4 дня назад
Senior Manager / Manager, Security (AI)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Manager / Manager, Security (AI): Leading and executing security across Plenful’s AI-powered healthcare platform, covering application security, cloud infrastructure, incident response, compliance, and customer trust with an accent on hands-on engineering partnership and scalable security automation. Focus on securing AI/ML systems, integrating AppSec controls into CI/CD, strengthening AWS and tenant isolation, and building risk-based vulnerability and incident-response programs.
Location: Hybrid in San Francisco, California, with two days per week in the San Francisco office. The company is remote-first and also has office presence in New York.
Company
builds an AI automation platform that helps hospitals, health systems, pharmacies, and payors reduce manual healthcare operations work, improve compliance, and unlock revenue.
What you will do
- Define and execute a security roadmap aligned with product and business priorities, while leading a small security team and coordinating work across Engineering, Product, IT, Legal, Compliance, Sales, and executive leadership.
- Establish secure software development practices, conduct threat modeling and architecture reviews, remediate penetration-test findings, and integrate SAST, DAST, software composition analysis, and secrets detection into CI/CD workflows.
- Define security standards for AI-powered products and machine learning systems, including data protection, tenant isolation, prompt-injection risks, agent permissions, tool use, and continuous security evaluation.
- Build monitoring, detection, logging, alerting, incident-response, and risk-based vulnerability-management capabilities, including playbooks, tabletop exercises, remediation SLAs, and postmortems.
- Strengthen AWS infrastructure security across IAM, secrets, endpoints, networks, Kubernetes, containers, Infrastructure as Code, and cloud architecture.
- Lead SOC 2, HIPAA, HITRUST, vendor-risk, customer security-review, enterprise due-diligence, and executive security-communication programs.
Requirements
- 12+ years of progressive experience in cybersecurity, application security, security engineering, security operations, cloud security, or infrastructure security.
- At least 2 years leading security teams, programs, or major cross-functional security initiatives, with deep hands-on application security and security operations experience.
- Experience investigating and remediating vulnerabilities in modern web applications, APIs, distributed systems, enterprise SaaS platforms, and multi-tenant systems.
- Strong experience with AWS, IAM, logging, network security, secrets management, Infrastructure as Code, CI/CD security tooling, threat modeling, incident response, and vulnerability management.
- Experience with healthcare security and compliance frameworks, including HIPAA and SOC 2, plus the ability to communicate effectively with engineers, executives, customers, auditors, Legal, Compliance, and Sales.
- Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, or equivalent practical experience.
Nice to have
- Experience as an early security hire at a startup or high-growth technology company.
- Hands-on experience with Python, TypeScript, AI/ML platforms, agentic systems, modern data infrastructure, Kubernetes, container security, and cloud-native architectures.
- Experience with HITRUST certification, security automation, and internal security tooling.
- CISSP, CISM, CCSP, GIAC, or comparable certification.
Culture & Benefits
- Mission-driven team focused on improving healthcare operations and patient outcomes.
- Flexible hybrid work environment with meaningful office presence in San Francisco and New York.
- Medical, dental, and vision insurance with family participation.
- 401(k) with a company match, equity for full-time employees, unlimited PTO, and paid parental leave.
- Daily lunch, wellness, and commuter stipends for eligible employees.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
5 дней назад
Senior Security Engineer (AI)
173 000 - 225 000$
6 дней назад
InfoSec Lead (AI)
200 000 - 300 000$
5 дней назад
Sr. Director, Cyber Security
Replit
5 дней назад
Cloud Security Lead (AI)
250 000 - 325 000$
5 дней назад
Senior Security, Compliance, Privacy and IT Leader
175 000 - 200 000$
9 дней назад
Security Incident Response Lead (AI)
185 200 - 326 800$