Staff Security & Platform Engiineer

Harnham

Boston (MA)

Hybrid

USD 216,000 - 264,000

Full time

5 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Bonus
Equity
Hybrid work

Job summary

Harnham partners with a high-growth healthtech company to hire a Staff Security & Platform Engineer who will own cloud, security and compliance foundations across AWS and GCP in a regulated healthcare environment.

You will be hands-on solving Terraform IaC, IAM, vulnerability management, and secure data access, while collaborating with engineering and leadership to scale securely. Hybrid work in Cambridge, MA with base up to $240K plus bonus and equity.

Qualifications

  • 10+ years across Platform Engineering, SRE, DevOps, DevSecOps, Cloud Infrastructure or Cloud Security with Staff/Principal ownership.
  • Strong experience with AWS + GCP, Terraform, CI/CD, GitHub, IAM, cloud security, SOC 2, HIPAA, vulnerability management and production operations.
  • Healthcare or life sciences experience is compelling, with regulated environments.
  • Hands-on builder capable of defining architecture and security standards while implementing and securing production systems.

Responsibilities

  • Architect, secure and operate production infrastructure across AWS + GCP, with secure interoperability between environments.
  • Build and mature Terraform/IaC, deployment automation and CI/CD infrastructure.
  • Own cloud IAM and access governance, including least privilege and privileged access.
  • Drive SOC 2 and HIPAA controls, audit readiness, evidence and remediation.
  • Own platform security across secrets management, vulnerability management and security operations.
  • Maintain and evolve GitHub and CI/CD workflows for automated deployments.
  • Build monitoring and observability with Datadog as a central tool.
  • Design disaster recovery, rollback and business continuity capabilities.
  • Support secure research environments for AI workloads; partner with Engineering and leadership.

Skills

Cloud security
Hands-on builder
Production operations
Vulnerability management
Security architecture

Education

Bachelor's in CS/Engineering

Tools

Terraform
CI/CD
GitHub
IAM

Job description

Staff Security & Platform Engineer | AI-Driven HealthTech | Up to $240K Base + Bonus + Equity

I'm partnering with a high-growth, early-stage healthcare technology company building an AI-driven platform designed to transform oncology surveillance and survivorship care.

As the company enters its next stage of growth, they’re hiring a Staff Security & Platform Engineer to take genuine end-to-end ownership of the cloud, security and compliance foundations underpinning both their core healthcare product and AI ecosystem.

This is not a narrow DevOps role. You’ll operate at the intersection of Platform Engineering, Cloud Security, DevSecOps and regulated healthcare infrastructure, with the autonomy to define how the environment should be architected, secured, automated and operated as the organization scales.

What you’ll own:
  • Architect, secure and operate production infrastructure spanning AWS + GCP, including secure interoperability between the two environments
  • Build and mature Terraform/IaC, deployment automation and CI/CD infrastructure
  • Own cloud IAM and access governance, including least privilege, service accounts and privileged access
  • Drive SOC 2 and HIPAA controls, audit readiness, evidence and remediation
  • Own platform security across secrets/key management, vulnerability management and security operations
  • Administer and evolve GitHub and CI/CD workflows, creating increasingly automated and reproducible deployment processes
  • Build robust monitoring and observability, with Datadog currently central to the environment
  • Architect disaster recovery, rollback and business continuity capabilities
  • Help establish secure Trusted Research Environments supporting healthcare research and AI workloads
  • Partner directly with Engineering, AI and senior leadership while becoming the internal authority on cloud/platform architecture and security

One of the first major challenges will be particularly interesting: helping establish a secure GCP research/AI environment and connecting it safely with the AWS-based product ecosystem, with sensitive healthcare data, HIPAA requirements, auditability and reliability built into the architecture from day one.

What they’re looking for:

You’ll likely bring 10+ years across some combination of Platform Engineering, SRE, DevOps, DevSecOps, Cloud Infrastructure or Cloud Security, with Staff/Principal-level technical ownership.

The strongest backgrounds will combine AWS + GCP, Terraform, CI/CD, GitHub, IAM, cloud security, SOC 2, HIPAA, vulnerability management and production operations. Healthcare or life sciences experience is particularly compelling, although other highly regulated environments such as fintech or government are relevant.

Most importantly, they want a hands-on builder. Someone who can establish the architecture and standards, but is equally comfortable getting into Terraform, troubleshooting production infrastructure, tightening IAM controls, investigating vulnerabilities or designing the secure connection between two cloud environments.

Why this one stands out:

You’re joining early enough that many of the most important platform and security decisions are still yours to shape. The remit touches the core healthcare product, AI infrastructure, clinical data, security and compliance, and the person joining will have meaningful influence over how the technology organization scales.

Cambridge, MA (Kendall Square) | Hybrid | Up to $240K base + bonus + early-stage equity.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Staff Platform & Security Engineer — Cloud, HIPAA & AI HealthTech
Staff Platform & Security Engineer — Cloud, HIPAA & AI HealthTech

Harnham • Boston (MA)

Hybrid
USD 216,000 - 264,000
Bonus
Equity
Hybrid work
Senior Software Security Engineer
Senior Software Security Engineer

Xcede • San Francisco (CA)

On-site
USD 120,000 - 160,000
Platform Engineer
Platform Engineer

Goliath Partners Inc. • San Francisco (CA), Northern (KY)

Hybrid
USD 230,000 - 285,000
Medical, dental & vision
401(k)
Visa sponsorship
+1
Senior Security Engineer
Senior Security Engineer

Translucent AI • New York (NY)

On-site
USD 180,000 - 250,000
Equity
In-office 4 days/week
Director, Technical Products and Operations
Director, Technical Products and Operations

realchemistry • United States

Hybrid
USD 180,000 - 240,000
Hybrid work model
Platform Engineer
Platform Engineer

Goliath Partners • San Francisco (CA)

Hybrid
USD 230,000 - 285,000
Med, dental, vision coverage
401(k)
Visa sponsorship
+2
DevOps Engineer
DevOps Engineer

Prudentia Sciences • Cambridge (MA)

On-site
USD 180,000 - 200,000
Competitive salary and equity
Hybrid onsite 2 days/week (Boston, NYC
San Francisco hub
Staff Platform Engineer
Staff Platform Engineer

Hidden Jobs • United States

Hybrid
USD 200,000 - 270,000
Stock options
Health insurance
Vision insurance
+4
Senior Platform Engineer (Python/AWS) - HealthTech
Senior Platform Engineer (Python/AWS) - HealthTech

Evolution USA • Boston (MA)

On-site
USD 150,000 - 210,000
DevOps Engineer
DevOps Engineer

Prudentia Sciences • San Francisco (CA)

On-site
USD 180,000 - 200,000