - Strong computer skills - Proficient utilization in Microsoft Office products (Outlook, Teams, Word, PowerPoint, and Excel) - Exhibits critical thinking skills - Proficiency in the use of Adobe software - Ability to adapt to system enhancements and the onboarding of new site locations - Exhibits strong professionalism and highly proficient persona - Exhibits strong oral and written communication skills - Detail-Oriented - Excellent analytical and problem solving skills - Ability to be flexible, versatile, and adaptable in day to day activities conducted in a multi-site environment - Ability to manage workload and competing priorities in order to complete tasks within set limits - Ability to produce quality work on a consistent basis - Ability to work cooperatively and efficiently within all levels of the Mass General Brigham organization - Ability to work independently and as a team player - Demonstrates commitment to delivery of high quality customer service - Uses the Mass General Brigham values to govern decisions, actions and behaviors. These values guide how we get our work done: Patients, Affordability, Accountability and Service Commitment, Decisiveness, Innovation and Thoughtful Risk; and how we treat each other: Diversity and Inclusion, Integrity and Respect, Learning, Continuous Improvement and Personal Growth, Teamwork and Collaboration Additional Job Details (if applicable) - M-F 9:00am – 5:30pm EST schedule required for remote role - Quiet, secure, stable, compliant work station required Remote Type Remote Work Location 121 Innerbelt Road Scheduled Weekly Hours 40 Employee Type Regular Work Shift Day (United States of America) Pay Range $22.22 - $31.71/Hourly Grade 4 At Mass General Brigham, we believe in recognizing and rewarding the unique value each team member brings to our organization. Our approach to determining base pay is comprehensive, and any offer extended will take into account your skills, relevant experience if applicable, education, certifications and other essential factors. The base pay information provided offers an estimate based on the minimum job qualifications; however, it does not encompass all elements contributing to your total compensation package. In addition to competitive base pay, we offer comprehensive benefits, career advancement opportunities, differentials, premiums and bonuses as applicable and recognition programs designed to celebrate your contributions and support your professional growth. We invite you to apply, and our Talent Acquisition team will provide an overview of your potential compensation and benefits package. EEO Statement: 0100 Mass General Brigham Incorporated is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religious creed, national origin, sex, age, gender identity, disability, sexual orientation, military service, genetic information, and/or other status protected under law. We will ensure that all individuals with a disability are provided a reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. To ensure reasonable accommodation for individuals protected by Section 503 of the Rehabilitation Act of 1973, the Vietnam Veteran’s Readjustment Act of 1974, and Title I of the Americans with Disabilities Act of 1990, applicants who require accommodation in the job application process may contact Human Resources at (857)-282-7642. Mass General Brigham Competency Framework At Mass General Brigham, our competency framework defines what effective leadership “looks like” by specifying which behaviors are most critical for successful performance at each job level. The framework is comprised of ten competencies (half People-Focused, half Performance-Focused) and are defined by observable and measurable skills and behaviors that contribute to workplace effectiveness and career success. These competencies are used to evaluate performance, make hiring decisions, identify development needs, mobilize employees across our system, and establish a strong talent pipeline.



