Security Engineer

M3

Security

AWS

GCP

About this role

This security engineering role works across the company’s medical web services rather than within one specific product team. The scope includes internally developed systems supported by hundreds of microservices, web servers, batch programs, and shared services such as authentication and points platforms. The role partners with product teams across the organization and may address broad security initiatives or work deeply with an individual team to resolve specific issues.

The work covers planning and driving product security measures, reviewing security designs for new systems, assessing weaknesses in existing systems, investigating incidents, and directly removing identified risks. The engineer checks code and configuration for vulnerabilities, reviews security products, and helps balance protection with developer and user convenience. Named areas include AWS and GCP fundamentals, access control, authentication, networks, common web attack vectors, OWASP guidance, XSS, and CSRF, along with Linux, macOS, and Windows operations.

Applicants must be interested in improving system security, collaborate with other members while considering the overall environment, read and troubleshoot at least one programming language, understand basic cloud and security concepts, explain common web vulnerabilities, and have experience implementing and operating web systems or native applications.

This is an AI-generated summary of the employer's original posting — details can be incomplete, out of date or simply wrong. Always confirm everything on the official posting before applying.