Senior Security Engineer

2 weeks ago


Remote, Oregon, United States Curai Health Full time

Curai Health is an AI-powered virtual clinic on a mission to improve access to care at scale. As the pioneer in deploying machine learning into clinical workflows, Curai Health enables its dedicated, specially trained clinicians to deliver primary care to more people at a fraction of the cost. Easy-to-use and convenient, Curai Health partners with insurers and health systems to keep patients engaged in their care over time, improving health outcomes and reducing costs.

Our company is remote-first and we consider candidates across the United States. Our corporate office is located in San Francisco.

The Role

We are looking for a hungry and experienced Senior Security Engineer to join our team. This role will report into our engineering organization but will work closely with our Privacy & Security team in supporting security and continuous compliance. This will also include designing and building tools and service integrations that make governance easier and part of the normal day-to-day engineering work.

Who You Are

None of these, individually, are hard requirements but they do describe the type of folks that we think would be most effective and happy at Curai. You...


• Are excited to work with a company that values innovation and prioritizes the security of its systems and its clients' data


• Are dedicated to continuous learning and improvement in the field of cybersecurity


• Have a strong orientation to Curai's mission to make high-quality healthcare accessible to all


• Have worked remotely before, or have a strong feeling that you'd work well with a remote team, spread across multiple time zones


• Are excited to try things out to validate new features, and move on if they no longer solve a problem


• Can work effectively with others


• Are excited about getting on the speeding train that is a growing startup


• Focus on the end goal, and build a practical path to achieve it


• You're someone who will say something if they see something; arming themselves with what they can do to help

What You'll Do


• Maintain infrastructure and operational security controls that ensure Curai remains both HIPAA and SOC-2 compliant


• Establish security requirements for cloud-based solutions by evaluating business strategies and requirements, such as those found in cloud infrastructure security standards like ISO and NIST)


• Conduct regular security assessments based on changes to Curai's infrastructure and applications for potential security impact.


• Work with engineers to identify the tradeoffs of different solutions and recommend ideal designs that meet the team's requirements, as well as our security requirements


• Manage the execution of penetration tests and coordinating all remediation activities with the rest of the engineering team.


• Implement and maintain core security tooling, such as vulnerability and configuration management, intrusion detection/prevention systems, SIEM tools, etc.


• Assist the security team in performing/automating audits, security assessments, and quarterly access reviews


• Continually evaluate new threats in the cloud, to identify the impact on IT and Business to develop and implement security controls


• Provide technical and integration support for Curai's continuous compliance platform, Drata

What You'll Need


• 5+ years of experience in a similar role


• A passion for improving infrastructure security operations


• Demonstrated ability and experience securing large complex enterprise architectures or systems deployed in the public cloud (e.g. Amazon Web Services)


• Experience with various AWS security tools such as GuardDuty, CloudTrail, CloudWatch, Inspector, etc.


• Hands-on experience in implementing, and administering IAM systems like Okta and OneLogin is a plus


• Experience with Datadog is a plus


• Experience with ISO 27001/2, NIST CSF, HIPAA/HITECH, SOC-2, PCI, SOX, ITGC, or other security frameworks preferred.


• Experience with continuous compliance platforms such as Drata, Vanta, SecureFrame, etc. is a plus.


• Computer science or similar technical degree, or equivalent practical experience


• Strong analytical and problem-solving skills


• Excellent interpersonal and communication skills


• Ability to work and thrive in a fast-paced, diverse, and multidisciplinary work environment

What We Offer


• Culture: Mission-driven talent with great colleagues committed to living our values, collaborating, and driving performance


• Pay: Competitive compensation and stock


• Wellness: Unlimited PTO, flexible working hours and remote working options


• Benefits: Excellent medical, dental, vision, flex spending plans, and paid parental leave


• Financial: 401k plan with employer matching

The annual base salary range for this position is between $180,000 and $220,000 annually. Stock grants also play a key part in any offer, they increase your overall compensation package significantly based on company success. Please note that the base salary range is a guideline, and individual total compensation will vary based on qualifications, skill level, competencies, and work location.

