Senior Security Engineer - Application Security

Khealthcareers

New York (NY)

Hybrid

USD 150,000 - 200,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Hybrid work schedule
18 vacation days
401(k) benefit
Stock options
Paid parental leave

Job summary

Khealthcareers is seeking a Senior Security Engineer to join our InfoSec team in New York City. This position involves developing and implementing security solutions critical to protecting infrastructure, applications, and customer trust within the healthcare technology space.

The ideal candidate will have over 5 years of experience in Information Security, with strong expertise in cloud technologies and compliance requirements. We offer a hybrid work schedule, competitive health benefits, and stock options for full-time employees.

Qualifications

  • 5+ years of experience in Information Security, Cloud Security, IT Security, or Application Security.
  • Strong expertise in cloud technology and modern programming languages.
  • Experience in establishing enterprise-wide security policies.

Responsibilities

  • Lead development of application security protocols throughout the SDLC.
  • Design and monitor cloud security architecture.
  • Conduct vulnerability assessments and penetration tests.

Skills

Information Security
Cloud Security
IT Security
Application Security
Communication skills

Tools

Datadog
GCP
AWS
Azure
Okta

Job description

About the role

This is an opportunity to join K's critical InfoSec team as a Senior Security Engineer and operate with foresight in protecting our infrastructure, applications, cloud security, and customer trust. As a lean team, we span across multiple areas such as AppSec, CloudSec, SecOps, ITSec, and Compliance and apply it towards reading and interpreting architecture, or planning and building out net new security solutions. You will have the autonomy to define and implement cutting‑edge security solutions across our entire technical ecosystem, ensuring our innovative work remains robust and compliant against evolving global threats. This role is crucial for establishing and maintaining a world‑class security posture, particularly within the sensitive and highly regulated healthcare technology space.

This role requires onsite presence in our New York City office 4 days a week and does not provide immigration support.

What you will do
  • Lead the development and implementation of robust application security protocols throughout the entire Software Development Lifecycle (SDLC).
  • Design, deploy, and continuously monitor cloud security architecture across our cloud environments, ensuring performance and resilience.
  • Manage the security posture of K’s core IT infrastructure, internal networks, and perimeter defenses, mitigating threats before they impact operations.
  • Ensure adherence to relevant healthcare regulatory and compliance requirements (e.g., HIPAA, GDPR, etc.) across all product lines and systems.
  • Conduct proactive vulnerability assessments, penetration tests, and security reviews to identify and remediate potential weaknesses in our platforms.
  • Collaborate with engineering teams to integrate security tools and practices into continuous integration/continuous deployment (CI/CD) pipelines.
What we're looking for
  • 5+ years of experience in Information Security, Cloud Security, IT Security, and/or Application Security.
  • Strong expertise in cloud technology (AWS, GCP, or Azure), modern programming languages, utilization of generative coding utilities, and the security implications of utilizing AI code development utilities.
  • Demonstrated experience researching, establishing, and successfully rolling out enterprise‑wide security policies and guidelines.
  • Proven experience establishing a cutting‑edge security posture, particularly within the regulated healthcare technology field.
  • Excellent communication skills, capable of translating complex security risks into clear, actionable advice for technical and non‑technical stakeholders.
  • Expertise in compliance, security, and regulatory areas such as HIPAA, PHI, AKS, SOC 2, ISO, GDPR, etc.
  • Flexibility in covering a rotation for critical on‑call support responsibilities.
Bonus
  • Exploring, partnering and implementing bleeding‑edge tech not readily available to others.
  • Experience with specific tools and tech K uses including but not limited to: Datadog, Sumologic, Torq, flare.io, GCP, Entitle, Okta, Orca, FlowSec, Prisma.
Benefits & Perks
  • Hybrid work schedule with weekly lunches and stocked fridges.
  • Monthly social committees for company events.
  • 18 vacation days, 9 company holidays, 5 sick days, and 2 personal days.
  • Stock options for every full‑time employee.
  • Paid parental leave.
  • 401(k) benefit.
  • Commuter Benefits.
  • Competitive health, dental, and vision insurance options.
Compensation

$150,000 — $200,000 USD

Equal‑Opportunity Statement

We are proud to be an Equal Opportunity Employer and consider applicants for employment regardless of race, ethnicity, religion, color, national origin, ancestry, disability, medical condition, genetic information, marital status, sex, gender, gender identity, gender expression, sexual orientation, pregnancy, childbirth and breastfeeding, age, citizenship, military or veteran status, or any other class protected by applicable federal, state, and local laws. We’re deeply committed to building teams as diverse as the patients we serve and strive to cultivate an environment where everyone can bring their most authentic self to work. We depend on our differences to make our team stronger, our workplace more dynamic, and our product accessible to all of our users.

We offer competitive compensation packages based on industry benchmarks for function, level, and geographic location. Offer amounts are determined by multiple factors such as a candidate's experience and expertise.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Engineer - Application Security
Senior Security Engineer - Application Security

K Health • New York (NY)

On-site
USD 150,000 - 185,000
Hybrid work schedule
18 vacation days
Stock options
+2
Senior Security Engineer - Application Security New York, NY
Senior Security Engineer - Application Security New York, NY

K Health • New York (NY)

On-site
USD 150,000 - 200,000
Senior Security Engineer – Application Security
Senior Security Engineer – Application Security

K Health • New York (NY)

On-site
USD 150,000 - 200,000
Senior Security Engineer - Application Security
Senior Security Engineer - Application Security

Doist • New York (NY)

Hybrid
USD 150,000 - 200,000
Senior Security Engineer - Compliance and Risk
Senior Security Engineer - Compliance and Risk

Khealthcareers • New York (NY)

Hybrid
USD 150,000 - 200,000
Hybrid work schedule
Monthly social committees
18 vacation days
+2
Senior Software Engineer - Full Stack
Senior Software Engineer - Full Stack

Khealthcareers • New York (NY)

Hybrid
USD 160,000 - 200,000
Hybrid work schedule
18 vacation days
Stock options
+2
Senior Software Engineer - Full Stack New York, NY
Senior Software Engineer - Full Stack New York, NY

K Health • New York (NY)

On-site
USD 160,000 - 200,000
Stock options
Paid parental leave
Comprehensive health insurance
+2
Senior Software Engineer - Full Stack
Senior Software Engineer - Full Stack

K Health • New York (NY)

On-site
USD 160,000 - 200,000
Hybrid work schedule
Stock options
Paid parental leave
+3
Lead Security & Compliance Analyst
Lead Security & Compliance Analyst

Parachute Health • United States

Hybrid
USD 80,000 - 130,000
Senior Security Engineer
Senior Security Engineer

Included Health • United States

Remote
USD 128,000 - 236,000
Remote-first culture
401(k) savings plan
Comprehensive medical coverage
+3