Back to Jobs

Sr. Information Security Engineer

Remote, USA Full-time Posted 2026-06-06

Sr. Information Security Engineer Remote Opportunity Position Summary The Senior Information Security Engineer plays a key role in safeguarding the company's cloud-based healthcare SaaS platforms, infrastructure, and customer data. This position is responsible for designing, implementing, and managing enterprise-grade security solutions that align with regulatory frameworks such as HIPAA, HITRUST, SOC 2, and NIST 800-53. The ideal candidate is a hands-on technologist with deep knowledge of cloud security (AWS/Azure), DevSecOps practices, endpoint protection, identity management, and security automation. Key Responsibilities 1. Cloud and Infrastructure Security

  • Design and maintain secure architectures across AWS, Azure, and GCP environments.
  • Implement guardrails and controls using services such as AWS Security Hub, GuardDuty, Config, and IAM.
  • Conduct regular vulnerability scans, configuration reviews, and remediation tracking for infrastructure and workloads.
  • Develop and enforce network segmentation, encryption, and key management policies.

2. Application & SaaS Security

  • Collaborate with DevOps and Engineering to integrate security into CI/CD pipelines (Snyk, StackHawk, etc.).
  • Perform threat modeling, code reviews, and secure design reviews for microservices and APIs.
  • Support penetration testing and application security validation efforts.
  • Help ensure PHI/PII is protected across all SaaS platforms.

3. Endpoint & Identity Security

  • Manage and enhance EDR/XDR solutions (e.g., Cortex, Defender for Endpoint).
  • Implement and monitor identity security controls through Microsoft Entra ID (Azure AD), Conditional Access, and PIM.
  • Support Intune and MDM compliance policies for Windows, macOS, and mobile devices.

4. Security Operations & Incident Response

  • Monitor alerts, investigate incidents, and coordinate responses with the SOC.
  • Develop and improve incident response runbooks, playbooks, and forensic analysis procedures.
  • Support SIEM integrations and continuous improvement of detection use cases.

5. Governance, Risk & Compliance

  • Support audits and evidence collection for HIPAA, HITRUST, SOC 2, and customer security assessments.
  • Maintain asset inventories, risk registers, and remediation tracking.
  • Collaborate with Compliance to ensure alignment between security controls and policies.
  • Contribute to security awareness and training initiatives.

Qualifications

Required:

  • Bachelor's degree in Computer Science, Information Security, or equivalent experience.
  • 5+ years of experience in security engineering or related technical security roles.
  • Strong knowledge of cloud-native security (AWS, Azure) and modern SaaS architectures.
  • Hands-on experience with SIEM, EDR/XDR, IAM, vulnerability management, and security automation.
  • Familiarity with HIPAA, HITRUST, and SOC 2 requirements.
  • Experience securing containerized and serverless workloads (e.g., EKS, Lambda).

Preferred:

  • Certifications such as CISSP, CISM, CCSP, AWS Security Specialty, or GIAC (GSEC, GCIA, GCIH).
  • Experience with Terraform, Ansible, or CloudFormation for infrastructure-as-code security.
  • Experience in DevSecOps pipelines and tools (e.g., Jenkins, Bitbucket).
  • Strong scripting skills (Python, PowerShell, or Bash).

Key Competencies

  • Analytical and detail-oriented with strong problem-solving skills.
  • Ability to balance business needs with risk mitigation.
  • Excellent communication skills, able to translate complex technical topics for non-technical stakeholders.
  • Collaborative team player with a proactive approach to continuous improvement.

Our compensation reflects the cost of labor across several US geographic markets. Pay is based on several factors including market location and may vary depending on job-related knowledge, skills, and experience. Reveleer E-Verifies all new hires. Reveleer is an equal opportunity employer. We do not discriminate on the basis of race, religion, color, national origin, gender, gender identity, sexual orientation, age, marital status, veteran status, disability status or genetic information, in compliance with applicable federal, state and local law. Apply tot his job Apply To this Job

Similar Jobs

OT/IT Cyber Security Engineer V

Remote, USA Full-time

Web Application Penetration Tester – Cybersecurity Remote

Remote, USA Full-time

Penetration Tester - Contract

Remote, USA Full-time

Security Engineer, Infrastructure Security

Remote, USA Full-time

AI Security Engineer - Remote, Flexible Hours

Remote, USA Full-time

Security Engineer, Privacy

Remote, USA Full-time

Senior Security Engineer, Platform and IAM Support

Remote, USA Full-time

Cybersecurity Engineer, Contract (M365 and Google Workspace, Remote)

Remote, USA Full-time

Associate Principal OT Penetration Tester

Remote, USA Full-time

Analyst - Threat Intelligence Unit

Remote, USA Full-time

Digital Content Publisher job at The Ritz-Carlton Yacht Collection in FL, CT, MD, TN, SC, NC, DC, NY, PA, GA

Remote, USA Full-time

Remote Work-From-Home Customer Service Representative | Airline Passenger Support Specialist - Booking, Inquiries & Travel Assistance

Remote, USA Full-time

Specialist, Study Training Compliance & DOA Management

Remote, USA Full-time

Myasthenia Gravis Network (MGNet) Scholar Program (Research)

Remote, USA Full-time

Orlando, FL based Clinical Specialist - Remote, USA

Remote, USA Full-time

Non-Clinical Case Manager (Patient Support Program) FTC

Remote, USA Full-time

Senior Customer Service Representative – Chesapeake, VA at arenaflex

Remote, USA Full-time

Experienced Data Entry Clerk/Office Associate – SORNA Management Information System

Remote, USA Full-time

Experienced Remote Customer Interaction Specialist – Flexible Hours, Competitive Pay, and Opportunities for Growth

Remote, USA Full-time

Indiana | Mental Health Therapist | Telehealth

Remote, USA Full-time