Security Architect

Tandem Inc.

Lehi (UT)

On-site

USD 130,000 - 160,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Competitive salary
Meaningful equity
Direct collaboration with leadership

Job summary

Tandem Inc. is seeking a hands-on Security Architect to design and implement security systems for our AI platform that protects health information. This full-time position at our Lehi, UT headquarters involves developing automated pipelines and owning the security architecture.

The ideal candidate will have over 7 years of experience in security engineering, a strong programming background, and familiarity with compliance like HIPAA and SOC 2. We offer a competitive salary, meaningful equity, and the opportunity to shape our security function.

Qualifications

  • 7+ years in security engineering, application security, or security architecture with a strong code shipping track record.
  • Deep experience in vulnerability research, red team / offensive security, or secure systems design.
  • Experience securing cloud infrastructure (AWS preferred) and modern stacks.

Responsibilities

  • Design and build automated security pipelines against AI-assisted adversaries.
  • Own the full vulnerability lifecycle: discovery, validation, remediation, verification.
  • Lead HIPAA, SOC 2, and emerging compliance programs as engineering work.

Skills

Security engineering
Vulnerability research
Red team / offensive security
Secure systems design
Python
TypeScript/Node
Go
Rust
AWS
Containers

Job description

We're looking for a hands‑on Security Architect to design and build the systems that keep Enzo Health—and the protected health information we’re entrusted with—safe at the speed AI is changing the threat landscape. Offensive tooling, AI‑assisted fuzzing, and LLM‑powered scanners have compressed time‑to‑exploit from weeks to hours. Closing that gap is the job.

This is a builder's role, not a policy role. You'll own the end‑to‑end security architecture of a HIPAA‑regulated AI platform, design automated pipelines that discover, validate, and remediate vulnerabilities, and write the code that makes it real. You'll work directly with engineering leadership to shape both technical direction and security posture from the foundation up.

This is a full‑time, in‑office role at our Lehi, UT headquarters. Remote work is not available for this position.

What you'll do
  • Design and build automated security pipelines that operate at the speed of modern, AI‑assisted adversaries
  • Own the full vulnerability lifecycle: discovery → dynamic validation → automated remediation → verification
  • Build exploit validation harnesses, LLM‑powered remediation tooling, and PR‑time security analysis into our CI/CD
  • Threat‑model our own systems, including AI‑specific attack surfaces (prompt injection, model supply chain, agent abuse)
  • Lead HIPAA, SOC 2, and emerging compliance programs as engineering work, not paperwork
  • Partner with engineering on secure‑by‑default architecture: auth, secrets, data isolation, BAA chain, SSO/SCIM
  • Establish detection, incident response, and observability for the security pipeline itself
  • Write clean, maintainable code and set the bar for security practices across the engineering team
  • Move quickly—balancing rigorous adversarial thinking with shipping working systems
Qualifications
  • 7+ years in security engineering, application security, or security architecture, with a strong track record of shipping code
  • Deep experience in at least one of: vulnerability research, red team / offensive security, or secure systems design
  • Comfort building systems, not just auditing them—you’ve shipped tooling, not just findings
  • Strong programming skills in Python, TypeScript/Node, Go, or Rust
  • Experience securing cloud infrastructure (AWS preferred) and modern stacks: containers, IaC, managed databases, CI/CD
  • Familiarity with HIPAA, SOC 2, HITRUST, or other regulated compliance environments
  • Adversarial mindset—you reflexively threat‑model your own designs and the systems around you
  • Experience or strong interest in AI/ML security: prompt injection, model integrity, LLM‑powered offense and defense
  • Bias toward action and a strong sense of end‑to‑end ownership
  • Able to work full‑time, on‑site in Lehi, UT (relocation considered for the right candidate)
Why This Role Matters

Enzo Health handles protected health information for some of the country's top home health agencies. The trust those agencies place in us is the foundation of everything we ship. As Security Architect, you'll define how we defend a fast‑moving AI platform against a fast‑moving threat landscape—building the systems, not just the policies, that keep our customers and their patients safe.

What We Offer
  • Competitive salary and meaningful equity
  • High ownership and the ability to shape the security function from day one
  • Direct collaboration with founders and engineering leadership
  • A fast‑paced, product‑driven engineering culture
  • The opportunity to defend technology that meaningfully improves healthcare operations
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Architect
Security Architect

Enzo Health • United States

On-site
USD 180,000 - 240,000
Competitive salary
Equity
Founders collaboration
+2
Security Architect — HIPAA‑Secure AI Platform (On‑Site)
Security Architect — HIPAA‑Secure AI Platform (On‑Site)

Enzo Health • United States

On-site
USD 180,000 - 240,000
Competitive salary
Equity
Founders collaboration
+2
Security Engineer - Member of Technical Staff
Security Engineer - Member of Technical Staff

Doist • San Francisco (CA)

On-site
USD 200,000 - 400,000
Equity grants
Comprehensive medical, dental, and vision coverage
Flexible time off policies
Senior Security Engineer, Platforms & AI
Senior Security Engineer, Platforms & AI

Spinwheel Solutions Inc. • Oakland (CA)

On-site
USD 140,000 - 190,000
Remote-First
Salary & Equity
Unlimited PTO
+2
Senior Full Stack Engineer
Senior Full Stack Engineer

Tandem Inc. • Lehi (UT)

On-site
USD 100,000 - 130,000
Competitive salary
Meaningful equity
Remote-friendly work environment
Staff Security Engineer
Staff Security Engineer

Topaz Labs • Dallas (TX)

On-site
USD 150,000 - 210,000
100% covered medical/dental/vision
15 days annual PTO
401k matching
Senior Enterprise Security Architect, AI Health Cloud
Senior Enterprise Security Architect, AI Health Cloud

BrightSpring Health Services • Louisville (KY)

On-site
USD 140,000 - 200,000
Senior Security Engineer, Platforms & AI
Senior Security Engineer, Platforms & AI

Triwill Group • United States

On-site
USD 140,000 - 200,000
Remote-first
Competitive salary
Unlimited PTO
+2
Staff Security Engineer
Staff Security Engineer

Topaz Labs • Emeryville (CA)

On-site
USD 130,000 - 160,000
100% covered medical/dental/vision
15 days annual PTO
401k matching
Senior Engineer, Application Security
Senior Engineer, Application Security

Cvent • Tysons (VA)

Hybrid
USD 120,000 - 160,000
Bonus
Competitive benefits