Modern Health

Offering global, personalized mental health care designed to help you feel more resilient, productive, and empowered.

Product Security Engineer

Security EngineerSecurity EngineerFull TimeRemoteTeam 201-500Since 2017H1B No SponsorCompany SiteLinkedIn

Location

United States

Posted

5 days ago

Salary

$119.3K - $140.4K / year

2 yrs expEnglishCloudPythonSDLCVault

Job Description

• Analyze security vulnerabilities in web and mobile applications, determine risk levels, and drive remediations in collaboration with engineering teams. • Research and report on potential product threats, emerging vulnerabilities, and mitigation techniques relevant to the evolving health tech landscape. • Partner with Engineering and Product stakeholders to integrate security at every stage of the SDLC, championing secure development practices and agile delivery. • Develop and advocate for cost-effective solutions to address complex application and product security challenges. • Implement the adoption of product security standards and best practices across the organization, influencing engineering and architecture decisions. • Routinely test, audit, and assess the security posture of application and cloud infrastructure configurations. • Guide engineering teams in applying secure coding standards, providing resources and actionable feedback to foster a culture of security. • Deploy, optimize, and manage security tooling such as SAST, DAST, Hashicorp Vault, and other industry-leading application security solutions. • Participate in collaborative threat modeling initiatives for new features and evolving services, ensuring proactive risk identification and reduction. • Conduct secure code reviews on services and applications built with modern frameworks and technologies. • Assist in planning and executing targeted penetration tests on new features, identifying and reporting vulnerabilities before production release. • Collaborate on IT security initiatives, partnering with infrastructure and operations teams to review security controls for device management, endpoint protection, access management, and overall IT hygiene. • Engage with Cloud Security efforts by partnering with DevOps and Infrastructure teams to assess, improve, and monitor cloud architecture, security policies, and cloud-native controls to ensure secure deployment and operations of applications and services.

Job Requirements

  • You bring 2-4 years of experience in product/application security or 1-3 years in security-focused software engineering.
  • You are deeply familiar with secure software development practices, security-focused architecture, and infrastructure that aligns with product objectives and business needs.
  • You support the adoption of application and product security best practices across engineering teams and contribute to business-wide security initiatives.
  • You have hands-on experience with vulnerability management, secure code review, threat modeling, and industry-standard tools for application and product security.
  • You have hands-on experience with at least one scripting language (Python and/or Bash preferred).
  • You thrive in fast-paced, collaborative environments, working closely with developers, product managers, and cross-functional stakeholders to secure web and mobile applications.
  • You are able to assess, prioritize, and execute on projects independently.
  • You are comfortable working in a fast-paced environment.
  • You have excellent written and verbal communication skills.

Benefits

  • Medical / Dental / Vision / Disability / Life Insurance
  • High Deductible Health Plan with Health Savings Account (HSA) option
  • Flexible Spending Account (FSA)
  • Access to coaches and therapists through Modern Health's platform
  • Flexible Time Off
  • Company-wide Collective Pause Days
  • Parental Leave Policy
  • Family Forming Benefit through Carrot
  • Family Assistance Benefit through UrbanSitter
  • Professional Development Stipend
  • 401k
  • Financial Planning Benefit through Origin
  • Annual Wellness Stipend to use on items that promote your overall well being
  • New Hire Stipend to help cover work-from-home setup costs
  • ModSquad Community: Virtual events like active ERGs, holiday themed activities, team-building events and more
  • Monthly Cell Phone Reimbursement

Related Categories

Related Job Pages

More Security Engineer Jobs

Security Researcher

DXC Technology

Delivering excellence for our customers and colleagues

Security Engineer5 days ago
Full TimeRemoteTeam 10,001+Since 2017H1B Sponsor

Security Researcher analyzing code and researching new threats for Aikido's platform

Python
United States

Director of Security – IT

NetBox Labs

We make it easier to build and manage complex networks.

Security Engineer5 days ago
Full TimeRemoteTeam 11-50Since 2023H1B No Sponsor

Director of Security & IT leading security initiatives at NetBox Labs

Cloud
United States
$215K - $230K / year

Talen Acquisition Recruiter

Johnson Controls

Transforming the buildings where people live, work, learn and play to become smarter, healthier and more sustainable.

Security Engineer5 days ago
Full TimeRemoteTeam 10,001+Since 1885H1B Sponsor

The Talent Acquisition Recruiter supports full-cycle hiring by sourcing candidates, coordinating interviews, partnering with hiring managers, and ensuring a positive candidate experience. This role manages day-to-day recruiting activities to meet staffing needs by communicating consistently with stakeholders and following established best practices.

United States
$76K - $105K / year
Security Engineer5 days ago
Full TimeRemoteTeam 1,001-5,000Since 1973H1B No Sponsor

The Senior Security Risk Analyst is tasked with identifying, assessing, reporting, and monitoring security risks across enterprise security and business functions. This includes conducting comprehensive risk assessments, reviewing policy exceptions, performing vendor risk assessments, and serving as a project security advisor.

United States
$89.3K - $134K / year