
Staff Security Engineer
Modern Health
full-time
Posted on:
Location Type: Remote
Location: Remote • 🇺🇸 United States
Visit company websiteSalary
💰 $160,700 - $189,000 per year
Job Level
Lead
Tech Stack
CloudPythonSDLC
About the role
- Define and drive the strategic roadmap for proactive security vulnerability analysis in web and mobile applications, setting the organizational standard for risk determination and leading complex, company-wide remediations.
- Establish the technical vision and program for integrating robust security controls at every stage of the Software Development Life Cycle (SDLC), championing secure development practices and scalable agile delivery.
- Architect, deploy, and manage defensive security tooling (e.g., SAST, DAST, SCA) and evaluate new industry-leading application security solutions to create a robust, automated security platform.
- Lead the maturation of the Product and Application Security Program by developing and implementing security policies, standards, and metrics to continually raise the security bar and demonstrate compliance.
- Lead collaborative and cross-functional threat modeling initiatives for core systems, new features, and evolving services, ensuring proactive risk identification and structural security improvement.
- Engage with Cloud Security efforts by partnering with DevOps and Infrastructure teams to assess, improve, and monitor cloud architecture, security policies, and cloud-native controls to ensure secure deployment and operations.
Requirements
- 8+ years of progressive experience in product/application security or a related security-focused engineering field.
- Extensive hands-on experience with vulnerability management, secure code review, threat modeling, and industry-standard tools for application and product security.
- Hands-on experience with at least one scripting language (Python and/or Bash preferred).
- Expert in secure software development practices, security-focused architecture, and infrastructure that aligns with product objectives and business needs.
- Ability to assess, prioritize, and execute on ambiguous and complex projects independently.
- Excellent written and verbal communication skills, capable of articulating technical risk to both engineering and executive audiences.
Benefits
- Medical / Dental / Vision / Disability / Life Insurance
- High Deductible Health Plan with Health Savings Account (HSA) option
- Flexible Spending Account (FSA)
- Access to coaches and therapists through Modern Health's platform
- Generous Time Off
- Company-wide Collective Pause Days
- Parental Leave Policy
- Family Forming Benefit through Carrot
- Family Assistance Benefit through UrbanSitter
- Professional Development Stipend
- 401k
- Financial Planning Benefit through Origin
- Annual Wellness Stipend to use on items that promote your overall well being
- New Hire Stipend to help cover work-from-home setup costs
- ModSquad Community: Virtual events like active ERGs, holiday themed activities, team-building events and more
- Monthly Cell Phone Reimbursement
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
vulnerability managementsecure code reviewthreat modelingscripting languagesecure software development practicessecurity-focused architecturedefensive security toolingapplication security solutionscloud architecturecloud-native controls
Soft skills
project managementcommunication skillsrisk assessmentcollaborationindependent executionstrategic visionleadershipproblem-solvingorganizational skillstechnical articulation