Capital Rx logo
Capital Rx

Affordable Pharmacy Benefits, Powered by Modern Infrastructure.

Director, Cloud Security

Security EngineerSecurity EngineerFull TimeRemoteLeadTeam 501-1,000Since 2017H1B No SponsorCompany SiteLinkedIn

Location

Colorado + 1 moreAll locations: Colorado | New York

Posted

10 days ago

Salary

$184K - $240K / year

Seniority

Lead

Bachelor Degree10 yrs expEnglishAWSCloudTerraform

Job Description

Director, Cloud Security

Capital Rx

• Lead, mentor, and scale a high-performing cloud security engineering function, fostering strong ownership, operational excellence, and continuous improvement. • Own execution of the cloud security roadmap, prioritizing initiatives across FedRAMP readiness, zero trust architecture, cloud hardening, security automation, and continuous control validation. • Define and evolve the cloud security strategy for Judi Health, aligning technical investments and security architecture decisions to business growth, regulatory commitments, platform resilience goals, and emerging AI initiatives. • Serve as a trusted advisor to the CISO, engineering leaders, and executive stakeholders, helping drive secure-by-design decisions and modern security engineering practices across the organization. • Lead the design, implementation, and continuous improvement of cloud security controls across AWS infrastructure, platforms, application environments, and supporting services. • Identify, prioritize, and drive remediation of security risks across cloud services, infrastructure as code, third-party integrations, developer workflows, and enterprise platforms. • Build and operationalize cloud security capabilities that support compliance with frameworks and customer obligations including FedRAMP, FISMA, SOC 2, HITRUST, HIPAA, and related control requirements. • Drive threat detection, incident response readiness, vulnerability management, penetration testing, and security validation efforts to proactively identify and reduce risk. • Advance automation for security monitoring, alerting, evidence collection, and policy enforcement to improve scalability and support continuous compliance. • Establish meaningful security metrics and reporting for cloud posture, control effectiveness, and roadmap progress, and communicate insights clearly to senior leadership. • Partner with software engineering, platform engineering, DevOps, IT, and AI teams to embed security into architecture, infrastructure, the software development lifecycle, and AI-enabled capabilities. • Work closely with compliance, legal, privacy, and risk management teams to translate regulatory and customer requirements into practical, auditable technical controls. • Lead technical engagement for third-party assessments, customer security reviews, and external audits, ensuring strong preparation, evidence readiness, and timely remediation. • Help define and operationalize a modern security framework for AI initiatives, including governance, data protection, access controls, third-party risk, and secure adoption practices.

Job Requirements

  • 10+ years of experience in cloud security, information security, or related field, including 5+ years in leadership roles.
  • Proven experience leading cloud security or security engineering programs, including team leadership, roadmap execution, and cross-functional influence.
  • Deep expertise in AWS security architecture, cloud-native security controls, and modern practices for securing scalable SaaS environments.
  • Strong technical depth in at least one modern programming or scripting language, with experience enabling secure engineering and automation in cloud environments.
  • Hands-on experience securing infrastructure as code and cloud deployment pipelines, including Terraform and CI/CD environments.
  • Expertise with security tooling and operational disciplines such as SIEM, cloud security posture management, vulnerability management, detection engineering, and incident response.
  • Experience supporting regulated or audited environments, including technical control implementation, evidence management, and readiness for external assessments.
  • Experience partnering with engineering or product teams to define security guardrails and governance for emerging technologies, including AI-enabled initiatives.
  • Strong understanding of identity and access management, least privilege, authentication, privileged access, and zero trust principles.
  • Excellent communication and stakeholder management skills, with the ability to translate complex security priorities into clear decisions and practical outcomes.
  • Ability to operate effectively in a fast-paced, high-growth environment while balancing strategic priorities with hands-on execution.

Related Categories

Related Job Pages

More Security Engineer Jobs

Government of Alberta logo

Information Security Officer

Government of Alberta

Bringing you information about government news and services. Comment rules: http://alberta.ca/SMComments

Full TimeRemoteTeam 10,001+Since 1905H1B No Sponsor

• Assisting in evaluating the security posture of systems and networks, identifying vulnerabilities, and recommending mitigation strategies. • Identifying and assessing risks while maintaining the GoA’s Information Technology Security Risk Register. • Assisting in implementing security controls and measures to safeguard sensitive information and ensure compliance with security policies. • Monitoring security alerts, analyzing potential threats, and responding to security incidents to protect the organization's assets. • Analyzing the latest cybersecurity trends and threats, conducting research to support the development of effective security strategies. • Participating in disaster recovery planning and testing to ensure rapid response to incidents. • Supporting CyberAlberta initiatives and the development of training programs that increase cybersecurity awareness across the GoA.

