The Senior Security Engineer II will be responsible for designing, implementing, and maintaining security services that support our business. You will understand data and automation are important ingredients to our mission and know how to actively employ these ingredients at scale. Beyond the technical expertise, we value individuals who can partner cross-functionally across various teams, driving impactful outcomes and further securing our digital landscape.
Primary Duties:Working cross functionally to design, build, and operate solutions that continuously improve and automate our security capabilitiesLeveraging data to understand trends, metrics, and opportunities to improve our security posture and then helping execute on those opportunities with stakeholdersLeading and enhancing incident / issues response efforts, spearheading analysis, containment, and mitigation strategies in a cross-functional environment to ensure effective resolution and remediation of security incidents / issuesHelping craft and refine security documentation pertinent to our Security Program, such as policies, standards, baselines, and standard operating proceduresMentoring and coaching more junior engineers or analystsMinimum Qualifications:BS/BTech (or higher) in Computer Science, Information Technology, Cybersecurity or a related field, 10 years security domain experience without degree6+ years of experience in securing and deploying applications within Cloud Native environments3+ years of experience in a dedicated application security role with focus on establishing secure SDLC and DevSecOps processes.Preferred Knowledge, Skills, and/or Abilities:Application SecurityKnowledge of health-tech systems, like Electronic Health Records, Clinical data, PHI, etc, direct experience preferred.Experience architecting, developing, and deploying large-scale distributed systems at scale.Extensive experience identifying, evaluating and triaging vulnerabilities with Static/Dynamic Application Security Testing (SAST/DAST) methodologies and tools.Proven experience conducting code reviews, and threat modeling.Extensive experience with developing automated security testing and validation systems using Terraform, Cloudformation, Python, etc.Proficient in coding languages such as Python, R, C++, Javascript.Extensive experience working in AWS/Azure/GCP software development environment..Proven experience with implementing security controls for web-based SaaS applications such as API Security, WAF, etc.In-depth knowledge of AI/LLM and machine learning architectures and best practices for securing them.In-depth knowledge of OWASP Top 10 vulnerabilities along with containment and remediation best practices.Strong familiarity with server-side web technologies (eg: Java, Python, Scala, C#, C++, Go).4+ years of experience acting as a trusted technical decision-maker in a team setting, solving for short-term and long-term business valueExperience with health-tech systems, like Electronic Health Records, Clinical data, etc preferred.Who We Are:
Aledade, a public benefit corporation, exists to empower the most transformational part of our health care landscape - independent primary care. We were founded in 2014, and since then, we've become the largest network of independent primary care in the country - helping practices, health centers and clinics deliver better care to their patients and thrive in value-based care. Additionally, by creating value-based contracts across a wide variety of payers, we aim to flip the script on the traditional fee-for-service model. Our work strengthens continuity of care, aligns incentives, and ensures primary care physicians are paid for what they do best - keeping patients healthy. If you want to help create a health care system that is good for patients, good for practices and good for society - and if you're eager to join a collaborative, inclusive and remote-first culture - you've come to the right place.
What Does This Mean for You?
At Aledade, you will be part of a creative culture that is driven by a passion for tackling complex issues with respect, open-mindedness and a desire to learn. You will collaborate with team members who bring a wide range of experiences, interests, backgrounds, beliefs and achievements to their work - and who are all united by a shared passion for public health and a commitment to the Aledade mission.
In addition to time off to support work-life balance and enjoyment, we offer the following comprehensive benefits package designed for the overall well-being of our team members:
Flexible work schedules and the ability to work remotely are available for many roles
Health, dental and vision insurance paid up to 80% for employees, dependents, and domestic partners Robust time off plan 21 days of PTO in your first year 2 Paid Volunteer Days & 11 paid holidays
12 weeks paid Parental Leave for all new parents
6 weeks paid sabbatical after 6 years of service
Educational Assistant Program & Clinical Employee Reimbursement Program
401(K) with up to 4% match
Stock options
And much more!
At Aledade, we don’t just accept differences, we celebrate them! We strive to attract, develop, and retain highly qualified individuals representing the diverse communities where we live and work. Aledade is committed to creating a diverse environment and is proud to be an equal opportunity employer. Employment policies and decisions at Aledade are based on merit, qualifications, performance, and business needs. All qualified candidates will receive consideration for employment without regard to age, race, color, national origin, gender (including pregnancy, childbirth or medical conditions related to pregnancy or childbirth), gender identity or expression, religion, physical or mental disability, medical condition, legally protected genetic information, marital status, veteran status, or sexual orientation.