Curai Health is a startup with a small, but world-class team from high-tech companies, AI researchers, and practicing physicians, to team members from non-traditional career paths and backgrounds. We also have research partnerships with leading universities nationwide and access to medical data that facilitates research in this space. We are a highly collaborative, data-driven team, focused on delivering our mission with funding from top-tier Silicon Valley investors including Morningside, General Catalyst, and Khosla Ventures.

At Curai Health, we are highly committed to building a diverse and inclusive environment. In keeping with our beliefs and values, no employee or applicant will face discrimination or harassment based on race, color, ancestry, national origin, religion, age, gender, marital domestic partner status, sexual orientation, gender identity, disability status, or veteran status. To promote an equitable and bias-free workplace, we set competitive compensation packages for each position and do not negotiate on our offers. We are looking for mission-driven teammates, who embody our core values and appreciate our transparent approach.



  • Remote, Oregon, United States Orca Security Full time

    Remote San Francisco Bay Area ABOUT USDive right in. Swim with our pod.At Orca, we believe that in the right environment and with the right team, talent has no boundaries. This team spirit, together with our drive to always aim high, have quickly earned us unicorn status and turned us into a global cloud security innovation leader. So if you're ready to join...


  • Remote, Oregon, United States Duo Security Full time

    Senior Software Engineer (Firewall Datapath) What You'll DoAs a Senior Software Engineer working for the Multicloud Defense team, you'll innovate, design, and develop security features and related infrastructure. The Multicloud Defense team delivers on the promise of cloud-first simplicity with robust cloud security. In this role, you will contribute to...


  • Remote, Oregon, United States Abnormal Security Full time

    About the RoleAbnormal Security is looking for an ambitious and growth-minded Senior Product Manager to drive innovation for our flagship Messaging Security Products (MSP) product lines.At Abnormal, we keep our customers—ranging from Global 2000 organizations to small businesses—safe from complex and cutting edge attacks that have the potential to cause...


  • Remote, Oregon, United States Duo Security Full time

    We are Cisco Secure Common Services Engineering, a team of cybersecurity experts and innovative engineers who support the products and developers across Cisco Security. We put our people first, we take bold steps together, and we value transparency each step of the way.Who You'll work with:We provide the basic building blocks for the Cisco Security Cloud....


  • Remote, Oregon, United States DAT Freight & Analytics Full time

    About DATDAT is an award-winning employer of choice and a next-generation SaaS technology company that has been at the leading edge of innovation in transportation supply chain logistics for 45 years. We continue to transform the industry year over year, by deploying a suite of software solutions to millions of customers every day - customers who depend on...


  • Remote, Oregon, United States Duo Security Full time

    Who We AreThe Cisco Security AI team delivers AI products and platform for all Cisco Secure products and portfolios so businesses around the world can defend against threats and safeguard the most vital aspects of their business with security resilience. We are passionate about making our customers secure by simplifying security with zero compromise using AI...


  • Remote, Oregon, United States GE Aerospace Full time

    Job Description SummaryWe are seeking an experienced Senior Staff Cyber Security Engineer to lead our efforts in securing AWS and Azure GovCloud environments. The ideal candidate will possess deep expertise in cloud security, particularly within government frameworks, and will be adept at utilizing Cloud Security Posture Management (CSPM) tools such as Wiz....


  • Remote, Oregon, United States Duo Security Full time

    We are Cisco Secure Common Services Platform Engineering, a team of cybersecurity experts and innovative engineers who support the products and developers across Cisco Security. We put our people first, we take bold steps together, and we value transparency each step of the way. We're adding more talented members to our growing team who will help us take...


  • Remote, Oregon, United States DFIN Full time

    Donnelley Financial Solutions (DFIN) is a leader in risk and compliance solutions, providing insightful technology, industry expertise and data insights to clients across the globe. We're here to help you make smarter decisions with insightful technology, industry expertise and data insights at every stage of your business and investment lifecycles. As...

  • Senior GRC Engineer

    6 days ago


    Remote, Oregon, United States Atlan Full time

    What will you do?We seek a highly skilled, experienced, and self-motivated Senior GRC Engineer. As a Senior GRC Engineer you will play a critical role in fortifying our security infrastructure, ensuring compliance with industry standards such as SOC 2, HIPAA, GDPR, and ISO27001, and implementing cutting-edge security practices like Policy as Code and Shift...


  • Remote, Oregon, United States Liberty Mutual Insurance Full time

    Pay PhilosophyThe typical starting salary range for this role is determined by a number of factors including skills, experience, education, certifications and location. The full salary range for this role reflects the competitive labor market value for all employees in these positions across the national market and provides an opportunity to progress as...


  • Remote, Oregon, United States Abnormal Security Full time

    About the RoleAbnormal Security is seeking an Enterprise Sales Engineer to join our growing Sales Engineering team. As an Enterprise Sales Engineer, you will be our customer's technical contact, and craft strategic business cases to win customers over & help them conquer their most intractable email security challenges. In conjunction with Enterprise Account...


  • Remote, Oregon, United States Hypixel Studios Full time

    We're looking for a Senior Engine Engineer to join our team at Hypixel Studios, which collaborates remotely from around the world. Our members range from industry newcomers to experts with 25+ years of experience. Team members come from a diverse set of backgrounds, but share a common passion for building polished player-focused, community-powered games.Join...


  • Remote, Oregon, United States Bishop Fox Full time

    Bishop Fox is the leading authority in offensive security, providing solutions ranging from continuous penetration testing, red teaming, and attack surface management to product, cloud, and application security assessments. We've worked with more than a quarter of the Fortune 100, half of the Fortune 10, eight of the top 10 global technology companies, and...

  • Security Engineer

    6 days ago


    Remote, Oregon, United States Baylor Scott & White Health Full time

    JOB SUMMARYThe Security Engineer will be accountable for developing information security policy, introducing security best practices, and auditing information security compliance. This also includes selecting and implementing appropriate security solutions and leading efforts to assess vulnerability and risk. You will assist respective IS Directors and/or...

  • Security Engineer

    6 days ago


    Remote, Oregon, United States Applied Systems Full time

    Job DescriptionApplied Systems, Inc., a worldwide leader in insurance technology, is currently searching for a Security Engineer to join our Office of Information Security (OSI) team. As members of OIS, Security Engineer works closely with application and infrastructure engineering teams, product managers (PM), quality assurance (QA), and third-party groups...


  • Remote, Oregon, United States Amentum Full time

    Amentum is seeking a Senior Cybersecurity Operations Engineer to support our cyber environment. This is a remote-telework and hands-on role, responsible for ensuring Amentum assets are protected from cyber threats. This role provides technical expertise in multiple areas of cybersecurity to include cloud security, endpoint security, access management, secure...


  • Remote, Oregon, United States Duo Security Full time

    Who We AreThe Cisco Security AI team delivers AI products and platform for our portfolio of Cisco secure products so our customers around the world can defend against threats and safeguard the most important aspects of their businesses. We are passionate about making sure our customers are secure and we are committed to simplifying security with zero...


  • Remote, Oregon, United States Chainlink Labs Full time

    The Senior IT Systems Engineer is an experienced IT developer, dedicated to building world class infrastructure, automation, and process, while delivering exceptional customer service. In this role, you will be a founding member of our growing IT team and engineer solutions across identity, endpoint management, core infrastructure, and employee productivity...


  • Remote, Oregon, United States Actian Full time

    Our Vision is to be the Most Trusted, Flexible and Easy to Use Hybrid Cloud Data Platform. Actian is transforming industries by empowering companies to accelerate application modernization and simplify the Cloud journey. Our customers use the Actian Data Platform to unify their siloed data, explore and securely exchange data to run a variety of analytic...