Назад
Company hidden
2 месяца назад

Senior Product Security Engineer

175 000 - 200 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Senior Product Security Engineer: Building automated security systems and privacy infrastructure within a virtual medical practice with an accent on secure architecture, auth enhancements, and privacy-preserving data handling. Focus on owning the end-to-end pentest-to-fix lifecycle and developing secure-by-default libraries to integrate security into the software development process.

Location: Must be based in the United States

Salary: $175,000–$200,000

Company

hirify.global is a leading virtual medical practice redefining healthcare for women and children through a high-touch, technology-driven platform that delivers 24/7 personalized care.

What you will do

  • Design and implement auth enhancements, including magic links and access/audit log features.
  • Lead privacy initiatives, including DSAR integration and automated data deletion capabilities.
  • Own the end-to-end pentest-to-fix lifecycle, writing code to remediate vulnerabilities.
  • Develop internal secure-by-default libraries and patterns to reduce engineering load.
  • Partner with engineering leads on threat modeling to ensure secure design from the start.
  • Collaborate across engineering squads to navigate security use cases and GRC requirements.

Requirements

  • 5+ years of software engineering experience with production-grade code in Python, Go, or Kotlin.
  • Strong understanding of OWASP Top 10, identity flows, and modern security threats.
  • Experience building systems that eliminate vulnerabilities rather than just triaging alerts.
  • Strong automation mindset with experience or interest in LLM agents for security impact.
  • Must be authorized to work in the United States.
  • Comfortable with ambiguity and building rapport across multiple engineering teams.

Nice to have

  • Experience with Google Cloud Platform (GCP), GitHub Advanced Security (GHAS), Stytch, Sentry, or Statsig.
  • Knowledge of healthcare compliance frameworks: HIPAA, SOC 2 Type 2, and HITRUST.
  • Prior experience building data infrastructure for AI/ML or privacy-preserving data techniques.
  • Experience in a fast-paced, product-oriented startup environment.

Culture & Benefits

  • Competitive healthcare benefits and generous equity compensation.
  • Unlimited vacation policy.
  • Membership in the First Round Network for mentorship and professional growth.
  • Mission-driven work focused on improving healthcare outcomes for mothers and babies.
  • Inclusive team environment that values diverse backgrounds and perspectives.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →