Senior Cyber Security Engineer

SCAN Health Plan

Long Beach, Northern (CA, KY)

Hybrid

USD 106,000 - 183,000

Full time

2 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Base salary range
Annual bonus program
Generous PTO

Job summary

SCAN Health Plan is seeking a skilled Cloud/App Security Engineer with Microsoft Azure expertise to design, deploy, and secure cloud infrastructure with HIPAA/HITRUST compliance for patient-centric solutions.

Ideal candidate has 6+ years in cloud/app security, 3+ years in Azure, and experience with Azure DevOps, IaC, and secure coding practices. Strong collaboration with DevOps teams is required.

Qualifications

  • 6+ years of experience in cloud/app security, with at least 3 years focused on Microsoft Azure.
  • Experience with Azure DevOps for CI/CD pipelines and Infrastructure as Code (IaC) implementation.
  • Strong knowledge of coding best practices and alignment with OWASP and OWASP for AI.
  • Design and implement scalable, secure, and resilient security solutions for Azure cloud infrastructure solutions tailored to healthcare applications and sensitive patient data.

Responsibilities

  • Design, deploy, and secure our Azure cloud infrastructure.
  • Develop and test security controls for applications and integrations.
  • Automate cloud security and deployments using IaC and CI/CD pipelines.

Skills

Azure security
CI/CD pipelines
IaC
OWASP
Zero Trust
IAM/RBAC
Python
API security

Education

Bachelor’s degree in computer science

Tools

Azure DevOps
Terraform
ARM templates
Bicep
PowerShell
GitHub
Azure CLI

Job description

Founded in 1977 as the Senior Care Action Network, SCAN began with a simple but radical idea: that older adults deserve to stay healthy and independent. That belief was championed by a group of community activists we still honor today as the “12 Angry Seniors.” Their mission continues to guide everything we do. Today, SCAN is a nonprofit health organization serving more than 500,000 people across Arizona, California, Nevada, New Mexico, Texas, and Washington, with over $8 billion in annual revenue. With nearly five decades of experience, we have built a distinctive, values-driven platform dedicated to improving care for older adults. Our work spans Medicare Advantage, fully integrated care models, primary care, care for the most medically and socially complex populations, and next-generation care delivery models. Across all of this, we are united by a shared commitment: combining compassion with discipline, innovation with stewardship, and growth with integrity. At SCAN, we believe scale should strengthen—not dilute—our mission. We are building the future of care for older adults, grounded in purpose, accountability, and respect for the people and communities we serve.

The Job:

We are seeking a skilled Cloud/App Security Engineer with expertise in Microsoft Azure to design, deploy, and secure our cloud infrastructure with detail to regulatory compliance (HIPAA, HITRUST), high availability, and data security for patient‑centric solutions. The ideal candidate will have a deep understanding of cloud security and application security, including experience with APIs, DevSec, and Cloud applications. They will be responsible for designing, implementing, and testing security solutions and controls for our organization’s applications and integrations.

ESSENTIAL JOB RESULTS:

6+ years of experience in cloud/app security, with at least 3 years focused on Microsoft Azure. Proven experience with Azure DevOps for CI/CD pipelines and Infrastructure as Code (IaC) implementation. Strong knowledge of coding best practices and alignment with OWASP and OWASP for AI. Design and implement scalable, secure, and resilient security solutions for Azure cloud infrastructure solutions tailored to healthcare applications and sensitive patient data. Secure Azure resources such as Virtual Machines, App Services, Azure SQL, Entra ID, Azure Storage Accounts, Azure Container Registry, Azure Kubernetes, Azure Data Factory, Private Endpoints, Linux/Unix VMs, and Virtual Networks. Strong understanding of IAM, RBAC, and Managed Identities and experience with creating and provisioning least privileged roles in alignment with Zero Trust. Develop and manage Infrastructure as Code (IaC) using tools such as ARM templates, Bicep, or Terraform within Azure DevOps CI/CD pipelines. Familiarity with Azure security and networking components, such as Azure Firewall, Network Security Groups (NSGs), and Virtual Networks (VNets). Automate cloud security and deployments using Azure DevOps, GitHub, or PowerShell. Monitor system performance and availability using Azure Monitor, Log Analytics, and other monitoring tools. Working knowledge of Vulnerability and Application Security using Static Application Security Testing (SAST), and Dynamic Application Security Testing (DAST). Work collaboratively with cross-functional teams to support DevOps practices and CI/CD pipelines and implement best practices. Extensive hands‑on experience in securing and support of Microsoft Technology stack for example: Azure Resources, Defender for Cloud, Azure DevOps, Azure Advanced Security, M365, O365, Power platform/Dynamics, SharePoint Online, Intune, and Windows 365 Cloud PC/DaaS. Supports Microsoft and Linux technologies – design, architecture, and Implementation, Active Directory/EntraID, Intune, and IIS) including 32‑bit and 64‑bit architecture. Skills in API usage for integration and CLI and SDKs for application troubleshooting are desirable. Wear multiple hats and work in a team with team members having similar skills sets. Project and task management that includes planning, prioritizing, organizing, gathering facts, exercising sound judgment in problem solving, decision making and facilitating solutions. Maintains data integrity in the organization’s systems while keeping strict confidentiality of the information within. Adapts to frequently changing priorities and deadlines. Detail oriented with ability to follow through to completion, along with the ability to focus on tasks and maintain concentration to complete tasks and assignments. Maintains professional and technical knowledge by attending educational workshops; reviewing professional publications; establishing personal networks; participating in professional societies. Provides escalation support for various development and infrastructure teams as well as other groups within IT. Contributes team effort by accomplishing related results as needed. Ensure accurate and timely completion of all the work assigned.

PREFERRED QUALIFICATIONS:

Bachelor’s degree in computer science or equivalent experience (minimum 10 years). Active Azure and/or AWS cloud Engineer certification required. Relevant certifications (preferred but not required), such as Microsoft Certified: Cybersecurity Architect Certified, CISSP, CSSP Experience in Agile/Scrum environments. Knowledge of securing hybrid cloud architectures integrating Azure with on-premises infrastructure. SAFE/Agile experience preferred but not required. Strong verbal and written communication skills. Experience with Change/Release Management. Experience with HIPAA compliance and HITRUST certification. Technical knowledge of Configuring Identity Management and Roles. 5+ years of experience with Application Security. Experience with application monitoring of Windows systems and services. Dev Experience and hands on with experience with coding languages such as Python. Must be able to provide exceptional technical documentation. Demonstrate problem solving skills and troubleshooting techniques. Ability to multi‑task and handle a variety of work assignments. Ability to maintain data integrity in the organization’s systems and strict confidentiality of information. Must be able to work under frequently changing priorities and deadlines. Detail oriented with ability to follow through to completion, along with the ability to focus on tasks and maintain concentration to complete tasks and assignments.

CONDITIONS OF WORK:

Office Hours: Monday-Friday, 8am to 5pm. Extended work hours, as needed. On call responsibility. May require travel to SCAN remote offices. May require after hours and weekend work for security incidents, as approved.

What’s in it for you?
  • Base salary range: $106,200 to $182,983 annually
  • An annual employee bonus program
  • Robust Wellness Program
  • Generous paid-time-off (PTO)
  • 11 paid holidays per year
  • 1 floating holiday
  • birthday off
  • 2 volunteer days
  • Excellent 401(k) Retirement Saving Plan with employer match
  • Robust employee recognition program
  • Tuition reimbursement
  • An opportunity to become part of a team that makes a difference to our members and our community every day!

At SCAN we believe that it is our business to improve the state of our world. Each of us has the responsibility to drive Equality in our communities and workplaces. We are committed to creating a workforce that reflects our community through inclusive programs and initiatives such as equal pay, employee resource groups, inclusive benefits, and more. SCAN is proud to be an Equal Employment Opportunity and Aff… Individuals seeking employment will receive consideration for employment without regard to race, color, national origin, religion, age, sex (including pregnancy, childbirth or related medical conditions), sexual orientation, gender perception or identity, age, marriage status, disability, protected veteran status or any other status protected by law.

Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities The contractor will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing or action, including an investigation conducted by the employer, or (c) consistent with the contractor’s legal duty to furnish information.

41 CFR 60‑1.35(c) Become part of a mission‑driven team that makes a difference in the each of us, the SCAN mission is personal. Keeping Seniors Healthy and Independent is our mission and passion. That same commitment carries over to our employees. We provide the training, tools and support necessary to do your work. We reward effort and celebrate success. SCAN both develops and attracts people who are leading experts in their respective fields. If the SCAN mission is one you believe in too, we invite you to explore the career opportunities at SCAN.

Why consider a career at SCAN?
  • A competitive compensation and benefits program
  • An annual employee bonus program
  • Generous paid‑time‑off (PTO)
  • Eleven paid holidays per year
  • Excellent Retirement Savings program
  • A work‑life balance
  • An opportunity to become part of a team that makes a difference to our members and our community every day!

A background check is required.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Engineer
Information Security Engineer

GRP SCAN Group • City of Long Beach (NY)

Hybrid
USD 92,000 - 159,000
Annual bonus program
Wellness program
PTO
Information Security Engineer
Information Security Engineer

SCAN Health Plan • Long Beach (CA), Northern (KY)

Hybrid
USD 92,000 - 159,000
Annual bonus program
Wellness program
PTO and holidays
+2
Forward-deployed AI Engineer
Forward-deployed AI Engineer

GRP SCAN Group • City of Long Beach (NY)

On-site
USD 125,000 - 216,000
Annual bonus program
Wellness program
11 paid holidays PTO
+2
Staff Software Engineer, Power Automation
Staff Software Engineer, Power Automation

GRP SCAN Group • City of Long Beach (NY)

On-site
USD 106,000 - 183,000
Annual bonus program
Wellness Program
Generous PTO
+3
End User Support Specialist II
End User Support Specialist II

GRP SCAN Group • City of Long Beach (NY)

On-site
USD 43,000 - 62,000
Bonus program
Wellness program
PTO
+3
End User Support Specialist II
End User Support Specialist II

SCAN Health Plan • Long Beach (CA), Northern (KY)

Hybrid
USD 43,000 - 62,000
Annual bonus
Paid time off (PTO)
11 holidays per year
+2
Principal AI Security Engineer
Principal AI Security Engineer

GRP SCAN Group • City of Long Beach (NY)

On-site
USD 125,000 - 182,000
Wellness Program
PTO (paid time off)
11 holidays per year
+4
AI Feature Lead
AI Feature Lead

GRP SCAN Group • Long Beach (CA)

Hybrid
USD 106,000 - 183,000
Annual bonus program
Wellness program
Generous PTO
+1
Forward-deployed AI Engineer
Forward-deployed AI Engineer

SCAN Health Plan • Long Beach (CA), Northern (KY)

Hybrid
USD 125,000 - 216,000
Base Salary support
Wellness Program
Generous PTO
+3
Information Security Engineer
Information Security Engineer

SCAN • Long Beach (CA)

On-site
USD 92,000 - 159,000
Salary range
Annual bonus
Wellness program
+3