TL;DR
Security Engineer (Cybersecurity): Designing and implementing data security and governance programs, focusing on protecting sensitive data and reducing risks. Focus on vulnerability management, data classification, and ensuring compliance with regulatory frameworks.
Location: Must be based out of our headquarters in the Greater Seattle Area and requires onsite presence 5 days per week.
Salary: $115,000 to $140,000
Company
hirify.global is the world’s first health provider led data platform with a vision of Saving Lives with Data.
What you will do
- Design, implement, and operate data discovery and classification programs across structured and unstructured data sources.
- Own and operate vulnerability management efforts with a focus on risks that impact sensitive data.
- Proactively identify shadow data stores, over-shared resources, and misclassified sensitive data.
- Partner with engineering and data platform teams to embed secure-by-design data governance controls into data pipelines and cloud services.
Requirements
- Bachelor’s degree in Cyber Security, Computer Science, Information Security, Information Systems, or a related field, or equivalent practical experience.
- 5+ years of experience in Security Engineering, Data Security, Cloud Security, Vulnerability Management, or Governance-focused roles.
- Hands-on experience with data discovery, classification, and governance tools.
- Solid understanding of Azure cloud architecture, data services, and native security controls.
- Knowledge of regulatory and compliance frameworks impacting data security (e.g., SOC 2, HIPAA, GDPR, ISO 27001).
- All applicants must be authorized to work in the United States for any employer as we are unable to sponsor work visas or permits (e.g. F-1 OPT, H1-B) at this time.
Nice to have
- Ability to be a self-starter and motivated to help Engineering teams understand cyber security best practices.
- Experience with SAST, DAST, OSS, web-app pen-test, and offensive security assessment tools.
- Experience in improving vulnerability remediation requirements.
- Certifications in Information Security, e.g., GSEC, GCWN, GDSA, CISSP, HCISP, CCSP, CRISC, CISM, Security+, or other security relevant accreditations.
Culture & Benefits
- Interesting and meaningful work for every career stage.
- Comprehensive benefits with strong medical, dental and vision insurance plans.
- Work/life autonomy via flexible work hours and flexible paid time off.
- Regular team activities (virtual and in-person).
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →