Senior Cyber Security Engineer

SCAN

Long Beach (CA)

On-site

USD 106,000 - 183,000

Full time

10 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Annual bonus
Wellness program
PTO
11 holidays
401(k)
Tuition reimbursement

Job summary

SCAN is seeking an experienced Cloud/App Security Engineer to design, deploy, and secure our Azure-based infrastructure, with HIPAA/HITRUST compliance and high availability for patient data. The role emphasizes cloud security, application security, APIs, and DevSec as part of secure, scalable healthcare solutions.

The ideal candidate will have deep Azure knowledge, Azure DevOps CI/CD experience, IaC, and a proven track record implementing least-privileged access and Zero Trust for sensitive

Qualifications

  • 10+ years in IT security or related field.
  • 6+ years in cloud/app security with 3+ years in Azure.
  • Experience with APIs, DevSec, and cloud app security.

Responsibilities

  • Design, implement, and test security controls for Azure cloud infrastructure.
  • Secure resources (VMs, App Services, SQL, Entra ID, etc.)
  • Automate deployments via CI/CD pipelines and IaC.

Skills

Azure
Azure DevOps
IaC
Zero Trust
IAM
Python
SAST/DAST
Cloud security
OSCP/Certs
CI/CD

Education

Bachelor’s degree in computer science or equivalent
Azure/AWS cloud engineer certification
Cybersecurity certifications (CISSP/Cert)

Tools

Terraform
ARM templates
Bicep
Azure DevOps
GitHub
PowerShell

Job description

Founded in 1977 as the Senior Care Action Network, SCAN began with a simple but radical idea: that older adults deserve to stay healthy and independent. That belief was championed by a group of community activists we still honor today as the "12 Angry Seniors." Their mission continues to guide everything we do.

Today, SCAN is a nonprofit health organization serving more than 500,000 people across Arizona, California, Nevada, New Mexico, Texas, and Washington, with over $8 billion in annual revenue. With nearly five decades of experience, we have built a distinctive, values-driven platform dedicated to improving care for older adults.

Our work spans Medicare Advantage, fully integrated care models, primary care, care for the most medically and socially complex populations, and next-generation care delivery models. Across all of this, we are united by a shared commitment: combining compassion with discipline, innovation with stewardship, and growth with integrity.

At SCAN, we believe scale should strengthen-not dilute-our mission. We are building the future of care for older adults, grounded in purpose, accountability, and respect for the people and communities we serve.

The Job

We are seeking a skilled Cloud/App Security Engineer with expertise in Microsoft Azure to design, deploy, and secure our cloud infrastructure with detail to regulatory compliance (HIPAA, HITRUST), high availability, and data security for patient-centric solutions. The ideal candidate will have a deep understanding of cloud security and application security, including experience with APIs, DevSec, and Cloud applications. They will be responsible for designing, implementing, and testing security solutions and controls for our organization’s applications and integrations.

Essential Job Results
  • 6+ years of experience in cloud/app security, with at least 3 years focused on Microsoft Azure. Proven experience with Azure DevOps for CI/CD pipelines and Infrastructure as Code (IaC) implementation.
  • Strong knowledge of coding best practices and alignment with OWASP and OWASP for AI.
  • Design and implement scalable, secure, and resilient security solutions for Azure cloud infrastructure solutions tailored to healthcare applications and sensitive patient data.
  • Secure Azure resources such as Virtual Machines, App Services, Azure SQL, Entra ID, Azure Storage Accounts, Azure Container Registry, Azure Kubernetes, Azure Data Factory, Private Endpoints, Linux/Unix VMs, and Virtual Networks.
  • Strong understanding of IAM, RBAC, and Managed Identities and experience with creating and provisioning least privileged roles in alignment with Zero Trust.
  • Develop and manage Infrastructure as Code (IaC) using tools such as ARM templates, Bicep, or Terraform within Azure DevOps CI/CD pipelines.
  • Familiarity with Azure security and networking components, such as Azure Firewall, Network Security Groups (NSGs), and Virtual Networks (VNets).
  • Automate cloud security and deployments using Azure DevOps, GitHub, or PowerShell.
  • Monitor system performance and availability using Azure Monitor, Log Analytics, and other monitoring tools.
  • Working knowledge of Vulnerability and Application Security using Static Application Security Testing (SAST), and Dynamic Application Security Testing (DAST).
  • Work collaboratively with cross-functional teams to support DevOps practices and CI/CD pipelines and implement best practices.
  • Extensive hands-on experience in securing and support of Microsoft Technology stack for example: Azure Resources, Defender for Cloud, Azure DevOps, Azure Advanced Security, M365, O365, Power platform/Dynamics, SharePoint Online, Intune, and Windows 365 Cloud PC/DaaS.
  • Supports Microsoft and Linux technologies – design, architecture, and Implementation, Active Directory/EntraID, Intune, and IIS) including 32-bit and 64-bit architecture.
  • Skills in API usage for integration and CLI and SDKs for application troubleshooting are desirable.
  • Wear multiple hats and work in a team with team members having similar skills sets.
  • Project and task management that includes planning, prioritizing, organizing, gathering facts, exercising sound judgment in problem solving, decision making and facilitating solutions.
  • Maintains data integrity in the organization’s systems while keeping strict confidentiality of the information within.
  • Adapts to frequently changing priorities and deadlines.
  • Detail oriented with ability to follow through to completion, along with the ability to focus on tasks and maintain concentration to complete tasks and assignments.
  • Maintains professional and technical knowledge by attending educational workshops; reviewing professional publications; establishing personal networks; participating in professional societies.
  • Provides escalation support for various development and infrastructure teams as well as other groups within IT. Contributes team effort by accomplishing related results as needed. Ensure accurate and timely completion of all the work assigned.
Preferred Qualifications
  • Bachelor’s degree in computer science or equivalent experience (minimum 10 years).
  • Active Azure and/or AWS cloud Engineer certification required.
  • Relevant certifications (preferred but not required), such as Microsoft Certified: Cybersecurity Architect Certified, CISSP, CSSP
  • Experience in Agile/Scrum environments.
  • Knowledge of securing hybrid cloud architectures integrating Azure with on-premises infrastructure.
  • SAFE/Agile experience preferred but not required.
  • Strong verbal and written communication skills.
  • Experience with Change/Release Management.
  • Experience with HIPAA compliance and HITRUST certification.
  • Technical knowledge of Configuring Identity Management and Roles.
  • 5+ years of experience with Application Security.
  • Experience with application monitoring of Windows systems and services.
  • Dev Experience and hands on with experience with coding languages such as Python.
  • Must be able to provide exceptional technical documentation.
  • Demonstrate problem solving skills and troubleshooting techniques.
  • Ability to multi-task and handle a variety of work assignments.
  • Ability to maintain data integrity in the organization’s systems and strict confidentiality of information.
  • Must be able to work under frequently changing priorities and deadlines.
  • Detail oriented with ability to follow through to completion, along with the ability to focus on tasks and maintain concentration to complete tasks and assignments.
Conditions Of Work
  • Office Hours: Monday-Friday, 8am to 5pm. Extended work hours, as needed.
  • On call responsibility.
  • May require travel to SCAN remote offices.
  • May require after hours and weekend work for security incidents, as approved.
What’s in it for you?
  • Base salary range: $106,200 to $182,983 annually
  • An annual employee bonus program
  • Robust Wellness Program
  • Generous paid-time-off (PTO)
  • 11 paid holidays per year, 1 floating holiday, birthday off, and 2 volunteer days
  • Excellent 401(k) Retirement Saving Plan with employer match
  • Robust employee recognition program
  • Tuition reimbursement
  • An opportunity to become part of a team that makes a difference to our members and our community every day!
Equal Opportunity Employer/Protected Veterans/Individuals With Disabilities

The contractor will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor’s legal duty to furnish information. 41 CFR 60-1.35(c)

SCAN is proud to be an Equal Employment Opportunity and  Affirmative Action workplace. Individuals seeking employment will receive consideration for employment without regard to race, color, national origin, religion, age, sex (including pregnancy, childbirth or related medical conditions), sexual orientation, gender perception or identity, age, marital status, disability, protected veteran status or any other status protected by law. A background check is required.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cyber Security Engineer
Senior Cyber Security Engineer

SCAN Group • Long Beach (CA)

On-site
USD 106,000 - 183,000
Annual bonus program
Wellness program
PTO and holidays
+2
Information Security Engineer
Information Security Engineer

SCAN • Long Beach (CA)

On-site
USD 92,000 - 159,000
Salary range
Annual bonus
Wellness program
+3
Staff Software Engineer
Staff Software Engineer

SCAN Health Insurance • City of Long Beach (NY)

Hybrid
USD 106,000 - 183,000
Annual bonus program
Wellness Program
PTO
Information Security Engineer
Information Security Engineer

SCAN Health Plan • Long Beach (CA), Northern (KY)

Hybrid
USD 92,000 - 159,000
Annual bonus program
Wellness program
PTO and holidays
+2
Information Security Engineer
Information Security Engineer

GRP SCAN Group • City of Long Beach (NY)

Hybrid
USD 92,000 - 159,000
Annual bonus program
Wellness program
PTO
End User Support Specialist II
End User Support Specialist II

SCAN Health Insurance • City of Long Beach (NY)

On-site
USD 88,169,000 - 127,569,000
Hourly pay range
Annual bonus program
Wellness program
+5
Forward-deployed AI Engineer
Forward-deployed AI Engineer

SCAN • Long Beach (CA)

On-site
USD 125,000 - 216,000
Bonus program
Wellness program
Generous PTO
+4
End User Support Specialist II
End User Support Specialist II

SCAN • Long Beach (CA)

On-site
USD 88,169,000 - 127,569,000
Annual bonus program
Wellness program
PTO
+3
Senior Staff Software Engineer
Senior Staff Software Engineer

GRP SCAN Group • City of Long Beach (NY)

On-site
USD 106,000 - 183,000
Annual bonus
Generous PTO
Paid holidays
+5
Sr Software Engineer, CRM
Sr Software Engineer, CRM

SCAN • Long Beach (CA)

On-site
USD 106,000 - 183,000
Annual employee bonus program
Robust Wellness Program
Generous paid-time-off (PTO)
+2