Canada
$66.1K - $99.2K / year
Job Closed

Role Description The Investigations Division is responsible for reviewing and investigating allegations of misconduct, retaliation, or poor performance involving VA's senior leaders and whistleblower retaliation allegations against all VA supervisors. The Investigations Division makes recommendations for disciplinary, non-disciplinary, and corrective actions to leadership. - Serve as the first line supervisor and manage the day-to-day operations of a staff of investigators in the conduct of administrative investigations and related activities. - Supervise case management and provide technical advice on matters referred to OAWP for investigation. - Develop general investigative strategies and tactics to resolve complex investigative issues. - Investigate matters related to conduct, performance, attendance, whistleblower disclosure, and retaliation. - Investigate allegations of misconduct, retaliation, or poor performance involving: - Individuals in a senior executive position. - Individuals employed in a confidential, policy-making, policy-determining, or policy-advocating position in the Department. - Supervisory employees if the allegation involves retaliation against an employee for making a whistleblower disclosure. - Receive referred disclosures from the Office of Special Counsel (OSC), Medical Inspector, Inspector General, or other investigatory authorities and conduct investigations as appropriate. - Conduct high priority/sensitive fact-finding or investigations requiring tact, diplomacy, and extensive experience. - Make recommendations regarding the assignment, evaluation, and approval of the Director's investigative plan. - Develop, review, approve, coordinate, and distribute detailed reports as appropriate. - Participate in individual and/or group interviews to gather information and data. - Perform the full range of supervisory functions for a staff of investigators, including: - Directly supervising and developing performance plans. - Rating the performance of assigned staff. - Assigning work based on priorities, difficulty, workload, and employee capabilities. - Providing leadership, mentorship, training, and administrative oversight. - Identifying developmental and training needs of employees. - Provide presentations, briefings, case updates, and/or reports to the Director and Senior OAWP leadership. - Maintain communication between field personnel and the Director. - Prepare written communication on behalf of the Director regarding operational procedures. - Assist in oversight of the integrity of data input into OAWP's electronic official system of records. - Develop and/or edit written reports detailing all facts and circumstances affecting Investigations program planning and organizational improvements. - Advise/brief the Director on highly complex and sensitive investigations. - Ensure division employees adapt to changes and guidance in investigations. - Maintain and monitor the case management system for receipt and accountability of information regarding alleged misconduct. - Coordinate cases with internal staff and external offices such as OSC, OIG, MSPB, OPM, and others as requested. - Administer the proper opening and closing of administrative investigations. - Perform other duties as assigned. Qualifications - To qualify for this position, applicants must meet all requirements by the closing date of this announcement, 05/19/2026. - Applicants who are current Federal employees and have held a GS grade any time in the past 52 weeks must meet time-in-grade requirements. - For a GS-14 position, applicants must have served 52 weeks at the GS-13 level. - Specialized experience equivalent to at least the next lower grade GS-13 in the normal line of progression for the occupation is required. - Examples of specialized experience include: - Oversight of case management and provision of technical guidance on complex investigations. - Application of general investigative standards and principles. - Leadership in planning, prioritizing, and conducting investigative work. - Drafting clear, logical, and analytically sound written reports. - Conducting reviews of investigative reports and providing constructive feedback. - Maintenance of strict confidentiality. - Briefing senior leadership on high-impact cases. - Establishment and maintenance of professional relationships with stakeholders. Requirements - At least five years of experience leading and supervising administrative investigative teams focused on high profile, complex cases. - A track record of meeting or beating deadlines without compromising investigative integrity. - At least three years of supervisory experience conducting personnel actions. - Experience coordinating investigations with investigative attorneys. - Significant experience using e-discovery tools such as Relativity. - Exceptional ability to prioritize competing deadlines and utilize tracking systems. Benefits - Work schedule: Required to work Monday through Friday with various tours available pending supervisory approval. - Compressed/Flexible: May be authorized by supervisor. - Remote: Yes. - Relocation/Recruitment Incentives: Not authorized. - Financial Disclosure Report: Not required.

United States
$125.8K / year
Job Closed
LaunchDarkly logo

Product Security Engineer

LaunchDarkly

Empowering all teams to deliver and control their software.

Full TimeRemoteTeam 201-500Since 2014H1B Sponsor

• Lead threat modeling engagements on the features and services where the risk warrants it. • Partner with the ProdSec lead to evolve the practice from on-request to repeatable. • Own day-to-day triage of CNAPP findings end to end. • Contribute to SDLC tooling, SAST/SCA workflows, and bug bounty triage. • Partner with product engineering teams as a trusted reviewer. • Bring AI to the work to accelerate triage, summarize findings, and reduce toil. • Push the security floor up over time through documentation, office hours, and tooling improvements.

United States
$116K - $187K / year
Full TimeRemoteTeam 501-1,000Since 2012H1B Sponsor

• Own day-to-day operation of Liftoff's SIEM (Panther) — log source ingestion, detection content, and the alert investigation pipeline. • Lead Liftoff's adoption of AI-augmented SOC tooling (e.g. Prophet, Dropzone, or equivalent) as a multi-year modernization investment. • Triage incoming security alerts and drive timely investigation and remediation with stakeholders across Engineering and IT. • Lead incident response — investigation, containment, and post-incident review — and mature processes and runbooks so response becomes predictable and repeatable. • Build tooling and automation that detects active threats, enriches alerts, and reduces manual investigation toil. • Partner with Engineering and IT to make detection and response self-service where possible — clear log-onboarding paths, documented detection proposals, accessible runbooks — so security scales without becoming a bottleneck. • Close the feedback loop between the team's offensive and proactive findings and detection coverage. • Partner across the security team on cloud, infrastructure, and application security work alongside your detection and response focus — every engineer on this team covers breadth beyond their primary focus. • Participate in the Security team's on-call rotation and incident response.

California + 15 moreAll locations: California | Colorado | Florida | Idaho | Illinois | Nevada | New Jersey | New York | Oregon | Massachusetts | Michigan | Minnesota | Missouri | Texas | Utah | Washington
$172K - $240K / year